Larry Pesce: SBOM the Hard Way — Hacking the Bob the Minion Router
A DEF CON 32 talk where security researcher Larry Pesce shows how to build a Software Bill of Materials (SBOM) when firmware is not officially available.
Using the Davolink “Bob the Minion” Wi-Fi router as a case study, he demonstrates a full hardware analysis workflow: device teardown, firmware extraction via SPI flash, JTAG/SWD and other interfaces, followed by reverse engineering of the recovered code.
Using the Davolink “Bob the Minion” Wi-Fi router as a case study, he demonstrates a full hardware analysis workflow: device teardown, firmware extraction via SPI flash, JTAG/SWD and other interfaces, followed by reverse engineering of the recovered code.