I built a Flipper App that actually makes use of xSIID's sector 1

Heya,

haven’t posted here in a long time, but thought I’d share this.

Years ago I built a tool that stores encrypted blobs on the xSIID’s sector 1, it was designed for use with the proxmark3. Anyway I had a bit of time (and a claude max sub), so ported it over to a FAP.

It uses the Flippers secure enclave (user/U2F key) to encrypt/decrypt creds stored on a blob on the xSIID sector 1. I won’t go into too much detail here but if anyone’s interested here’s the repo/readme with all the details:

edit: if you do use it make sure you read the readme. This does change the default PWD for the xSIID (revertable). Only enable the AUTH LIM setting if you know how it functions and what it does as if you set it then hit the auth limit you’ll perma lock the implant. All hardware/implant based protections are off (user opt in) by default. Default settings are fine unless you’re paranoid.

3 Likes

you might also be interested in

3 Likes