Network Unlock, with Root & BL UL Allowed: No? - Sony Xperia XZ1 Questions & Answers

Basically,
Bootloader Unlocked: No
Bootloader Unlock Allowed: No
Network: Locked
NUC Obtained: Yes
NUC Attempts: 0
I'm simply looking for a Sim Unlock, but that seems nowhere near as simple as I expected it to be!​
It seems that, the only method that will allow me to boot into TWRP is by mounting it on an SD card, as shown (but not disclosed) in this exploit:
Android PIE VerifiedBoot Bypass: sony xperia XZ1 locked bootloader permanently rooted
This thread is to announce a completely new vulnerability I've found within SONY XPERIA XZ1 Compact firmware. It allows verified boot bypass with the latest available android pie fw (2019-09-01 security patch level, sony version 47.A.2.11.228...
forum.xda-developers.com
Is this how it was done? Is this possible with a locked bootloader?
Boot Android from SdCard - linux-sunxi.org
linux-sunxi.org
I can only hope that this isn't the only method?! ...ADB anyone?
....Oh! But:
[XZ1c/XZ1/XZp] temp root exploit via CVE-2019-2215 including magisk setup [Locked BL]
temp root exploit for sony xperia XZ1c/XZ1/XZp with oreo firmware by j4nn https://j4nn.github.io/ Let me present you a temp root exploit for sony xperia XZ1 Compact / XZ1 / XZ Premium phones running android oreo firmware. The exploit uses...
forum.xda-developers.com
....didn't seem to work, for me. What could I even do with it? Reset PUC Counter? Is it worth going down this rabbit hole?

Related

[Q] Unlocking the bootloader with being able to relock it

Hi,
So I'm completely new to rooting Android-phones and I just read many threads about rooting and tried to inform myself as good as I can.
But I still don't know if everything will work so I need some kind of prove...
So that's what I "planned":
1. Downgrade to firmware .55 or .69 so I can root my Z2 with locked bootloader using the Community Rootkit
2. Backup the TA with TA Backup so I can relock the bootloader again and get my warranty back if needed
3. Unlock the bootloader and flash to the latest Lollipop firmware (prerooted)
4 (optional). Getting CyanogenMod instead of the Sony firmware
Some questions:
- Can I restore the TA backup on the latest firmware (unrooted/official/flashed with Sony's Emma flasher) even though I made it on .55 or .69?
- What features wont be usable anymore after unlocking my bootloader and using a rooted Sony firmware besides X-reality and the DRM keys? (Noise cancelling is somewhat important to me)
- Will I be able to use X-reality and all the other (somewhat unnecesarry) features again with relocking the bootloader via my TA backup?
- According to step 3: Do I need to upgrade to the latest official firmware in order to unlock the bootloader via Sony's website? Or can I unlock it with the rooted .55/.69 aswell?
Thanks in advance!

[Q] Root?

Hey guys,
I own a stock Xperia Z3 Tablet LET (SGP621) and I have never upgraded it, still running stock 4.4.4.
I want to root it and only root (to Lolipop). I have read topics but there are so many and written in strange language for me I have no idea where to start.
I read I could just flash prerooted ROM without even touching my drm keys, right? But then I was not sure how could I do it.
Any help would be appreciated.
Thanks!
There is no method to root the tablet without unlocking the bootloader. The root exploit which most of the guys mentioning in these strangely written topics (giefroot, easy root tool, geohot, blablabla...) is useless now since Sony surely patched it. So to root, you have to unlock the bootloader. But wait, you would loose the DRM keys.
So, it means that you need to make a backup.
But, without root you can't backup.
But, how should you root if you don't have an unlocked bootloader??? And it goes on and on and on and on....
The "trick" is to flash a firmware from another device (not z3 tablet compact) that can be rooted via the exploit. But nobody wanta to use the "other" firmware to gain root. This "other" firmware is only used to gain root temporary so you can backup the drm keys.
Then you likely have to flash back the stock firmware (and root will be lost again).
Now that you backed up the drm keys, you are ready to unlock the bootloader and let the drm keys disappear for a while.
And then you still have to do some complex steps to achieve root on your stock firmware, then restore drm keys (bootloader locks up itself again...), blablabla
TL;DR forget rooting this device unless you are ready to do all these above steps. If you don't understand the steps and are new to rooting sony devices, I recommend you not to root and enjoy the stock firmware. Next thing is that lollipop will come and you could easily update without problems (via OTA). Until then, wait for some magicians/hackers/crackers find a new exploit which can root 2015 sony devices without unlocking the bootloader.
If you want to know if your device (firmware) can be rooted via exploit, try xdualrecovery. It contains the exploit root method. But if you are unsuccessful flashing xdualrecovery, that is because the exploit doesn't work and your firmware is patched.
Sadly, sony devices are nothing like nexus. And including this "afraid of loosing the drm keys", simply unlocking the bootloader might not be a pleasing thing to do.
just to add maybe we don't need to unlock bootloader to root our tablet
we temporarely flash z3 kitkat system to get a rootable core and we flash again z3 tablet compact system before reboot
or so I understood
ChiDi9901 said:
There is no method to root the tablet without unlocking the bootloader (false, there is a method detailed in this thread). The root exploit which most of the guys mentioning in these strangely written topics (giefroot, easy root tool, geohot, blablabla...) is useless now since Sony surely patched it. So to root, you have to unlock the bootloader. But wait, you would loose the DRM keys.
So, it means that you need to make a backup.
But, without root you can't backup.
But, how should you root if you don't have an unlocked bootloader??? And it goes on and on and on and on....
The "trick" is to flash a firmware from another device (not z3 tablet compact) that can be rooted via the exploit. But nobody wanta to use the "other" firmware to gain root. This "other" firmware is only used to gain root temporary so you can backup the drm keys (false, the other firmware is used to gain root and then install a custom recovery, so you can flash a prerooted and updated lollipop firmware based on official Xperia Z3 Tablet Compact firmware).
Click to expand...
Click to collapse
I would advise not to answer questions about root without understanding the process and/or misguiding people asking for help.
The information you give above is wrong. You don't need to unlock your bootloader provided you downgrade to an explotable firmware.
The thread that details how to root your Xperia Z3 Tablet Compact is this one:
http://forum.xda-developers.com/z3-...to-rooted-lollipop-locked-bootloader-t3083980
1. Obtain root by first flashing SGP621_23.0.1.A.0.167_CE.ftf and the system partition of D6603_23.0.A.2.93_Generic_20GLOBAL.ftf. Then use giefroot to root.
2. Prepare prerooted flashable zip of 23.1.A.0.690 NOBA on your internal storage or external SD.
3. Install XZDualRecovery and now you will have TWRP to install 23.1.A.0.690 NOBA on your SD card.
You may ask any doubts in that thread.
BarajaVLC said:
I would advise not to answer questions about root without understanding the process and/or misguiding people asking for help.
The information you give above is wrong. You don't need to unlock your bootloader provided you downgrade to an explotable firmware.
The thread that details how to root your Xperia Z3 Tablet Compact is this one:
http://forum.xda-developers.com/z3-...to-rooted-lollipop-locked-bootloader-t3083980
1. Obtain root by first flashing SGP621_23.0.1.A.0.167_CE.ftf and the system partition of D6603_23.0.A.2.93_Generic_20GLOBAL.ftf. Then use giefroot to root.
2. Prepare prerooted flashable zip of 23.1.A.0.690 NOBA on your internal storage or external SD.
3. Install XZDualRecovery and now you will have TWRP to install 23.1.A.0.690 NOBA on your SD card.
You may ask any doubts in that thread.
Click to expand...
Click to collapse
Well, the OP (junior member) mentioned "strange languages". So he/she might not understand all this complex steps. That's why I "let it be" to keep the things easy. If he/she understands these steps then it's good for him/she. But you're right, I lied. And thanks for the clarification and pointing out my wrong information.
Personally, I had every Xperia unlocked without backing up the DRM keys. I never had any disadvantage. I was, however, a little reluctant with the XT3C. That's because I use it as both my phone and tablet.
Still, did it now. No adverse effects. Root is SO much more important than the Bravia engine or whatever. And the camera isn't very good anyway so I don't miss the 'better' quality. It's bad either way

Bootloader can't be unlocked. Can I still root my Z5 Compact?

