temp root for drm keys backup - anybody still interested?

j4nn

Recognized Developer
Jan 4, 2012
1,204
2,326
0
@j4nn I talked about this one. Doesn't this mean that even the September patch level might be exploitable in some kinda way? And by magic, I was mentioning your exploit and all the effort you put into this! So, long story short: Any chances of making this exploit usable for XZ2 premium?
That is incorrect information (or typing error).
No chance for XZ2 any model in my opinion. Checked XZ2 Compact - not possible.
And btw, it is mentioned in the exploit's first post.
@SilverGamer_YT, if you backup TA before unlock and restore it after, you can have nearly everything working as stock with unlocked bootloader (i.e. rootable).
No way to restore drm if not backed up for your phone if you are asking about that.
 
Last edited:
  • Like
Reactions: the_brad

SilverGamer_YT

Senior Member
Feb 26, 2016
357
47
0
Poitiers
That is incorrect information (or typing error).
No chance for XZ2 any model in my opinion. Checked XZ2 Compact - not possible.
And btw, it is mentioned in the exploit's first post.
@SilverGamer_YT, if you backup TA before unlock and restore it after, you can have nearly everything working as stock with unlocked bootloader (i.e. rootable).
No way to restore drm if not backed up for your phone if you are asking about that.
Even if I use the locked DRM from someone else?
 

madshark2009

Senior Member
Aug 18, 2012
754
103
0
Something is still not sitting right in my head...
If we can not relock bootloader, then the warranty is still voided, so whats the point of going through all this process if we can simply install a fix patch?
by the way I gotta say and admit that you did a hella good job on this! all XZP owners applaud you for this genius work, we really appreciate the time and effort put into this, much love
 

Beetle84

Recognized Contributor
Oct 24, 2013
2,270
1,261
183
Hervey Bay
Something is still not sitting right in my head...
If we can not relock bootloader, then the warranty is still voided, so whats the point of going through all this process if we can simply install a fix patch?
by the way I gotta say and admit that you did a hella good job on this! all XZP owners applaud you for this genius work, we really appreciate the time and effort put into this, much love
If the tool works properly, when you restore your ta.img your bootloader will be locked and everything will be stock.
 

madshark2009

Senior Member
Aug 18, 2012
754
103
0
If the tool works properly, when you restore your ta.img your bootloader will be locked and everything will be stock.
well as stated in previous posts, the restoration of the TA.img file wont relock the bootloader and some even stated that relocking the bootloader of XZP is not an option...
 

Niko of Death

Senior Member
Nov 5, 2013
61
10
0
Something is still not sitting right in my head...
If we can not relock bootloader, then the warranty is still voided, so whats the point of going through all this process if we can simply install a fix patch?
by the way I gotta say and admit that you did a hella good job on this! all XZP owners applaud you for this genius work, we really appreciate the time and effort put into this, much love
AFAIK none of the DRM fixes currently restore L1 Widevine.

Unfortunately, I long ago unlocked my bootloader and used the first DRM fix, will there be any way to get "true" drm keys back through this method or am I screwed?
 

greatpatel007

Senior Member
Aug 31, 2010
81
56
0
Anand
AFAIK none of the DRM fixes currently restore L1 Widevine.

Unfortunately, I long ago unlocked my bootloader and used the first DRM fix, will there be any way to get "true" DRM keys back through this method or am I screwed?
As I have just tasted on my phone by restoring unlocked TA partition I found out that unlocking bootloader doesn't remove any DRM information. Your L1 is still there. Please check with DRM info app and post screenshot for confirmation.

Unlocking bootloader will only disable the sony proprietary things like camera, x-reality and x loud etc stuff.
 
  • Like
Reactions: j4nn

j4nn

Recognized Developer
Jan 4, 2012
1,204
2,326
0
AFAIK none of the DRM fixes currently restore L1 Widevine.
Unfortunately, I long ago unlocked my bootloader and used the first DRM fix, will there be any way to get "true" drm keys back through this method or am I screwed?
As I have just tasted on my phone by restoring unlocked TA partition I found out that unlocking bootloader doesn't remove any DRM information. Your L1 is still there. Please check with DRM info app and post screenshot for confirmation.
Unlocking bootloader will only disable the sony proprietary things like camera, x-reality and x loud etc stuff.

