</gallery><br />
== Reverse Engineering Efforts ==
[[File:Kenwood TH-D74 and JTAGulator.jpg|none|thumb|Kenwood TH-D74 connected to JTAGulator]]
=== High level goals ===
* Obtain a copy of the firmware for analysis/modification* Understand how the radio works and what test ports are available internally
==== Obtaining firmware ====
* Determine routes of attack** JTAG Port** Serial Port** Hardware attack - Remove Flash Memory and read directly (possibly encrypted)
Initially the radio was opened and wires were soldered to test points and a port of interest as seen in the video below.
<br /><nowiki><youtube></youtube></nowiki>
==== Understand how the radio works ====
<br />
==Datasheets==