anyone has a suggestion on howto remove bootloader unlocked warning at start up - OnePlus 6T Questions & Answers

i did rooted the oneplus 6t to get the oneplus McLaren logo on startup by a normal 6t.
with the twrp flash.
i did install the McLaren module by magisk and works for so far.
phone boots up with no probs at all except one thing i am trying to figure out.
when the phone boots up there is a for a few seconds the message bootloader unlocked with a Orange triangle and goes then into the McLaren logo and starts up further as a normal unrooted 6t.
anyways no i am trying to figure out how i can get rid off/bypass that google bootloader unlock message in the first few seconds at startup.
found out that it is possible to get rid of the message by other brands/types of phones.
but i cant put the things together howto do this on a 6t nor find any related information on the web.
it is not a really big issue/problem for me.
but i want to write a howto get the complete McLaren experience on a normal 6t included fingerprint animation themes and the ar thing (for the booklet) so far i have everything complete except that message.
and to make a complete howto i also want to include how to get rid of that message.
also i found out that there is a way to buy the McLaren back cover so it Will look and handle as a McLaren edition and then the only difference Will be the extra ram what is missing and the warp charge (hardware related stuff which cant be changed).
any help on this one is appreciated.
PS i know i can get rid of the message by unrooting it and locking the bootloader again but that's not what i am looking for.
trying to keep the McLaren things altogether without going back to full stock (and without bricking the phone off course).
best regards.

Short answer is you can't.

bladestonez said:
Short answer is you can't.
Click to expand...
Click to collapse
I doubt that but lets wait what others have to say about it

Michel oneplus said:
I doubt that but lets wait what others have to say about it
Click to expand...
Click to collapse
It's been possible before with certain older devices, it's more complicated than you think. Chances are very slim.. closer to a not possible, if ever.

Addiso said:
It's been possible before with certain older devices, it's more complicated than you think. Chances are very slim.. closer to a not possible, if ever.
Click to expand...
Click to collapse
I indeed found out that it is very complicated on other phones but it could be done on older phones i Will wait the reactions on this xda thread thanks in advance for replying.

No need for this thread when there's already a WIP thread: https://forum.xda-developers.com/oneplus-6t/development/wip-dissecting-bootloader-aka-rid-t3878470

Thread in the wrong section (I don't even know in which section it should go, let's say Q&A), and subject is as mentioned above been discussed since years for OnePlus phones and the short answer will always be the same
YOU CAN'T GET RID OF THAT SCREEN WHILE UNLOCKED
Read the thread linked above should have been the first thing done

SpasilliumNexus said:
No need for this thread when there's already a WIP thread: https://forum.xda-developers.com/oneplus-6t/development/wip-dissecting-bootloader-aka-rid-t3878470
Click to expand...
Click to collapse
Go to that thread and you will find that it isn't possible.
You will need a signed boot loader from OnePlus that does not have the splash screen. Good luck with that.
It has to be there for Android trusted boot. Google requires it.

Thanks for pointing out the right topic didn't find it sorry forum posting it in the wrong section made a thread over here because xda said when i made a account i couldnt posted it in the developer section because i am a junior member (found that a bit funny,i am familiar with Linux backtrack, android rooting and all the stuff what Comes with it and also a bit programming with Windows) but thanks anyways topic can be closed i Will continue on the wip thread as a junior ? my wife got her degree in Windows networking programming but she has to ask me always hunny can You help me with something i cant solve (and i haven't got any degrees at school Just plain old hobby playing with software and stuff)

Some devices have fixed for that like https://forum.xda-developers.com/t/guide-remove-unlocked-bootloader-warning.4069207/
So stop say that "YOU CAN'T DO THAT"
Any news on this matter for OP?

Michel oneplus said:
i did rooted the oneplus 6t to get the oneplus McLaren logo on startup by a normal 6t.
with the twrp flash.
i did install the McLaren module by magisk and works for so far.
phone boots up with no probs at all except one thing i am trying to figure out.
when the phone boots up there is a for a few seconds the message bootloader unlocked with a Orange triangle and goes then into the McLaren logo and starts up further as a normal unrooted 6t.
anyways no i am trying to figure out how i can get rid off/bypass that google bootloader unlock message in the first few seconds at startup.
found out that it is possible to get rid of the message by other brands/types of phones.
but i cant put the things together howto do this on a 6t nor find any related information on the web.
it is not a really big issue/problem for me.
but i want to write a howto get the complete McLaren experience on a normal 6t included fingerprint animation themes and the ar thing (for the booklet) so far i have everything complete except that message.
and to make a complete howto i also want to include how to get rid of that message.
also i found out that there is a way to buy the McLaren back cover so it Will look and handle as a McLaren edition and then the only difference Will be the extra ram what is missing and the warp charge (hardware related stuff which cant be changed).
any help on this one is appreciated.
PS i know i can get rid of the message by unrooting it and locking the bootloader again but that's not what i am looking for.
trying to keep the McLaren things altogether without going back to full stock (and without bricking the phone off course).
best regards.
Click to expand...
Click to collapse
Try using Universal SafetyNet Fix module. It hides the unlocked bootloader from system too

0purple said:
Try using Universal SafetyNet Fix module. It hides the unlocked bootloader from system too
Click to expand...
Click to collapse
That module does nothing for the message that appears during boot.

Huskied said:
That module does nothing for the message that appears during boot.
Click to expand...
Click to collapse
My xiaomi device doesn't know that the bootloader is unlocked anymore, idk

0purple said:
My xiaomi device doesn't know that the bootloader is unlocked anymore, idk
Click to expand...
Click to collapse
That's the difference. You talking about Xiaomi in a OnePlus thread, very different breed. Many apologies fam.