Hello I have a Z5 Compact and tried to unlock the bootloader but it failed. System info said Bootloader unlock allowed: No. Can I still root my phone?
I guess it should work when you downgrade to the oldest available Android release for Z5 compact (5.x?). As far as I remember starting with Android 6.0 they introduced the dm-verity flag - therefore the device wont boot if /system is modified.
[email protected] said:
I guess it should work when you downgrade to the oldest available Android release for Z5 compact (5.x?). As far as I remember starting with Android 6.0 they introduced the dm-verity flag - therefore the device wont boot if /system is modified.
Click to expand...
Click to collapse
That's the first thing I did. Unfortunately it still says bootloader unlock is not allowed.
Ryhorse said:
That's the first thing I did. Unfortunately it still says bootloader unlock is not allowed.
Click to expand...
Click to collapse
Yeah you will always get that message since you are not allowed to unlock your bootloader. But there should be rooting exploits for android marshmallow that dont require an unlocked bootloader.
[email protected] said:
Yeah you will always get that message since you are not allowed to unlock your bootloader. But there should be rooting exploits for android marshmallow that dont require an unlocked bootloader.
Click to expand...
Click to collapse
I searched but I didn't find anything. Are you sure you can root an Xperia Z5c with a locked bootloader. Can you provide me with links?
I see you need to go back to Android Lollipop. Get a Lollipop ftf and flash it with Flashtool. Then get something like KingRoot or KingoRoot, these should be able to root your device.
[email protected] said:
I see you need to go back to Android Lollipop. Get a Lollipop ftf and flash it with Flashtool. Then get something like KingRoot or KingoRoot, these should be able to root your device.
Click to expand...
Click to collapse
As I said, I already downgraded to the lowest android version possible with Z5C (5.1.1). KingRoot didn't work and KingoRoot needs an unlocked bootloader.
Ryhorse said:
As I said, I already downgraded to the lowest android version possible with Z5C (5.1.1). KingRoot didn't work and KingoRoot needs an unlocked bootloader.
Click to expand...
Click to collapse
Unfortunately I don't know about a working exploit, in theory it should be possible with android 5. I've found threads like https://forum.xda-developers.com/xperia-z2/general/root-t3108230 but they all suggest Kingroot. Maybe only a specific version of kingroot works with it? AFAIK there was another exploit called iovyroot (based on dirtycow?) which is able to provide temproot on android 6(?). Dunno if that works on android 5 without dm-verity flag as well
[email protected] said:
Unfortunately I don't know about a working exploit, in theory it should be possible with android 5. I've found threads like https://forum.xda-developers.com/xperia-z2/general/root-t3108230 but they all suggest Kingroot. Maybe only a specific version of kingroot works with it? AFAIK there was another exploit called iovyroot (based on dirtycow?) which is able to provide temproot on android 6(?). Dunno if that works on android 5 without dm-verity flag as well
Click to expand...
Click to collapse
That thread is for Xperia Z2 and Z3. iovyroot works and I already made a TA backup with it. Unfortunately it doesn't seem to be of any other use. I guess I will have to manage without root.
I have a crazy idea, if you want to tinker around: Maybe you could create a prerooted (google for "sony prerooted firmware creator" android 5 system partition and flash it on android 6 through iovyroot exploit. That would require an application that is capable of flashing update.zip during the smartphone beeing in a booted state. These applications exist but i dont know a specific one.
After (hot-) flashing the update zip (system partition) you could power off the phone and flash an android 5 .ftf excluding system.sin
In theory you should end up with a rooted android 5

Xperia x bootloader

Hello,
I have recently got an xperia X with a locked bootloader with unlocking not allowed. Does anyone know of a way round this or a way to root without unlocking the bootloader? Thanks
please give me your screen shot about that
in short, NO there is no way but
xperia x came on android 6, downgrade to android 6, extract TA.img (drmkeys), unlock the bootloader, upgrade to android 7.1.1, flash patched kernel, restore TA.IMG and relock your bootloader as if it was never unlocked
you will have ROOTED device, with locked bootloader!
i explain the above process in one line! but its a long method and takes sometimes 5hrs ( including internet downloading stockrom time)

Question Finally got Xperia 1 lll - root with locked BL on Android 12?

Hi.
Been a while since I where on XDA last, had first Xperia 1, and didnt wanna unlock it to root it because of the drm keys.
I can't find a proper post about this, and want to be sure if it exists.
I have read articles like:
Flashing a Xperia 1 iii without unlocking
[GUIDE][WINDOWS] Bootloader Unlock & Relock, Drivers, Magisk rooting, Firmware and GSI ROM flashing without TWRP
I don't want to unlock the phone...
drm key losing is a myth, relocking will just re enable those and bring widevine L1

Categories

Resources