Re: Macbook M1 bypass FMM / EFI Unlock
Nice cacth this is what we need. The process is the same like ios. I understand the whole process so we need just make a backup of this, ssh work on mine t2. Can you attach full log (moderator edit the full log) and backup this file/folder:
/private/var/containers/Data/System/3A3932BD-BE32-4652-9B30-78BC2D49E60C/Library/activation_records
/usr/exongrifter/
/usr/bin/exongrifter
Thank you
For macEfi if you need a valid serial and mac, i can provide you. I never test...
Announcement
Collapse
No announcement yet.
User Profile
Collapse
-
Last edited by genhack; 11-13-2022, 05:24 AM.
-
Re: Macbook M1 bypass FMM / EFI Unlock
The only solution is sniff the usb during the whole process for t2 device....
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
Not allowed at all. We can use b64 into zip file i think....Last edited by genhack; 11-09-2022, 11:33 AM.
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
i can't send you a personal id and thanks to the mod for the reply, you can upload some b64 to understand better? i'll very appreciate if you can!
If someone can bypass a t2 and use mina program, every single command could be intercepted via wireshark.
Just enable the snif on usb and after save the pcap file. I'll check. In the mobile activationd shared i dont find any mod. I just checked this morning and this is strange. I don't find the original version of this mobileactivationd from old ibridge firmware...
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
Broh this is so.... I have no idea how you spwn. I can't dm you idk why, so if you can pls do it. If not, you edit some info.p and change the iA_springboard?...
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
No. You need to swap M1 with one clear....
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
I'm working on, i can't find the original mobileactivationd version for understand where they make the patch. But, i have an idea and in the free time i work on python program, i think this can work easy with a macbook just bypassed. So just for proof of t2 can be pwn:
J40aap key latest bridgeos.
IBSS:
IV: 120402A7168E7AAAC1F94C6A5D58F8F1,
key: 5C1E07A0EA5A8F48D09FA568182172CA74880896761CFA6992006558CDD9981D
IBEC:
IV: 6909A0A0D9675B5BAEFB9ECFAA00386C,
...
Leave a comment:
-
-
Re: Macbook M1 bypass FMM / EFI Unlock
I fully agree. Diagnostics do not help the purpose, starting a shell from there wouldn't allow us to do anything....
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
If you have a t2 bypassed make a zip with a password of this folder and upload:
[CODE]/usr/libexec/[/CODE]
I'm working on T2 latest bridgeOS, can be pwn and i think is possible to bypass!
You can't just edit ipsw like iphone/ipad, devices will refuse the flash. I need an m1 locked and see where we can play around.Code:Re: Macbook M1 bypass FMM / EFI Unlock If you have a t2 bypassed make a zip with a password of this folder and upload:
Last edited by genhack; 10-27-2022, 11:36 AM.
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
Hello Mario,
In order:
[CODE]Through DFU I have been able to reverse the firmware of the locked mac I have installed the UniversalMac_11.0.1_20B29_Restore.ipsw even so I have not been able to skip the icloud step.[/CODE]
You can't edit and flash this ipsw, Bootchain will refuse any mod. so this try is usless untill m1 is pwn (*Like t2* with checkm8).
[CODE]I have tried to start with linux but the operating system does not recognize me or it does not show me the memory or...
Leave a comment:
-
Re: Macbook M1 bypass FMM / EFI Unlock
hey @Mario1241 pongoOs can be booted on m1 but is useless. if you can't pwn m1 processor (like t2). On m1 we need to understand if 1TR or recovery, when locked can boot other os, and if yes what we can mount without aes engine. if you have another mac i can send you a ways for boot linux and check what we can do. Just a remember we need a full patch or mobileactivationd and a dump of t2 macbook bypassed with minacriss can be the key.
Leave a comment:
-
Re: T2 Chip Programmer Tool
Thanks i see what you do in the past.
In order:
The t2 can still be bypassed even on the new BridgeOs, without changing via Hw the serial but the simple way is creating an ad hoc ramdisk for bridgeOs 6+. Mina uses pongo to dynamically patch the boot and eventually go to ramdisk, but this option will have no future development, the developers know it will only be used to bypass the ecloud. Now before buying a t2 locked specifically to create a free bundle for everyone, I would need a little effort from those who...Last edited by genhack; 10-17-2022, 02:18 PM.
Leave a comment:
-
Re: T2 Chip Programmer Tool
i can't access at link page of new treahd. why?...
Leave a comment:
-
Re: T2 Chip Programmer Tool
Hello guys, I need a backup of '/usr/libexec/mobileactivationd' from a bypassed device, i need the one after you make only the jailbreak and skip the activation. Thanks.
Ps: not sure yet, but i can make a full bypass of this s**
Leave a comment:
No activity results to display
Show More
Leave a comment: