N981B (exynos note 20 5g) Knox=1 Unable to root - Samsung Galaxy Note 20 Questions & Answers

Please anyone point me in the right way to solve this,
Scnerio:
warranty knox = 1
Samsung N981B
On download mode OEM UNLOCK=ON
In developer Option OEM UNLOCK allowed
Problem:
Impossible to flash modified boot.img to root (error ..blocked by OEM) but oem allowed in developer mode.
Any help would be appreciated

Related

Redmi Note 5A Prime IMEI Lost, Bootloader Locked, Open diag failed.. HELP!!!

My Redmi Note 5A Prime came with unlocked bootloader with a fake rom. so I flashed official developer fastboot rom. After that my IMEI broke and bootloader locked. Unable to open diag mode. Unable to add MI Account on the phone. I search the internet but sadly couldn't find anything. what I have found needs unlocked bootloader. Can anyone please help me to unlock the bootloader?
You have to apply here: http://en.miui.com/unlock/ in order to unlock your bootloader (can take a bit to get verified)
In addition add the phone number you apply with to your mi clound & login to your mi account on your phone.
Download the software for windows --> login --> connect your phone via fastboot --> hit unlock.
If it still does not work, please go ahead and flash the latest china developer rom on your phone and try everything again.
Good luck and please tell me if it worked
you can unlock unofficial bootloader with edl mode:
http://en.miui.com/thread-2049615-1-1.html
Thanks a lot for this solution ada12, it looks promissing.
I suppose that what they mean on your link by "REBOOT YOUR PHONE TO EDL MODE ( Testpoint )" is that i need to unmount the phone like in this video, right?
I havn't tried the hardware method yet, and when I try to use myflash with what is in RNote5_unlock.zip it says it cannot find the file flash_all.bat. So I tried different things:
- used the bach scripts contained in ugglite_global_images_8.4.12_20180412.0000.00_7.1_global but it fails saying cannot find the file tz.mbn... for sure it's not there
- added what was in the zip to the folder ugglite_global_images_8.4.12_20180412.0000.00_7.1_global but then i get the same error that i have been getting for the past several hours "Flash tz error" in mi flash...
What am I doing wrong?
Today, when I try to access the thread on the miui forum i get this error message :/
Sorry, you don't have the permission to access this thread.
[ Xiaomi MIUI Official Forum Home ]​
Can you still see it ada12?
parpagnas said:
Thanks a lot for this solution ada12, it looks promissing.
I suppose that what they mean on your link by "REBOOT YOUR PHONE TO EDL MODE ( Testpoint )" is that i need to unmount the phone like in this video, right?
I havn't tried the hardware method yet, and when I try to use myflash with what is in RNote5_unlock.zip it says it cannot find the file flash_all.bat. So I tried different things:
- used the bach scripts contained in ugglite_global_images_8.4.12_20180412.0000.00_7.1_global but it fails saying cannot find the file tz.mbn... for sure it's not there
- added what was in the zip to the folder ugglite_global_images_8.4.12_20180412.0000.00_7.1_global but then i get the same error that i have been getting for the past several hours "Flash tz error" in mi flash...
What am I doing wrong?[/QUOTE
You try different rom to flashing,I mean your device is RN5A Prime(Ugg)not Ugglite
Sent from my ugg using XDA Labs
Click to expand...
Click to collapse
[Help] Flash global rom my redmi note 5a that i recently bought is tampered
can you please help me to flash a global rom ? i bought a redmi note 5a but i found out that my rom is tampered not global. after searching i found out that i need to unlock the bootloader. but it sucks at 99% . anyone please help me.
godexgaming said:
can you please help me to flash a global rom ? i bought a redmi note 5a but i found out that my rom is tampered not global. after searching i found out that i need to unlock the bootloader. but it sucks at 99% . anyone please help me.
Click to expand...
Click to collapse
Did you try bounding mi account?If yes try 3 day to try agains to UBL and dont forget to visit mi community,in there many guides to UBL your devices,good luck..
Sent from my ugg using XDA Labs
godexgaming said:
can you please help me to flash a global rom ? i bought a redmi note 5a but i found out that my rom is tampered not global. after searching i found out that i need to unlock the bootloader. but it sucks at 99% . anyone please help me.
Click to expand...
Click to collapse
