bkerler / dump_avb_signature

Dump Android Verified Boot Signature
55 stars 16 forks source link

about re-sign image #4

Open joyway66 opened 5 years ago

joyway66 commented 5 years ago

once i dumped the official signature,like this: Boot Signature Tool v1.6 (c) B.Kerler 2017-2019

Kernel=0x00001000, length=0x0222B000 Ramdisk=0x0222C000, length=0x0023E000 Second=0x0246A000, length=0x00000000 QCDT=0x0246A000, length=0x00000000 Signature start=0x0246A000

ID: 867fb6a41ab2ae4d60accaa331289be9d94eb108000000000000000000000000 Image-Target: b'/boot' Image-Size: 0x246a000 Signature-Size: 0x246a000

Calced Image-Hash: f586d1acc84cc1b9cec0307433808aa623eb6b3ba5daa54312355de85c1b23c0 Signature-Hash: f586d1acc84cc1b9cec0307433808aa623eb6b3ba5daa54312355de85c1b23c0 AVB-Status: VERIFIED, 0

Signature-RSA-Modulus (n): ee6953a810e208a71441e2c963d31b8a4fbb76cabbc3cef1d084e02533cbf3fab9d1fffea2989f844f4eff74 cbc013cf7714ce4b9c540b35c509f856081a36d8773142552604adf553abde9edfbfecc554fce99bb3dfddaaf0e064638505ce935dc30cd6aba27ed2 d02c132bbbefc10221388f71e4c982897b231ce32258c771c2b77df3fd7507f5173881e8105339004a8f6e89d8a0aab529973372a4e06795d3074231 951472e5971abb745239ab0fec476bc8d28fdf9845bec159ef917d8097b6aac06ab79efd0db81809b89d2ce70e37d21f84f9d0988d06469e39ff5867 042587aec9b4565bb9e50fe69ae54377979ae6dd7687670342dd0e4389a28047 Signature-RSA-Exponent (e): 010001

TZ Root of trust (locked): d0d15653e0bb7a0b0d043dfcc56b36933377747fef9be05fd024219cc16a4bf2 TZ Root of trust (unlocked): 936f536a504a515bcf4a2b8324f426989b04f35c6dbc03d0b36530df960cbfb5

and then i unpack->edit->repack; is there anyway to re-sign wtih the official singature or replace the signature with official. now i just use AIK signature by google test-key

bkerler commented 5 years ago

Hi, if you do have the signing keys, you can use my android_universal repository for building and signing. However without proper signing key, you will need a bootloader exploit instead.