On my other phones there's been a method to cover it up. For Motorola devices, there are many custom splash screens that are an overlay, covering the words with an image

Yeedatoy said:
On my other phones there's been a method to cover it up. For Motorola devices, there are many custom splash screens that are an overlay, covering the words with an image
Click to expand...
Click to collapse
It's impossible on this device because the OnePlus 6/6T is made different from other devices and that warning cannot be modified due to how it is made. This was the very first thing I set out to do and from searching on our forums I learned this to be true. It's impossible on 6/6t.

flash713 said:
It's impossible on this device because the OnePlus 6/6T is made different from other devices and that warning cannot be modified due to how it is made. This was the very first thing I set out to do and from searching on our forums I learned this to be true. It's impossible on 6/6t.
Click to expand...
Click to collapse
This is something a lot of people need to understand.
All androids devices are not equal. Depending on the device even the bootloader is different so the same tricks don't work on all devices.
Has their been ways for other devices? Yes by exploiting a hole in the system. This is still an actively updated device. You will have to wait a few before a hole like that can be found and more importantly not patched.
Now on the other hand. This is Xda. Nothing is impossible. So by all means dig in and find the hole and come back and share it. I'm sure there are those here willing o help.

Related

Cant unlock

Total noob, so any and all help very much appreciated. I had an issue with my phone not booting, so after lots of tricks and tips I was still stuck in a bootloop. I ended up finding an image and followed the instructions and voila my phone boots, all be it wiped and needing all apps and such installed. However I soon realized my phone is no longer unlocked. so now I cant use my Straight talk sim card. I need help ASAP if possible and more than willing to compensate anyone who can help me get my phone and txt messaging working again. Im pretty versed in PC stuff, as I work in IT, but I have never done any phone moding or flashing until now, so detailed explanations would be great, or if needed we can link up using a remote software program or FB. Thanks!
42 views yet no replies? I sure hope someone out there can help me.
Wfisher74 said:
Total noob, so any and all help very much appreciated. I had an issue with my phone not booting, so after lots of tricks and tips I was still stuck in a bootloop. I ended up finding an image and followed the instructions and voila my phone boots, all be it wiped and needing all apps and such installed. However I soon realized my phone is no longer unlocked. so now I cant use my Straight talk sim card. I need help ASAP if possible and more than willing to compensate anyone who can help me get my phone and txt messaging working again. Im pretty versed in PC stuff, as I work in IT, but I have never done any phone moding or flashing until now, so detailed explanations would be great, or if needed we can link up using a remote software program or FB. Thanks!
Click to expand...
Click to collapse
Correct me if I'm wrong your looking for a way to unlock from carrier not bootloader.... If that is the case look here (can't tell you if it works big red is the only one that seems to work where I spend most of my time)
http://forum.xda-developers.com/showthread.php?p=60690666
If your looking for bootloader unlock it make not be possible depending on software ver and kernel... If you want to look into it I would start here
http://forum.xda-developers.com/showthread.php?p=43125188
I hope that points you in the right direction... The general portion for our phone has a lot of great information
Sent from my moto_msm8960_jbbl using XDA Free mobile app
Meabrams, thanks for your reply but I am not sure what I need at this point. Not sure by what you mean by "big red", is that another site? I wish I could explain to somone over the phone what is going on, but have no resources to contact for this kind of help. I did to the process listed in the link: Tutorial] Unlock ALL bands on xt907 (moto_msm8960) with no success. I will check out the other post and see if I get any further. Any assistance or help you may know of is much appreciated. Im hoping to transfer my phone to temporary straight talk phone until this is fixed, just hope I dont have to send it off to someone.
Edit....Ok my device is rooted (dont know for sure but I have super user installed (full version of SU)) and I can play apps that are not Google approved. I tried the Motopocalypse and cant get any further. Does it matter what version of Android i have? currently this phone is on 4.4.2 BUT I dont really care if it stays on that version...Do I /Can I go back to the 4.1 version I had before? I believe it was the stock version of the phone's android system by not positive as i bought this phone unlocked. I would contact the seller but they have disappeared from ebay.
meabrams said:
Correct me if I'm wrong your looking for a way to unlock from carrier not bootloader.... If that is the case look here (can't tell you if it works big red is the only one that seems to work where I spend most of my time)
http://forum.xda-developers.com/showthread.php?p=60690666
If your looking for bootloader unlock it make not be possible depending on software ver and kernel... If you want to look into it I would start here
http://forum.xda-developers.com/showthread.php?p=43125188
I hope that points you in the right direction... The general portion for our phone has a lot of great information
Sent from my moto_msm8960_jbbl using XDA Free mobile app
Click to expand...
Click to collapse
More problems....arg
OK so my phone turns on, asks to run the setup again, as soon as I start the setup in android, after choosing my english language, it says "Please wait, this may take a few minutes." Well this has been doing it for 12 hours now......any help?? Im so frustrated at this point, I really need this phone to work. I have a temp phone to take calls on if anyone desires to be a superhero and help me fix this xt907. Thanks!
Wfisher74 said:
Meabrams, thanks for your reply but I am not sure what I need at this point. Not sure by what you mean by "big red", is that another site? I wish I could explain to somone over the phone what is going on, but have no resources to contact for this kind of help. I did to the process listed in the link: Tutorial] Unlock ALL bands on xt907 (moto_msm8960) with no success. I will check out the other post and see if I get any further. Any assistance or help you may know of is much appreciated. Im hoping to transfer my phone to temporary straight talk phone until this is fixed, just hope I dont have to send it off to someone.
Edit....Ok my device is rooted (dont know for sure but I have super user installed (full version of SU)) and I can play apps that are not Google approved. I tried the Motopocalypse and cant get any further. Does it matter what version of Android i have? currently this phone is on 4.4.2 BUT I dont really care if it stays on that version...Do I /Can I go back to the 4.1 version I had before? I believe it was the stock version of the phone's android system by not positive as i bought this phone unlocked. I would contact the seller but they have disappeared from ebay.
Click to expand...
Click to collapse
Flashing Firmware via Fastboot
You mentioned you are stucked at the initial setup screen. This implies that you need to reflash the stock ROM. Please visit this link to read my post containing instructables to successfully flash stock ROM.
Q. Can I unlock bootloader?
No. As of KDA 20.62 15.1 update, the Trust Zone vulnerability has been fixed which allowed exploit to work.
Q. Can I root?
Yes! Head to this thread to root (install SU) on your RAZR.
Q. Can I downgrade?
Unfortunately no! You are stucked permanently with the Kitkat flavour.
US GSM Carrier Unlock
The method is fairly long but easy. Head to the thread here to unlock US GSM carriers which will allow you use Straight Talk.
mfbcool said:
Flashing Firmware via Fastboot
You mentioned you are stucked at the initial setup screen. This implies that you need to reflash the stock ROM. Please visit this link to read my post containing instructables to successfully flash stock ROM.
Q. Can I unlock bootloader?
No. As of KDA 20.62 15.1 update, the Trust Zone vulnerability has been fixed which allowed exploit to work.
Q. Can I root?
Yes! Head to this thread to root (install SU) on your RAZR.
Q. Can I downgrade?
Unfortunately no! You are stucked permanently with the Kitkat flavour.
US GSM Carrier Unlock
The method is fairly long but easy. Head to the thread here to unlock US GSM carriers which will allow you use Straight Talk.
Click to expand...
Click to collapse
For moto luge is international sim roaming on att or tmobile also considered in the domestic blocking ?
I have tmobile.pl sim which roams in my note4 but not on luge
Sent from my SM-N910V using Tapatalk

