State of Android Security with Unlocked Bootloader - Android Q&A, Help & Troubleshooting

Let's assume we have an Android device with:
Unlocked bootloader
Full Device Encryption
Password lockscreen
Of course, if it's rooted and with custom recovery, you can't lock the bootloader or you'll brick the device; so will Android security measures (FDE and password lock) still be able to prevent data exfiltration from physical possession of the device?

CipherSec said:
Of course, if it's rooted and with custom recovery, you can't lock the bootloader or you'll brick the device
Click to expand...
Click to collapse
Say what?

Wakamatsu said:
Say what?
Click to expand...
Click to collapse
I wish you can tell me I'm wrong. If this is wrong, it'll solve all of my concerns. I've read this exact info while rooting my Nexus.

Related

Is it possible to remove Sprint logo during turning on?

Hi,
Wondering if it possible to remove the yellow ad of Sprint during turning the phone on.
Thnaks!
shabydog said:
Hi,
Wondering if it possible to remove the yellow ad of Sprint during turning the phone on.
Thnaks!
Click to expand...
Click to collapse
Look here:
http://forum.xda-developers.com/showthread.php?t=2881117
Sent from my Stump'd & Bump'd Sprint LG G3 using Tapatalk
Evolution_Freak said:
Look here
Click to expand...
Click to collapse
Do i have to be Rooted?
Thanks!
shabydog said:
Do i have to be Rooted?
Thanks!
Click to expand...
Click to collapse
Yes, in order to edit system files.
Thanks for the great help!!
p.s: so nice to root the device by an app such as Stump!
shabydog said:
Thanks for the great help!!
p.s: so nice to root the device by an app such as Stump!
Click to expand...
Click to collapse
Sure is nice when there is a flaw in stock code that allows you to inject root (privilege escalation).
Sorry its a pet peve of mine, I'd rather an unlocked bootloader and secure system so I know that if I'm on stock nothing gets root until I'm ready for root by unlocking the bootloader.
/soapbox lol
_Dennis_ said:
Sorry its a pet peve of mine, I'd rather an unlocked bootloader and secure system so I know that if I'm on stock nothing gets root until I'm ready for root by unlocking the bootloader.
/soapbox lol
Click to expand...
Click to collapse
But BL was already been unlocked?
shabydog said:
But BL was already been unlocked?
Click to expand...
Click to collapse
BL was bypassed, not unlocked. Nexus devices, some Sony devices, and some HTC devices can have the BL unlocked (commands in fastboot, no root required to do) but BUMP just tricks the bootloader then requires boot imgs to be signed with the DEVs keys (from my understanding).
This means it is not a true unlock but will act as a unlock if the imgs are signed by the devs (I'm not privy to the actual method so I could be off a bit)
With a true unlock you take a step, outside of the normal system, usually wiping data in the process, to enable an unsigned recovery that allows you to flash a new system. This means if I steal your device I can't root it and install a few apps then give it back with you not knowing, or steal your CC info stored in a db file using root privileges.
Sammy and LG root/unlocks are backwards. I can take your device, install stump, delete stump, install a root/hidden tracker, and follow where you go without your knowledge, all in about 15 mins.

Does CynogenMod unlock the bootloader?

I'm reading on their wiki and it says if your bootloader is locked when installing CynogenMod, it will unlock it for you.
On other websites/wiki's, I'm reading that in order to install CynogenMod, you need your bootlocker unlocked first.
So which one is it?
The point of a locked bootloader is for the manufacturers to maintain system integrity by disallowing modifications to the device's partitions. There are exceptions to the rule.
OLderDan said:
The point of a locked bootloader is for the manufacturers to maintain system integrity by disallowing modifications to the device's partitions. There are exceptions to the rule.
Click to expand...
Click to collapse
Sorry, what? This doesn't answer my question.
Bootloader is like the mom of your device granting "permission" to roms(cyanogenmod) to be installed.
It fist need be unlocked
So practically yes it unlocks your bootloader (which you can lock again afterwards, why , how google )
code777 said:
Bootloader is like the mom of your device granting "permission" to roms(cyanogenmod) to be installed.
It fist need be unlocked
So practically yes it unlocks your bootloader (which you can lock again afterwards, why , how google )
Click to expand...
Click to collapse
Okay, thank you.

Flash factory images over a locked bootloader? HTC and Google both say it's possible.

