A few things on knox / rooting and bootloaders that need more testing / development

haybill

Senior Member
Apr 13, 2012
2,019
780
0
Somewhere in Europe
Just re read a couple of pages back and it shows that it has been possible to restore original status - no Knox trip info in DL mode - very interesting indeed.

Sent from my GT-N7100 using Tapatalk
 

iede

Senior Member
Nov 27, 2012
130
50
0
PS : I had done all this steps on ND1 firmware, and this will not keep root access, to root Knox has to be tripped. Also to note this might get (patched) in future updates (bootloaders) if we look at Samsung's history of patching stuff :p, though not sure about it...

This will not work on any variant other than Exynos (Note 3) due to different processors and the boot system of both Exynos and Snapdragon. (the file for resetting Knox (Exynos) contains Sboot which is only for the Exynos variant which cannot be used on Snapdragon as it uses Aboot). So this is by no way meant to work on SD variant or any other Samsung device ie S5/S4/Note 2 etc. and hence requested NOT TO USE IT on any other model than Exynos Note 3.
Really interesting step! :victory:
But from my understanding, this method tested only on ND1 firmware with ND1 bootloader, and how about if we have older bootloader? (I use NC1).

Many thanks for this founding! :good:
 

RuchRha

Senior Member
Aug 1, 2013
726
1,249
0
Gurgaon
Hello @RuchRha--I saw you on another thread and tracked you down to this one--it has been reported that flashing Root using CF-Root, to a Canadian N900W8, was possible to do without compromising KNOX warranty counter-- do you know whether the same applies to SM N900 variant?

Apologies if this has been asked./answered but couldn't find reference to the answer.
It certainly is not possible at the moment, but trying to see what we can/could achieve regarding this pretty soon..

Attempting to downgrade is worth trying. If it succeeds it would be great. If it fails with "Firmware Upgrade encountered issue" no worries just flash stock recovery back and the phone would be up again.


Sent from my Galaxy S5 GT-N7100
Well yes, it's actually worth a shot but I am pretty annoyed I dint had an 4.3 firmware and trying to download the same from sammobile but it failed every time when only 10-20 mb is left to be downloaded and this has happened 3 times, I am looking for any mirrors for them instead of using sammobile.

Really interesting step! :victory:
But from my understanding, this method tested only on ND1 firmware with ND1 bootloader, and how about if we have older bootloader? (I use NC1).

Many thanks for this founding! :good:
It should work on any fw/bootloader related to 4.4.2, but I have no idea about 4.3
 
Last edited:

RuchRha

Senior Member
Aug 1, 2013
726
1,249
0
Gurgaon
Quick question to have a more complete view on where things are - I do not have the N900 and I know little about it so the question might already not be a problem there but it certainly is on N9005 - can you also downgrade the firmware after you write the knox-reset piece?
I'll test it!

Edit/Update 1 : Wowzer guys, I have some good news for you all, I have been successfully able to downgrade from 4.4.2 to 4.3 without any issues, The firmware I downgraded to is MI3 and Knox is not present in download mode will post steps soon and guide you through steps for a safe downgrade, PS : this is only for SM-N900/N9000/Exynos for now, screenshots attached..

Edit/Update 2 : Steps to Downgrade (Note 3 Exynos only!)

1 - Download the bootloader.zip and extract then flash in Odin. (Find in attachments) (don't select any other option in odin except F reset time and auto reboot) (are selected by default).

2 - Download any 4.3 JellyBean Firmware from sammobile.

3 - After flashing the bootlaoder reboot into stock recovery (power+ home+ vol up) and wipe data/factory reset and cache partition

4 - Turn off the device and reboot into download mode and flash the 4.3 Firmware in Odin.

5 - After flashing completed let the device boot till boot screen and pull out the battery and turn it off then turn it on again and reboot into recovery (power+ home+ vol up) and wipe data/factory reset and cache partition once again and reboot and let the device boot up.

That's pretty much it, you've safely downgraded to Android 4.3 from 4.4

This is only for Note 3 Exynos!

I'll be testing some work around's for the N9005 (Snapdragon) to reset Knox/Firmware Downgrade once I get that device as I have given mine to a friend, and have been saving money to buy a new or used N9005.
 

Attachments

Last edited:

XZQ't

Senior Member
Jan 14, 2010
142
17
0
To anyone who wanted to try this knox reset tool.
I can confirm the method by @RuchRha that it definitely valid and I done it myself on N900 ND1 Firmware. I'm now very happy rooting my phone and will be able to get full warranty when needed.
However, this method will WIPE YOUR INTERNAL SD. So make all the necessary backup before reset knox.