Root method for xt1528 once we can recover from QDL mode

Hi,
If people would like to figure out how to get the xt1528 out from QDL mode then I will provide a method for PERM root and xposed as we did for the moto x here.
This is an article that talks about working with the new sahara protocol the Moto E uses. The qdloader used for the moto x is an older protocol.
Good luck!
jahrule said:
Hi,
If people would like to figure out how to get the xt1528 out from QDL mode then I will provide a method for PERM root and xposed as we did for the moto x here.
This is an article that talks about working with the new sahara protocol the Moto E uses. The qdloader used for the moto x is an older protocol.
Good luck!
Click to expand...
Click to collapse
This will be awesome.
Sent from my XT1528 using XDA Free mobile app
jahrule said:
Hi,
If people would like to figure out how to get the xt1528 out from QDL mode then I will provide a method for PERM root and xposed as we did for the moto x
Click to expand...
Click to collapse
How did you get it into the QDL mode?
fire3element said:
How did you get it into the QDL mode?
Click to expand...
Click to collapse
You get into it by soft bricking your phone. But you can't get out until someone can do the procedure above. I am sure it is trivial using qfil but I run Linux solely and am not in a rush just giving a helping hand to someone here if they want to put a little effort in.
jahrule said:
You get into it by soft bricking your phone. But you can't get out until someone can do the procedure above. I am sure it is trivial using qfil but I run Linux solely and am not in a rush just giving a helping hand to someone here if they want to put a little effort in.
Click to expand...
Click to collapse
I am ready to get the ball rolling on this. This phone needs root at the least, since the bootloader is locked (thanks to Verisucks). I will PM you.
fire3element said:
I am ready to get the ball rolling on this. This phone needs root at the least, since the bootloader is locked (thanks to Verisucks). I will PM you.
Click to expand...
Click to collapse
Pm responded
How's it going?
I can help with this as well. I have my XT1528 on standby. Don't have much dev experience with Android, but I can sure try.
Unless you are willing to stare endearingly at a shiny paperweight that once was your phone, I don't think anyone can do much to help.
To sum this up for new eyes wondering where this might be headed:
Motorola (along with many of the other major phone manufacturers) have removed the ability to load QDownload mode manually. Apparently, the XT1528 along with many newer devices, is now running a new protocol for the diagnostic port. (and there is more than one way the port can be present/active, to further complicate things)
Please do not ask me to explain. I am just barely beginning to understand this stuff myself.
As of right now, the only known method to get our Verizon 2nd gen Moto E into QDL is to actually BRICK the device. At which point the phone will resort to the next level down, since it can not boot properly.
So unless you are willing to intentionally brick your phone to advance this cause... I am afraid that you can not do much.
There is also the looming risk that the device can not be recovered if the new protocols are not figured out. I am treading in uncharted waters here.
Means you or I lost a phone and the $$$ spent on it. By another one and try again.
If you are adamant about wanting to help, click on the 2 links in the OP. @jahrule has posted information that tells us with direction to go.
And if you do not understand what is going on in either article........................................ maybe it is best left alone.
Not being harsh, just safer that way. I am having to figure this stuff out as I go too.
As for progress..? None. I am not intentionally bricking my phone until I gather enough info that will lead me to the conclusion that I can recover the device.
So goes without saying. BE NICE____DO NOT PESTER
@fire3element
I got mine brand new off of Amazon for $48.00, if someone wants to sacrifice the 48 bucks? My note 4 just came in, so I might be willing to brick mine for the cause. I will do some reading where you posted earlier and see what I can do
---------- Post added at 08:20 PM ---------- Previous post was at 08:15 PM ----------
neo4uo said:
@fire3element
I got mine brand new off of Amazon for $48.00, if someone wants to sacrifice the 48 bucks? My note 4 just came in, so I might be willing to brick mine for the cause. I will do some reading where you posted earlier and see what I can do
Click to expand...
Click to collapse
@jahrule
Are you proposing that we brick the phone and use an international boot loader with the Verizon modem to flash, since the boot loader would be corrupt it wouldn't be locked anymore?
jahrule said:
Are you proposing that we brick the phone and use an international boot loader with the Verizon modem to flash, since the boot loader would be corrupt it wouldn't be locked anymore?
Click to expand...
Click to collapse
No, we are not trying to mess with the bootloader. I do not think we even could. The ideal way to go about that would be to use the XT1526 Boost Mobile bootloader and modify it to fit the XT1528. Those 2 models are about the closest in hardware of all the variants. (and I have already tried working on this in the last few months with no progress)
I do not think that would work anyways.
What we are attempting to do here is inject root into the system partition after the kernel startup. After the OS is booted, and root is in place, it should become permanent from then on. At least until you delete, install over, or wipe the device.
The issue here is, there is no way to manually put the phone into QDL mode. (as I mentioned in my post above).
Once we are in QDL, there is no known way to get it out. If the flasher tool does not see/read the phone, there will be no way to recover since we can not flash files to fix what we had to break to get there in the first place.
See the paradox now? LoL
Personally, I can not afford to throw this phone to the gutter. Simply do not have that kind of money laying around. If you can stand to throw $50 into the wind, more power to you Bro
Give it a go, but don't be careless just for the sake of wanting to try something. (speaking from experience here)
UPDATE: I think I am going to hold off on this for now. Looks like the Stagefright vulnerability is going to lead to a new ROOT exploit.
This is bad news for android, but great news for those of us that have locked down devices. Please download the Zimperium StageFright Detector app from the play store to see if you device is vulnerable.
If it is, DO NOT TAKE ANY UPDATES till we get confirmation that a new exploit will benefit us or not.
My GoPhone moto e says it is vulnerable running 5.1 stock firmware
Sent from my MotoE2(4G-LTE) using XDA Free mobile app
fire3element said:
No, we are not trying to mess with the bootloader. I do not think we even could. The ideal way to go about that would be to use the XT1526 Boost Mobile bootloader and modify it to fit the XT1528. Those 2 models are about the closest in hardware of all the variants. (and I have already tried working on this in the last few months with no progress)
I do not think that would work anyways.
Click to expand...
Click to collapse
The bootloader is the same. This will help nothing.
fire3element said:
What we are attempting to do here is inject root into the system partition after the kernel startup. After the OS is booted, and root is in place, it should become permanent from then on. At least until you delete, install over, or wipe the device.
Click to expand...
Click to collapse
What we are trying to do is use qfil or blanflash qflash to recover from QDL mode and be able to write partitions from there.
fire3element said:
The issue here is, there is no way to manually put the phone into QDL mode. (as I mentioned in my post above).
Once we are in QDL, there is no known way to get it out. If the flasher tool does not see/read the phone, there will be no way to recover since we can not flash files to fix what we had to break to get there in the first place.
Click to expand...
Click to collapse
Issue is only recovering from QDL mode which is the goal see above. Getting the phone into QDL mode is very easy.
fire3element said:
See the paradox now? LoL
Personally, I can not afford to throw this phone to the gutter. Simply do not have that kind of money laying around. If you can stand to throw $50 into the wind, more power to you Bro
Give it a go, but don't be careless just for the sake of wanting to try something. (speaking from experience here)
UPDATE: I think I am going to hold off on this for now. Looks like the Stagefright vulnerability is going to lead to a new ROOT exploit.
This is bad news for android, but great news for those of us that have locked down devices. Please download the Zimperium StageFright Detector app from the play store to see if you device is vulnerable.
If it is, DO NOT TAKE ANY UPDATES till we get confirmation that a new exploit will benefit us or not.
Click to expand...
Click to collapse
Stagefright will get one system permissions not root permissions.
neo4uo said:
@fire3element
I got mine brand new off of Amazon for $48.00, if someone wants to sacrifice the 48 bucks? My note 4 just came in, so I might be willing to brick mine for the cause. I will do some reading where you posted earlier and see what I can do
---------- Post added at 08:20 PM ---------- Previous post was at 08:15 PM ----------
@jahrule
Are you proposing that we brick the phone and use an international boot loader with the Verizon modem to flash, since the boot loader would be corrupt it wouldn't be locked anymore?
Click to expand...
Click to collapse
I am proposing that you read the way CrashXXL achieved root on the moto x and we do the same
jahrule said:
Stagefright will get one system permissions not root permissions.
Click to expand...
Click to collapse
Surely I am not misinterpreting what I am seeing here.
https://www.youtube.com/watch?v=PxQc5gOHnKs
Looked for a video of Josh's DefCon presentation, but could not find one. So either he has not presented yet, or no one had uploaded the vid at this time.
Here is an excerpt from the Zimperium blog:
" 2. Zimperium Research Labs (zLABS) will release a video later this week with a Stagefright RCE demonstration. Several large carriers requested that we delay the release of our working exploit. We agreed, given the gravity of the situation. Unfortunately, because the patches are open-source [1, 2], many researchers are already working on creating an exploit. We are planning to release our exploit on August 24th, 2015. However, if an exploit is publicly released or attacks are detected in the wild before that date, we will release ours for testing purposes at that time. "
and
" 6. Josh will present the full details of his research at Black Hat on August 5th or DEFCON on August 7th. We invite you to join us! "
Hopefully this is the new exploit we have all been waiting for. I know that I need to move away from my current device because of hardware issues, however I can not do that until I root this device. More info is sure to come in the next few weeks
jahrule said:
The bootloader is the same. This will help nothing..
Click to expand...
Click to collapse
I should have clarified myself. My attempt was to replace the Verizon "locked" bootloader withe the Boost "un-locked" bootloader.
Again, I do not think it will work. However, if the flasher tool will actually work with this phone, then I suppose it would not hurt to try it. If it does not work, simply flash your backup of the original BL.
Is it possible to flash 5.0.1 back after you update? or remove any update..? Hahaha I updated mine for stagefright without thinking. Diddnt know untill i checked it & found it wasnt vunarable. I know it was before.. Ugh. Carelessness on me behalf.
Hey guys, I have this phone as well as the htc desire 526 pp and they are both just laying in a drawer. I bought them when I couldn't afford a real replacement for my broken nexus 6 and now that I don't need either I would be more then willing to sacrifice mine for the sake of helping out. Plus if it works then the phone is rooted, negative if I can't use it I can free up some drawer space. Not a big loss either way as the screen is too small for my liking. Very nice phone otherwise just not enough space or screen.
So just a quick little update on this.
I purposely bricked another Moto E and was able to get it to show up in the Device Manager as QCOM_BULK (not the exact wording, I forgot) . This required me to flash a bad Bootloader to get the device to fail to turn on, thus kicking it into the fall back mode. I tried flashing all other partitions to make the phone go into the BULK mode. None worked except for the bootloader.
Could not get anywhere with it. We need some specific files to flash in order to get the device rooted or bootloader unlocked. Its not just a few files either, and they have some weird extensions.
I ended up taking the device back and getting something else. Just don't have time to keep playing with it. Someone smarter than me could probably get it done with not a whole lot of effort.
Sorry guys. I tried with my limited knowledge and skills.
Since you have abandoned this project, do you think you could PM me any/all info you have? I would like to take a stab at this.
Steve_xposed said:
Since you have abandoned this project, do you think you could PM me any/all info you have? I would like to take a stab at this.
Click to expand...
Click to collapse
I too would like to see the process, in order to enter QDL mode, I LITERALLY have no use for this phone as it is damaged but still boots and can use screen

[REQUEST] Help Remove Ads from Amazon Moto G4 Play

Hey y'all thanks for taking a peek at this thread.
We, the people over at the forum for the Moto G4 Play, have had a lot of trouble figuring out how to remove the Amazon ads from our XT1607. You guys have found that simply flashing your gpt.bin and oem.img from a non-amazon XT1625 to an amazon XT1625 works simply enough.
Problem is with our device the amazon oem.img is sparsed into two different chunks, but the non-amazon device has a single oem.img. We have tried many different routes to remove the Amazon Ads from our device but haven't been successful at all. Now we've hit a roadblock and can't figure out how to get around it; and we'd love for the developers of this subforum to help us out.
Check out our progress in this post I made.
Thanks!
be aware that Amazon G4 owners (me included) who used RootJunky's Amazon debloating method cannot receive updates. attempts to flash the stock Amazon ROM (to get updates) results in bricked phones. so de-Amazon'd G4 owners with locked bootloader are stuck. we may not be able to install the Nougat update.
HKSpeed said:
be aware that Amazon G4 owners (me included) who used RootJunky's Amazon debloating method cannot receive updates. attempts to flash the stock Amazon ROM (to get updates) results in bricked phones. so de-Amazon'd G4 owners with locked bootloader are stuck. we may not be able to install the Nougat update.
Click to expand...
Click to collapse
Damn. We really need to figure out a way to root this device without unlocking the bootloader.
Ditto on this thread! ... Love my G4 play but not the AMAZON bloatware, want to delete it! ... Please help us get rid of this waste of space...
A.Fitz said:
Damn. We really need to figure out a way to root this device without unlocking the bootloader.
Click to expand...
Click to collapse
That won't happen no matter how hard you figure. It was done on the older Qualcomm chipsets and since then the RSA key has been beefed up to the point that if someone could break what they call the Qfuse and unlock the phone, they would be doing a lot more than just unlocking phones. There have been lame attempts in the near past that didn't go well for those trying so don't count on unlocking the bootloader without Amazon's or Lenovo's blessings.
This is now working (ended up not having to affect the systemui files, it was even simpler).
I am thinking about rolling up the solution into an apk so you guys can run it easily.
This thread seems pretty dead though. Anyone interested in an apk?
Still Interest
Hey...like me, I'm sure there is a lot of interest if there is a workable method to unlock the boot loader.
tnx...
ledothis said:
This is now working (ended up not having to affect the systemui files, it was even simpler).
I am thinking about rolling up the solution into an apk so you guys can run it easily.
This thread seems pretty dead though. Anyone interested in an apk?
Click to expand...
Click to collapse
ksdst1 said:
Hey...like me, I'm sure there is a lot of interest if there is a workable method to unlock the boot loader.
tnx...
Click to expand...
Click to collapse
Removing ads and unlocking the bootloader are two completely different things. The bootloader on the Amazon phone will never be unlocked until Amazon allows it.
YEs! Show me how....
ledothis said:
This is now working (ended up not having to affect the systemui files, it was even simpler).
I am thinking about rolling up the solution into an apk so you guys can run it easily.
This thread seems pretty dead though. Anyone interested in an apk?
Click to expand...
Click to collapse
I"M INTERESTED IN UNDERSTANDING HOW YOU DID IT, yes!
graboz said:
I"M INTERESTED IN UNDERSTANDING HOW YOU DID IT, yes!
Click to expand...
Click to collapse
check out the link in the original post. He works through it over there.

