Windows Phone and Windows 10 Mobile for Surface RT - Windows RT Development and Hacking

This the thread for Windows 10 Mobile with the recent Secure Boot exploit
Windows Phone 8.1 works already, by the way.
The Secure Boot unlock is needed to use this.
Connect to #rtchurch at irc.rol.im + http://rol.im/chat/rtchurch-noobs
XDA:DevDB Information
Windows Phone and Windows 10 Mobile for Surface RT, ROM for the Windows RT General
Superseded, on http://woafre.azurewebsites.net now
An IoT release is on http://woafre.azurewebsites.net/surfaceiot_release
Contributors
black_blob
ROM OS Version: Windows 10 Mobile
ROM Kernel: Windows NT 10.0
Version Information
Status: Beta for IoT
Created 2016-04-25
Last Updated 2016-08-23

Awesome!!! This mean that its possible to load any OS too?
Thanks!

jesuslg123 said:
Awesome!!! This mean that its possible to load any OS too?
Thanks!
Click to expand...
Click to collapse
yes, if I dare to disclose the exploit

Please Delete.

black_blob said:
yes, if I dare to disclose the exploit
Click to expand...
Click to collapse
So I guess it would be best not to disclose this, so that it can't be fixed for RS1

johnaddisonuk said:
Amazing work, would there be a chance it would apply to Surface 2 as well at some point?
Click to expand...
Click to collapse
it applies for any Windows RT device

Please Delete.

Fantastic job!
I still have a Surface RT here. Will wait till you get Win10 on it and then give it a go.

Will you be posting a how to ?

backlashsid said:
Will you be posting a how to ?
Click to expand...
Click to collapse
I still wonder if I should publish the exploit or just disk images & screenshots

I have a spare Surface 2 if you need testing stuff.. I am in France.

black_blob said:
I still wonder if I should publish the exploit or just disk images & screenshots
Click to expand...
Click to collapse
I think that the exploit. Because you are not to have published, Microsoft will still be able to find out what this exploit was But as you think about it, I would like a few pictures

Dj_Art said:
I think that the exploit. Because you are not to have published, Microsoft will still be able to find out what this exploit was But as you think about it, I would like a few pictures
Click to expand...
Click to collapse
I don't think MS will figure it that soon.

Gone

black_blob said:
I still wonder if I should publish the exploit or just disk images & screenshots
Click to expand...
Click to collapse
Personally I don't think it's great form to post just disk images and screenshots to a community focused site such as this. We all draw on the experience of others here and I think it reasonable to expect this to be reciprocated with discoveries as they're found allowing others to build on your work.

Gone

That's is great. You made it!

VortexS said:
Maybe a little OT, where would someone find the "Secure Boot Debug Policy Applicator" you have pictured on your Twitter feed?
Thanks!
Click to expand...
Click to collapse
I believe this is part of the Windows HCK

VortexS said:
Maybe a little OT, where would someone find the "Secure Boot Debug Policy Applicator" you have pictured on your Twitter feed?
Thanks!
Click to expand...
Click to collapse
remember that the gem is the Secure Boot Debug policy itself. The applicator is in C:\Program Files (x86)\Windows Kits\10\bin\arm\SecureBoot with the Kits policy that isn't very useful for this

VortexS said:
Sorry for the inevitable stupid question , but I assume for anyone else to make use of this achievement that they would need the exploit and the disk images? Or would the disk images work without the exploit now that they have been created?
The trouble with waiting is that it would be an almost never ending game, I still have my Surface 1 & 2 but i'm about to order a Surface 3. If I can get Windows 10 Mobile on one of them I may hold off buying.
Good Work!
Click to expand...
Click to collapse
Without the exploit, I think that it will be possible with a big hack(everything bootcritical -> IoT, mobile for the rest) Starting without that issue since the 1st step is much better

Related

have windows 7 running on my hd2!!!

