Commit Graph
9 Commits
Author SHA1 Message Date
tkgstratorandClaude Opus 4.6 547d595955 docs(spec): Phase 2 KDF 解析結果を文書化 — HMAC-SHA384(TFIT_KEY, 0x00||DH_SHARED)
DH 共有秘密から初期セッション鍵を導出するアルゴリズムを解明:
- HMAC-SHA384 with 48B TFIT key, 0x00 prefix + 128B shared secret
- enc_key = output[0:16], sign_key = output[16:48]
- HKDF は NFWebCrypto に存在しないことを確認
- テストベクタで検証済み

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
2026-04-08 16:16:14 +00:00
tkgstratorandClaude Opus 4.6 f0b16a257f fix(docs): ライフサイクル図にMermaidダークテーマを適用
theme: dark ディレクティブを追加し、テキストの視認性を改善。
rect の透過度も調整。

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-04-08 13:35:44 +00:00
tkgstratorandClaude Opus 4.6 a1545b7612 fix(docs): ライフサイクル図をダークモード対応に変更
rect の背景色を rgba 半透明に変更し、ダークモードで視認性を確保。
冗長なラベルも簡潔に整理。

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-04-08 13:35:03 +00:00
tkgstratorandClaude Opus 4.6 846f57f35a fix(docs): Mermaid図の括弧をパース可能な形式に修正
Mermaidのgraphノードラベル内の括弧がノード形状として解釈されるバグを修正。
全セクションで括弧を除去し、subgraphにはID付き構文を使用。

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-04-08 13:33:52 +00:00
tkgstratorandClaude Opus 4.6 e494d8ebf5 docs(spec): ログイン時の鍵配送解析結果を反映
- msl_key_relationship: Phase 4 (ログイン鍵配送) を追加
  enc_key_1でAES-CBC復号 → enc_key_2/sign_key_2を取得する流れを図示
  シーケンス図、検証データ、二重署名構造、フック制約表を追加
- msl_kdf_analysis: ログイン鍵配送の検証データ、二重署名構造を追記
  KDFは常にenc_key_0/sign_key_0を入力とすることを明記

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-04-08 13:27:15 +00:00
tkgstratorandClaude Opus 4.6 be363d6857 feat(tweak,msl): EVPフック追加・無効化とKDF鍵更新実装
- Tweak: EVP_CipherInit_ex/Update/Final, EVP_DecryptInit_ex/Update/Final フック追加
  → NFWebCrypto内のEVPはTFIT(ENC)専用でMSL復号には使われないことを確認
  → RSA public key not found エラーの原因となるため #if 0 で無効化
- Python: kdf_renew() 実装と検証データによるテスト
- constants: IOS_KDF_PSK / IOS_KDF_NONCE をハードコード定数として追加
- docs: KDF解析仕様書と鍵関係図(Mermaid)を追加

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-04-08 12:52:41 +00:00
tkgstrator 220e1d51a2 feat(msl-ios): improve iOS CBOR MSL decryption and tweak DH key capture
Enhances iOS MSL CBOR decoder for multi-item parsing, iOS-specific payload
handling, and IV extraction from ciphertext. Updates NetflixCrypto to support
Tweak-format key JSON. Extends the Tweak to capture DH key exchange material
and session keys more reliably, saving full key histories and implementing
better appboot phase tracking. Adds scripts for DH-derived HKDF parameter
analysis and appboot key response investigation.

Improves documentation on iOS CBOR MSL protocol differences, decryption
pipeline, and key extraction workflow.

Relates to iOS MSL traffic analysis and decryption research.
2026-04-08 10:18:44 +00:00
tkgstrator d23836e618 feat(docs,tools): add iOS MSL analysis docs and HKDF param search scripts
Introduces detailed documentation for the iOS Netflix MSL client, including work plans and a comprehensive decryption pipeline, to support reverse engineering and protocol understanding.

Adds Python scripts that automate brute-force searching of HKDF parameters, support key derivation analysis across multiple encryption and HMAC key candidates, and verify DH parameter consistency.

Facilitates future development of a standalone iOS MSL client and aids in identifying the correct key derivation logic needed for cross-platform manifest decryption.
2026-04-08 10:12:57 +00:00
tkgstratorandClaude Opus 4.6 7eb39fabfd docs: Netflix仕様書の再構成とiOS解析ドキュメント追加
- 旧ドキュメント (docs/netflix/, docs/instructions/ 等) を削除
- docs/spec/: appboot ピンニング解析、iOS再生フロー、
  MSL CBOR鍵交換解析、キャプチャ復号状況、暗号化フロー図を追加
- docs/netflix_client_spec.md, platform_flow_comparison.md を追加
- iOS認証・マニフェスト・ライセンス取得フロー詳細を追加

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
2026-04-07 02:06:14 +00:00