----------------

There's ND2 Firmware released, can anyone confirm that this method still work or not ?
I hope it's not a patched to prevent knox reset.
 
Last edited:
  • Like
Reactions: Antonito2030

st3chn0

Senior Member
Jul 24, 2010
361
85
0
Leeds
To anyone who wanted to try this knox reset tool.
I can confirm the method by @RuchRha that it definitely valid and I done it myself on N900 ND1 Firmware. I'm now very happy rooting my phone and will be able to get full warranty when needed.
However, this method will WIPE YOUR INTERNAL SD. So make all the necessary backup before reset knox.

----------------

There's ND2 Firmware released, can anyone confirm that this method still work or not ?
I hope it's not a patched to prevent knox reset.
I doubt they would patch as it's official file they use to reset. If they did they would have no method to reset themselves

Sent from my SM-N9005 using XDA Free mobile app
 
  • Like
Reactions: rogerscrack

nicholaschum

Substratum Development Leader / Inactive Recognize
Feb 3, 2011
6,079
13,834
0
University of Toronto
plus.google.com
How about the check whether KNOX is actually tripped on an N900W8 without knowing it yet, we're still on the two region different bootloaders - Leaked Mexican NA2 and Canadian NB7, which is identical as they are the first N900W8 4.4.2 ROM bootloaders.

Well first of all, as the Mexican NA2 is a leak, you can't download it officially anywhere, and could have been a leak from a developer build.

Also to think, why does this only work on the Canadian N900W8 and not the Mexican N900W8? (verify this for me, I have seen 0 reports of successful Mexican 0x0 flashes as of yet).

We essentially flash Mexican NA2 over Canadian 4.3 which allows us to do anything we want and not trip KNOX. BUT -> If you flash official NB7 Canadian, you cannot downgrade back to an older firmware and not trip KNOX, unlike on NA2 Mexican.

Is there a possibility that the chip already blown the fuse but the system fails to detect that particular fuse due to a bug, and still reports fine to the system (Bootloader view, and in-system view (Phone Info))?
 

schndr777

Senior Member
Jan 13, 2014
147
11
0
Ding (Sirsa)

frostmore

Senior Member
Nov 21, 2010
308
103
0
WARNING:
This is very dangerous. I have been able to reproduce and recover every time, but there is a HUGE inherent risk of permabricking. I am able to manually put my device into QHSUSB_BULK mode by overwriting SDI/DBI with SBL1. The screen will go black immediately, and your device will be recognized as a QHSUSB_BULK device. You can recover by making a 256MB (arbitrary number, has to be over like 128MB) unbrick image. This can be made by pulling the first 256MB from mmcblk0. Then flash to SD card using DD or Win32DiskImager. Do this before flashing SBL1 to DBI/SDI. Pop it in and it should boot right back normally, so ODIN and flash SDI again to fix. This can be useful for various purposes, of which the right people are already aware.
For those who are interested in this software,PM me and i'll let you have a copy.

I have nothing against qualcomm or a big fan of distributing copyrighted stuff.

but my inherent dislike/distaste/discomfort for samdung's douche baggery and high handedness in forcing their obKNOXous crap down consumers do not sit very well with me.

if you can come up with something to stick it to samdung,let me know,i'll like to help.
 
  • Like
Reactions: RuggedHunter

E:V:A

Inactive Recognized Developer
Dec 6, 2011
1,449
2,212
0
-∇ϕ
Hmm I analyzed this. It contains an sboot.bin for exynos devices AND an EMMC1 firmware update file.
That is the key to knox reset.
Hmm, that is interesting. How is that EMMC FW file written?
Can you provide that file? It need to be reversed!
This could be another step towards resolving the Qualcomm
case, as long as they use the same EMMCs.
 

Surge1223

Recognized Contributor
Nov 6, 2012
2,603
7,395
203
Florida
Hmm, that is interesting. How is that EMMC FW file written?
Can you provide that file? It need to be reversed!
This could be another step towards resolving the Qualcomm
case, as long as they use the same EMMCs.
It contains sboot and param. The qualcomm equivalent would be aboot and param.

Sent from my SCH-I545 using XDA Premium 4 mobile app
 

RaluSiCris

Senior Member
Aug 7, 2011
160
25
0
It contains sboot and param. The qualcomm equivalent would be aboot and param.

Sent from my SCH-I545 using XDA Premium 4 mobile app
I if just somebody with 0x0 knox can find in his phone aboot and param and then to be compared with those from 0x1

Sent from my SM-N9005 using XDA Free mobile app