subbrute_worker.c 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437
  1. #include "subbrute_worker_private.h"
  2. #include <string.h>
  3. #include <toolbox/stream/stream.h>
  4. #include <flipper_format.h>
  5. #include <flipper_format_i.h>
  6. #include <lib/subghz/protocols/protocol_items.h>
  7. #define TAG "SubBruteWorker"
  8. #define SUBBRUTE_TX_TIMEOUT 5
  9. #define SUBBRUTE_MANUAL_TRANSMIT_INTERVAL 400
  10. SubBruteWorker* subbrute_worker_alloc() {
  11. SubBruteWorker* instance = malloc(sizeof(SubBruteWorker));
  12. instance->state = SubBruteWorkerStateIDLE;
  13. instance->step = 0;
  14. instance->worker_running = false;
  15. instance->initiated = false;
  16. instance->last_time_tx_data = 0;
  17. instance->load_index = 0;
  18. instance->thread = furi_thread_alloc();
  19. furi_thread_set_name(instance->thread, "SubBruteAttackWorker");
  20. furi_thread_set_stack_size(instance->thread, 2048);
  21. furi_thread_set_context(instance->thread, instance);
  22. furi_thread_set_callback(instance->thread, subbrute_worker_thread);
  23. instance->context = NULL;
  24. instance->callback = NULL;
  25. instance->decoder_result = NULL;
  26. instance->transmitter = NULL;
  27. instance->environment = subghz_environment_alloc();
  28. subghz_environment_set_protocol_registry(
  29. instance->environment, (void*)&subghz_protocol_registry);
  30. instance->transmit_mode = false;
  31. return instance;
  32. }
  33. void subbrute_worker_free(SubBruteWorker* instance) {
  34. furi_assert(instance);
  35. // I don't know how to free this
  36. instance->decoder_result = NULL;
  37. if(instance->transmitter != NULL) {
  38. subghz_transmitter_free(instance->transmitter);
  39. instance->transmitter = NULL;
  40. }
  41. subghz_environment_free(instance->environment);
  42. instance->environment = NULL;
  43. furi_thread_free(instance->thread);
  44. free(instance);
  45. }
  46. uint64_t subbrute_worker_get_step(SubBruteWorker* instance) {
  47. return instance->step;
  48. }
  49. bool subbrute_worker_set_step(SubBruteWorker* instance, uint64_t step) {
  50. furi_assert(instance);
  51. if(!subbrute_worker_can_manual_transmit(instance)) {
  52. FURI_LOG_W(TAG, "Cannot set step during running mode");
  53. return false;
  54. }
  55. instance->step = step;
  56. return true;
  57. }
  58. bool subbrute_worker_init_default_attack(
  59. SubBruteWorker* instance,
  60. SubBruteAttacks attack_type,
  61. uint64_t step,
  62. const SubBruteProtocol* protocol,
  63. uint8_t extra_repeats) {
  64. furi_assert(instance);
  65. if(instance->worker_running) {
  66. FURI_LOG_W(TAG, "Init Worker when it's running");
  67. subbrute_worker_stop(instance);
  68. }
  69. instance->attack = attack_type;
  70. instance->frequency = protocol->frequency;
  71. instance->preset = protocol->preset;
  72. instance->file = protocol->file;
  73. instance->step = step;
  74. instance->bits = protocol->bits;
  75. instance->te = protocol->te;
  76. instance->repeat = protocol->repeat + extra_repeats;
  77. instance->load_index = 0;
  78. instance->file_key = 0;
  79. instance->two_bytes = false;
  80. instance->max_value =
  81. subbrute_protocol_calc_max_value(instance->attack, instance->bits, instance->two_bytes);
  82. instance->initiated = true;
  83. instance->state = SubBruteWorkerStateReady;
  84. subbrute_worker_send_callback(instance);
  85. #ifdef FURI_DEBUG
  86. FURI_LOG_I(
  87. TAG,
  88. "subbrute_worker_init_default_attack: %s, bits: %d, preset: %s, file: %s, te: %ld, repeat: %d, max_value: %lld",
  89. subbrute_protocol_name(instance->attack),
  90. instance->bits,
  91. subbrute_protocol_preset(instance->preset),
  92. subbrute_protocol_file(instance->file),
  93. instance->te,
  94. instance->repeat,
  95. instance->max_value);
  96. #endif
  97. return true;
  98. }
  99. bool subbrute_worker_init_file_attack(
  100. SubBruteWorker* instance,
  101. uint64_t step,
  102. uint8_t load_index,
  103. uint64_t file_key,
  104. SubBruteProtocol* protocol,
  105. uint8_t extra_repeats,
  106. bool two_bytes) {
  107. furi_assert(instance);
  108. if(instance->worker_running) {
  109. FURI_LOG_W(TAG, "Init Worker when it's running");
  110. subbrute_worker_stop(instance);
  111. }
  112. instance->attack = SubBruteAttackLoadFile;
  113. instance->frequency = protocol->frequency;
  114. instance->preset = protocol->preset;
  115. instance->file = protocol->file;
  116. instance->step = step;
  117. instance->bits = protocol->bits;
  118. instance->te = protocol->te;
  119. instance->load_index = load_index;
  120. instance->repeat = protocol->repeat + extra_repeats;
  121. instance->file_key = file_key;
  122. instance->two_bytes = two_bytes;
  123. instance->max_value =
  124. subbrute_protocol_calc_max_value(instance->attack, instance->bits, instance->two_bytes);
  125. instance->initiated = true;
  126. instance->state = SubBruteWorkerStateReady;
  127. subbrute_worker_send_callback(instance);
  128. #ifdef FURI_DEBUG
  129. FURI_LOG_I(
  130. TAG,
  131. "subbrute_worker_init_file_attack: %s, bits: %d, preset: %s, file: %s, te: %ld, repeat: %d, max_value: %lld, key: %llX",
  132. subbrute_protocol_name(instance->attack),
  133. instance->bits,
  134. subbrute_protocol_preset(instance->preset),
  135. subbrute_protocol_file(instance->file),
  136. instance->te,
  137. instance->repeat,
  138. instance->max_value,
  139. instance->file_key);
  140. #endif
  141. return true;
  142. }
  143. bool subbrute_worker_start(SubBruteWorker* instance) {
  144. furi_assert(instance);
  145. if(!instance->initiated) {
  146. FURI_LOG_W(TAG, "Worker not init!");
  147. return false;
  148. }
  149. if(instance->worker_running) {
  150. FURI_LOG_W(TAG, "Worker is already running!");
  151. return false;
  152. }
  153. if(instance->state != SubBruteWorkerStateReady &&
  154. instance->state != SubBruteWorkerStateFinished) {
  155. FURI_LOG_W(TAG, "Worker cannot start, invalid device state: %d", instance->state);
  156. return false;
  157. }
  158. instance->worker_running = true;
  159. furi_thread_start(instance->thread);
  160. return true;
  161. }
  162. void subbrute_worker_stop(SubBruteWorker* instance) {
  163. furi_assert(instance);
  164. if(!instance->worker_running) {
  165. return;
  166. }
  167. instance->worker_running = false;
  168. furi_thread_join(instance->thread);
  169. furi_hal_subghz_set_path(FuriHalSubGhzPathIsolate);
  170. furi_hal_subghz_sleep();
  171. }
  172. bool subbrute_worker_transmit_current_key(SubBruteWorker* instance, uint64_t step) {
  173. furi_assert(instance);
  174. if(!instance->initiated) {
  175. FURI_LOG_W(TAG, "Worker not init!");
  176. return false;
  177. }
  178. if(instance->worker_running) {
  179. FURI_LOG_W(TAG, "Worker in running state!");
  180. return false;
  181. }
  182. if(instance->state != SubBruteWorkerStateReady &&
