M1 MacBook EFI/FMM unlock

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Manlikeissak
    Member
    • Jun 2024
    • 10
    • France

    #1

    M1 MacBook EFI/FMM unlock

    Hello everyone hope you all are doing well, I'm posting here since no was interested in my post on "MacBook unlocked!" Topic, so In short I have found a way to test every possible key combination to try and find the combination to open the terminal on fmm/EFI locked M1/M2 machines, the person who found this still refuses to give info, but if hasn't lied about it being a key combination there's a chance we might find it, so to try Evey key combination I've got a digispark attiny 85 which is a small μController, I've written as script to emulate a keyboard and go thru every possible key combination ie (1mod+4keys,2mod+3keys....,4mod+2keys) but there are some issues,
    1-there are some keys which end up changing the screen ie proceeding to activation, opening startup disk,restart laptops....etc, and currently Don't know all of them so it's hard to test all keys uninterrupted.
    2-i am assuming that this is a key combination to be pressed and not held so I have a 5ms delay which after some testing seems to work (tried shift/cmd/option/Ctrl + : ) to open finder, but there is a good chance it's a long press key combo, if it's a short press key combo and I figure out all the problematic key combos than I can go thru every possible combo in around 24-30 hours, but if it's a long press combo that becomes 24-30 years,
    I'm here to ask for help to figure it out, if you have any info ie maybe one of the keys/exact screen where it's possible, I'd love the help, I have below pictures of the setup, if anyone is interested to help feel free to reply, and I'll keep y'all updated if I find anything
  • kevingill
    Senior Member
    • Jun 2013
    • 152
    • England

    #2
    Have you made any progress with this project?

    Comment

    • Manlikeissak
      Member
      • Jun 2024
      • 10
      • France

      #3
      Originally posted by kevingill
      Have you made any progress with this project?
      i made some progress but i don't think it's relevant, i am just playing around with safari in diag menu hoping to find something, but still nothing useful, my biggest issue now is not having concrete verifiable info, cause i can go thru all the key combinations and still not find it, because i might need to hold the keys and not just press them for 5ms, or maybe use the power key, this is currently my biggest issue, lack of reliable info

      Comment

      • Manlikeissak
        Member
        • Jun 2024
        • 10
        • France

        #4
        Originally posted by kevingill
        Have you made any progress with this project?
        About M1 MacBook EFI/FMM unlock , hello bro, i see you were in the old thread for m1 unlock, do you have any helpful info, for example i see someone got into the terminal after boot somehow, do you have anything, like literally any new bit of info that might be helpful, cheers​

        Comment

        • Vinky
          root@alpine
          • Jul 2024
          • 1
          • Russia

          #5
          Originally posted by Manlikeissak
          Hello everyone hope you all are doing well, I'm posting here since no was interested in my post on "MacBook unlocked!" Topic, so In short I have found a way to test every possible key combination to try and find the combination to open the terminal on fmm/EFI locked M1/M2 machines, the person who found this still refuses to give info, but if hasn't lied about it being a key combination there's a chance we might find it, so to try Evey key combination I've got a digispark attiny 85 which is a small μController, I've written as script to emulate a keyboard and go thru every possible key combination ie (1mod+4keys,2mod+3keys....,4mod+2keys) but there are some issues,
          1-there are some keys which end up changing the screen ie proceeding to activation, opening startup disk,restart laptops....etc, and currently Don't know all of them so it's hard to test all keys uninterrupted.
          2-i am assuming that this is a key combination to be pressed and not held so I have a 5ms delay which after some testing seems to work (tried shift/cmd/option/Ctrl + : ) to open finder, but there is a good chance it's a long press key combo, if it's a short press key combo and I figure out all the problematic key combos than I can go thru every possible combo in around 24-30 hours, but if it's a long press combo that becomes 24-30 years,
          I'm here to ask for help to figure it out, if you have any info ie maybe one of the keys/exact screen where it's possible, I'd love the help, I have below pictures of the setup, if anyone is interested to help feel free to reply, and I'll keep y'all updated if I find anything
          This is fake due macbook pro m1 touchbar looks different it's an old one mac book pro on intel with T2 chip
          Click image for larger version

Name:	image.png
Views:	573
Size:	473.7 KB
ID:	3328922Click image for larger version

Name:	image.png
Views:	424
Size:	15.1 KB
ID:	3328923

          Comment

          • Shadow_36
            New Member
            • Jun 2025
            • 2
            • Canada

            #6
            Hey everyone,
            I’m not sure if this is the right section, but I’m honestly desperate at this point. Thank you in advance for any advice or tips that could help me out.

            📝 Summary of Issue – MacBook Pro M1 (2021)


            Device: MacBook Pro M1, 14-inch, 2021
            macOS Version: macOS 14 Sonoma
            Ownership: I am the rightful owner — I know the Apple ID and password associated with the device.
            🔐 Issue Description


            My MacBook became deactivated after I tried to reset the admin password due to a strange bug.
            Before this, the system refused to update, claiming my password was incorrect — even though it was the correct one, and I’m the only admin.