So, long story short, I recently bought a Nexus 9 from ebay which arrived with factory reset protection.
I have spoken to both Google and HTC about the situation and both were of no real help except for saying a few things outright between them to give me good enough reason to believe one of two things.
That 1 - it is possible to flash factory images over a device with a locked bootloader
or 2 - it is possible to unlock the bootloader without having access to developer settings
Anyone have any experience with either of these possibilities?
https://developers.google.com/android/ota
Full OTA Images can be flashed onto devices with locked boot loaders.
You need to boot into recovery and select sideload update.
Yeah, I know how to do that, but that only goes for updates, doesn't it? I tried to sideload a previous build onto the tablet but it failed the procedure, so it doesn't really solve the issue and if I flash a more recent update I still get FRP :/ If I wanted to revert back to the 7.0, or even marshmallow, would that be possible? Or does that require an unlocked bootloader?
enriquejones666 said:
https://developers.google.com/android/ota
Full OTA Images can be flashed onto devices with locked boot loaders.
You need to boot into recovery and select sideload update.
Click to expand...
Click to collapse
Yeah, I know how to do that, but that only goes for updates, doesn't it? I tried to sideload a previous build onto the tablet but it failed the procedure, so it doesn't really solve the issue and if I flash a more recent update I still get FRP :/ If I wanted to revert back to the 7.0, or even marshmallow, would that be possible? Or does that require an unlocked bootloader?
BigDomTheFirst said:
Yeah, I know how to do that, but that only goes for updates, doesn't it? I tried to sideload a previous build onto the tablet but it failed the procedure, so it doesn't really solve the issue and if I flash a more recent update I still get FRP :/ If I wanted to revert back to the 7.0, or even marshmallow, would that be possible? Or does that require an unlocked bootloader?
Click to expand...
Click to collapse
Those are full ota images, same as factory image. Meaning full package.
BigDomTheFirst said:
Yeah, I know how to do that, but that only goes for updates, doesn't it? I tried to sideload a previous build onto the tablet but it failed the procedure, so it doesn't really solve the issue and if I flash a more recent update I still get FRP :/ If I wanted to revert back to the 7.0, or even marshmallow, would that be possible? Or does that require an unlocked bootloader?
Click to expand...
Click to collapse
Ah yes, now I see your predicament. Unfortunately, there is no "there" there. You do need an unlocked bootloader to wipe the system clean with a factory image, and as you noted, the Full OTA Image will recover you from a system that won't boot, but it won't get rid of FRP.
enriquejones666 said:
Ah yes, now I see your predicament. Unfortunately, there is no "there" there. You do need an unlocked bootloader to wipe the system clean with a factory image, and as you noted, the Full OTA Image will recover you from a system that won't boot, but it won't get rid of FRP.
Click to expand...
Click to collapse
Exactly Hence my questions as to how do the manufacturers wipe everything and flash the new image without unlocking the bootloader? Or will it always be a trade secret?...... Hmmmm
BigDomTheFirst said:
Exactly Hence my questions as to how do the manufacturers wipe everything and flash the new image without unlocking the bootloader? Or will it always be a trade secret?...... Hmmmm
Click to expand...
Click to collapse
did we ever fix this? my bootloader is locked and no os installed. Was trying to return to factory and went thru all the flashing steps successfully then at the end locked the bootloader. Now tablet says "for development purposes only not for production use" and boots back to fastboot. It will not reboot at all
Uncleheff said:
did we ever fix this? my bootloader is locked and no os installed. Was trying to return to factory and went thru all the flashing steps successfully then at the end locked the bootloader. Now tablet says "for development purposes only not for production use" and boots back to fastboot. It will not reboot at all
Click to expand...
Click to collapse
Never found out how they do this.... are you able to boot in to recovery? if you can do that you may be able to flash a recovery OTA through 'apply update from ADB'. Worth a shot
Uncleheff said:
did we ever fix this? my bootloader is locked and no os installed. Was trying to return to factory and went thru all the flashing steps successfully then at the end locked the bootloader. Now tablet says "for development purposes only not for production use" and boots back to fastboot. It will not reboot at all
Click to expand...
Click to collapse
If up dont mind my asking how did it get that way by just locking the bootloader? I was just about to flash stock and lock on my volantis, then read this...?
Bryanx86 said:
If up dont mind my asking how did it get that way by just locking the bootloader? I was just about to flash stock and lock on my volantis, then read this...?
Click to expand...
Click to collapse
definitely don't lock your bootloader. That is a horrible move and serves no purpose
madbat99 said:
definitely don't lock your bootloader. That is a horrible move and serves no purpose
Click to expand...
Click to collapse
I actually reflashed last factory stock image and relocked without issue. It is a horrible move, I agree...I already miss root, but it suits the purpose. Thanks for your reply.
Bryanx86 said:
I actually reflashed last factory stock image and relocked without issue. It is a horrible move, I agree...I already miss root, but it suits the purpose. Thanks for your reply.
Click to expand...
Click to collapse
it's only a bad move if you make a mistake and can't repair it because your bootloader is now locked. But if it goes well then you're all set.