look i will add video soon, and screenshots.
i managed to install windows 7 on my leo
papasieg said:
look i will add video soon, and screenshots.
i managed to install windows 7 on my leo
Click to expand...
Click to collapse
Nice... does it comes with b.s.o.d too???
papasieg said:
look i will add video soon, and screenshots.
i managed to install windows 7 on my leo
Click to expand...
Click to collapse
You expect anybody to believe this? If you mean the desktop version of windows 7 is it even usable with qemu?
the question is: who wants to have it?
as we all know, all applications from vers 6 do NOT run under version 7!
so where is the motivation to have windows phone 7 ???
papasieg said:
look i will add video soon, and screenshots.
i managed to install windows 7 on my leo
Click to expand...
Click to collapse
Can you share with us the same stuff you smoke ???
dont give someone like this attention..
Bullsh*t. If its true, then why no screenshots?
witch1 said:
Bullsh*t. If its true, then why no screenshots?
Click to expand...
Click to collapse
quote
and if is true,
why opened this thread in App and Theme
and not in general or rom dev???
this is a theme or OS??'
he's talking about windows seven
Windows 7 has been compiled for x86, x64 and itanium.
it has not been compiled for ARM and could not be compiled for ARM in its present form.
Additionally, (as far as I know) there is no x86 emulator for ARM that would be able to properly run Windows 7.
Bull****? yep.
Olipro said:
Windows 7 has been compiled for x86, x64 and itanium.
it has not been compiled for ARM and could not be compiled for ARM in its present form.
Additionally, (as far as I know) there is no x86 emulator for ARM that would be able to properly run Windows 7.
Bull****? yep.
Click to expand...
Click to collapse
thanks for explaination boss
so maybe it's a windows seven theme, or maybe he's drunk
papasieg said:
look i will add video soon, and screenshots.
i managed to install windows 7 on my leo
Click to expand...
Click to collapse
Waiting for the video and screenshots
Those Dutch guys are all potheads
mmarkk said:
Those Dutch guys are all potheads
Click to expand...
Click to collapse
thanks
mmarkk said:
Those Dutch guys are all potheads
Click to expand...
Click to collapse
Pardon me!!!!! I do not like generalizations1
papasieg said:
look i will add video soon, and screenshots.
i managed to install windows 7 on my leo
Click to expand...
Click to collapse
i liked the fact he hasnt said anything since
It should be possible, because there is a ARM port of Qemu and Bochs. Windows 95 is already running on WM (and it runs fast an the hd2).
may be he is 13-14 years old boy who need some attention ... (just a idea!)
header2k said:
It should be possible, because there is a ARM port of Qemu and Bochs. Windows 95 is already running on WM (and it runs fast an the hd2).
Click to expand...
Click to collapse
Yeah. That's Windows 95. Not Windows 7. Read what Olipro said on the first page.
maybe he has replaced the snapdragon with an atom chip. in that case.. me wants toooooooooo

[APP] ProcessHacker 2.33

All,
Please find attach the native Windows RT binaries for ProcessHacker 2.33. Includes all the plugins.. as well as the 'extra-plugins' that are not normally released.
Cheers!
bfosterjr said:
All,
Please find attach the native Windows RT binaries for ProcessHacker 2.33. Includes all the plugins.. as well as the 'extra-plugins' that are not normally released.
Cheers!
Click to expand...
Click to collapse
Hi,
Sorry if the question seems stupid but... This is mean that is possible to run unsigned app on RT 8.1?
Thanks!
jesuslg123 said:
Hi,
Sorry if the question seems stupid but... This is mean that is possible to run unsigned app on RT 8.1?
Thanks!
Click to expand...
Click to collapse
Its been possible for over a year -- https://twitter.com/Myriachan/status/365350790803619840
bfosterjr said:
Its been possible for over a year -- https://twitter.com/Myriachan/status/365350790803619840
Click to expand...
Click to collapse
Ok, on kernel debug. Could you explain how to ini the kernel debug mode? I already have the Kits policy but I don´t know what more to do, please
jesuslg123 said:
Ok, on kernel debug. Could you explain how to ini the kernel debug mode? I already have the Kits policy but I don´t know what more to do, please
Click to expand...
Click to collapse
Talk to Myriachan about how to enable kernel debugging -- thats from her twitter feed.
Cheers!

About a full Jailbreak

Myriachan said:
Someone I've been working with made a full jailbreak based upon this that doesn't require signing anything, like the RT 8.0 jailbreak was able to do. Stay tuned.
Click to expand...
Click to collapse
https://github.com/tandasat/meow
http://standa-note.blogspot.com/
https://twitter.com/standa_t
This repo only disable PatchGuard. However we already have the method to disable Code Integrity in Windows 8 RT Jailbreak, only need someone to port it (I think).
The project won't build in VS 2015 Community. VS 2013 Community works though.
LolitaPlus said:
https://github.com/tandasat/meow
http://standa-note.blogspot.com/
https://twitter.com/standa_t
This repo only disable PatchGuard. However we already have the method to disable Code Integrity in Windows 8 RT Jailbreak, only need someone to port it (I think).
The project won't build in VS 2015 Community. VS 2013 Community works though.
Click to expand...
Click to collapse
it's trivia to disable CI using this
hi, with a full jailbreak what will we get from the jailbreak? sorry my friend gave me a surface RT 2 for free and ive heard about jailbreaks for this and i dont know much about it
So now that PatchGuard can be disabled, could be possible to unlock booloader in order to run any other OS maybe from USB?
jesuslg123 said:
So now that PatchGuard can be disabled, could be possible to unlock booloader in order to run any other OS maybe from USB?
Click to expand...
Click to collapse
Not more than what we could do with testsigning in that aspect
black_blob said:
Not more than what we could do with testsigning in that aspect
Click to expand...
Click to collapse
Let see what happen from now, with patch guard disabled, I suppose we should have more execution privilege.
Since patch guard hack has been released, there is a guy working on a Linux port
https://twitter.com/never_released/status/704645407041822720
jesuslg123 said:
Let see what happen from now, with patch guard disabled, I suppose we should have more execution privilege.
Since patch guard hack has been released, there is a guy working on a Linux port
https://twitter.com/never_released/status/704645407041822720
Click to expand...
Click to collapse
It's me
The hack doesn't need disabled PG, it hooks KeBugCheckEx
black_blob said:
It's me
The hack doesn't need disabled PG, it hooks KeBugCheckEx
Click to expand...
Click to collapse
hahha ok, cool!
If I'm not wrong with PatchGuard disabled, we can edit kernel code and OS won't complain about it. So maybe possible to edit kernel in order to enable windows 8.1 features, add drivers...?
Can you tell us more about the port, maybe some one has any idea to collaborate
Thanks!
black_blob said:
It's me
The hack doesn't need disabled PG, it hooks KeBugCheckEx
Click to expand...
Click to collapse
good luck dude :good: I don't wanna stay on windows 8.1 RT I would go to Ubuntu or Windows 10 RT (if it came)
spyroz540 said:
good luck dude :good: I don't wanna stay on windows 8.1 RT I would go to Ubuntu or Windows 10 RT (if it came)
Click to expand...
Click to collapse
Get a thread on all the cores, shutdown them via setting IRQL to High level, and when you are sure that all of them are off, start the mailbox handler(disabling the MMU in the process) on secondary CPUs, then jump to the kernel in CPU0 after disabling paging.
black_blob said:
Get a thread on all the cores, shutdown them via setting IRQL to High level, and when you are sure that all of them are off, start the mailbox handler(disabling the MMU in the process) on secondary CPUs, then jump to the kernel in CPU0 after disabling paging.
Click to expand...
Click to collapse
i dont want to risk my surface rt 2 i will wait for your port but thanks anyway
spyroz540 said:
i dont want to risk my surface rt 2 i will wait for your port but thanks anyway
Click to expand...
Click to collapse
I only have two first-gen Surface RTs
No Surface 2s here
black_blob said:
I only have two first-gen Surface RTs
No Surface 2s here
Click to expand...
Click to collapse
what stage are you on for the linux port?
@black_blob hey there hasnt been any update about the linux port have you given up? or you still working on it?
spyroz540 said:
@black_blob hey there hasnt been any update about the linux port have you given up? or you still working on it?
Click to expand...
Click to collapse
The exploit I used for loading unsigned drivers was patched this Tuesday...
black_blob said:
The exploit I used for loading unsigned drivers was patched this Tuesday...
Click to expand...
Click to collapse
so does that mean we won't get linux for surface rt ?
spyroz540 said:
so does that mean we won't get linux for surface rt ?
Click to expand...
Click to collapse
it means that I have to downgrade, which I never did before
black_blob said:
it means that I have to downgrade, which I never did before
Click to expand...
Click to collapse
oh yeah so you updated to the new version which got that unsigned drivers patched so you are going to downgrade a windows version so you can do unsigned drivers again? and continue linux port?
Hey mate,
I got a Surface RT (1st gen), with dualbooting RT8.0 jailbroken and RT8.1 clean.
black_blob said:
it means that I have to downgrade, which I never did before
Click to expand...
Click to collapse
For Downgrading you can use a Recovery-Stick, bringing you to RT8.0 without any updates.
Turn off automatic updates, and install the right ones manually.
black_blob said:
Get a thread on all the cores, shutdown them via setting IRQL to High level, and when you are sure that all of them are off, start the mailbox handler(disabling the MMU in the process) on secondary CPUs, then jump to the kernel in CPU0 after disabling paging.
Click to expand...
Click to collapse
Would you share some more detailed steps for us? I would gladly test anything....
Gratefully
Blade
This sounds really promising. And that settles it, sticking with RT 8.0 for sure now. Best of luck, and I'd be very interested in trying it out!

Project Treble

Hope Project Treble gets ported to OnePlus One.
@pranit said:
Hope Project Treble gets ported to OnePlus One.
Click to expand...
Click to collapse
"Treble is trouble" [email protected]_fabulous
Mr.Ak said:
"Treble is trouble" [email protected]_fabulous
Click to expand...
Click to collapse
Why? Mi5 got unofficial project treble OnePlus One is great device too.
@pranit said:
Why? Mi5 got unofficial project treble OnePlus One is great device too.
Click to expand...
Click to collapse
This hack/mod requires modifying and resizing the partition scheme of the phone - it was easy on the mi5 if I remember correctly because there was a partition that went unused if you weren't on MIUI. I think a while ago I also saw that someone was going to publish a guide on how to resize OPO partitions.
TL;DR: Not an easy task - yet probably possible with the devs we've got around here.
CedArctic said:
This hack/mod requires modifying and resizing the partition scheme of the phone - it was easy on the mi5 if I remember correctly because there was a partition that went unused if you weren't on MIUI. I think a while ago I also saw that someone was going to publish a guide on how to resize OPO partitions.
TL;DR: Not an easy task - yet probably possible with the devs we've got around here.
Click to expand...
Click to collapse
Let's just say it is in work.
Mr.Ak said:
Let's just say it is in work.
Click to expand...
Click to collapse
i heard it too... someone is working on it ?
that in teory should solve all the problems like camera not working and stuff like that in any rom if implemented correctly, right?
borzowsky said:
that in teory should solve all the problems like camera not working and stuff like that in any rom if implemented correctly, right?
Click to expand...
Click to collapse
I also think so......
Mr.Ak said:
Let's just say it is in work.
Click to expand...
Click to collapse
This may help to do re-partitions ?
http://en.miui.com/thread-183258-1-1.html
CedArctic said:
This hack/mod requires modifying and resizing the partition scheme of the phone - it was easy on the mi5 if I remember correctly because there was a partition that went unused if you weren't on MIUI. I think a while ago I also saw that someone was going to publish a guide on how to resize OPO partitions.
TL;DR: Not an easy task - yet probably possible with the devs we've got around here.
Click to expand...
Click to collapse
For bacon, it isn't necessary to repartition, we can still repurpose a partition for vendor. Let's just say that it's doable, but too much work for now. Even if we get treble it isn't very practical, given we have a 32 bit device.
Does Android P support 32-bit Processors ?
@pranit said:
Does Android P support 32-bit Processors ?
Click to expand...
Click to collapse
Nope.
LPW00 said:
Nope.
Click to expand...
Click to collapse
if there's a way someone will find it, else well it's a shame
P.S. Thinking of going to a nokia 7 plus(when price meets or it's near to 300e as the Chinese version. It's not about performance, I'm happy with that ...but for battery life, my gf would get this and she'd be more than happy)
evronetwork said:
if there's a way someone will find it, else well it's a shame
P.S. Thinking of going to a nokia 7 plus(when price meets or it's near to 300e as the Chinese version. It's not about performance, I'm happy with that ...but for battery life, my gf would get this and she'd be more than happy)
Click to expand...
Click to collapse
Oh, there definitely will be.
any good news?
Android 9 works well via LineageOS. There still is no Android 10 support but from what I have seen, LineageOS on Android 10 is very buggy. As long as LenageOS continues to support OnePlus 1, I will be happy. I guess it would be much easier if we had Treble though as new versions of Android should just "work".

