Jonathan Herrewijnen
|
901f9b2141
|
Add gzf with ufs read/write
|
2024-11-25 13:58:05 +01:00 |
|
Jonathan Herrewijnen
|
05ae123c50
|
cleanup repository
|
2024-11-21 21:39:30 +01:00 |
|
Jonathan Herrewijnen
|
768ce5cf26
|
docs update on mobicore, xen and kinibi
|
2024-11-14 19:02:42 +01:00 |
|
Jonathan Herrewijnen
|
009be66808
|
adds ghidra mcl loader for ta.bin in aarchv7 32 le
|
2024-11-14 14:19:10 +01:00 |
|
Jonathan Herrewijnen
|
ef4b266b62
|
boots mib3 after BL33. keeps debugger?
|
2024-11-12 20:58:34 +01:00 |
|
Jonathan Herrewijnen
|
5bc481f321
|
Merge remote-tracking branch 'origin/HEAD'
|
2024-11-12 17:46:10 +01:00 |
|
Jonathan Herrewijnen
|
7cb00e4c98
|
update docs regarding xen
|
2024-11-12 17:44:35 +01:00 |
|
Jonathan Herrewijnen
|
7dc12e054f
|
Merge remote-tracking branch 'origin/main'
|
2024-11-12 15:50:08 +01:00 |
|
Jonathan Herrewijnen
|
4b937366bd
|
Merge remote-tracking branch 'origin/HEAD'
|
2024-11-12 15:49:23 +01:00 |
|
Jonathan Herrewijnen
|
e0269ae3f1
|
restore proper boot chain for samsung s7
|
2024-11-12 15:48:13 +01:00 |
|
Jonathan Herrewijnen
|
f905c6d2d3
|
documentation update
|
2024-11-07 19:08:53 +01:00 |
|
Jonathan Herrewijnen
|
091efe2f80
|
mib3 boots with debugger until after BL2. BL33 not properly booting
|
2024-11-05 18:30:55 +01:00 |
|
Jonathan Herrewijnen
|
1e040cbea9
|
modifies pointers to also debug boot MIB3
|
2024-11-05 17:30:09 +01:00 |
|
Jonathan Herrewijnen
|
44ebe96d86
|
adds ghzfile
|
2024-10-24 19:18:42 +02:00 |
|
Jonathan Herrewijnen
|
3b89bec190
|
Modify usb_recovery boot to boot normally or in another way
|
2024-10-24 18:28:39 +02:00 |
|
Jonathan Herrewijnen
|
d187b06980
|
adds print screen binary. Not working for now
|
2024-10-23 19:24:09 +02:00 |
|
Jonathan Herrewijnen
|
9b12fe8c33
|
adding ghidra zip file
|
2024-10-10 20:36:18 +02:00 |
|
Jonathan Herrewijnen
|
26bb5a5718
|
Trying to patch screen
|
2024-10-10 19:58:17 +02:00 |
|
Jonathan Herrewijnen
|
697a2a6f4f
|
adds ghidra zip file from 26 sept (xrdp is not working.. )
|
2024-09-26 19:35:38 +02:00 |
|
Jonathan Herrewijnen
|
0c84503e47
|
minor docs update
|
2024-09-26 19:01:12 +02:00 |
|
Jonathan Herrewijnen
|
6711ceea27
|
updates docs to explain final sboot boot
|
2024-09-25 18:44:44 +02:00 |
|
Jonathan Herrewijnen
|
0174b2a4f7
|
Boots patched BL33
|
2024-09-24 18:50:11 +02:00 |
|
Jonathan Herrewijnen
|
1dc24198b6
|
Returns to debugger and allows booting into recovery. Patching BL33 does not work. Should try patching the verification
|
2024-09-17 20:06:49 +02:00 |
|
Jonathan Herrewijnen
|
f431e1981f
|
Adding DT_Sphinx confluence push. Fixing some errors in the documentation.
