Skip to main content

I just found the "secret" of Q business card :)

I just found the "secret" of Q business card :)

r/startrekpicard - I just found the "secret" of Q business card :)

Q business card

Obviously many of you already dialed that number and heard a very funny message from Q.

If you didn't this is what it says:

https://soundcloud.com/zibri/q-1

But... some, like me, noticed that the "logo" on the card resembles a DATAMATRIX barcode wrapped around a circle. And that it might contain data.

So, I analyzed it:

First of all it's not a datamatrix but an ANNULAR BARCODE.

Since it's 3D printed a lot of BITS are missing.

Nevertheless this is the code unrolled:

r/startrekpicard - I just found the "secret" of Q business card :)

The code.

This instead is the code published on start trek shop (also unrolled):

r/startrekpicard - I just found the "secret" of Q business card :)

The "official" code.

As you can see, the one "in the show" is the same code as the official code just ruined and with bits missing only because it was 3d printed and lost a lot of data.

The official code.

Now that we have a better code, it's time to analyze it.

The code appears to come from a rather obscure document of a swiss company.

The graphic artist didn't even bother to create a secret code or something funny for the fans but almost carbon copied the "example" in that document.

The proof? The content of the message, once decoded, is:

"the quick fox jumps over the lazy dog" which happens to be the same message encoded in the example in this document: https://www.xeraina.ch/publications/stamm_annularbarcodes15.pdf

Sadly, the mystery is finally solved.

Zibri

Comments

Popular posts from this blog

TP-LINK Configuration file encrypt and decrypt.

Here we go! TP-Link is another company that thinks that security by obscurity could ever work. If you "backup" the configuration from most TP-Link routers, you will get a .BIN file which is "encrypted". Use this utility below, to decrypt it (so you can edit it) and encrypt it again. Have fun. Drop files here or

Your own CORS ANYWHERE proxy on CLOUDFLARE

Hello again! Many of you probably hate as I do CORS because it hinders the very nature of internet, which is SHARING. There are some services to circumvent this commercial  restriction, one of these is the famous "cors anywhere". So yesterday I decided to make my own and allow you to make your own in only 2 minutes. To do so you just need a cloudflare account (can be set up in 1 minute). The you can upload my worker on it and have your personal very fast cors proxy! So, enough talk, just head to:  https://github.com/Zibri/cloudflare-cors-anywhere The is also a demo online at: https://test.cors.workers.dev Enjoy! Zibri

Powerline Ethernet fun and secrets.

Many 200 Mb/s powerline adapters nowadays are based on the INTELLON 6300 chipset. Despite what can be thought looking at them, they are all using the same hardware and firmwares. I heard many people with Netgear XAV101 or Linksys PLK 200 or PLE 200 having problems after firmware updates and many other people with other brands having much more problems because of lack of support or configuration/upgrade utilities. So let me explain a few things I learnt studying them. Many of 200 Mb/s powerline ethernet adapters follow the "HomePlug AV" standard. (85 Mb adapters use HomePlug 1.0 standard which is completely different). This standard uses ethernet broadcast packets using the HomePlug AV protocol. The interesting thing is that their firmware is made of two different parts: a .PIB file (Parameter Information Block) and a .NVM file (the code itself). In the P.I.B. there are many interesting things: The branding (mac address, device name, etc) and the tone map. I test