Skip to content
Discussion options

You must be logged in to vote

2. can we downgrade to a lower version (such as 119) and do cryptosmite?

no, you can't. shimboot runs in devmode recovery (dev=1 reco=1), which FWMP editing/deleting is blocked by the Cr50 / Ti50's TPM2 implementation. the reason you can edit FWMP in regular devmode is because its not recovery (dev=1 reco=0).

So, here are the modes you can edit FWMP in:
dev=0 reco=0 (regular verified mode)
dev=0 reco=1 (verified recovery mode, this is why BadRecovery/OlyBmmer works)
dev=1 reco=0 (regular developer mode)

Replies: 6 comments 229 replies

Comment options

You must be logged in to vote
210 replies
@HittingSparks
Comment options

@s0urce-c0de
Comment options

@s0urce-c0de
Comment options

@HittingSparks
Comment options

@s0urce-c0de
Comment options

Comment options

You must be logged in to vote
10 replies
@s0urce-c0de
Comment options

@HittingSparks
Comment options

@s0urce-c0de
Comment options

@HittingSparks
Comment options

@s0urce-c0de
Comment options

Comment options

You must be logged in to vote
7 replies
@PluckybandYT
Comment options

@s0urce-c0de
Comment options

@PluckybandYT
Comment options

@s0urce-c0de
Comment options

@Raka-Mahendra
Comment options

Comment options

You must be logged in to vote
1 reply
@levi204
Comment options

Answer selected by S-PScripts
Comment options

You must be logged in to vote
1 reply
@thatboyo
Comment options

Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment