Hey Muerto, question. Is this program capable of reading information SUCH as serial off a MacBook with T2 chip without the need to desolder the SOCROM chip and reading it? Is there a way to read via DFU? Just curious , or do you have a method or if not is there method in development?
Mac EFI Toolkit
Collapse
X
-
Good to know, I've added this functionality to version 2. It is able to change the serial in the SPIROM dump.
In order to bypass an MDM it would be ran with software, however when trying to REMOVE the MDM lock permanently, one would need to change the serial to the device. If you can change the serial number on the device without the need to desolder the chip that retains the information of the board such as EFI lock/FIRMWARE LOCK, Serial number of the board then that would be pretty awesome. But in order to remove the MDM lock on T2 machines one has to desolder the SOCROM chip next to the T2 chip. Reprogram with ASPROGRAMMER, and then change the serial with WinHex. Find the serial, DO NOT change any of the code but the serial so it can still normally boot. That is how its done.Comment
-
No it cannot, it requires a SOCROM dump. Only the T2 has access to the SOCROM, it must come off to be reprogrammed.Hey Muerto, question. Is this program capable of reading information SUCH as serial off a MacBook with T2 chip without the need to desolder the SOCROM chip and reading it? Is there a way to read via DFU? Just curious , or do you have a method or if not is there method in development?Comment
-
I see so I am essentially doing the same thing still. This program is good, working progress. Might be a good idea to find a way to get the program to read serials on M1 devices and see if we can find a way to change serial on M series laptops, a good start would be an M1 for now and see if we can get dumps on that and be able to read the serial. If we can manage to do that, MDM removal would be viable for off set devices that companies get rid of and forget to remove their MDM. Very common in this industry at scale.sigpic
MEOWING IN THE IMPOSSIBLE UNIVERSE!Comment
-
to unlock EFIROM i use this device ! can i use it to read SOCROM T2?
In order to bypass an MDM it would be ran with software, however when trying to REMOVE the MDM lock permanently, one would need to change the serial to the device. If you can change the serial number on the device without the need to desolder the chip that retains the information of the board such as EFI lock/FIRMWARE LOCK, Serial number of the board then that would be pretty awesome. But in order to remove the MDM lock on T2 machines one has to desolder the SOCROM chip next to the T2 chip. Reprogram with ASPROGRAMMER, and then change the serial with WinHex. Find the serial, DO NOT change any of the code but the serial so it can still normally boot. That is how its done.Attached Filesif you find these attachements useful please consider making a small donation to the site
Comment
-
The SOCROM is a rather simple structure. We have the header, followed by two endoded sections (possibly DER ASN.1 objects?), then the System Config store (SCfg) and then NVRAM (May be some other small blips of data around the place).
I see so I am essentially doing the same thing still. This program is good, working progress. Might be a good idea to find a way to get the program to read serials on M1 devices and see if we can find a way to change serial on M series laptops, a good start would be an M1 for now and see if we can get dumps on that and be able to read the serial. If we can manage to do that, MDM removal would be viable for off set devices that companies get rid of and forget to remove their MDM. Very common in this industry at scale.
On Apple Silicone devices, the Scfg in the SOCROM has been either completely removed, or moved into an encoded section. There's not much I can do here at the moment, unfortunately. However, I continue to pull apart and find what I can.Comment
-
Thank you, I appreciate the kind words.
For SOCROM dumps from the SPIROM, the IC is 1.8v 8-USON (or USON8) 4x3mm.
1. Does EZP support 1.8v? If not you need a 1.8v adapter.
2. USON8 4x3 adapter here on AliExpress: https://www.aliexpress.com/item/1005007137888078.html (Choose Color: USON8-4X3-XG)
More information I wrote here:
https://logi.wiki/index.php/T2_Diagn...OM_ProgrammingComment
-
Version 2.0.0 released:
https://github.com/MuertoGB/MacEfiTo...leases/tag/200
Any issues, please get in touch.Comment
-
I bought the adapter you recommended, but I have a problem and I hope you can help me solve it.
Thank you, I appreciate the kind words.
For SOCROM dumps from the SPIROM, the IC is 1.8v 8-USON (or USON8) 4x3mm.
1. Does EZP support 1.8v? If not you need a 1.8v adapter.
2. USON8 4x3 adapter here on AliExpress: https://www.aliexpress.com/item/1005007137888078.html (Choose Color: USON8-4X3-XG)
More information I wrote here:
https://logi.wiki/index.php/T2_Diagn...OM_ProgrammingAttached Filesif you find these attachements useful please consider making a small donation to the site
Comment
-
Comment
-
[QUOTE=MuertoGB;n3505145]
please guide me to unlock icloud from t2 rom chip. i am stuck at this step. model mac mini 2018 A1993 I have the bin file of the chip
I would be grateful for your helpAttached Filesif you find these attachements useful please consider making a small donation to the site
Comment
-
Comment
-
Version 2.0.1 released:
https://github.com/MuertoGB/MacEfiTo...leases/tag/201
The manual has been rewritten and added to the project:
https://github.com/MuertoGB/MacEfiTo...ication-manualComment
-
Comment
Related Topics
Collapse
-
Is there a way to change the CPU multiplier through editing the laptop's BIOS. I have a Latitude 7300 using Intel core I7-8665U CPU which has default multiplier settings between x4.0-x48.0. The problem with the device is that as soon as Windows boots up, the processor temperature is always high (usually in the range of 97-100 degrees Celsius), the multiplier is in the range of x46.0 - x48.0 even though no applications enabled. On a desktop we can change many things related to core voltage, multiplier or base frequency. but on laptop models using U suffix processors this is not available. I would...
-
Channel: BIOS Requests ONLY!
07-22-2024, 07:57 PM -
-
by sezsizadaHello
I need your advice and help on a topic.
Since we did not have the existing chip on the HP motherboard with a faulty VGA chip, we installed a different chip. How can we enable this on the device?
old vga chip GN20-P1-A1
new vga chip GN20-P0-A1
I add original bios water
thank you in advance...07-21-2025, 10:24 AM -
by SMDFleaCopying DMI information from an old bios to a new one is difficult for some members, often they have no experience with a hex editor,or some that have tried find it too hard.There is an option to make things easier for those members so that they don`t need to post their own bios backup for the DMI copying.
Experienced bios modding members can help by posting in other threads the DMI offsets,macro script generated by the software and a download link to the software at softpedia mentioned in this guide,or post your macros in the comments here with a link to the bios request thread ....-
Channel: BIOS Requests ONLY!
-
-
by Aditya11tttPost Hp | Dell | Asus | Lenovo
on board Ram Bios we try to disable via bios edit.-
Channel: BIOS Requests ONLY!
-
-
by Rustam14Zenbook 13 UX325 Intel Core i5-1135G7 UX325/425EA REV 2.1
Hello! I can’t edit the bios on the asus, I tried to manually glue it from ASUS support and through Fit.
turns on without iso tries to initialize and turns off...-
Channel: BIOS Requests ONLY!
-
- Loading...
- No more items.
Comment