G'day XDA Developers.
I would love to root my Samsung Galaxy S10 then install a custom recovery (TWRP) then flash a custom rom (LinageOS) how ever I trip Knox when ever I attempt to do these things. So I was wondering how do you go about disabling Knox?
After some Googeling I found this site https://www.progeeksblog.com/how-to-disable-samsung-knox/ How ever these methods require you to first root your phone but rooting triggers Knox.
So I am at a loss here I am running stock android rom until I figure out how to bypass Knox.
OzGreatAndTerrible said:
G'day XDA Developers.
I would love to root my Samsung Galaxy S10 then install a custom recovery (TWRP) then flash a custom rom (LinageOS) how ever I trip Knox when ever I attempt to do these things. So I was wondering how do you go about disabling Knox?
After some Googeling I found this site https://www.progeeksblog.com/how-to-disable-samsung-knox/ How ever these methods require you to first root your phone but rooting triggers Knox.
So I am at a loss here I am running stock android rom until I figure out how to bypass Knox.
Click to expand...
Click to collapse
you cant completely block knox...
unlocking bl and flashing modified firmeare wil trip knox.. u cant reset knox flag either
Update: You can disable Knox by using Multidisabler: https://forum.xda-developers.com/ga...ynos/g97xf-multi-disabler-encryption-t3919714
OzGreatAndTerrible said:
Update: You can disable Knox by using Multidisabler: https://forum.xda-developers.com/ga...ynos/g97xf-multi-disabler-encryption-t3919714
Click to expand...
Click to collapse
thats always been around lolol.. but regardless ur post was more about not tripping knox which ur knox is in fact tripped so "disabling" knox doesnt change anything really.. also, that zip doesnt really disable knox.. it disables verification, defex, force encryption etc.
Actually it says that it disables vault keeper which is supposed to replace Knox but any way yea your right my post was more about flashing anything trips knox so how are you supposed to get around that.
OzGreatAndTerrible said:
Actually it says that it disables vault keeper which is supposed to replace Knox but any way yea your right my post was more about flashing anything trips knox so how are you supposed to get around that.
Click to expand...
Click to collapse
vaultkeeper is not to replace knox.. samsung bases all their security on knox.. vaultkeeper is in addition to knox..
there is no way around tripping knox.. the knox warranty bit is a physical fuse that gets blown when bl is unlocked and u flash a custom firmware and there is no way to reset it..
magiskhide can sometimes "fake" it but with safetynet improving if ur device is set to use hardware then there wont be any way around that either in the long run
elliwigy said:
vaultkeeper is not to replace knox.. samsung bases all their security on knox.. vaultkeeper is in addition to knox..
there is no way around tripping knox.. the knox warranty bit is a physical fuse that gets blown when bl is unlocked and u flash a custom firmware and there is no way to reset it..
magiskhide can sometimes "fake" it but with safetynet improving if ur device is set to use hardware then there wont be any way around that either in the long run
Click to expand...
Click to collapse
If your not worried about warranties or anything then tripping Knox doesn't matter?
ryanallaire said:
If your not worried about warranties or anything then tripping Knox doesn't matter?
Click to expand...
Click to collapse
it will likely cause most samsung apps not to work unless theres any tricks that still work also
ryanallaire said:
If your not worried about warranties or anything then tripping Knox doesn't matter?
Click to expand...
Click to collapse
I don't care about voiding warranty. What happens when I try and flash anything custom on the device Knox gets tripped and the phone refuses to boot. Thats what I am talking about trying to bypass.
I have Galaxy Tab Active3, which is locked to organization and it seems to have Knox enabled.
I want to Factory reset it so I can use it for private use.
I cannot get it into download mode, but I can get it in recovery mode. However, the Wipe data/factory reset option seems to be disabled.
Dialing *#0*# and *#*#88#*# from emergency dialer do not work either.
Any advice how to remove the Knox protection and factory reset the device, so I can set it up from scratch and remove the organization lock?
checho_85 said:
I have Galaxy Tab Active3, which is locked to organization and it seems to have Knox enabled.
I want to Factory reset it so I can use it for private use.
I cannot get it into download mode, but I can get it in recovery mode. However, the Wipe data/factory reset option seems to be disabled.
Dialing *#0*# and *#*#88#*# from emergency dialer do not work either.
Any advice how to remove the Knox protection and factory reset the device, so I can set it up from scratch and remove the organization lock?
Click to expand...
Click to collapse
I would be interested in, too.
Related
please tell me a way how to reset knox counter in galaxy s5
DjBeast2990 said:
please tell me a way how to reset knox counter in galaxy s5
Click to expand...
Click to collapse
No way to reset knox
Really!
an0ther said:
No way to reset knox
Click to expand...
Click to collapse
But there are some posts saying that can reset knox but cant find the program
The knox counter, once tripped, cannot be reset, not even by Samsung.
