GithubHelp home page GithubHelp logo

h644b / savemygames Goto Github PK

View Code? Open in Web Editor NEW

This project forked from doxrgithub/cryppo

0.0 0.0 0.0 27.93 MB

Dont open this pls its not what u think it is not made by me lol

Shell 16.25% JavaScript 0.83% C++ 36.30% Python 45.16% C 0.50% CSS 0.02% Makefile 0.04% HTML 0.76% CMake 0.11% Dockerfile 0.03%

savemygames's Introduction

CryptoCrafter

The recent discovery of a method of DNP(DO NOT POWERWASH) allows us to modify cryptohome info in stateful. We will create a cryptohome setup app in rma shims, allowing us to finally unenroll without exploiting CRSwifty.

StateSploit

StateSploit is the method of DNP which uses DDR(disable_dev_request).
Here is the original PoC of statesploit shared in firmware smasher.

CryptoCrafter setup

It will use source code from chromium to replicate a version of cryptohome that works in a shim and doesn't touch device settings. We can enforce this through a chroot.

Access the CryptoSmite exploit here

Tools and exploits contained in this repo

  1. CryptoSmite (Cryptohome exploits allowing for full command execution and take over of the system in verified)
  2. Cros_debug setter (which failed)
  3. verity_bypass_poc.sh (Reco image modding, currently wip)
  4. crafter: Crypto Crafter
    Again, please don't leak anything from this repo. If you want something to be shared, please ask for permission, and then publish it only if you have permission.

Story of how I found this exploit

I was actually testing another exploit (private) and then I ran a battery cutoff. Except when I did this, I ran in a bigger problem, my computer won't actually turn on. When it does, it is stuck in a boot loop. Enabled developer mode, just in case it was an operating system issue, except now I was stuck in the fake devmode and I couldn't exit. When using recovery mode, no recovery image would bring this chromebook back to life, because its in devmode blocked mode. Except I forgot about dev_disable_request in vboot, and now this project exists to exploit this.

savemygames's People

Contributors

slimepointe avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.