[APP][BETA][arm64]Facebook App with less ads

Abandoned. Mods please close this thread.
deleted
Reserved 2
it doesn't work on nougat, obviously a dexes issue, like evilwombat's
patrickdrd said:
it doesn't work on nougat, obviously a dexes issue, like evilwombat's
Click to expand...
Click to collapse
Thanks for the feedback, mate!
Also, the target SDK of the version I used is Pie+.
@theincognito Will you reduce the requirements to Android 7.0?
tomo92s said:
@theincognito Will you reduce the requirements to Android 7.0?
Click to expand...
Click to collapse
As far as I can understand, Facebook uses arm7 till Android 7.0 and arm64 from Android 8.0, as app architecture. If I had to support Android 7 or below, I will probably have to release 2 versions - one for arm7 and one for arm64. No promises, but I will try if I get enough time
It works without any problems. Thank you
A lot of ads on my p30 pro
If you can, add option to hide relations.
I see sponsored posts in everywhere...
I get a package parsing error when installing, most likely due to being on Android 8. Thought it was worth a try though. Thanks for continuing development.
Faakarna said:
A lot of ads on my p30 pro
Click to expand...
Click to collapse
wenna.speedy said:
I see sponsored posts in everywhere...
Click to expand...
Click to collapse
Hi, so it's working fine for some and not for some others? Weird.
Could you send me the device name, android version?
Also, is location access granted to your FB app?
Hey Dev, I appreciate your work but I don't know why I'm getting ads. Thank you.
I see sponsored posts.
Galaxy Note 10
najmulbappy said:
Hey Dev, I appreciate your work but I don't know why I'm getting ads. Thank you.
Click to expand...
Click to collapse
daviddem said:
I see sponsored posts.
Galaxy Note 10
Click to expand...
Click to collapse
Yes. I made a mistake. Will come back with a better version.
@theincognito Really? You are so stupid....
tomo92s said:
@theincognito Really? You are so stupid....
Click to expand...
Click to collapse
/ban
Pseudonym said:
/ban
Click to expand...
Click to collapse
/ban
tomo92s said:
@theincognito Really? You are so stupid....
Click to expand...
Click to collapse
Pseudonym said:
/ban
Click to expand...
Click to collapse
It's not that, mate. I made like 4 different patches and the sponsored keeps popping up, for some, not for others. So I dunno what I am doing wrong. I dunno smali much and I admit my defeat, for the time being. :cyclops:
Also, the FB code is so damn obfuscated :/

Categories

Resources