|
2024-09-17 18:28:35 +02:00 |
|
Jonathan Herrewijnen
|
fe58a3b869
|
reads B33
|
2024-09-16 17:14:14 +02:00 |
|
Jonathan Herrewijnen
|
e56a90f457
|
Merge remote-tracking branch 'origin/HEAD'
|
2024-09-16 10:53:46 +02:00 |
|
Jonathan Herrewijnen
|
201e8485e8
|
Minor docs update and exploit.py update
|
2024-09-16 10:52:44 +02:00 |
|
Jonathan Herrewijnen
|
76d1b8361c
|
Adding decompiled BL33 for now
|
2024-09-16 10:46:37 +02:00 |
|
Jonathan Herrewijnen
|
5bf8cf0a7f
|
Minor update to memory map and some documentation updates
|
2024-09-14 16:41:21 +02:00 |
|
Jonathan Herrewijnen
|
d9d9ae332a
|
Cleaning up code and rewriting documentation. Now mostly finalized.
Boots BL2 and returns to debugger. BL2 is not yet patcheable.
|
2024-09-10 18:59:32 +02:00 |
|
Jonathan Herrewijnen
|
ac755b81f1
|
Updating docs
|
2024-09-09 18:19:34 +02:00 |
|
Jonathan Herrewijnen
|
a75bf965cc
|
Boots BL2 and returns to debugger. BL2 not yet patcheable.
|
2024-09-09 17:23:10 +02:00 |
|
Jonathan Herrewijnen
|
b0c2b414ca
|
Updated ghidra project file
|
2024-09-09 10:12:37 +02:00 |
|
Jonathan Herrewijnen
|
c8dd132ef9
|
Some spaces/devices
|
2024-09-05 20:55:39 +02:00 |
|
Jonathan Herrewijnen
|
c03af09de2
|
Adding ghidra BL31 file for later inspection
|
2024-09-05 20:18:05 +02:00 |
|
Jonathan Herrewijnen
|
20ad0cdb45
|
Found area where 02035600 becomes unaccessible. Trying to patch it.
|
2024-09-04 18:16:37 +02:00 |
|
Jonathan Herrewijnen
|
66621d36d7
|
Add descriptions to commit and cleanup
|
2024-09-04 14:16:26 +02:00 |
|
Jonathan Herrewijnen
|
906629b80f
|
Small docs update
|
2024-09-03 19:31:41 +02:00 |
|
Jonathan Herrewijnen
|
e59478187d
|
Loads and executes BL31, then returns debugger, then continues bootflow and enters recovery
|
2024-08-29 21:06:15 +02:00 |
|
Jonathan Herrewijnen
|
a12453cbd3
|
TTBR0_EL3 visible after BL31
|
2024-08-28 18:45:05 +02:00 |
|
Jonathan Herrewijnen
|
91c7d60638
|
Adding third (variable) debugger
|
2024-08-27 20:18:39 +02:00 |
|
Jonathan Herrewijnen
|
a9f426292c
|
Reversing draw order of boot diagram
|
2024-08-27 20:16:45 +02:00 |
|
Jonathan Herrewijnen
|
5044941619
|
Better boot memory overview. Boots into recovery.
|
2024-08-26 17:45:29 +02:00 |
|
Jonathan Herrewijnen
|
fb2c105bf3
|
Adding memdump with potential keys (NIST_P25) from before any boot other than bootrom
|
2024-08-26 13:09:19 +02:00 |
|
Jonathan Herrewijnen
|
df71d537ec
|
small blocks in blocks memory map update
|
2024-08-25 20:00:07 +02:00 |
|
Jonathan Herrewijnen
|
3039e1dbc7
|
Debugger overwritten by BL2. Working on better memory map
|
2024-08-23 18:05:06 +02:00 |
|
Jonathan Herrewijnen
|
98033c5d61
|
Update .gitlab-ci.yml file
|
2024-08-23 08:27:08 +00:00 |
|
Jonathan Herrewijnen
|
ee605f567e
|
Adjust for non-sudo
|
2024-08-22 19:56:46 +02:00 |
|
Jonathan Herrewijnen
|
d45b9eeb1b
|
Add xvfb to build pipeline
|
2024-08-22 19:55:56 +02:00 |
|
Jonathan Herrewijnen
|
4ab063cc71
|
Unable to get firmware loader to return to debugger (yet)
|
2024-08-22 19:50:46 +02:00 |
|