Samsung Backdoor! Secure our radios please! - Galaxy S III General

So i think some already read about the backdoor in Samsung devices.
http://www.fsf.org/blogs/community/replicant-developers-find-and-close-samsung-galaxy-backdoor
Is there a way to fix our radio roms? or did i get it wrong an it isn´t affecting us?
Thank you

Lugke said:
So i think some already read about the backdoor in Samsung devices.
http://www.fsf.org/blogs/community/replicant-developers-find-and-close-samsung-galaxy-backdoor
Is there a way to fix our radio roms? or did i get it wrong an it isn´t affecting us?
Thank you
Click to expand...
Click to collapse
I think you should read this before you start panicking
http://arstechnica.com/security/2014/03/virtually-no-evidence-for-claim-of-remote-backdoor-in-samsung-galaxy-phones/

It *is* a back door
Gold_Diesel said:
I think you should read this before you start panicking [...]
Click to expand...
Click to collapse
The Replicant developer has responded to the claim that the backdoor doesn't exist. Hint: it does. Here's an analysis of the modem code showing support for lots of commands that can access the file system.

Related

[Q] Anyone have AT&T rom flash?

My DVP decided to crap out yesterday for no reason. I read the "how to unbrick your phone" thread and was able to revive the phone using the TMO ffu file. It crapped out again so it looks like it's the SD card. I will be doing the flash again but does anyone have that file for AT&T instead of TMO? Thanks in advance.
It might be possible to use the TMO ffu, update to 7720, then use cabsender to send the ATT firmware bundle and turn it into the att version (as that's the only file that differentates the 3 versions)
It could also possibly brick you to the point that nothing can fix it, so I'm intentionally not posting the direct link to the files, but there are links to them if you search around for the VP on xda.
TheManii said:
It might be possible to use the TMO ffu, update to 7720, then use cabsender to send the ATT firmware bundle and turn it into the att version (as that's the only file that differentates the 3 versions)
It could also possibly brick you to the point that nothing can fix it, so I'm intentionally not posting the direct link to the files, but there are links to them if you search around for the VP on xda.
Click to expand...
Click to collapse
I think I'll give it a try, can you point me to the right cabsender? If it bricks I really don't care, went out and bought a Lumia 900 and actually like it. Thanks for the help.
Joey
I'm only make a (hopefully) educated guess on the whole thing, I believe there's only 1 version of cabsender(?), but it's the actual cab that i'm talking about that i'm not linking to.
Since the potential issue of permenetly bricking isnt an issue(?), look on the VP page on the xda wiki, it's listed there.
TheManii said:
I'm only make a (hopefully) educated guess on the whole thing, I believe there's only 1 version of cabsender(?), but it's the actual cab that i'm talking about that i'm not linking to.
Since the potential issue of permenetly bricking isnt an issue(?), look on the VP page on the xda wiki, it's listed there.
Click to expand...
Click to collapse
Found it, thanks again!
SPYDar007 said:
Found it, thanks again!
Click to expand...
Click to collapse
Have you tried this and what happened?
mofotech said:
Have you tried this and what happened?
Click to expand...
Click to collapse
I was able to flash the phone and get it running but it shows TMO as the carrier. It does work with the AT&T sim card, so no issues.

QuadRooter Vulnerability?

