Welcome to XDA

Search to go directly to your device's forum

Register an account

Unlock full posting privileges

Ask a question

No registration required
Post Reply

[LOKI] Bootloader hack official FAQ thread

OP djrbliss

23rd May 2013, 05:11 PM   |  #1  
OP Recognized Developer
Thanks Meter: 2,618
 
136 posts
Join Date:Joined: Aug 2011
Donate to Me
I just released Loki, a set of tools for developers and users to flash custom kernels and recoveries on the AT&T and Verizon branded Samsung Galaxy S4.

The tool is available at:
https://github.com/djrbliss/loki

The technical details on how the exploit works are described at:
http://blog.azimuthsecurity.com/2013...cure-boot.html

This is a support thread that I will check regularly until I decide to hand over support to the community. Feel free to ask any questions, and I may add the answers to this post. As a guideline, if it's a question that's already been answered in this thread or in the README for Loki, I will ignore it.


Does this make any permanent changes to the device?

No permanent changes are made to your device when using loki_flash. The bootloader itself is untouched. By restoring the original system, boot, and recovery images (via Odin or otherwise), the device will be in a stock state.

Can this be patched?

Absolutely. Any update that includes a new aboot will almost definitely cause your custom kernel or recovery to fail to boot without running it through loki_patch again, and if the update contains a fix for the vulnerability Loki exploits, it may permanently prevent using the tool. It's possible for Samsung to ship an update that prevents downgrading aboot to a vulnerable version, so I recommend avoiding installing any OTA updates without confirmation that it's safe.

What about the bounty?

As usual, I encourage anyone looking to donate (as part of the bounty or otherwise) to give their money to a reputable charity organization instead. If you insist on donating to me, I'm sure you can find my Paypal account somehow.

This all seems complicated. What about a step-by-step guide?

These tools are primarily intended for developers, who will be able to use them and provide ordinary users with easy ways to flash custom ROMs. Be patient, I'm sure your favorite ROM developer will come up with something for you.

I've installed a Loki-patched recovery. Can I just install regular custom ROMs now?

Any ROMs that include a replacement boot.img must be modified to include a Loki-patched boot.lok file instead. Otherwise, your phone will fail to boot until you restore a Samsung-signed boot.img or a custom boot.lok image via your custom recovery, or flash a stock image via Odin.

So this is just like kexec?

This is similar to kexec in that it works around a locked bootloader, but this approach is much more flexible and robust. Kernel and recovery developers can build their projects just as they would for an unlocked device, run the final result through Loki, and then it's ready to be flashed. No hackery and brokenness required.
Last edited by djrbliss; 23rd May 2013 at 06:30 PM.
The Following 387 Users Say Thank You to djrbliss For This Useful Post: [ View ]
23rd May 2013, 05:13 PM   |  #2  
mmanjj's Avatar
Senior Member
Flag Tampa,FL
Thanks Meter: 4
 
113 posts
Join Date:Joined: May 2009
Donate to Me
More
Thanks!!

Sent from my SAMSUNG-SGH-I337 using xda premium
23rd May 2013, 05:15 PM   |  #3  
fix-this!'s Avatar
Senior Member
midwest
Thanks Meter: 341
 
2,533 posts
Join Date:Joined: Apr 2012
More
is this similar to htc dev which doesn't truly unlock "s-off" the device? i assume your method just circumvents the locked bootloader? the way i read what your tool accomplishes is for us to flash a recovery and kernels but doesn't actually touch the locked bootloader status?

thanks for your work. also let the games begin!
23rd May 2013, 05:17 PM   |  #4  
jroyalty7's Avatar
Senior Member
Flag Buffalo
Thanks Meter: 397
 
895 posts
Join Date:Joined: May 2009
More
Thank you very much!!!!

Sent from my SAMSUNG-SGH-I337 using Tapatalk 2
The Following 8 Users Say Thank You to jroyalty7 For This Useful Post: [ View ]
23rd May 2013, 05:18 PM   |  #5  
eighty1's Avatar
Senior Member
Flag Atlanta
Thanks Meter: 42
 
1,454 posts
Join Date:Joined: Apr 2009
More
Very much appreciated!
23rd May 2013, 05:18 PM   |  #6  
breakingspell's Avatar
Senior Member
Thanks Meter: 63
 
287 posts
Join Date:Joined: Dec 2010
More
By the time I get back from work, I'm pretty sure there'll be at least two recoveries and three roms prepared
23rd May 2013, 05:20 PM   |  #7  
Senior Member
Thanks Meter: 256
 
1,610 posts
Join Date:Joined: Dec 2011
Wooooot!!! Thanks man.
23rd May 2013, 05:22 PM   |  #8  
Zer0_'s Avatar
Senior Member
Flag Toronto
Thanks Meter: 156
 
796 posts
Join Date:Joined: Jun 2010
More
Awesome! Finally devs can start releasing some ROMs!
23rd May 2013, 05:23 PM   |  #9  
Senior Member
Flag Chicago, IL
Thanks Meter: 45
 
266 posts
Join Date:Joined: Jan 2011
More
hopefully someone can make a toolkit and make this a one-click unlock/root
The Following User Says Thank You to RawisTheGameHhH For This Useful Post: [ View ]
23rd May 2013, 05:26 PM   |  #10  
LiLChris06's Avatar
Senior Member
Flag XDA
Thanks Meter: 1,281
 
2,381 posts
Join Date:Joined: Nov 2011
More
Thanks so much!

The Following User Says Thank You to LiLChris06 For This Useful Post: [ View ]
Post Reply Subscribe to Thread
Previous Thread Next Thread
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes