Samsung Galaxy Note II Security Exploit - Verizon Samsung Galaxy Note II

Has anyone seen this? I tried searching in the XDA VZW SGN 2 forums and didn't find any discussion nor patches for it.
http://www.engadget.com/2012/12/16/security-exploit-opens-samsung-exynos-devices-to-attack/

It's the top thread in the developer's section. RyanZA already posted an apk to patch it for rooted users, so we're taken care of.
Serious heart attack as I was reading the thread and getting an idea of the scope. Pretty much every Samsung device is hit.
Edit: first time on xda app, sorry
http://forum.xda-developers.com/showthread.php?t=2048511 is the discussion thread I mentioned above.
https://github.com/Ryan-ZA/exynosfix is the fix for rooted devices. On some devices this will knock out the back camera, but its been confirmed to work 100% for the note2
Sent from my SCH-I605

Supercurio is making a fix that I belive works with or without root
Sent from my SCH-I605 using xda app-developers app

MetricMike, that thread is in the GT-N7100, N7105 forum. Will this apply on the SCH-I605 w/o issues?

dricacho said:
MetricMike, that thread is in the GT-N7100, N7105 forum. Will this apply on the SCH-I605 w/o issues?
Click to expand...
Click to collapse
The dev thread is for all carriers they haven't made individuals is what I was told
And yes it works running it now
Sent from my SCH-I605 using xda app-developers app

just downloaded the app and fixed mine!

droidstyle said:
just downloaded the app and fixed mine!
Click to expand...
Click to collapse
Which fix did you use? E-fix? Or has the voodoo fix been released
I'm running e-fix but just so people know after a restart it must be turned back on
Sent from my SCH-I605 using xda app-developers app

E-fix for now.

Just downloaded the one from Ryan-ZA that toggles the fix on/off. I was still able to use the camera even with the fix on.

dricacho said:
Just downloaded the one from Ryan-ZA that toggles the fix on/off. I was still able to use the camera even with the fix on.
Click to expand...
Click to collapse
From what I understand the Note 2's camera does not break with the exploit patched - it's the S3's camera that does that.

DaWolf850 said:
From what I understand the Note 2's camera does not break with the exploit patched - it's the S3's camera that does that.
Click to expand...
Click to collapse
a friend of mine just ran it on his att note 2 and it turned the camera screen green...worked fine for me.

So what r the chances of people actually hacking the phones? Or do you think this is an over hyped alarm....what does this apk do? Will it be something consuming battery in the background?

blackbass595 said:
So what r the chances of people actually hacking the phones? Or do you think this is an over hyped alarm....what does this apk do? Will it be something consuming battery in the background?
Click to expand...
Click to collapse
I believe it simply changes the permissions of the exploit closing the vulnerability so I don't think it'll drain any battery. I've downloaded the Voodoo apk and it worked great and no adverse issues on camera or anything else so far. Better safe than sorry and this one you can set it to fix at boot as well.
Sent from my SCH-I605 using Tapatalk 2

dcoy82 said:
I believe it simply changes the permissions of the exploit closing the vulnerability so I don't think it'll drain any battery. I've downloaded the Voodoo apk and it worked great and no adverse issues on camera or anything else so far. Better safe than sorry and this one you can set it to fix at boot as well.
Sent from my SCH-I605 using Tapatalk 2
Click to expand...
Click to collapse
Link?

blackbass595 said:
Link?
Click to expand...
Click to collapse
Here ya go
http://project-voodoo.org/articles/...use-vulnerability-no-root-required-reversible
Sent from my SCH-I605 using Tapatalk 2

guys use the app from chainfire... exynos_abuse.apk
http://forum.xda-developers.com/showthread.php?t=2050297

droidstyle said:
guys use the app from chainfire... exynos_abuse.apk
http://forum.xda-developers.com/showthread.php?t=2050297
Click to expand...
Click to collapse
Other than the ability to root, what is the difference between his and the Voodoo one?
Also his compatability list says to use Imnuts with locked bootloader? I'm on Jellybeans 2 with unlocked bootloader so should I just stay with Voodoo?
Sent from my SCH-I605 using Tapatalk 2

dcoy82 said:
Other than the ability to root, what is the difference between his and the Voodoo one?
Also his compatability list says to use Imnuts with locked bootloader? I'm on Jellybeans 2 with unlocked bootloader so should I just stay with Voodoo?
Sent from my SCH-I605 using Tapatalk 2
Click to expand...
Click to collapse
im running it on paranoid android...it also has the ability to set on boot.

dcoy82 said:
Other than the ability to root, what is the difference between his and the Voodoo one?
Also his compatability list says to use Imnuts with locked bootloader? I'm on Jellybeans 2 with unlocked bootloader so should I just stay with Voodoo?
Sent from my SCH-I605 using Tapatalk 2
Click to expand...
Click to collapse
Imnuts posted saying it worked and that he was stock with a locked bootloader. It works with anything, he was just citing Imnuts as a source claiming it works.

This is all recent development for me. I wasn't aware and have been reading and trying to understand whats happening.
so with Chainfire's apk- for devices already at least rooted it will allow one to enable & disable the exploit... but for stock non-rooted devices it will essentially run an exploit to gain root then allow one to enable & disable the exploit?
Probably good I found out for myself. Yes to my question. I was already rooted and installed the apk- works. And I just saw in- how to root, in development that this is also the oneclick root method...so now I have a better concept of how scary the potential of exploiting is.

Related

Rooting photon worth it?

Ok I have had my photon for a few months now and I am coming from a evo and a hero before that. Those phones needed to be rooted to get the best out of them. I was looking around the development section and while I know there isn't a lot of roms, I just wanted to get everyone's opinion on rooting. I really have no need for wireless tether, and while I would like to remove some of the bloat, I just don't know if its worth it on this phone.
Just throwing it out there to get some input from other photon users.
Thanks guys
For me, it was worth it just to run an adblocker. That's all I use it for.
It's a very fast and easy process.
The photon runs great as it is, but like willysp said just the ability to use adfree makes it worth it.. and of course if you like modifying little things here and there to make the device more yours
And to me was actually the easiest device I have rooted thanks to the one click root script.
There's a couple of other ways to root it but that was the first I found.
I came from Hero and EVO as well. This phone is great as it is. No need to do anything else. I have to said beside Nokia, Motorola is the best phone in term of reception.
Which method did you use? Did you flash a rom after rooting or did you just keep it stock and just use ad blocker?
kbrn said:
The photon runs great as it is, but like willysp said just the ability to use adfree makes it worth it.. and of course if you like modifying little things here and there to make the device more yours
And to me was actually the easiest device I have rooted thanks to the one click root script.
There's a couple of other ways to root it but that was the first I found.
Click to expand...
Click to collapse
I root for adfree and LED's hack mainly but also quite a few other that I can't think of. Editing the build.prop is also a huge plus gotta have my GAMELOFT fix lol
You can use the one click method which takes 5 minutes.
One good reason to root is to use SetCPU, which easily doubles your battery life by letting the CPU slow down when not in use.
So what is the process? Root and then flash a custom recovery? I just need a step by step of what to do.completely forgot about setcpu. But don't you have to have a custom kernel in order to use setcpu?
ronnienyc said:
You can use the one click method which takes 5 minutes.
One good reason to root is to use SetCPU, which easily doubles your battery life by letting the CPU slow down when not in use.
Click to expand...
Click to collapse
ronnienyc said:
.....One good reason to root is to use SetCPU, which easily doubles your battery life by letting the CPU slow down when not in use.
Click to expand...
Click to collapse
That's incorrect.
SetCPU requires more than root. Needs a custom kernel, which requires unlocking. And we don't have a fully functioning unlocker.
ronnienyc said:
One good reason to root is to use SetCPU, which easily doubles your battery life by letting the CPU slow down when not in use.
Click to expand...
Click to collapse
Slowing down your CPU (underclocking) doesn't save any battery life, undervolting however does.
And yes a custom kernel is required to undervolt and to flash one we need to unlock the bootloader.
Sent from my Photon 4g using Tapatalk
stricklerjosh said:
So what is the process? Root and then flash a custom recovery? I just need a step by step of what to do.completely forgot about setcpu. But don't you have to have a custom kernel in order to use setcpu?
Click to expand...
Click to collapse
qbking77 has made video tutorials, subscribe him on youtube.
Sent from my Photon 4g using Tapatalk
Isn't the bootloader unlocked, but 4G is borked?
The bootloader is perfectly fine, the 4g issue is because sprints security keys for wimax look at the bootloader state. Not even the official test phones have 4g.
Android 17 said:
Isn't the bootloader unlocked, but 4G is borked?
Click to expand...
Click to collapse
Sent from my MB855 using XDA App
moonzbabysh said:
I root for adfree and LED's hack mainly but also quite a few other that I can't think of. Editing the build.prop is also a huge plus gotta have my GAMELOFT fix lol
Click to expand...
Click to collapse
What led hack?
Sent from my MB855 using xda premium
LexLuger82 said:
What led hack?
Sent from my MB855 using xda premium
Click to expand...
Click to collapse
An old app that was removed from the Market a year ago
The one that turns the green led into kryptonite, sorry i had to.
LexLuger82 said:
What led hack?
Sent from my MB855 using xda premium
Click to expand...
Click to collapse
Sent from my MB855 using XDA App
if i rooted than i factory reset, does it make unroot again ?
Or it can cause error ?
willysp said:
An old app that was removed from the Market a year ago
Click to expand...
Click to collapse
Could u provide a link to this app
Sent from my MB855 using Tapatalk
zeguym said:
if i rooted than i factory reset, does it make unroot again ?
Or it can cause error ?
Click to expand...
Click to collapse
No factory reset won't make it unroot or cause any error.
Sent from my Photon 4g using Tapatalk
njankit said:
No factory reset won't make it unroot or cause any error.
Sent from my Photon 4g using Tapatalk
Click to expand...
Click to collapse
Thanks. Now i can try factory reset.