Looks like there's a new vulnerability that is able to achieve root through a couple security holes.
Ran the Quadroot scanner app on my galaxy s7 edge PD8 and it does show its vulnerable to this.
From what I've read, this malware can achieve root just by installing it like any other Apk app.
Would it be possible for Devs to purposely download the malicious malware and make a working towelroot like root method for our devices?
Link:
http://wccftech.com/quadrooter-vulnerability-affects-900-million-android-devices-check-infected/
I just ran the app on the latest PG1 firmware and the app said this:
KillerClaw321 said:
I just ran the app on the latest PG1 firmware and the app said this:
Click to expand...
Click to collapse
My rooted SGS 7 flat on pd8 ( the previous update) says not affected by it.
Well, I used a different app for the scan. Using the same app as you, I got the same results as you. S**t
Someone should contact @geohot and beg him to work on this :3
That or @jcase. Both would be great at this methinks.
Xshooter726 said:
Looks like there's a new vulnerability that is able to achieve root through a couple security holes.
Ran the Quadroot scanner app on my galaxy s7 edge PD8 and it does show its vulnerable to this.
From what I've read, this malware can achieve root just by installing it like any other Apk app.
Would it be possible for Devs to purposely download the malicious malware and make a working towelroot like root method for our devices?
Link:
http://wccftech.com/quadrooter-vulnerability-affects-900-million-android-devices-check-infected/
Click to expand...
Click to collapse
These are no more dangerous than any other kernel exec vulns, and alone wont offer you anything. These will not unlock the bootloader, allow you to flash supersu, or let you change system.
jcase said:
These are no more dangerous than any other kernel exec vulns, and alone wont offer you anything. These will not unlock the bootloader, allow you to flash supersu, or let you change system.
Click to expand...
Click to collapse
So if you can't change the system, then why should anyone be worried about this? Sounds like if we can't use these to access the system, neither can malicious attackers unless I'm missing something.
sirslipzalot said:
So if you can't change the system, then why should anyone be worried about this? Sounds like if we can't use these to access the system, neither can malicious attackers unless I'm missing something.
Click to expand...
Click to collapse
Well they can exec code as the kernel, anf you could stack it with some DM verity or bootloader exploit, but alone the best you MIGHT get is a temp root
jcase said:
Well they can exec code as the kernel, anf you could stack it with some DM verity or bootloader exploit, but alone the best you MIGHT get is a temp root
Click to expand...
Click to collapse
I have been talking to an agent from T-Mobile and he confirmed that they are doing nothing regaurding a bootloader unlock like some have been hoping for. So now I'm kinda pissed at them and mostly Samsung. It seems devs need to find another way to unlock the bootloader. :/
KillerClaw321 said:
I have been talking to an agent from T-Mobile and he confirmed that they are doing nothing regaurding a bootloader unlock like some have been hoping for. So now I'm kinda pissed at them and mostly Samsung. It seems devs need to find another way to unlock the bootloader. :/
Click to expand...
Click to collapse
If you really thought that they were going to unlock the bootloader for us then I'm the prince of Nigeria and I would like your e-mail address.
Binary100100 said:
If you really thought that they were going to unlock the bootloader for us then I'm the prince of Nigeria and I would like your e-mail address.
Click to expand...
Click to collapse
xD
Binary100100 said:
If you really thought that they were going to unlock the bootloader for us then I'm the prince of Nigeria and I would like your e-mail address.
Click to expand...
Click to collapse
Best comment I've heard all year....
Magnifik81 said:
Someone should contact @geohot and beg him to work on this :3
Click to expand...
Click to collapse
I already did and it's being worked on.
I'm a p1neapple dev team member in the iPhone world
0DegreeCod3r said:
I already did and it's being worked on.
I'm a p1neapple dev team member in the iPhone world
Click to expand...
Click to collapse
Nice to hear that! I'm geting excited, yezz.
i hope they unlock the bootloader of my sony z3 with status no xD
Magnifik81 said:
Nice to hear that! I'm geting excited, yezz.
Click to expand...
Click to collapse
but... we need to remember we still got accompany of dm verity
0DegreeCod3r said:
I already did and it's being worked on.
I'm a p1neapple dev team member in the iPhone world
Click to expand...
Click to collapse
Isn't he working full time on his self driving car?
billydroid said:
Isn't he working full time on his self driving car?
Click to expand...
Click to collapse
He is well aware we request his hand in this one buddy and he will get to us soon.
He will announce and release via Twitter so just look out for it.
Binary100100 said:
If you really thought that they were going to unlock the bootloader for us then I'm the prince of Nigeria and I would like your e-mail address.
Click to expand...
Click to collapse
On an unrelated note, I damn near lost my **** at what you said...I originally came here from the Verizon S7E forums to see if you guys made any discoveries.
All I can say is that I may not have found anything useful in terms of progress for our devices. But I still leave satisfied. Thank you sir, thank you very much.
0DegreeCod3r said:
He is well aware we request his hand in this one buddy and he will get to us soon.
He will announce and release via Twitter so just look out for it.
Click to expand...
Click to collapse
very encouraging! please inform us if you any good news!:fingers-crossed:

Where do .kdz files come from?

