Originally posted by rediii
View Post
Announcement
Collapse
No announcement yet.
Lenovo Thinkpad Ec Pwd Bypass
Collapse
X
-
Originally posted by rediii View Post
this is no proof for me, sry. i doubt it. i once went to the trouble of unlocking a locked t15 g2 by replacing the mec1503.
Comment
-
Originally posted by anhbanxoi View Post
Base on datasheet there is 2KB ROM inside which is used to store password and other informations like serial number, model, .... You can use lenovo tool to dump this rom content but cannot reach the part that store password.
Comment
-
I have found on one Russian Website that they are able to read the chip, but only if desoldered if i understood that correctly
https://mslw.com/bb/showthread.php?t...c1503#pid97749
Comment
-
they are also able to read NPCX797 and NPCX997 chip:
https://mslw.com/bb/showthread.php?t...cx797#pid94250
Comment
-
Share experience
1)
very Risk method lpc on espi board
killed 2 laptop cpu short
nm-d362 io mec1503
nm-981 io npcx997
I would have made a little money, now I would have paid over $500 for the board on aliexpress .
2)
regarding changing the chip, you must be a professional because the chip is glued from the inside with a black substance that can spoil the welding place and also the source of purchasing the chip.
Comment
-
Originally posted by Maxpower3 View Post
1 wire to ground on one of the points following 1 or 128/127/126 of your choice
at startup as indicated in previous posts
EC : NPCE68AP
L14/L15 gen1 GL40-GL5A0 NM-C631
of course, check that the diagram matches
Who has now used this technique and is satisfied with it here ??
just to give some feedback
Comment
-
Originally posted by jagadish View Post
DEAR Andreasbest I found "ESPI' in NM-D422 it work fine and it is possible , 100% work 😊
If you found only eSPI it won't workLast edited by Andreasbest; 10-02-2024, 11:12 PM.
Comment
-
Originally posted by jagadish View Post
DEAR Andreasbest I found "ESPI' in NM-D422 it work fine and it is possible , 100% work 😊
Comment
-
Originally posted by rediii View Post
shorting espi doesn't work, andreasbest is right... mec1503 and mec1723 will never be supported i guess (jtag interface). the jtag interface is software locked.
Comment
-
Originally posted by Andreasbest View Post
One day we will manage to remove pass from MEC1503 too, for example right now we know there is 2kb rom on it that writes all data (serial, model, bios pw) everytime the laptop posts. One day someone will manage find a workaround on it too.
Comment
Comment