I had the same problem - the phone came with a 'fake' global rom installed and it was impossible to bind the phone and account. The way I got around it was to flash the latest Chinese stable rom (it isn't possible to flash the global rom while the bootloader is locked) onto the phone and then I was able to bind the phone and account. Once I got to this stage I was then able to request unlock permission which now takes 360 hours (15 days). Once the 15 days have elapsed the bootloader can be unlocked and you are then free to install the latest global rom.
To fix IMEI problem:
1.) Reboot to fastboot mode
2.) Run command: fastboot erase modemst1
3.) Run command: fastboot erase modemst2
4.) IMEI fixed!
For bootloader unlock,if you cant add Mi account to your phone,it is problem,becouse you have to submit phone to unlock request (via developer mode).
Try this: Go to Developer settings,check "Allow OEM unlock" option and then try add MiAccount via next option "Mi unlock status"
lazynkox said:
To fix IMEI problem:
1.) Reboot to fastboot mode
2.) Run command: fastboot erase modemst1
3.) Run command: fastboot erase modemst2
4.) IMEI fixed!
For bootloader unlock,if you cant add Mi account to your phone,it is problem,becouse you have to submit phone to unlock request (via developer mode).
Try this: Go to Developer settings,check "Allow OEM unlock" option and then try add MiAccount via next option "Mi unlock status"
Click to expand...
Click to collapse
I agree with everything here, good job. Just want to add something to "unlock bootloader": if you recieve some error "it can't be added", download a VPN with the location in china. There is one app (at least) where you can create an fake account (e.g. 10 minute mail) and have 1 day of premium. Point it onto china and try to add your mi account again, that should do the trick.
Good luck and have fun ^^ ask if you have some problems!
---------- Post added at 02:11 PM ---------- Previous post was at 02:03 PM ----------
parpagnas said:
Thanks a lot for this solution ada12, it looks promissing.
I suppose that what they mean on your link by "REBOOT YOUR PHONE TO EDL MODE ( Testpoint )" is that i need to unmount the phone like in this video, right?
I havn't tried the hardware method yet, and when I try to use myflash with what is in RNote5_unlock.zip it says it cannot find the file flash_all.bat. So I tried different things:
- used the bach scripts contained in ugglite_global_images_8.4.12_20180412.0000.00_7.1_global but it fails saying cannot find the file tz.mbn... for sure it's not there
- added what was in the zip to the folder ugglite_global_images_8.4.12_20180412.0000.00_7.1_global but then i get the same error that i have been getting for the past several hours "Flash tz error" in mi flash...
What am I doing wrong?
Click to expand...
Click to collapse
The answer is: NANOMACHINES, SON!
Just kidding, you have to point onto the root folder, if the system can't find the "flash.bat" you might be one folder too deep. If you get an error message during flashing then you might have a problem in terms of compatibility.
I still don't know yet, what the NSF means by mentioning the computer system with the "blue face for an interface" as an solution to xiaomis bootloader incompatibility issue. It seems suspicious, that some valuable forum posts have gone missing... wondering what the NSF is up to.
:highfive:
md.safayat said:
My Redmi Note 5A Prime came with unlocked bootloader with a fake rom. so I flashed official developer fastboot rom. After that my IMEI broke and bootloader locked. Unable to open diag mode. Unable to add MI Account on the phone. I search the internet but sadly couldn't find anything. what I have found needs unlocked bootloader. Can anyone please help me to unlock the bootloader?
Click to expand...
Click to collapse
Hi to all. i have problem with redmi note 5a after remove micloud wifi and bluetooth unaviable. i try many official roms, but no luck. Please help to resolve this problem.
lazynkox said:
To fix IMEI problem:
1.) Reboot to fastboot mode
2.) Run command: fastboot erase modemst1
3.) Run command: fastboot erase modemst2
4.) IMEI fixed!
For bootloader unlock,if you cant add Mi account to your phone,it is problem,becouse you have to submit phone to unlock request (via developer mode).
Try this: Go to Developer settings,check "Allow OEM unlock" option and then try add MiAccount via next option "Mi unlock status"
Click to expand...
Click to collapse
How will you run these commands on a locked bootloader? And no erasing modemst1-2 won't fix imei's.