Is there no legal obligation to release them on account of the open source parts of the phone's software? Are we guaranteed to eventually receive .kdz files for non-Verizon variants, or might we be eternally stuck in return-to-stock limbo?
Sorry, I'm used to the Samsung process for these sorts of things, this is all unclear to me.
KDZ files are used for repair purposes. As far as im aware there is NO legal requirement to release them.
me2151 said:
KDZ files are used for repair purposes. As far as im aware there is NO legal requirement to release them.
Click to expand...
Click to collapse
Thank you @me2151 , I didn't want to clutter your thread
tooandrew said:
Thank you @me2151 , I didn't want to clutter your thread
Click to expand...
Click to collapse
No problem.
me2151 said:
No problem.
Click to expand...
Click to collapse
I'm upset. This thing auto-updated last night. Thats really awful and I thought that was att behavior

Samsung SM-580UD Android 7.0 10" FRP

I need some help if possible with this SM-580. I saw a post that had info on bypassing the frp lock. But the post dint go into enough details, and it was copied from a post a few months back which I tried to locate and could not.
And I wasn't sure if it was the right info for my device.
Here all info on my Tablet.
It's a 10" Black 16GB Samsung SM-T580UD
Android 7.0
And it has been reset asking for google login info.
Any help is much appreciated.
.....Thanks for any help
martym2018 said:
Not sure what I've done wrong, or what 46 views and no one can help out with better step by step instructions. I did do many search's before asking for help. I'll have a go at my self. Hope I don't brick it. I've spent hundreds of hours in past making tutorial videos and working one on one via phone or video chat to guide people thru countless other issues. Just wanted to let y'all know I've paid it forward in help.
Click to expand...
Click to collapse
The reason no one has responded is that the questioned has been asked and answered so many times that anyone should be able to find the answer on their own. There is even a step by step answer. And there is a video posted by Beut. But you have to be VERY VERY careful to follow it exactly. Miss one step and it won't work.
martym2018 said:
Not sure what I've done wrong, or what 46 views and no one can help out with better step by step instructions. I did do many search's before asking for help. I'll have a go at my self. Hope I don't brick it. I've spent hundreds of hours in past making tutorial videos and working one on one via phone or video chat to guide people thru countless other issues. Just wanted to let y'all know I've paid it forward in help.
Click to expand...
Click to collapse
I've never heard of a T580UD, are you sure it's called a T580UD?
ashyx said:
I've never heard of a T580UD, are you sure it's called a T580UD?
Click to expand...
Click to collapse
Sorry UD was after the model no. my bad.
It's just a 580 with android 7.0 and 10" inch screen.
lewmur said:
The reason no one has responded is that the questioned has been asked and answered so many times that anyone should be able to find the answer on their own. There is even a step by step answer. And there is a video posted by Beut. But you have to be VERY VERY careful to follow it exactly. Miss one step and it won't work.
Click to expand...
Click to collapse
only ones I could find was for versions with android 6.0, 0r 6.1 And was afraid not what I needed.
I think I found the tutorial i need.
https://forum.xda-developers.com/galaxy-tab-a/how-to/root-t3674409
martym2018 said:
I think I found the tutorial i need.
https://forum.xda-developers.com/galaxy-tab-a/how-to/root-t3674409
Click to expand...
Click to collapse
I thought you had FRP Lock?
martym2018 said:
I think I found the tutorial i need.
https://forum.xda-developers.com/galaxy-tab-a/how-to/root-t3674409
Click to expand...
Click to collapse
I do have frp, or google account lock.
Dang I cant figure this out. Might well give up, have no idea where to start.
martym2018 said:
only ones I could find was for versions with android 6.0, 0r 6.1 And was afraid not what I needed.
Click to expand...
Click to collapse
You must not have read them carefully. The ONLY way to remove the FRP lock is to use Odin to revert to 6 with the ROM ending in PL4. You won't find a way while still running 7.
edit: BTW, once you remove the FRP lock, the tablet will update itself, OTA, back to the latest 7 from Samsung. So, don't worry about using 6 to get rid of the lock.
martym2018 said:
I do have frp, or google account lock.
