Obtaining HTC One X Diag File to Manage S-OFF!!

Search This thread

BlueSingA

Senior Member
Dec 24, 2012
493
173
Novi Sad
Or maybe there could be problems translating this thing properly? Seriously, chill - I know the chances we get S-OFF are closer to none, but don't shut every attempt off, let them try. Noone said it doesn't work either so I don't know what was that comment for.
 

DeeZZ_NuuZZ

Senior Member
May 16, 2012
11,467
4,542
28
Hanover
HTC 10
Google Pixel 3 XL
Or maybe there could be problems translating this thing properly? Seriously, chill - I know the chances we get S-OFF are closer to none, but don't shut every attempt off, let them try. Noone said it doesn't work either so I don't know what was that comment for.

If you would read just a few posts ago Mr s said that he and I think nitrous already tried those things but NOTHING except the "official" expensive way is working...maybe it would work with that encryption thing...but this wouldn't work....if it would work somebody would post here it is working and we have to do really this and this...

Gesendet von meinem HTC One X mit Tapatalk 2
 

wigankev

Senior Member
Jul 8, 2010
405
75
Greater Manchester
If you would read just a few posts ago Mr s said that he and I think nitrous already tried those things but NOTHING except the "official" expensive way is working...maybe it would work with that encryption thing...but this wouldn't work....if it would work somebody would post here it is working and we have to do really this and this...

Gesendet von meinem HTC One X mit Tapatalk 2
Well noone has posted here confirming that it doesn't work. So it's just a matter of waiting for someone with the right CID to test it out
 

nitrous²

Senior Member
Jun 4, 2010
1,741
1,005
The Grid
I'm not sure if the last one chinese/taiwanese tutorial that's been posted is different, but it looks pretty similar to the tutorials I've read before. For now and as Mr_S told, I can tell you that it's been tested and proven as non working on various CID versions. I don't own a One X anymore so I can't give no detailed information. As far as I remember, there was a Chinese or Taiwanese guy who did a simple upgrade of hboot which, surprisingly, ended up with S-OFF. What this tutorial basically does is a try to replicate his case for other users I guess. Even if I'm wrong and this is something complete new, there's a very small chance that this is actually working. The s720e and s728e are one of HTC's only devices not capable of being set S-OFF, even after more than a year. So if this method would really work, hundreds of Chinese and Taiwanese people would've set their devices S-OFF and you'd hear that on every tech-news-channel/blog around the globe. But the fact is, you don't.

Gesendet von meinem GT-I9300 mit Tapatalk 4 Beta
 

Top Liked Posts

  • There are no posts matching your filters.
  • 23
    For now there is no use of a goldcard.

    Sent from my HTC One X using xda premium

    It's not that they don't use the "gold card" system anymore, it's that they changed the way how a microSD is consider as a gold card/smart card.

    You have to understand how XTC works. XTC is a HTC factory test SIM(or "MAGA SIM", "white card", "smart card", you name it) emulator, that's why when it's with the gold card, you can use S58 system to remove the security lock(S-OFF) as the phone think it's been repairing by a legal repair center. We could make fake gold card by ourselves was because someone reverse engineered the HTC gold card system.

    In short, in the old system(before One X, from Dream to Amaze 4G), a gold card alone can:

    * Flash any RUU regardless the CID. (As Super CID)
    * Use S58 data but with limits. (Can't clear security flag, aka S-OFF)

    A white card/factory test SIM + gold card:

    * All the things listed above.
    * Full S58 functionality. (S-OFF, carrier unlock)

    HTC should aware of the existence of XTC for long, but they decided to take action till the One series.

    The Java Card is used as the new smart card/gold card system:

    * It's a HSM that has extra security against crypto key dumping. (can try side-channel attack tho)
    * The PKI private key was generated with card's RNG, so no API to read it out directly.
    * With a counter system in it. (Yes it does, just the number is usually 500 or more afaik, don't have one in my hand so can't analysis.)

    The counter limited the number of times it can be use to lower the damage if it got stolen, and it can be reset with the correct private key.(which should be different from the main key, much easier to crack if you are good at HSM stuff.) Models w/o a SD slot can use it with OTG cable with microSD reader. All the older white card/gold card/MAGA SIM won't consider as a smart card on newer devices.

    In short, in the new system(after Amaze 4G, since One X), a java card/new gold card alone can:

    * Flash any RUU regardless the CID. (As Super CID)
    * Full S58 functionality. (Incl disabling security flag.)

    Here people on XDA always try to achieve S-OFF with the software-solution, while there's a always a market that does the opposite. There's nothing magical. As long as you have a working HTC factory java card and the correct S58 data for that device, you can S-OFF it within secs.

    I'm not sure how long this post will stand, as there are many HTC RD's here on XDA and they might have it deleted. They don't like people poking around with their zen thing, such as this or stole their RUUs from their servers. And I doubt they will ever give us the option to S-OFF in anyways, otherwise the CID/carrier lock thing will be pointless, and the market will f*** up.

    EDIT - Just confirm it works for Sensation and later.
    21
    I couldn't put it any better, even if S-OFF stays a dream I'll always be grateful for how much you've done and so should everyone else. You're still around helping even after endless lines of people beg for a file after you've explained why you can't release it. Can't help but think if I was in your position I would've up'd and ran already. Anyway, cheers! :)

    Thx for the support guys!!

    Sent from my HTC One X using xda app-developers app
    16
    As the one X uses emmc i'm going to buy a one X with broken screen on ebay and remove the emmc with a hot air rework station so it can be connected to an sd/mmc reader.

    Once connected it will allow a complete dump to be saved, from there we can try to manipulate the hboot / security flag and have s-off.

    Another advantage is that we will then know where the emmc balls are connected to any passives / pads, possibly allowing a juopunutbear wire trick style unlock ;)
    16
    After searching for an hour I finally found someone who understands what is s-off and he has done it for previous HTC devices. Basically he has enough knowledge. This is what he said about s-off:

    " for few devices its software work and for your device its both hardware and software. S-off for HTC one x isnt out yet and no1 has come to me for s-off HTC one x. Since u came ill give it a try to find out how to do it". He was asking me about my hboot versions and he knows the advantages of s-off and the fact that jb requires specific cid. Then o told him that does it have anything to do with goldcard or java card?. "he said that ya. It can be made. I'll make it. I will search for everything and will let you know within two days."
    I am not letting my hopes high because many of the devs here tried to do s-off like xmoo. If they couldn't do it I don't think he can. But m happy that at least he knows all the things. Let's hope guys.

    Sent from my HTC One X using xda app-developers app
    16
    Could XMoo be an employee of HTC whose job is to keep us from S-Off?

    Sent from my HTC One X using Tapatalk 2

    YES I AM Sorry guys!
    http://www.playandroid.com/blog/wp-content/uploads/2012/05/*****-Please.png