Bootloader Unlocking Risks

I was looking into unlocking the bootloader of my moto g 2nd edition (xt1064), and I wanted to know if there are any serious risks or warnings I should be aware of.
Risks like:
- damage to the sim card
- disabled messaging or calling
Unlocking the bootloader itself won't do any damage. It's what you do AFTER you unlock the bootloader, like installing custom ROMs that can potentially be dangerous. (Note I said POTENTIALLY)
Jake1702_ said:
Unlocking the bootloader itself won't do any damage. It's what you do AFTER you unlock the bootloader, like installing custom ROMs that can potentially be dangerous. (Note I said POTENTIALLY)
Click to expand...
Click to collapse
So I can still make calls and text with an unlocked bootloader, but it's the custom ROMs I install that may do that
PotatoDew said:
So I can still make calls and text with an unlocked bootloader, but it's the custom ROMs I install that may do that
Click to expand...
Click to collapse
Anything you can do without it unlocked you can do it with it unlocked. And I'm fairly certain all custom ROMS for your device will have the ability to text and call considering it's a phone. If that's not the case the developer of whatever ROM doesn't have that feature is just a moron.
Jake1702_ said:
Anything you can do without it unlocked you can do it with it unlocked. And I'm fairly certain all custom ROMS for your device will have the ability to text and call considering it's a phone. If that's not the case the developer of whatever ROM doesn't have that feature is just a moron.
Click to expand...
Click to collapse
Are you sure? The motorola bootloader unlocking website said that I could lose some key functions, including calling.
The website (I can't post full links):
motorola-global-portal.custhelp com/app/standalone/bootloader/unlock-your-device-a
PotatoDew said:
Are you sure? The motorola bootloader unlocking website said that I could lose some key functions, including calling.
The website (I can't post full links):
motorola-global-portal.custhelp com/app/standalone/bootloader/unlock-your-device-a
Click to expand...
Click to collapse
I checked out the website. Honestly, I've never heard of a phone losing these key functions.
According to me, the warning is about what you do after unlocking.
So, I'll say go ahead and unlock your phone.
Augustoandro said:
I checked out the website. Honestly, I've never heard of a phone losing these key functions.
According to me, the warning is about what you do after unlocking.
So, I'll say go ahead and unlock your phone.
Click to expand...
Click to collapse
Alright
Thanks both of you!

Question OEM unlocking 🔓

Hi there, I want to root my pixel , but I can't. (Screenshot) I buy phone with Verizon contract , but now it's contract free. If someone can help me. (I'm from Ukraine,we don't have Verizon)
For Verizon phones, regardless whether contract free or not, it is impossible to unlock the bootloader.
Cheers
tom1807 said:
For Verizon phones, regardless whether contract free or not, it is impossible to unlock the bootloader.
Cheers
Click to expand...
Click to collapse
And how to flash android via PC or root it ? Impossible?
nick.arabadji said:
And how to flash android via PC or root it ? Impossible?
Click to expand...
Click to collapse
Root impossible with locked bootloader.
Flashing? Here you go.
Cheers
tom1807 said:
Root impossible with locked bootloader.
Flashing? Here you go.
Cheers
Click to expand...
Click to collapse
I can't ... I try , but android flash tool need to unlock bootloader...
nick.arabadji said:
Hi there, I want to root my pixel , but I can't. (Screenshot) I buy phone with Verizon contract , but now it's contract free. If someone can help me. (I'm from Ukraine,we don't have Verizon)
Click to expand...
Click to collapse
You're screwed. Verizon will NEVER unlock the bootloader, and you can't either. This means you CANNOT flash factory images. You CANNOT root the device. You CAN manually flash OTA images through the device recovery with fastboot, however as the device is still supported for the next four years, that ability is nearly pointless.
You should have purchased a Japanese Pixel 6. If I recall correctly, it's the same hardware as the Verizon Pixel 6 but with an unlockable bootloader. Now it's too late for that, so simply enjoy what you have because honestly you're not missing much.
Strephon Alkhalikoi said:
You're screwed. Verizon will NEVER unlock the bootloader, and you can't either. This means you CANNOT flash factory images. You CANNOT root the device. You CAN manually flash OTA images through the device recovery with fastboot, however as the device is still supported for the next four years, that ability is nearly pointless.
You should have purchased a Japanese Pixel 6. If I recall correctly, it's the same hardware as the Verizon Pixel 6 but with an unlockable bootloader. Now it's too late for that, so simply enjoy what you have because honestly you're not missing much.
Click to expand...
Click to collapse
Thanks for reply ! I just need to reflash for delete some bugs ..
nick.arabadji said:
Thanks for reply ! I just need to reflash for delete some bugs ..
Click to expand...
Click to collapse
Perform a factory reset instead. Since you cannot flash things that's the way you eliminate bugs on your device.

Categories

Resources