Research on unlocking. Help wanted: root before unlocking bootloader?

Hi, I would like to see what the bootloader unlock does exactly do to the raw flash storage. Older phones can be fully unlocked that way, without official permission. Obviously, I need to read out the raw partitions before and after unlocking. The easiest way is to get root and backup from MIUI.
Does anybody know how to root the stock MIUI without unlocking the bootloader? Re-locking does not count.
Does a bootloader-locked, unrooted, stock MIUI let you downgrade? An older ROM might have security bugs that let you root it.
Known pieces of the puzzle, if going the root route:
* Earlier Xiaomi devices let you unlock the bootloader by writing to the devinfo partition. Both the Redmi Note 3 (kenzo) and Redmi Note 4 (mido) still have the bits set at 0x10 and 0x18 as described in the link. But Xiaomi changed things starting with the Redmi Note 5 (whyred) - it has a bit set at 0x90 in an otherwise conspiciously empty devinfo partition.
* The Sony Xperia XZ1 compact can be rooted without unlocking. For that phone, it's motived by DRM.
* How to take complete control of pre-2016 phones. Today, this can serve as a tutorial. Beyond my abilities.
The second way would be to read out (and write to) the phone in EDL mode, or memory debug mode, ...., before and after unlocking the bootloader. Known pieces of the puzzle:
* Zeroing out the abl_a and abl_b partitions might grant read/write access to the raw flash as a mass storage device. This is memory debug mode, similar to EDL. If it doesn't work, you will need EDL to recover because you zeroed out fastboot.
* A list of points of attack on EDL authentication. Once you can bypass EDL authentication, it lets you read and write to raw flash. However, a direct attack on EDL authentication is beyond my abilites.
* Enter EDL mode with test point method or by grounding one of the pins next to the SystemOnChip.
Does anybody know how to bypass EDL authentication?
Does anybody know how to enter memory debug mode without root?
The third way would be to decompile the bootloader chain and see how each piece checks bootloader lock status. However, this is the least useful and probably least fun method. Known pieces of the puzzle:
* Description of the Snapdragon 845 boot process (older but more complete overview)
* Unlock status is checked both by the primary bootloader and the Android bootloader. The primary bootloader lives somewhere in memory and will let you into EDL if the bootloader is unlocked and you rebooted with "fastboot oem edl" etc. The Android bootloader image is the abl.elf file in the official update downloads. It will let you flash (or honor "fastboot oem edl") if it is unlocked.
* Memory debug mode is accessed through the XBL bootloader, i.e. the xbl.img and xbl_config.img files in the official update downloads.
If you found this thread trying to unbrick your phone, you need to go here instead.

AllCall Madrid

Hello guys, recently I bought Chinese AllCall Madrid phone. I was searching for twrp port for that phone and I have found it on {MOD EDIT: reference to warez site} forum, only twrp for this phone on internet. I tried to flash it using flash tool it failed(flashing stock rom fails too), then I rebooted to fastboot to OEM unlock and no OEM unlock is available, output is remote failed unknown command, ofc I enabled OEM unlock developer options.. I managed to use mtk-su exploit to gain root, and I can run adb and apps with root permission. My real question is has anyone unlocked this phone? If yes pm me please :laugh:
@Mr nobody 1312
Assuming you want to unlock the bootloader.
IMO before trying to unlock a device's bootloader it's always a good idea to check by means of ADB whether unlocking the bootloader is natively supported on device:
Code:
adb shell "getprop ro.oem_unlock_supported"
If returned value is 1, then it's supported otherwise it's not.
If it's supported then you run
Code:
fastboot flashing unlock
to unlock the bootloader.
Yeah output is 1 but no OEM command is found in lk.bin I decompiled it, they locked it to push their malware I have found addups fota malware and virus in helper apk, anyway is it possible to crack bootloader with custom lk.bin, where I should look for exoloitable bugs? Is there any freaking way to crack it?

Samsung C7 SM-C7000 Factory Locked Failed Root

Hello,
I've been trying to Root my Samsung C7 SM-C7000 phone but I keep getting the error that my phone is factory locked.
Is there a way to overcome this or unlock the phone?
I have read some threads about Enabling OEM Unlock in Developer Options, unfortunately this OEM Unlock is not available in my Developer Options menu no matter how much I tried getting it available by resetting dates.. etc.
Can anyone please help?
Can anyone help regarding this matter please??
Help Please!
Help Please!
@KHAWaNAWA
If option OEM unlock isn't offered in Developer options then phone's boot-loader can't get unlocked: Live with it.
Is it confirmed that OEM unlocking cannot be turned on on my device?
It's Samsung Galaxy C7 SM-C7000
Only to have said it: To root device's Android ( Android 6.0.1 ? ) it's not a prerequisite that phone's boot-loader got unlocked before.
The software on it is Android 8.0.0
I have tried to Root it and it said Factory locked.
KHAWaNAWA said:
I have tried to Root it and it said Factory locked.
Click to expand...
Click to collapse
You probably did it the wrong way.
Well in the download mode it shows me "Installation Failure" and under it
"You need to unlock your device to install a custom OS"
"For more information how to unlock visit samsung.com/cn"
I have even tried Rooting by going through recovery mode then selecting Reboot into Boot-loader, Same error.
@KHAWaNAWA
Look inside here.
Tried that too, same error still, phone is locked.

[A107M (LATAM)] Oem unlock option doesn't appear and the KG Status is Normal

Hi, I have an Galaxy A10s (I think this is the correct place for posting since A10s doesn't have a forum). I want to unlock the bootloader but since a11 update the oem unlock option doesn't appear and the kg state isn't prenormal, It's always on normal. Pls help me I don't know what to do...

Categories

Resources