Dang I cant figure this out. Might well give up, have no idea where to start.
Click to expand...
Click to collapse
Can you post your firmware build?
ashyx said:
Can you post your firmware build?
Click to expand...
Click to collapse
How do I locate that?
martym2018 said:
How do I locate that?
Click to expand...
Click to collapse
Boot to recovery.
ashyx said:
Boot to recovery.
Click to expand...
Click to collapse
What difference does it make what firmware the tablet is running now? In order to remove the FRP the tablet has to be set back to the PL4 firmware and that can be done no matter what it currently has.
edit: The ability to add a fake wifi entry, highlighting it and choosing "advanced" is the key. That feature is ONLY available in a few Android 6 ROMS. The one ending in PL4 being one of them.
lewmur said:
What difference does it make what firmware the tablet is running now? In order to remove the FRP the tablet has to be set back to the PL4 firmware and that can be done no matter what it currently has.
edit: The ability to add a fake wifi entry, highlighting it and choosing "advanced" is the key. That feature is ONLY available in a few Android 6 ROMS. The one ending in PL4 being one of them.
Click to expand...
Click to collapse
It matters because it's possible to remove FRP on nougat depending on the firmware build.
ashyx said:
It matters because it's possible to remove FRP on nougat depending on the firmware build.
Click to expand...
Click to collapse
Then why not just post what version to flash and how to use it to remove FRP? Rather than, "what version are you running?", flash version "xyzzz" and do "such and such". Personally, I'd like that info if, and only if, it is easier than the 6 method. And doesn't cost any money. If you are selling something, then forget it.
edit; I take that back. If the OP can't figure out how to use the 6 method, and you can sell them something using 7, then more power to you.
lewmur said:
Then why not just post what version to flash and how to use it to remove FRP? Rather than, "what version are you running?", flash version "xyzzz" and do "such and such". Personally, I'd like that info if, and only if, it is easier than the 6 method. And doesn't cost any money. If you are selling something, then forget it.
edit; I take that back. If the OP can't figure out how to use the 6 method, and you can sell them something using 7, then more power to you.
Click to expand...
Click to collapse
Are you for real?
Do you think I'd spoil a perfectly good rep on these forums to sell something that can be obtained for free? In future do your research before replying to members with 'Recognized contributor' status.
Also no, I will not post up the method for general consumption, so any Tom **** and Harry can breeze by and happily bypass the security on a questionably obtained device.
ashyx said:
Are you for real?
Do you think I'd spoil a perfectly good rep on these forums to sell something that can be obtained for free? In future do your research before replying to members with 'Recognized contributor' status.
Also no, I will not post up the method for general consumption, so any Tom **** and Harry can breeze by and happily bypass the security on a questionably obtained device.
Click to expand...
Click to collapse
Yes, I'm for real. How about you? There is already a method for bypassing the FRP posted here for any Tom **** and Harry. If you are so concerned, take the whole thing to PM. Otherwise, your playing coy makes it look like you have something to sell.
lewmur said:
Yes, I'm for real. How about you? There is already a method for bypassing the FRP posted here for any Tom **** and Harry. If you are so concerned, take the whole thing to PM. Otherwise, your playing coy makes it look like you have something to sell.
Click to expand...
Click to collapse
I will take it to PM if the OP needs further assistance.
I don't care if a method is available already for MM.
I appreciate if you'd quit with the ridiculous assumptions.
I am not, never have done or ever will sell something on XDA.
I do what I do for free. If you'd actually take the time to do a little research, you be aware of that, but obviously not.
I'm not going to get into a tit for tat with you as it pointless and will refer this to a mod if it goes any further.
Let's keep it on topic.
ashyx said:
Can you post your firmware build?
Click to expand...
Click to collapse
martym2018 said:
How do I locate that?
Click to expand...
Click to collapse
Android Recovery
samsung/gtaxlwififixx/gtaxlwifi
7.0/NRD90M/T580UEU2BQL1
user/release-keys