[Root method]

Is there any root method for mac?
Sent from my ADR6400L using xda premium
some more dead kittens
Aldo101t said:
some more dead kittens
Click to expand...
Click to collapse
Let's not start that here. It got old quick.
Sent from my ADR6410LVW using Tapatalk 2
Aldo101t said:
some more dead kittens
Click to expand...
Click to collapse
I don't understand
Sent from my ADR6400L using xda premium
edited because i'm crazy
Void4ever
Edit: forgive me i had a slight bout with insanity there, for some reason i thought you were talking about a custom bootloader not root. I think root is possible without unlocking the loader but i'd have to go over the dev section again. Again sorry
jonah1234 said:
Is there any root method for mac?
Sent from my ADR6400L using xda premium
Click to expand...
Click to collapse
VirtualBox: For the few instances when you absolutely must have Windows to run a specific program. Much better than Parallels, imho. It runs flawlessly on my Mac, but in all honestly, I rarely have the need to boot Windows.
void4ever said:
edited because i'm crazy
Void4ever
Edit: forgive me i had a slight bout with insanity there, for some reason i thought you were talking about a custom bootloader not root. I think root is possible without unlocking the loader but i'd have to go over the dev section again. Again sorry
Click to expand...
Click to collapse
Your insanity totally made me laugh though. Thanks for that.
dbrits said:
VirtualBox: For the few instances when you absolutely must have Windows to run a specific program. Much better than Parallels, imho. It runs flawlessly on my Mac, but in all honestly, I rarely have the need to boot Windows.
Your insanity totally made me laugh though. Thanks for that.
Click to expand...
Click to collapse
I use a virtual box called vmware fusion cause I thought there might not be another way but I wanted to see anyway. Thanks
Sent from my ADR6400L using xda premium
jonah1234 said:
I use a virtual box called vmware fusion cause I thought there might not be another way but I wanted to see anyway. Thanks
Sent from my ADR6400L using xda premium
Click to expand...
Click to collapse
You're welcome. I had to ditch Parallels 5 when I upgraded to Lion because Nova Software refused to support it on 10.7. I did look into getting Fusion but I opted for Virtual Box since it was open source. Plus, like I said, I rarely have the need to boot Windows, so why pay for something I'll hardly use? I think the only time I've had to boot Windows is when I tried to theme a few apps for my phone. I've yet to find a decent Mac equivalent to zip7.
Sent from my ADR6410LVW using xda app-developers app
Assuming you just need ADB you can download an Ubuntu live CD and run it off that. Completely free and relatively easy.
blazingwolf said:
Let's not start that here. It got old quick.
Sent from my ADR6410LVW using Tapatalk 2
Click to expand...
Click to collapse
Lol i think I've been around long enough that i remember when that started. I loled.
Sent from my Incredible 2 using Tapatalk 2
void4ever said:
edited because i'm crazy
Void4ever
