Commit Graph

126 Commits

Author SHA1 Message Date
Jonathan Herrewijnen
15c848b190 belated commit (needs cleaning) 2024-12-10 18:58:47 +01:00
Jonathan Herrewijnen
1dec7120f1 patching introduced bugs 2024-12-09 10:51:36 +01:00
e98ceea1d6 removed unnecesary code 2024-12-07 21:02:52 +01:00
52a80a6f5e merge conflict 2024-12-07 21:02:04 +01:00
4bfd827fbc added gupje only launch 2024-12-07 21:01:35 +01:00
Jonathan Herrewijnen
ee3bf581e3 Merge branch 'main' of git.eminjenv.nl:nfi-exploitdev/samsung_s7 2024-12-07 20:59:40 +01:00
6492aadd7c seperated exynos device from exploit 2024-12-07 20:59:02 +01:00
Jonathan Herrewijnen
72a50cd648 docs update and boot flow update 2024-12-07 20:58:35 +01:00
Jonathan Herrewijnen
ab0e9e3d57 docs update and boot flow update 2024-12-07 20:57:04 +01:00
Jonathan Herrewijnen
a7a5bdeb7e Can print UART address from functoin 2024-11-25 17:40:39 +01:00
Jonathan Herrewijnen
901f9b2141 Add gzf with ufs read/write 2024-11-25 13:58:05 +01:00
Jonathan Herrewijnen
05ae123c50 cleanup repository 2024-11-21 21:39:30 +01:00
Jonathan Herrewijnen
768ce5cf26 docs update on mobicore, xen and kinibi 2024-11-14 19:02:42 +01:00
Jonathan Herrewijnen
009be66808 adds ghidra mcl loader for ta.bin in aarchv7 32 le 2024-11-14 14:19:10 +01:00
Jonathan Herrewijnen
ef4b266b62 boots mib3 after BL33. keeps debugger? 2024-11-12 20:58:34 +01:00
Jonathan Herrewijnen
5bc481f321 Merge remote-tracking branch 'origin/HEAD' 2024-11-12 17:46:10 +01:00
Jonathan Herrewijnen
7cb00e4c98 update docs regarding xen 2024-11-12 17:44:35 +01:00
Jonathan Herrewijnen
7dc12e054f Merge remote-tracking branch 'origin/main' 2024-11-12 15:50:08 +01:00
Jonathan Herrewijnen
4b937366bd Merge remote-tracking branch 'origin/HEAD' 2024-11-12 15:49:23 +01:00
Jonathan Herrewijnen
e0269ae3f1 restore proper boot chain for samsung s7 2024-11-12 15:48:13 +01:00
Jonathan Herrewijnen
f905c6d2d3 documentation update 2024-11-07 19:08:53 +01:00
Jonathan Herrewijnen
091efe2f80 mib3 boots with debugger until after BL2. BL33 not properly booting 2024-11-05 18:30:55 +01:00
Jonathan Herrewijnen
1e040cbea9 modifies pointers to also debug boot MIB3 2024-11-05 17:30:09 +01:00
Jonathan Herrewijnen
44ebe96d86 adds ghzfile 2024-10-24 19:18:42 +02:00
Jonathan Herrewijnen
3b89bec190 Modify usb_recovery boot to boot normally or in another way 2024-10-24 18:28:39 +02:00
Jonathan Herrewijnen
d187b06980 adds print screen binary. Not working for now 2024-10-23 19:24:09 +02:00
Jonathan Herrewijnen
9b12fe8c33 adding ghidra zip file 2024-10-10 20:36:18 +02:00
Jonathan Herrewijnen
26bb5a5718 Trying to patch screen 2024-10-10 19:58:17 +02:00
Jonathan Herrewijnen
697a2a6f4f adds ghidra zip file from 26 sept (xrdp is not working.. ) 2024-09-26 19:35:38 +02:00
Jonathan Herrewijnen
0c84503e47 minor docs update 2024-09-26 19:01:12 +02:00
Jonathan Herrewijnen
6711ceea27 updates docs to explain final sboot boot 2024-09-25 18:44:44 +02:00
Jonathan Herrewijnen
0174b2a4f7 Boots patched BL33 2024-09-24 18:50:11 +02:00
Jonathan Herrewijnen
1dc24198b6 Returns to debugger and allows booting into recovery. Patching BL33 does not work. Should try patching the verification 2024-09-17 20:06:49 +02:00
Jonathan Herrewijnen
f431e1981f Adding DT_Sphinx confluence push. Fixing some errors in the documentation. 2024-09-17 18:28:35 +02:00
Jonathan Herrewijnen
fe58a3b869 reads B33 2024-09-16 17:14:14 +02:00
Jonathan Herrewijnen
e56a90f457 Merge remote-tracking branch 'origin/HEAD' 2024-09-16 10:53:46 +02:00
Jonathan Herrewijnen
201e8485e8 Minor docs update and exploit.py update 2024-09-16 10:52:44 +02:00
Jonathan Herrewijnen
76d1b8361c Adding decompiled BL33 for now 2024-09-16 10:46:37 +02:00
Jonathan Herrewijnen
5bf8cf0a7f Minor update to memory map and some documentation updates 2024-09-14 16:41:21 +02:00
Jonathan Herrewijnen
d9d9ae332a Cleaning up code and rewriting documentation. Now mostly finalized.
Boots BL2 and returns to debugger. BL2 is not yet patcheable.
2024-09-10 18:59:32 +02:00
Jonathan Herrewijnen
ac755b81f1 Updating docs 2024-09-09 18:19:34 +02:00
Jonathan Herrewijnen
a75bf965cc Boots BL2 and returns to debugger. BL2 not yet patcheable. 2024-09-09 17:23:10 +02:00
Jonathan Herrewijnen
b0c2b414ca Updated ghidra project file 2024-09-09 10:12:37 +02:00
Jonathan Herrewijnen
c8dd132ef9 Some spaces/devices 2024-09-05 20:55:39 +02:00
Jonathan Herrewijnen
c03af09de2 Adding ghidra BL31 file for later inspection 2024-09-05 20:18:05 +02:00
Jonathan Herrewijnen
20ad0cdb45 Found area where 02035600 becomes unaccessible. Trying to patch it. 2024-09-04 18:16:37 +02:00
Jonathan Herrewijnen
66621d36d7 Add descriptions to commit and cleanup 2024-09-04 14:16:26 +02:00
Jonathan Herrewijnen
906629b80f Small docs update 2024-09-03 19:31:41 +02:00
Jonathan Herrewijnen
e59478187d Loads and executes BL31, then returns debugger, then continues bootflow and enters recovery 2024-08-29 21:06:15 +02:00
Jonathan Herrewijnen
a12453cbd3 TTBR0_EL3 visible after BL31 2024-08-28 18:45:05 +02:00