Original topic:

Bootloader Security Issue

(Topic created on: 08-12-2019 02:24 AM)
945 Views
AmitkumarIT
Active Level 9
Options
Galaxy M
Its a Bug or Samsung phones design with unlocked bootloader?
Even your phone have password and Account added then why phone Flash with odin without asking Your Samsung or google account password?
Anyone can format our data and reconfigure A new account after flash via odin. 
No security in bootloder.
Please fix.

15 Comments
Galaxy M
Samsung devices bootloader is unlocked. Anybody can flash firmware at any time or do a hard reset with 3 finger reset.
0 Likes
AmitkumarIT
Active Level 9
Galaxy M
thanks
0 Likes
babi07
Expert Level 5
Galaxy M
hello hru brother gm
0 Likes
AmitkumarIT
Active Level 9
Galaxy M
fine. thanks
0 Likes
xdgone
Active Level 10
Galaxy M
first that's not bootloader . thats OS emergency mode ( OS pre boot configuration)

second its not bug , its intentional to prevent data theft .

if you use password or similar mechanism to stop unauthorised flashing than you are making biggest security mistake on android system

no system adopt this to stop system flash using any kind of security of password

This is applied to every OS, not just android , mac , Windows, linux every os


for clarity ask exploit-db hackers , blackhat.com hackers and Google security hackers for more info
0 Likes
AmitkumarIT
Active Level 9
Galaxy M
Xiaomi handsets provides pre locked bootloader, without unlocking your bootloader you can't flash any custom os or upgrade via Boot mode. I am disagree with you information.
Actually i dont agree with all your information given while i previous used xiaomi handset to unlock bootloader to flash Rom.
0 Likes
xdgone
Active Level 10
Galaxy M
they also can be flashed without password or unlock. You might dont have idea about that
0 Likes
AmitkumarIT
Active Level 9
Galaxy M
first time hear from a one person that bootloader of xiami Falsh rom in fastboot mode without unlock bootloader. keep it up your Dark knowledge
0 Likes
xdgone
Active Level 10
Galaxy M
it is already mentioned in mad leet hacking database and well as Exploit-db
in android section this method called as FLASH WITHOUT DEAD RISK

in this method whether bootloader is locked or not its not important.

This method was first developed by XDA developer code name as " Growtopia Jaw "

There is another method called as  EDL method but which is outdated . Not active by the developer
0 Likes