Edit: forgive me i had a slight bout with insanity there, for some reason i thought you were talking about a custom bootloader not root. I think root is possible without unlocking the loader but i'd have to go over the dev section again. Again sorry
Click to expand...
Click to collapse
The phone can be rooted without unlocking the bootloader?
enricong said:
The phone can be rooted without unlocking the bootloader?
Click to expand...
Click to collapse
It *should* be possible. The bootloader just locks the boot partition for one. Just not the system partition which is where ROM root access is. I'd have to go over it with a fine tooth comb to figure it out, just don't have the resources (or time) yet.
But again, I've been getting literally thrown around a gym and choked for the past week, so my brain isn't at a 100%. Anyone, feel free to chime in if I'm wrong.
I always thought you could get temp root, but it reverts back on a reboot.
*Madmoose* said:
I always thought you could get temp root, but it reverts back on a reboot.
Click to expand...
Click to collapse
I thought that as well.
ok so it CAN be rooted but no one knows how at this point.
enricong said:
ok so it CAN be rooted but no one knows how at this point.
Click to expand...
Click to collapse
As of now, no one has a method of rooting the phone without unlocking the bootloader through HTCDev.com. However, HTC no longer supports unlocking the bootloader on this phone, so everyone is SOL unless you unlocked before they dropped the support. We will have to wait until someone finds an exploit to add root functionality.
cambunch said:
As of now, no one has a method of rooting the phone without unlocking the bootloader through HTCDev.com. However, HTC no longer supports unlocking the bootloader on this phone, so everyone is SOL unless you unlocked before they dropped the support. We will have to wait until someone finds an exploit to add root functionality.
Click to expand...
Click to collapse
sorry, I meant that it CAN be TEMP rooted, but no one knows how.
but yes, I suppose not knowing how to temp root is equally as bad as not knowing how to perm root
enricong said:
sorry, I meant that it CAN be TEMP rooted, but no one knows how.
but yes, I suppose not knowing how to temp root is equally as bad as not knowing how to perm root
Click to expand...
Click to collapse
When do u think we will find out how to root?
Sent from my ADR6400L using xda premium
jonah1234 said:
When do u think we will find out how to root?
Sent from my ADR6400L using xda premium
Click to expand...
Click to collapse
Anyone think the temp root method for the Rezound would work on the Dinc? Since they're almost the same phone....
If anyone wants to try the link is here http://www.jonamerica.com/technology/the-htc-rezound-root-guide/
Seriously doubt it would cause any errors or bricking or anything
AshtonTS said:
Anyone think the temp root method for the Rezound would work on the Dinc? Since they're almost the same phone....
If anyone wants to try the link is here http://www.jonamerica.com/technology/the-htc-rezound-root-guide/
Seriously doubt it would cause any errors or bricking or anything
Click to expand...
Click to collapse
Zerg won't work on ICS

Ota coming soon!

I was informed today that Verizon is pushing out the new Ota already. If you haven't gotten it you will soon. 2 questions....
1. Do we have to Odin back to stock to receive the update?
2. Will there have to be a new process to root after we accept the ota?
Should this have gone under the Q and A?
Sent from my SCH-I535 using xda premium
drbveb88 said:
I was informed today that Verizon is pushing out the new Ota already. If you haven't gotten it you will soon. 2 questions....
1. Do we have to Odin back to stock to receive the update?
2. Will there have to be a new process to root after we accept the ota?
Should this have gone under the Q and A?
Sent from my SCH-I535 using xda premium
Click to expand...
Click to collapse
I think this has already been discussed. The nee ota is nothing more than the search feature dumbing down and a new baseband+kernel. I believe you can root this with the current method. Correct me if I'm wrong though.
Sent from my SCH-I535 using xda app-developers app
Why mess up your root? Just give it some time and the devs will probably have the update rooted and ready to flash with Odin !
Can anybody confirm that these will not auto-install?
On my HTC Incredible, I would just hit install later, but the popup would come back every 15 minutes.. very annoying!
Soon as the update comes out I will have a fully deodexed rooted zipaligned version available.
If I can figuire it out, I will also make an Odin image out of it.
Sent from my SCH-I535 using xda app-developers app
sfobrien said:
Why mess up your root? Just give it some time and the devs will probably have the update rooted and ready to flash with Odin !
Click to expand...
Click to collapse
Great point! Thanks
Sent from my SCH-I535 using xda premium
nosympathy said:
Soon as the update comes out I will have a fully deodexed rooted zipaligned version available.
If I can figuire it out, I will also make an Odin image out of it.
Sent from my SCH-I535 using xda app-developers app
Click to expand...
Click to collapse
No thanks, i don't want a dumbed down search. Does anyone?
Sent from my SCH-I535 using xda premium
neh4pres said:
No thanks, i don't want a dumbed down search. Does anyone?
Sent from my SCH-I535 using xda premium
Click to expand...
Click to collapse
No one does. But literally its as simple as putting the old search apk back into the new rom or ota. Nothing to be worried about
Sent from my SCH-I535 using Tapatalk 2
Double post please delete.
I love how Samsung and Verizon take so long to release updates - except when it's to take away the features on your phone. They get those out pretty quickly.
Does this OTA have any benefit??
Any way to block this ota? I have root access
antispiral said:
Any way to block this ota? I have root access
Click to expand...
Click to collapse
I don't remember where I read this but you have to freeze FWUpdate.
Sent from my SCH-I535 using xda premium
It's been pretty well established how to restore proper search functionality. The real question should be what do the kernel and radios do? Any improvements in reception or battery life? Any improvements in device performance? And most importantly, does this change anything regarding bootloader unlocking research and work-arounds?
tech9tcv said:
I don't remember where I read this but you have to freeze FWUpdate.
Sent from my SCH-I535 using xda premium
Click to expand...
Click to collapse
How do you freeze this? I have force stopped it, but for me "disable" is greyed out
pdykstra said:
How do you freeze this? I have force stopped it, but for me "disable" is greyed out
Click to expand...
Click to collapse
You can freeze apps with Titanium Backup.
Sent from my ASUS Transformer Pad TF700T using Tapatalk 2
Beknatok said:
You can freeze apps with Titanium Backup.
Sent from my ASUS Transformer Pad TF700T using Tapatalk 2
Click to expand...
Click to collapse
Thanks, didn't even think to do that for some reason. I just froze FWUpgrade, SDM & VZWUpdate in Titanium Backup.. can anyone confirm if there's anything more that needs to be frozen?
Here 1. Don't accept it. 2. We can pull radio and kernel and install those.
Sent from my SCH-I535 using Tapatalk 2
Update should fail anyway if you don't have a stock recovery. They generally require a stock recovery to update the phone.
Sent from my SCH-I535 using xda app-developers app
Cruiserdude said:
It's been pretty well established how to restore proper search functionality. The real question should be what do the kernel and radios do? Any improvements in reception or battery life? Any improvements in device performance? And most importantly, does this change anything regarding bootloader unlocking research and work-arounds?
Click to expand...
Click to collapse
I consistently get -75 to -85 dbm so I really don't think there is a reception issue with the 4G radio for me. Now the WiFi is awful for me. That could be improved. GPS is sick.... I lock on in about half a second
Sent from my SGS3
FYI guys, we can still root using the same method after the OTA (VRALG1)

holo blue themed factory based?