Searching For Root..

I've had this phone a little while now and I'm itching to root it. There's nothing wrong with it, I just really want to get into the code and do some modding. But there doesn't seem to be any root solution available right now.
So I thought I'd start this thread so we could discuss any rooting tips and ideas you all might have.
First I should probably mention all the potentially dodgy rooting solutions out there. Google "root xa1" and you get many results that offer methods to gain root access on our phone.
I confess I haven't tried any of them but that's because they all look suspicious. Some were written before the phone launched, some require you to download unknown software (I'll keep my PC virus-free, thanks), some even go so far as to feature a fake comment section with people saying it works.
I have no desire to stick malware on either my PC or my phone so I'm steering well clear of those.
The XZs launched at the same time as the XA1 and there seems to be a solution available for that. This is a thread by @zlRampageSlz with details: https://forum.xda-developers.com/xzs/how-to/tutorial-step-step-guide-to-gain-root-t3612624
It looks like the best solution is to unlock the bootloader (making sure to back up your TA partition first!), flash a modified kernel (otherwise the camera takes green pictures), flash a recovery image and then flash Magisk.
Where do we get this modified kernel? Where do we get the recovery image?
I have no idea, sadly. This is all way beyond my area of expertise. I'm a themer, not a developer.
But if anybody knows better than me, please post here.
This is a great phone, let's work together so we can get it modded!
Ticklefish said:
I've had this phone a little while now and I'm itching to root it. There's nothing wrong with it, I just really want to get into the code and do some modding. But there doesn't seem to be any root solution available right now.
So I thought I'd start this thread so we could discuss any rooting tips and ideas you all might have.
First I should probably mention all the potentially dodgy rooting solutions out there. Google "root xa1" and you get many results that offer methods to gain root access on our phone.
I confess I haven't tried any of them but that's because they all look suspicious. Some were written before the phone launched, some require you to download unknown software (I'll keep my PC virus-free, thanks), some even go so far as to feature a fake comment section with people saying it works.
I have no desire to stick malware on either my PC or my phone so I'm steering well clear of those.
The XZs launched at the same time as the XA1 and there seems to be a solution available for that. This is a thread by @zlRampageSlz with details: https://forum.xda-developers.com/xzs/how-to/tutorial-step-step-guide-to-gain-root-t3612624
It looks like the best solution is to unlock the bootloader (making sure to back up your TA partition first!), flash a modified kernel (otherwise the camera takes green pictures), flash a recovery image and then flash Magisk.
Where do we get this modified kernel? Where do we get the recovery image?
I have no idea, sadly. This is all way beyond my area of expertise. I'm a themer, not a developer.
But if anybody knows better than me, please post here.
This is a great phone, let's work together so we can get it modded!
Click to expand...
Click to collapse
First of all thank you so much for your awesome tool "Tickle My Android" which i really like it (Y).
i'm about to get XA1 Ultra so sure i'm so curious about root also but i'll try to make it clear,
simply, don't waste your time searching for a root tool because it's impossible to have root without modifying kernel, so, 100% all of these tools are just malware !
in the new devices there's something calls DM-Verity which is a check tool and that means any modification to /system will leads to bootloop,
so DM-Verity must be disabled ( through kernel of course ) & any mess with kernel means you have to unlock bootloader.
another thing, Sony ric which is prevent mounting system, so, any modification must be through recovery or it will leads to bootloop also, so we must also disable it.
fortunately on my xperia z2 there is no DM-Verity and there's a module to disable sony ric through recovery so root was possible without unlocking bootloader but starting from xperia z3+ DM-Verity appeared !
so now root is impossible without unlocking bootloader ( which means losing drm keys forever if you didn't back it up ).
i downloaded the firmware for xa1 ultra through xperiafirm and i unpacked the kernel and tried with these tools to see how its going on:
https://forum.xda-developers.com/xp...oot-automatic-repack-stock-kernel-dm-t3301605
&
https://forum.xda-developers.com/crossdevice-dev/sony/poc-real-trim-instead-drm-fix-t3552893
the first one was hanging and i didn't get any information & the second one to be able to use it then you must put your ta.img ( your ta backup ) inside the folder,
i used my z2 ta.img as a test to see the process and the result was pretty good !
i successful disabled DM-Verity and there's no sony ric !!!!! but it's also still not safe and needs to be confirmed because maybe there's a bad surprise which is not clear yet, maybe something like sony ric but new !
so, if it's only the ****ty DM-Verity it's easy to disable it even away from this tool because we can't use it without ta.img, maybe by any script or unpacking kernel and modify it then repacking it this is not a problem at all & after that MAYBE we can flash supersu or magisk via ADB since there's no recovery yet ( completely not sure about this so it needs to be confirmed ) & in this case the choice is between root or drm features but at least root has been achieved.
so now, we need something like this to be able to backup ta without root and after that no problem of unlocking bootloader:
https://forum.xda-developers.com/crossdevice-dev/sony/universal-dirtycow-based-ta-backup-t3514236
or
https://forum.xda-developers.com/crossdevice-dev/sony/iovyroot-temp-root-tool-t3349597
or if it's not possible at this moment to backup ta without root then at least we need something like this to be able to to reactivate drm features such as camera denoise and x-reality...etc:
https://forum.xda-developers.com/crossdevice-dev/sony/xperia-z1-z2-z3-series-devices-drm-t2930672