  183. instance->state != SubBruteWorkerStateFinished) {
  184. FURI_LOG_W(TAG, "Invalid state for running worker! State: %d", instance->state);
  185. return false;
  186. }
  187. uint32_t ticks = furi_get_tick();
  188. if((ticks - instance->last_time_tx_data) < SUBBRUTE_MANUAL_TRANSMIT_INTERVAL) {
  189. #if FURI_DEBUG
  190. FURI_LOG_D(TAG, "Need to wait, current: %ld", ticks - instance->last_time_tx_data);
  191. #endif
  192. return false;
  193. }
  194. instance->last_time_tx_data = ticks;
  195. instance->step = step;
  196. bool result;
  197. instance->protocol_name = subbrute_protocol_file(instance->file);
  198. FlipperFormat* flipper_format = flipper_format_string_alloc();
  199. Stream* stream = flipper_format_get_raw_stream(flipper_format);
  200. stream_clean(stream);
  201. if(instance->attack == SubBruteAttackLoadFile) {
  202. subbrute_protocol_file_payload(
  203. stream,
  204. step,
  205. instance->bits,
  206. instance->te,
  207. instance->repeat,
  208. instance->load_index,
  209. instance->file_key,
  210. instance->two_bytes);
  211. } else {
  212. subbrute_protocol_default_payload(
  213. stream, instance->file, step, instance->bits, instance->te, instance->repeat);
  214. }
  215. // size_t written = stream_write_string(stream, payload);
  216. // if(written <= 0) {
  217. // FURI_LOG_W(TAG, "Error creating packet! EXIT");
  218. // result = false;
  219. // } else {
  220. subbrute_worker_subghz_transmit(instance, flipper_format);
  221. result = true;
  222. #if FURI_DEBUG
  223. FURI_LOG_D(TAG, "Manual transmit done");
  224. #endif
  225. // }
  226. flipper_format_free(flipper_format);
  227. // furi_string_free(payload);
  228. return result;
  229. }
  230. bool subbrute_worker_is_running(SubBruteWorker* instance) {
  231. return instance->worker_running;
  232. }
  233. bool subbrute_worker_can_manual_transmit(SubBruteWorker* instance) {
  234. furi_assert(instance);
  235. if(!instance->initiated) {
  236. FURI_LOG_W(TAG, "Worker not init!");
  237. return false;
  238. }
  239. return !instance->worker_running && instance->state != SubBruteWorkerStateIDLE &&
  240. instance->state != SubBruteWorkerStateTx &&
  241. ((furi_get_tick() - instance->last_time_tx_data) > SUBBRUTE_MANUAL_TRANSMIT_INTERVAL);
  242. }
  243. void subbrute_worker_set_callback(
  244. SubBruteWorker* instance,
  245. SubBruteWorkerCallback callback,
  246. void* context) {
  247. furi_assert(instance);
  248. instance->callback = callback;
  249. instance->context = context;
  250. }
  251. void subbrute_worker_subghz_transmit(SubBruteWorker* instance, FlipperFormat* flipper_format) {
  252. while(instance->transmit_mode) {
  253. furi_delay_ms(SUBBRUTE_TX_TIMEOUT);
  254. }
  255. instance->transmit_mode = true;
  256. if(instance->transmitter != NULL) {
  257. subghz_transmitter_free(instance->transmitter);
  258. instance->transmitter = NULL;
  259. }
  260. instance->transmitter =
  261. subghz_transmitter_alloc_init(instance->environment, instance->protocol_name);
  262. subghz_transmitter_deserialize(instance->transmitter, flipper_format);
  263. furi_hal_subghz_reset();
  264. furi_hal_subghz_load_preset(instance->preset);
  265. furi_hal_subghz_set_frequency_and_path(instance->frequency);
  266. furi_hal_subghz_start_async_tx(subghz_transmitter_yield, instance->transmitter);
  267. while(!furi_hal_subghz_is_async_tx_complete()) {
  268. furi_delay_ms(SUBBRUTE_TX_TIMEOUT);
  269. }
  270. furi_hal_subghz_stop_async_tx();
  271. furi_hal_subghz_set_path(FuriHalSubGhzPathIsolate);
  272. furi_hal_subghz_sleep();
  273. subghz_transmitter_free(instance->transmitter);
  274. instance->transmitter = NULL;
  275. instance->transmit_mode = false;
  276. }
  277. void subbrute_worker_send_callback(SubBruteWorker* instance) {
  278. if(instance->callback != NULL) {
  279. instance->callback(instance->context, instance->state);
  280. }
  281. }
  282. /**
  283. * Entrypoint for worker
  284. *
  285. * @param context SubBruteWorker*
  286. * @return 0 if ok
  287. */
  288. int32_t subbrute_worker_thread(void* context) {
  289. furi_assert(context);
  290. SubBruteWorker* instance = (SubBruteWorker*)context;
  291. if(!instance->worker_running) {
  292. FURI_LOG_W(TAG, "Worker is not set to running state!");
  293. return -1;
  294. }
  295. if(instance->state != SubBruteWorkerStateReady &&
  296. instance->state != SubBruteWorkerStateFinished) {
  297. FURI_LOG_W(TAG, "Invalid state for running worker! State: %d", instance->state);
  298. return -2;
  299. }
  300. #ifdef FURI_DEBUG
  301. FURI_LOG_I(TAG, "Worker start");
  302. #endif
  303. SubBruteWorkerState local_state = instance->state = SubBruteWorkerStateTx;
  304. subbrute_worker_send_callback(instance);
  305. instance->protocol_name = subbrute_protocol_file(instance->file);
  306. FlipperFormat* flipper_format = flipper_format_string_alloc();
  307. Stream* stream = flipper_format_get_raw_stream(flipper_format);
  308. while(instance->worker_running) {
  309. stream_clean(stream);
  310. if(instance->attack == SubBruteAttackLoadFile) {
  311. subbrute_protocol_file_payload(
  312. stream,
  313. instance->step,
  314. instance->bits,
  315. instance->te,
  316. instance->repeat,
  317. instance->load_index,
  318. instance->file_key,
  319. instance->two_bytes);
  320. } else {
  321. subbrute_protocol_default_payload(
  322. stream,
  323. instance->file,
  324. instance->step,
  325. instance->bits,
  326. instance->te,
  327. instance->repeat);
  328. }
  329. #ifdef FURI_DEBUG
  330. //FURI_LOG_I(TAG, "Payload: %s", furi_string_get_cstr(payload));
  331. //furi_delay_ms(SUBBRUTE_MANUAL_TRANSMIT_INTERVAL / 4);
  332. #endif
  333. // size_t written = stream_write_stream_write_string(stream, payload);
  334. // if(written <= 0) {
  335. // FURI_LOG_W(TAG, "Error creating packet! BREAK");
  336. // instance->worker_running = false;
  337. // local_state = SubBruteWorkerStateIDLE;
  338. // furi_string_free(payload);
  339. // break;
  340. // }
  341. subbrute_worker_subghz_transmit(instance, flipper_format);
  342. if(instance->step + 1 > instance->max_value) {
  343. #ifdef FURI_DEBUG
  344. FURI_LOG_I(TAG, "Worker finished to end");
  345. #endif
  346. local_state = SubBruteWorkerStateFinished;
  347. // furi_string_free(payload);
  348. break;
  349. }
  350. instance->step++;
  351. // furi_string_free(payload);
  352. furi_delay_ms(SUBBRUTE_TX_TIMEOUT);
  353. }
  354. flipper_format_free(flipper_format);
  355. instance->worker_running = false; // Because we have error states
  356. instance->state = local_state == SubBruteWorkerStateTx ? SubBruteWorkerStateReady :
  357. local_state;
  358. subbrute_worker_send_callback(instance);
  359. #ifdef FURI_DEBUG
  360. FURI_LOG_I(TAG, "Worker stop");
  361. #endif
  362. return 0;
  363. }