Simplest way is to flash one of our excellent ROMS such as Unity or Dynamic Kat. They have removed Knox altogether, amongst other improvements.
Of course, read everything you can first, and follow directions carefully. As you can plainly see, even following directions can get one into trouble.
I'm curious as too how you managed to trip the knox counter ???
That has proven to be very difficult on a device with a locked and encrypted bootloader...
Are you using an ATT device ??
Will this ever happen?
I just got my new...used note 4. I have sim unlocked it. I'd like to wait a little while before rooting it to see if anyone creates a new root method which doesn't trip knox. I hate that I cant use titanim, or LMT, or even root explorer.
Any opinions... Should I just go and trip the Knox.. I do not need KNOX, but I read something in another post which said if knox is tripped then we might not be able to flash updated ROMS???
THe other reason for not tripping knox would be for resale value.
ilmar72 said:
Will this ever happen?
I just got my new...used note 4. I have sim unlocked it. I'd like to wait a little while before rooting it to see if anyone creates a new root method which doesn't trip knox. I hate that I cant use titanim, or LMT, or even root explorer.
Any opinions... Should I just go and trip the Knox.. I do not need KNOX, but I read something in another post which said if knox is tripped then we might not be able to flash updated ROMS???
THe other reason for not tripping knox would be for resale value.
Click to expand...
Click to collapse
If you're questioning whether you should root or not, then you shouldn't root. I don't regret tripping knox, I'm enjoying the phone much more now.
The question you should be asking yourself is. Is there anything I want that I can't do without a root?
By the time a method without tripping knox comes out (if ever), that resell value would have dropped substantially.
Hey where can I download your rom
Wrong section buddy
Well I just figured out tonight that LMT does work in this phone without root. At least the pie wheel does. I haven't tried any gestures yet.
So this makes me happy
Edit: I see this is nothing new. Lmt says root is needed for gestures and isas
theeze said:
If you're questioning whether you should root or not, then you shouldn't root. I don't regret tripping knox, I'm enjoying the phone much more now.
The question you should be asking yourself is. Is there anything I want that I can't do without a root?
By the time a method without tripping knox comes out (if ever), that resell value would have dropped substantially.
Click to expand...
Click to collapse
Good point. But is it true that we won't be able to flash new radios?
Thread locked
Hawke84 said:
Lots of work went I to finding a solution on S4 when knox first came out including by chainfire with no luck. Also since october people have been trying to root note 4 without tripping knox with no luck.
There is no difference in the system of tripped and not tripped. Soon as anything unsigned or insecure is flashed the bootloader burns the efuse
Sent from my SM-G920F using XDA Premium 4 mobile app
Click to expand...
Click to collapse
As you can see my idea was a bust but here is the original op
Correct me if I am wrong here, the reason knox is being tripped by cf auto root is because of the way it acquirers root not because it is rooted. With that in mind I would Like to make a tar ball with a pre rooted system.img with knox already disabled. To make sure it will have the best possibility to not trip knox and not cause a soft brick I want to use a system dump from a running phone that has only been rooted and knox disabled. I am pretty sure this has worked on every galaxy phone before the s6 and the only reason you don't hear more about it recently is because of the success of towelroot. I am getting this phone on the 1st (so excited) and would like root but want to try samsung pay more.
If you are willing to help I need the following:
Be on a 100% stock samsung bloated system with root (absolutely no tweaked systems I need pure stock with root)
Install supersu into /system (supersu settings)
Have supersu disable knox (If you know this by itself will trip knox please tell me)
Make a system.img dump with adb or terminal emulator and upload it for me (as long as you do not dump the data partition no personal data will be dumped)
At this point I will make the tarball and upload it and have the person who made the system dump flash the tarball. If he/she boots up fine I will the need a volunteer who has not rooted and verified that knox has not been tripped on his/her phone to flash it and see if knox still has its warranty. Obviously the volunteer should go into this not caring if knox gets tripped.
To make things completely clear I need the following:
Somebody who knows how to dump with adb/terminal emulator and already rooted
Somebody without a tripped knox warranty who doesn't care if it gets tripped
Post a replay if you want to supply the system.img so others know not to.
Closed at OP's request.
Currently no one has really figured out what KNOX is. Some say it is a eFuse but there isn't any solid evidence. Even if it is a eFuse there must be some way to bypass it? We just need to knox for what it checks specifically.
Here are some facts:
Some people claim that they got their phone repaired by guarantee and it reset their KNOX counter from 1 to 0 without changing the motherboard.
SamFAIL can currently root your phone without tripping KNOX. The question is how?
KunkerLV said:
Currently no one has really figured out what KNOX is. Some say it is a eFuse but there isn't any solid evidence. Even if it is a eFuse there must be some way to bypass it? We just need to knox for what it checks specifically.
Here are some facts:
Some people claim that they got their phone repaired by guarantee and it reset their KNOX counter from 1 to 0 without changing the motherboard.
SamFAIL can currently root your phone without tripping KNOX. The question is how?
Click to expand...
Click to collapse
We actually know a lot of those answers already...Samsung doesn't exactly keep it all a secret . As per Google:
https://support.samsungknox.com/hc/...-a-Knox-Warranty-Bit-and-how-is-it-triggered-
sefrcoko said:
We actually know a lot of those answers already...Samsung doesn't exactly keep it all a secret . As per Google:
https://support.samsungknox.com/hc/...-a-Knox-Warranty-Bit-and-how-is-it-triggered-
Click to expand...
Click to collapse
Thanks didn't know such an article existed. So perhaps finding out how it detects if a non-knox kernel has been loaded and then bypass it that way.
Also do you have any idea how SamFAIL manages to keep knox 0x0?
KunkerLV said:
Thanks didn't know such an article existed. So perhaps finding out how it detects if a non-knox kernel has been loaded and then bypass it that way.
Also do you have any idea how SamFAIL manages to keep knox 0x0?
Click to expand...
Click to collapse
Hmm not sure... I suspect it has something to do with having a locked bootloader on those Snapdragon models, meaning root must be achieved differently (in a way that doesn't trip knox), but I really am just speculating here. There may be more detail in the SamFail thread, or someone else might be able to better explain. I have an Exynos model.
I think that the very reason for implementing something like knox is, SAFETY for the user/owner, many see knox as a restraint, something that does not allow them to fully tinker with their devices, at the end, anybody can root the device, knox indeed has nothing to do with it, just flags the fact that the device has been tampered, and no longer as secure as it was before, so, I think knox is a GOOD thing, and that anybody has achieved to return it to 0x0 once tripped, is excellent news, but that is my opinion
Sorry to say but it's unlikely you'll find a way to bypass Knox without tripping it. People much smarter than us have been trying ever since it came out.
In roms you can disable Knox & it will show 0x0 but it will still show tripped in download mode. SamFail doesn't trip Knox cause it's using an engineering bootloader that was leaked from Samsung. Since that engineering bootloader is not custom binary, it won't trip Knox. So until something similar is leaked for Exynos, root without trippin Knox is not possible. Well it's not root exactly, it's flashing custom recovery (like TWRP) is what trips Knox since it's custom binaries & you need TWRP to root.
What is the best way to reset Knox to 0x0? If possible without root...
mjoude said:
What is the best way to reset Knox to 0x0? If possible without root...
Click to expand...
Click to collapse
short answer: no, you cant reset knox back to 0x0.
The reason i didn't root was that i lose more functionality than i gain and there's no going back to knox 0x0 after that. I couldn't imagine my S3 Mini or S5 without root but my Note9 is perfect without root as many things that were available only with root in the past are included in the stock firmware or in Good Lock modules.
yaibakt said:
short answer: no, you cant reset knox back to 0x0.
Click to expand...
Click to collapse
https://www.knoxreset.com
What about..?
mjoude said:
https://www.knoxreset.com
What about..?
Click to expand...
Click to collapse
It's a scam. The Knox flag is indicating the state of an eFuse, which can't be changed nor reverted.
Shadowprince94 said:
It's a scam. The Knox flag is indicating the state of an eFuse, which can't be changed nor reverted.
Click to expand...
Click to collapse
The ONLY way to get KNOX back to 0X0 is to replace the mainboard...
You can get a rooted phone to display KNOX as 0X0 but it is cosmetic only and won't fool any apps that don't work on a rooted phone.
If you haven't replaced the boot file, rooted or replaced the recovery then an app you have installed likely is malware that has tried or successfully gained root privileges...
mjoude said:
What is the best way to reset Knox to 0x0? If possible without root...
Click to expand...
Click to collapse
Simple answer NO i made a mistake rooting my Tab S4 i'm never ever rooting unless i get a SnapDragon as they i heard you can root without trpping Knox! Also root is not needed as we have Youtube Vanced, Disconnect Pro! Package Disabler Pro, and #Mono oh forgot about Goodlock! Unless your planning on running Custom Roms it's simply not worth Rooting! As it's to much headache to root update reroot etc!
N1NJATH3ORY said:
Simple answer NO i made a mistake rooting my Tab S4 i'm never ever rooting unless i get a SnapDragon as they i heard you can root without trpping Knox! Also root is not needed as we have Youtube Vanced, Disconnect Pro! Package Disabler Pro, and #Mono oh forgot about Goodlock! Unless your planning on running Custom Roms it's simply not worth Rooting! As it's to much headache to root update reroot etc!
Click to expand...
Click to collapse
This^ I also removed a few preinstalled apps via ADB and granted one permission for Tasker via ADB as well. Root was mandatory in the past but not any more at all.