Samsung s7 wont downgrade from android 8 to 6

Hello all, when I try to downgrade my phone I get an error in odin saying that it has failed and it says 'Auth' and my phone gives an error saying 'sw rev check fail [aboot] fused 11 > binary 4'
Is there a way I can fix this so I can downgrade? I get the same error when trying to go to android 7 as well
RockL79 said:
Hello all, when I try to downgrade my phone I get an error in odin saying that it has failed and it says 'Auth' and my phone gives an error saying 'sw rev check fail [aboot] fused 11 > binary 4'
Is there a way I can fix this so I can downgrade? I get the same error when trying to go to android 7 as well
Click to expand...
Click to collapse
Applies to the original and intact firmware on the phone.
The BIT code protects the phone from downgraded versions. You can't do anything about it. You can only downgrade the version with the same BIT code, which is tied to the bootloader.
ze7zez said:
Applies to the original and intact firmware on the phone.
The BIT code protects the phone from downgraded versions. You can't do anything about it. You can only downgrade the version with the same BIT code, which is tied to the bootloader.
Click to expand...
Click to collapse
I see. I’m assuming that’s because it’s a Verizon device? There are tons and tons of other people being able to downgrade online but I don’t think any of theirs are Verizon locked
RockL79 said:
I see. I’m assuming that’s because it’s a Verizon device? There are tons and tons of other people being able to downgrade online but I don’t think any of theirs are Verizon locked
Click to expand...
Click to collapse
Root_Method_Rev_B/11_Bootloader_Using_Combo_Firmware
This is a root method for the s7 and s7 edge on bootloader 11 (B) phones using the combination firmware. I really dont think it will do much but I will post it and maybe someone will do something with it Downloads...
forum.xda-developers.com
That will get you android 6 on rev11/B bootloader
jrkruse said:
That will get you android 6 on rev11/B bootloader
Click to expand...
Click to collapse
I’ll check this out, thanks! I’m assuming for the second half is when I would flash the stock android 6 rom?
RockL79 said:
I’ll check this out, thanks! I’m assuming for the second half is when I would flash the stock android 6 rom?
Click to expand...
Click to collapse
dont use if you are on lower bootloader though as there are more options for bootloader 10/A or lower
jrkruse said:
dont use if you are on lower bootloader though as there are more options for bootloader 10/A or lower
Click to expand...
Click to collapse
I believe mine is on 11B, as it is on the latest version of android 8 that this phone supports
jrkruse said:
dont use if you are on lower bootloader though as there are more options for bootloader 10/A or lower
Click to expand...
Click to collapse
I just finished downgrading the device and it works great! Thanks!
I think I spoke a bit too soon. Now after doing this my fingerprint scanner no longer works
RockL79 said:
I just finished downgrading the device and it works great! Thanks!
I think I spoke a bit too soon. Now after doing this my fingerprint scanner no longer works
Click to expand...
Click to collapse
try the camera fix and see if that fixes fingerprint
jrkruse said:
try the camera fix and see if that fixes fingerprint
Click to expand...
Click to collapse
Would you happen to have a link for that, or is it in the same forum you linked earlier?
RockL79 said:
Would you happen to have a link for that, or is it in the same forum you linked earlier?
Click to expand...
Click to collapse
Its in post 2 of the forum
jrkruse said:
Its in post 2 of the forum
Click to expand...
Click to collapse
I think I found it, the camera rotation fix .md5 file on page 4?
RockL79 said:
I think I found it, the camera rotation fix .md5 file on page 4?
Click to expand...
Click to collapse
its in post 2
Root_Method_Rev_B/11_Bootloader_Using_Combo_Firmware
This is a root method for the s7 and s7 edge on bootloader 11 (B) phones using the combination firmware. I really dont think it will do much but I will post it and maybe someone will do something with it Downloads...
forum.xda-developers.com
CP_G930_ROTATION_CAMERA_FIX.tar.md5 | by jrkruse for Galaxy S7 Edge
Download GApps, Roms, Kernels, Themes, Firmware, and more. Free file hosting for all Android developers.
androidfilehost.com
jrkruse said:
its in post 2
Root_Method_Rev_B/11_Bootloader_Using_Combo_Firmware
This is a root method for the s7 and s7 edge on bootloader 11 (B) phones using the combination firmware. I really dont think it will do much but I will post it and maybe someone will do something with it Downloads...
forum.xda-developers.com
CP_G930_ROTATION_CAMERA_FIX.tar.md5 | by jrkruse for Galaxy S7 Edge
Download GApps, Roms, Kernels, Themes, Firmware, and more. Free file hosting for all Android developers.
androidfilehost.com
Click to expand...
Click to collapse
I dont know if this will help with fingerprint or not it may not that might just be a problem of the combo firmware
jrkruse said:
I dont know if this will help with fingerprint or not it may not that might just be a problem of the combo firmware
Click to expand...
Click to collapse
its worth a shot, ill try it
jrkruse said:
I dont know if this will help with fingerprint or not it may not that might just be a problem of the combo firmwa
jrkruse said:
I dont know if this will help with fingerprint or not it may not that might just be a problem of the combo firmware
Click to expand...
Click to collapse
Click to expand...
Click to collapse
Unfortunately it didn’t seem to help. Either way, thank you very much for your help and knowledge! I very much so appreciate it

Categories

Resources