@greatpatel007, in my opinion, you are getting false hopes.
When you unlock bootloader, device master key is erased from TA. And full factory reset is done.
This factory reset removes in my opinion also the access to WIDEVINE key.
What you have found/tested is interesting actually. But to simulate an unlock, you would need to do a factory reset too. Just try that and see if you still have access to WIDEVINE required media.

I believe it works like that when there is a proper device master key in TA, the phone is able to re-create the keys specific to each phone by use of the device master key to access all the other stuff in trust zone.
Your removal of dev master key removed camera functionality but for widevine it is probably needed only when the derived keys need to be created.
But this is only my opinion, I do not know the internals.
Just test the factory reset and let us know please.

TA backup before unlock and restore after allows to keep the device master key and therefore enables access also to WIDEVINE.
That is a major difference to any drm fix - those cannot provide WIDEVINE access.
Another major difference is that camera and widevine works on current stock firmware without any patching.
With those drm-fixes you may need always a new version which needs to be compatible with new firmwares.
 

Mad07

Senior Member
Sep 30, 2009
286
27
48
First of all thanks for your hard work and time.
Today I'll received a XZP (8141), which is still around 9month in use.
I must read a little bit more to go sure, that all things are going well, before unlook the BL... There is only one chance, that I've recognize in this thread
 

sulistyoarif

Member
Nov 30, 2014
18
5
0
Holly ****! Mat. Iam already process all of them, and now i get my security check key like this! Finally i got DRM, magisk, and unlocked bootloader on my G8142 PIE.
Only Video Image Enhancement didnt work for me. Color gamut, WB, portait selfie work flawsleyy.. everyting work like a charm!

Thanks for your hard work dude!
 

Attachments

  • Like
Reactions: j4nn

chesterr

Senior Member
Nov 27, 2010
994
165
0
Galle
Okay so it's just to clarify,
Right now I have gone through your temp root exploit process and backed up TA-locked.img but before I unlock bootloader I wanna know if I restore TA-locked will it change to stock like the good old days. Like how I received it.
Just wanna clarify before I unlock.
 
Last edited:

Styler911

Senior Member
Nov 27, 2012
104
18
48
Frankfurt
Okay so it's just to clarify,
Right now I have gone through your temp root exploit process and backed up TA-locked.img but before I unlock bootloader I wanna know if I restore TA-locked will it change to stock like the good old days. Like how I received it.
Just wanna clarify before I unlock.
currently, as i understand, your phone gets the functions back from sony (such as camera, drm for pages/apps etc..) but your BL would be still unlocked as current it cannot be relocked. but since 9.0 the camera is working again, you should get the drm features back. but no video enhancement.
 

chesterr

Senior Member
Nov 27, 2010
994
165
0
Galle
currently, as i understand, your phone gets the functions back from sony (such as camera, drm for pages/apps etc..) but your BL would be still unlocked as current it cannot be relocked. but since 9.0 the camera is working again, you should get the drm features back. but no video enhancement.
Ahaa thanks for the clarification, I think that's what I understood as well. I wonder if there is a way to restore the TA we back up as well. Anyways I did the backing up but didn't unlock the phone. Hope there will be a way to restore the TA.
Thanks bro
 

arslancn

Senior Member
Feb 19, 2016
120
28
28
Ankara
Ahaa thanks for the clarification, I think that's what I understood as well. I wonder if there is a way to restore the TA we back up as well. Anyways I did the backing up but didn't unlock the phone. Hope there will be a way to restore the TA.
Thanks bro
you can restore the TA partition but you cant relock your bootloader.
 

OldDroid

Recognized Developer
Nov 18, 2012
1,767
6,951
153
Berlin
Can someone tell me where i can find service mode menu? new to sony and qcom.
EDIT: nvm, found it myself, i'm too lazy sometimes to use google.

Regards
 
Last edited:

j4nn

Recognized Developer
Jan 4, 2012
1,204
2,326
0
kountry83, if you like to use renoroot to backup TA, you need to run one of the listed FWs (and phones).
 
Our Apps
Get our official app!
The best way to access XDA on your phone
Nav Gestures
Add swipe gestures to any Android
One Handed Mode
Eases uses one hand with your phone