or
https://forum.xda-developers.com/xperia-z5/development/sony-credentials-restore-unlocking-t3296383
or the worst choice...root without drm & waiting for a fix like those above !
anyway, root is not easy like before but it's still possible after all, i tried to clarify everything as much as i can and i hope there's a solution soon !
@munjeni we need your help bro, please if you have free time have a look, i uploaded the kernel for xa1 ultra so try to tell us how it's going on & what is new !
https://www.mediafire.com/?bc63fgjw99r785d
good luck for everyone .
As my Z5 compact was broken, I bought the XA1. I didn't remember, how awful an unrooted phone is - So I am also waiting and would be very interested to be informed.
BR
Sopur
Did anyone tried this?
https://www.oneclickroot.com/sony/sony-xperia-xa1/
chauhanjayc said:
Did anyone tried this?
https://www.oneclickroot.com/sony/sony-xperia-xa1/
Click to expand...
Click to collapse
I haven't, personally. Every mention of it I can find just looks like an advert. And I'm not paying for something that might not work and might do something horrible to my phone.
Sent from my Sony Xperia XA1 using XDA Labs
Ticklefish said:
I haven't, personally. Every mention of it I can find just looks like an advert. And I'm not paying for something that might not work and might do something horrible to my phone.
Click to expand...
Click to collapse
Its free
chauhanjayc said:
Its free
Click to expand...
Click to collapse
One Click Root does not work at the moment :crying:
kpfreak said:
One Click Root does not work at the moment :crying:
Click to expand...
Click to collapse
Uffffd
Let wait till next exploit.
chauhanjayc said:
Uffffd
Let wait till next exploit.
Click to expand...
Click to collapse
I'm sure it's only a matter of time.
Sent from my Sony Xperia XA1 using XDA Labs
bought this phone to replace my oppo. i can't wait for root abilities to be made
Bought this phone to replace my old Xiaomi. It's a good, powerful phone. Hope to see root appear for it soon. Personally for me, I'm one of those people who will only root a phone once it gets slow (the warranty expires). So as much as I'm reluctant to root my phone now, I'll hold out and see what wonderful developments appear on this thread.
Given the XA1 (I have the XA1 not the XA1 Ultra, I believe they are different) runs a Mediatek processor, I'm inclined to see something along the lines of a MT Flash Tool being used. Correct me if I'm wrong but I've only had successful flashes and roots with Qualcomm processors. The last device I had with a Mediatek processor (Lenovo A8-50 A5500H, MT8382) bricked on me horribly and I had to throw it away :crying:.
Meh. Hope we'll see awesomeness come soon from here. I'm still pretty new to XDA, looks like an awesome community
MINGXXIE said:
Bought this phone to replace my old Xiaomi. It's a good, powerful phone. Hope to see root appear for it soon. Personally for me, I'm one of those people who will only root a phone once it gets slow (the warranty expires). So as much as I'm reluctant to root my phone now, I'll hold out and see what wonderful developments appear on this thread.
Given the XA1 (I have the XA1 not the XA1 Ultra, I believe they are different) runs a Mediatek processor, I'm inclined to see something along the lines of a MT Flash Tool being used. Correct me if I'm wrong but I've only had successful flashes and roots with Qualcomm processors. The last device I had with a Mediatek processor (Lenovo A8-50 A5500H, MT8382) bricked on me horribly and I had to throw it away :crying:.
Meh. Hope we'll see awesomeness come soon from here. I'm still pretty new to XDA, looks like an awesome community
Click to expand...
Click to collapse
from what i've seen on sony's support page, they've made their own flash tool to flash stock roms to your phone with in case of events like bricking
diosdetiempo said:
from what i've seen on sony's support page, they've made their own flash tool to flash stock roms to your phone with in case of events like bricking
Click to expand...
Click to collapse
Is it? That's wonderful, shall go check it out
Seems like the ultra version has gotten it.
https://forum.xda-developers.com/xa1-ultra/development/g3221-built-sources-t3622886
diosdetiempo said:
Seems like the ultra version has gotten it.
https://forum.xda-developers.com/xa1-ultra/development/g3221-built-sources-t3622886
Click to expand...
Click to collapse
Cool. I wonder if they can help with our device..
Sent from my Sony Xperia XA1 using XDA Labs
Hi. Wondered if I could ask advice. When trying to unlock bootloader using Sony website via a code. After entering the command with the code it says command not allowed, any ideas?
arienwalsall72 said:
Hi. Wondered if I could ask advice. When trying to unlock bootloader using Sony website via a code. After entering the command with the code it says command not allowed, any ideas?
Click to expand...
Click to collapse
I don't know, sorry. Did you definitely enter the right code?
Sent from my Sony Xperia XA1 using XDA Labs
Ticklefish said:
I don't know, sorry. Did you definitely enter the right code?
Click to expand...
Click to collapse
Yes. It gives the full command with the code on the Sony website. So I copied and pasted it from there. It does say on the phone in the service menu under bootloader unlock able = no. But says yes on the Sony website so not sure
arienwalsall72 said:
Yes. It gives the full command with the code on the Sony website. So I copied and pasted it from there. It does say on the phone in the service menu under bootloader unlock able = no. But says yes on the Sony website so not sure
Click to expand...
Click to collapse
if it says no on your phone then you're not able to
arienwalsall72 said:
Yes. It gives the full command with the code on the Sony website. So I copied and pasted it from there. It does say on the phone in the service menu under bootloader unlock able = no. But says yes on the Sony website so not sure
Click to expand...
Click to collapse
Go to Settings > About Phone.
Tap on Build Number until you get a toast notification that says you're a developer.
You should now be able to access Developer Options in Settings.
Go inside Developer Options then toggle OEM unlocking. Make sure it's on.
The code you get from the website should work now.

getting bootloader code hash?

