STB UART Mapping from Dump
Budget: €10 – €20 EUR
I’m holding a 64 MB flash dump (.CE0 image) taken from an STI7*** set-top-box and need a concise reverse-engineering pass on its firmware. With the original factory datasheet in hand, I want to know exactly:
• whether each onboard UART (0 – 3) is enabled in the build
• which PIO line every active UART is hooked to, as documented in the image and matched against the datasheet
• the alternate-function settings chosen for those PIOs
Any toolchain is acceptable—use Binwalk, IDA, Ghidra, or whatever you prefer—as long as the final report is clear and reproducible.
Deliverable: a short technical brief (text or PDF) that itemises the enable bits, PIO assignments, and alternate-function values, referencing offsets in the dump so I can verify your findings myself.
You will have all the data you need in dm (Flash Dump, STI7*** Datasheet and anything else you may need)
Please include your estimated fee and turnaround when you reply.
• whether each onboard UART (0 – 3) is enabled in the build
• which PIO line every active UART is hooked to, as documented in the image and matched against the datasheet
• the alternate-function settings chosen for those PIOs
Any toolchain is acceptable—use Binwalk, IDA, Ghidra, or whatever you prefer—as long as the final report is clear and reproducible.
Deliverable: a short technical brief (text or PDF) that itemises the enable bits, PIO assignments, and alternate-function values, referencing offsets in the dump so I can verify your findings myself.
You will have all the data you need in dm (Flash Dump, STI7*** Datasheet and anything else you may need)
Please include your estimated fee and turnaround when you reply.