im looking for a factory based holo blue themed rom for a buddy.... also looking up what else i need to do before flashing anything on it... its bone stock
Jelly Beans is the ROM to go to.
But make sure your buddies phone is already unlocked. If he didn't unlock his bootloader and install a custom recovery by now he's probably screwed. That OTA has destroyed any current working methods of getting custom recovery capabilities.
If he didn't get the OTA then have him read the Unlocking the Bootloader thread under the Original Development sub forum for the Verizon Galaxy Note 2.
Quick question. If I haven't updated am I still good to use the old unlock?
Sent from my SCH-I605 using xda premium
DJ1994 said:
Quick question. If I haven't updated am I still good to use the old unlock?
Sent from my SCH-I605 using xda premium
Click to expand...
Click to collapse
Yes do it asap.
He just updated yesterday! Dang. I thought samsung didnt lock down anything? Didnt with my e4gt
Sent from an Apple killing JellyBean
moparfreak426 said:
He just updated yesterday! Dang. I thought samsung didnt lock down anything? Didnt with my e4gt
Sent from an Apple killing JellyBean
Click to expand...
Click to collapse
Samsung doesn't, Verizon does. I can't tell you what their real reasons are for locking bootloaders but I believe their public statement is that they feel by locking these phones down securely they can provide a better network experience for everyone.
Yeah, bull****. It's so they can force bloatware down our throats and prevent people from using root required workarounds to things they keep locked on us. See Google Wallet vs Isis for further study.
Dang. Verizon sucks balls. Hope theres a workaround soon
Sent from an Apple killing JellyBean

[Q] Remove Ongoing WiFi Notification

Hi everybody, now that we have a working root process for the Verizon S4, does anybody have any idea as to how to disable the ongoing WiFi notification?
I looked up the method for the Galaxy S3 but the SQLite database they reference isn't there (or at least not in the same spot). Not sure if that'd work or not anyway.
Thanks!
mine should come in today, and then I'll take a look
Sent from my Nexus 7 using Tapatalk 4 Beta
Great! Thanks for the help!
hmm.. damn
slackwaresupport said:
hmm.. damn
Click to expand...
Click to collapse
No dice!
I hate that damn notification. Verizon waits a month to release the phone and then they still insist on pushing this wifi notification. I know the SQL method was removed, but how was it gotten rid of after that was taken away? Maybe it would apply with this phone as well.
nm
I'm trying the old method for the s3 with sqlite editor but I can't find anything to disable it. There must be a way!!
Sent from my SCH-I545 using Tapatalk 2
Thats the same thing I already tried. jt was no use. The option is under global in secure settings. I tried changing everything that I could to no avail.
Sent from my SCH-I545 using xda premium
Anyone figure this out yet it is driving me bonkers just rooted and downloaded the sql tool based on the s3 thread to no avail
Sent from my SCH-I545 using Tapatalk 2
Parafly said:
Anyone figure this out yet it is driving me bonkers just rooted and downloaded the sql tool based on the s3 thread to no avail
Sent from my SCH-I545 using Tapatalk 2
Click to expand...
Click to collapse
I just posted the mod for you guys its in the themes and apps section. Would of had it done earlier but just got off work finally working all weekend sucks
rwc95 said:
I just posted the mod for you guys its in the themes and apps section. Would of had it done earlier but just got off work finally working all weekend sucks
Click to expand...
Click to collapse
Worked like a charm! Thanks so much!
rwc95 said:
I just posted the mod for you guys its in the themes and apps section. Would of had it done earlier but just got off work finally working all weekend sucks
Click to expand...
Click to collapse
Awesome
Sent from my SCH-I545 using Tapatalk 4 Beta
Sqlite mod to remove ongoing wifi
rwc95 said:
I just posted the mod for you guys its in the themes and apps section. Would of had it done earlier but just got off work finally working all weekend sucks
Click to expand...
Click to collapse
Hey, Where did you post the mod. would love to get rid of that on my S4. Can you help me out. Thx

Categories

Resources