Hi,
Since Huawei closed giving away bootloader codes,
and I've blowed 60 USD on dc unlocker,
is there a way to get the bootloader code hash to decrypt it with hashcat, for example?
Best Regards,
Aleksander
Don't know about that but do you want to unlock your bootloader?
BeachCabana said:
Don't know about that but do you want to unlock your bootloader?
Click to expand...
Click to collapse
Yes but don't know how to get the bootloader code
Downgrade as low as possible and give it a try.
haexhub/huaweiBootloaderHack: Huawei-unlock-bootloader (github.com)
Edit:
First Download This -> SkyEmie/huawei-honor-unlock-bootloader: A simple tool for managing Huawei/Honor devices to unlock bootloader (github.com)
then grab unlock.py from haexhub and replace it. Then its a 'All-in-One Package' - no need to install anything.
aLcaTr4z said:
Downgrade as low as possible and give it a try.
haexhub/huaweiBootloaderHack: Huawei-unlock-bootloader (github.com)
Edit:
First Download This -> SkyEmie/huawei-honor-unlock-bootloader: A simple tool for managing Huawei/Honor devices to unlock bootloader (github.com)
then grab unlock.py from haexhub and replace it. Then its a 'All-in-One Package' - no need to install anything.
Click to expand...
Click to collapse
THANKS A LOT M8!!!!!!!!!!!
I've started the program but i am just curious how many different codes/how many attempts can there be in total?
Thats a good question, im sure u can find the answer in one of the 2 repos. One is endless (pure bruteforce) vs IMEI + HASH.
I'm still too lazy to Downgrade my Phone to give it a try (with out rebooting every 4 attempts), because no clue if its worth all the effort, as Huawei modding / hacking seems like almost dead.
aLcaTr4z said:
Thats a good question, im sure u can find the answer in one of the 2 repos. One is endless (pure bruteforce) vs IMEI + HASH.
I'm still too lazy to Downgrade my Phone to give it a try (with out rebooting every 4 attempts), because no clue if its worth all the effort, as Huawei modding / hacking seems like almost dead.
Click to expand...
Click to collapse
Ok thanks I've started the brute force the day same as u shared the github links and it's still on attempt around 97k so I'am still trying...
But do u know if it's possible to copy the WHOLE boot partition without unlocking bootloader?
Oh wow! Didnt expect that it might take this long.
And no, sorry. But i doubt that its possible, otherwise some sneaky hackers would found that gloryhole already.
aLcaTr4z said:
Oh wow! Didnt expect that it might take this long.
And no, sorry. But i doubt that its possible, otherwise some sneaky hackers would found that gloryhole already.
Click to expand...
Click to collapse
but do u know if there's another way to unlock my bootloader for free and not bruce forcing?
Only Paid atm, and only P20(Pro).
There is free method, your devices are on the list and can be unlocked. See my post.
hardcorehenry said:
There is free method, your devices are on the list and can be unlocked. See my post.
Click to expand...
Click to collapse
But is ur method not the same to the another suggested from?
aLcaTr4z said:
Downgrade as low as possible and give it a try.
haexhub/huaweiBootloaderHack: Huawei-unlock-bootloader (github.com)
Edit:
First Download This -> SkyEmie/huawei-honor-unlock-bootloader: A simple tool for managing Huawei/Honor devices to unlock bootloader (github.com)
then grab unlock.py from haexhub and replace it. Then its a 'All-in-One Package' - no need to install anything.
Click to expand...
Click to collapse
Pinguudroid said:
But is ur method not the same to the another suggested from?
Click to expand...
Click to collapse
This is something completely different, I guess you didn’t check links to helpful topics, so I’m attaching them again: first and second.
but I am running linux
kinda rip
Pinguudroid said:
but I am running linux
kinda rip
Click to expand...
Click to collapse
hardcorehenry said:
This is something completely different, I guess you didn’t check links to helpful topics, so I’m attaching them again: first and second.
Click to expand...
Click to collapse
I have just successfully unlocked the bootloader lock by the Taobao service CNY30. It is done by PC remote control. My P10 phone (VTR-AL00) was firstly downgraded from my EMUI 9.1 to EMUI 5. Then the operation was very fast (ROM firmware loading time was long) & I can't see clearly. At last it was successfully unlocked & the guy gave me the unlock code also. If you guys want to do this, you need to ask a friend who know Chinese writing to chat on the net. Then I upgraded the phone using Huawei official upgrade from the phone to EMUI 9.0. Then I flashed the openkirin ROMs successfully. I've tried all four ROMs (RR, OMNI, AOSP, AEX). All of them have some bugs. One important one is the phone can't be charged when powered off. It will go to bootloader mode when plugged with the charging cable. You need to charge when the phone is on.
Install testpoint drivers ( https://files.dc-unlocker.com/share.html?v=share/18B15B9D02C945A79B1967234CECB423 - these worked for my p10 lite), enter download mode via testpoints then use PotatoNV - https://github.com/mashed-potatoes/PotatoNV , i just did this two days ago then installed twrp and rooted with magisk, fairly simple and insanely useful, only drawback is you need to open up your phone back cover to do it. Works without downgrading on Emui 8
THANKS GUYS FOR ALL YOUR HELP AND SUPPORT <3
I've succesfully opened my phone with dc unlocker
You may want to try the testpoint method. Worked like charm for me. Check potatonv git and YouTube..
Once we find the code, bootlocker unlocking factory reset it?

Categories

Resources