            Now, when I boot the machine, it goes directly into macOS Recovery, but:
            • No user accounts are displayed on the "Select a user to recover the system" screen.
            • This blocks me from continuing with activation — even though I know my Apple ID and password.
            • The system never prompts for iCloud Activation Lock, which would allow me to unlock the Mac.

            🕵️‍♂️ What I've Tried:
            • I discovered a hidden file browser window by pressing Shift + Control + Option + Command + .
            • After entering my Mac user password, I was able to see my internal data, including my Desktop and user folder — so the disk is mounted and decrypted.
            • I attempted to recover data via this interface, but it is sandboxed and does not allow copying to external drives or using Terminal.

            🧠 What I Believe Is Happening:
            • The system is stuck in a corrupted or incomplete setup state.
            • Activation Lock is enabled, but the recovery environment is broken and cannot prompt for iCloud login properly.
            • The user account metadata may be missing or unreadable, triggering a bug where neither login nor setup is possible.
            • I have not erased the disk and wish to preserve my data.

            🙏 What I Need Help With


            I’m looking for any possible way to:
            • Trigger the iCloud Activation Lock prompt so I can unlock the Mac with my Apple ID.
            • Bypass this activation/setup bug, even temporarily.
            • Recover my data — I can see it, but I just can’t access or extract it.
            ​​

            Comment

            Related Topics

            Collapse

            • bouch
              unlock macbook air A1932 2019
              by bouch
              hi

              i whant unlock macbook pro A1932 2019 whit ibridge 9,3 ;

              i change efi files find on files mina T2 activator 1,4 and use for activation mina T2 activator 1,3 , but fault ssh?

              i use mina T2 ramdisk activator 1,0 and 3,0 . but whon t work ?

              have you other programme or method compatible whit this macbook ibridge 9,3 for bypass ?

              I need help or information?

              Does anyone have the minat2 activator 1.4 software?

              Or did they use it for bypass macbook air 2019 a1932 with new ibridge 9.3?

              Thank yo...
              03-12-2025, 10:14 AM
            • keats11
              T2 Macbook MDM Unlock by S/N change.
              by keats11
              I was hoping someone could point me to a tutorial on MDM unlock. Basically, I picked up a Macbook (A1989) from someone which did not have OS installed. The guy said it started software update and but did not finish. Long story short, the touchbar on this device has some kind of a short, so after unplugging it, I was able to install the OS on it, when I found out that it is also MDM locked by his company. I tried changing the serial number on the ROM by only changing a couple of digits of the original serial number. Now after installing the ROM back, the Macbook appears dead = DFU mode. When I...
              05-15-2023, 06:46 AM
            • tobeend
              Bypass mdm macbook m2 ventura
              by tobeend
              1. RESET MACOS WITH IPSW

              a. Power off MacBook, press and hold the power button to enter Recovery
              b. Open Disk Utility, remove Macintosh HD
              c. Reboot, connect to the network to Activate Mac.
              d. Plug the C cord in the first port of the MacBook into the other Mac, then power off the MacBook
              d. Hold down the Control (L) + Option (L) + Shift (R) + Power key combination for 10 seconds
              e. Release the other keys, but keep holding the Power key for another 10 seconds
              f. MacBook is returned to DFU, open Apple Configurator 2 on the other Mac, right-click...
              05-26-2023, 07:18 AM
            • SarcasticOP
              General question about MacBook power rails for repair.
              by SarcasticOP
              I am looking at an A2337 and found this for the order of power rails and what they do. Can this be confirmed before I dive into hunting down power rails that do not exist or are not neccisary?
              • PPBUS_G3H (12.6V-12.8V)
                • This is the main power rail that supplies power to the entire system. Check this rail first, as it must be present for other power rails to work.
              • PP3V42_G3H (3.42V)
                • This power rail is derived from PPBUS_G3H and is used to power the SMC (System Management Controller) and other essential circuits. It should be present if PPBUS_G3H is working correctly.
              • PPVRTC_G3H (3.3V)
                • This
              ...
              12-12-2024, 05:50 PM
            • mitchw
              M1 MacBook Air 820-02016 possible to swap ROMs to unlock a locked board?
              by mitchw
              I have a liquid damaged 820-02016 that has a 1-2mm wide hole in the PCB caused by a burned capacitor. The PPBUS_VON is shorted. I think the board is 100% gone, I tried grinding off the burned PCB material with no avail, the board is burned almost through to the other side.

              But, I can get a fully working iCloud locked mainboard for very cheap.

              As far as I have seen, there are only two ROM chips on the board, the TBT ROM and main flash.

              Is it possible to transfer these two ROMs from the bad board to the good locked one and "unlock" the good...
              09-07-2023, 06:25 PM
            • Loading...
            • No more items.
            Working...