OnePlus is switching to Realme unlocking scheme, NOT closing down bootloader unlock procedure. The real questions become:
1. Will there be a quota?
2. Will there be a week wait?
1. Will there be a quota?
2. Will there be a week wait?
😐14
Tadi Channel
OnePlus is switching to Realme unlocking scheme, NOT closing down bootloader unlock procedure. The real questions become: 1. Will there be a quota? 2. Will there be a week wait?
Actually, have translation of the whole original post on Chinese OP forum:
Good luck!
In order to protect the security of users' devices and data, and enhance system stability, we will adjust the bootloader unlocking method on ColorOS 16. Developers and users with specific needs can apply to join the in-depth testing program through the official channel if they are fully aware of the risks associated with unlocking and brushing and can bear the risks.
Specific application rules and operational procedures are as follows.
1)【Application Requirements
All of the following conditions must be met in order to apply to join the Deep Test Program:
ColorOS 16.0 and above models
No account abnormality or violation
No application record within 30 days
Non-government-enterprise and carrier-customized cell phones and tablets
Mobile phones and tablets listed in mainland China
2)【Application Instructions
1、After joining the test program, unlocking Bootloader privileges, modifying system files and other behaviors may cause unpredictable effects on the device, including but not limited to:
The three-party firmware may make some functions of the device can not run normally, such as the camera to take pictures. This may result in damage to the device.
Personal security and private information on the device may be leaked, and security is not guaranteed.
Some system functions may be modified, affecting system version upgrades and preventing you from experiencing the latest ColorOS services.
The data on the device may be damaged or lost, and cannot be recovered, so it is recommended to back up the data in advance.
2. After joining the test program, if the product is caused to have a functional failure, it will not be ennoscriptd to the return and exchange service, but will be ennoscriptd to the original warranty. If you can successfully recover to the official system by brushing, you can still enjoy the three packages normally, if the recovery fails, you can only enjoy the warranty.
3) How to apply for in-depth testing?
1、Please make sure that:
1) The phone and tablet meet the application conditions and support in-depth testing
(2) The system version type is the official version, and upgraded to the version that supports in-depth test when OTA detects the latest version (Viewing method: Settings > About this machine > Version information).
2. Follow the instructions to complete the application process at the in-depth test application portal.
3、After submitting the application, please wait patiently for the review, which is expected to be completed within 1~2 working days.
4、Related announcements will be released in the official account of OnePlus Community [ColorOS Upgrade Assistant], please pay attention to get relevant information in time.
QA
1、Is the Bootloader unlocking policy of previous ColorOS version affected?
For previous ColorOS versions, Bootloader unlocking is not affected.
2、When will this Bootloader unlocking policy be enforced?
The policy will be applied to the first batch of ColorOS 16-powered OnePlus phones and tablets in the second half of the year.
3. When can I apply to join the in-depth testing?
Relevant announcements will be released on the official account of ColorOS Upgrade Assistant in the OnePlus community, so please pay attention to get the relevant information in time.
4、Do I need to answer questions to apply for the in-depth test?
No. Users can finish the application process by following the prompts in the in-depth test application portal, and will be able to get the unlocked BL privileges after passing the audit in 1~2 working days.
5. Is there any limit on the total number of Bootloader unlocking applications and is there a limited number of unlocking quota?
No, there is no quota limit at present.
6、What is the after-sale policy after unlocking?
Good luck!
In order to protect the security of users' devices and data, and enhance system stability, we will adjust the bootloader unlocking method on ColorOS 16. Developers and users with specific needs can apply to join the in-depth testing program through the official channel if they are fully aware of the risks associated with unlocking and brushing and can bear the risks.
Specific application rules and operational procedures are as follows.
1)【Application Requirements
All of the following conditions must be met in order to apply to join the Deep Test Program:
ColorOS 16.0 and above models
No account abnormality or violation
No application record within 30 days
Non-government-enterprise and carrier-customized cell phones and tablets
Mobile phones and tablets listed in mainland China
2)【Application Instructions
1、After joining the test program, unlocking Bootloader privileges, modifying system files and other behaviors may cause unpredictable effects on the device, including but not limited to:
The three-party firmware may make some functions of the device can not run normally, such as the camera to take pictures. This may result in damage to the device.
Personal security and private information on the device may be leaked, and security is not guaranteed.
Some system functions may be modified, affecting system version upgrades and preventing you from experiencing the latest ColorOS services.
The data on the device may be damaged or lost, and cannot be recovered, so it is recommended to back up the data in advance.
2. After joining the test program, if the product is caused to have a functional failure, it will not be ennoscriptd to the return and exchange service, but will be ennoscriptd to the original warranty. If you can successfully recover to the official system by brushing, you can still enjoy the three packages normally, if the recovery fails, you can only enjoy the warranty.
3) How to apply for in-depth testing?
1、Please make sure that:
1) The phone and tablet meet the application conditions and support in-depth testing
(2) The system version type is the official version, and upgraded to the version that supports in-depth test when OTA detects the latest version (Viewing method: Settings > About this machine > Version information).
2. Follow the instructions to complete the application process at the in-depth test application portal.
3、After submitting the application, please wait patiently for the review, which is expected to be completed within 1~2 working days.
4、Related announcements will be released in the official account of OnePlus Community [ColorOS Upgrade Assistant], please pay attention to get relevant information in time.
QA
1、Is the Bootloader unlocking policy of previous ColorOS version affected?
For previous ColorOS versions, Bootloader unlocking is not affected.
2、When will this Bootloader unlocking policy be enforced?
The policy will be applied to the first batch of ColorOS 16-powered OnePlus phones and tablets in the second half of the year.
3. When can I apply to join the in-depth testing?
Relevant announcements will be released on the official account of ColorOS Upgrade Assistant in the OnePlus community, so please pay attention to get the relevant information in time.
4、Do I need to answer questions to apply for the in-depth test?
No. Users can finish the application process by following the prompts in the in-depth test application portal, and will be able to get the unlocked BL privileges after passing the audit in 1~2 working days.
5. Is there any limit on the total number of Bootloader unlocking applications and is there a limited number of unlocking quota?
No, there is no quota limit at present.
6、What is the after-sale policy after unlocking?
😐4❤2
Tadi Channel
OnePlus is switching to Realme unlocking scheme, NOT closing down bootloader unlock procedure. The real questions become: 1. Will there be a quota? 2. Will there be a week wait?
After unlocking the privileges, if the product is caused to malfunction, it is not ennoscriptd to return or exchange service, but can enjoy the original warranty. If you can successfully recover to the official system by brushing, you can still enjoy the three guarantees normally, if the recovery fails, you can only enjoy the warranty.
https://bbs.oneplus.com/thread/1926504022886318086
https://bbs.oneplus.com/thread/1926504022886318086
一加社区
一加手机官方论坛。一加手机开箱体验、测评报告、玩机技巧、手游攻略。与你分享美图及摄影技巧,众多大神教你轻松刷机,并由丰富手机资源任由下载。百万加油大家庭,交流更随心,一加社区官方论坛
Tadi Channel
After unlocking the privileges, if the product is caused to malfunction, it is not ennoscriptd to return or exchange service, but can enjoy the original warranty. If you can successfully recover to the official system by brushing, you can still enjoy the three…
Tldr they say 1-2 working days and no quota, but the phrasing about account makes it sound like it may need to be a month old. I also suggest a little bit of caution about Chinese units, but for now, unlocking Chinese Realmes abroad wasn't a problem (and didn't need a month old account)
Tadi Channel
Tldr they say 1-2 working days and no quota, but the phrasing about account makes it sound like it may need to be a month old. I also suggest a little bit of caution about Chinese units, but for now, unlocking Chinese Realmes abroad wasn't a problem (and didn't…
So now from my understanding, as "deep testing" gives you bootloader access and by itself doesn't influence your later actions, even the normiest of normies should start applying for it.
For the sake of stats, and unironically also the resell value. By successfully applying, you're giving your unit the ability to unlock, so the value of your device increases compared to default state without sacrificing anything.
For the sake of stats, and unironically also the resell value. By successfully applying, you're giving your unit the ability to unlock, so the value of your device increases compared to default state without sacrificing anything.
👍7
Google is such a mess now about releasing security patches that they confused (a) Qualcomm (employee).
https://issuetracker.google.com/u/0/issues/436838167
https://issuetracker.google.com/u/0/issues/436838167
😐10😁6🔥2
Just setting the record straight about a somewhat dated topic (I'm far from happy that a state before this commit managed to be real for any period of time):
https://github.com/eu-digital-identity-wallet/eudi-app-android-wallet-ui/commit/9367289f3da1abd7f2cff0e7e05d67a95f4fdf60
https://github.com/eu-digital-identity-wallet/eudi-app-android-wallet-ui/commit/9367289f3da1abd7f2cff0e7e05d67a95f4fdf60
GitHub
Update README.md · eu-digital-identity-wallet/eudi-app-android-wallet-ui@9367289
EUDI Wallet Prototype. Contribute to eu-digital-identity-wallet/eudi-app-android-wallet-ui development by creating an account on GitHub.
❤3😐3👍2
Forwarded from R0rt1z2’s Dumpster
Since Nothing decided to ignore my report, after waiting for about a month I decided to release it publicly :)
You can find the source code and full details here: https://github.com/R0rt1z2/fenrir. Currently, it only supports the Nothing Phone 2a but it should apply to more MediaTek devices from what I've seen on
You can also test the patched LK image from the releases section. It should spoof the bootloader state as locked while it’s actually unlocked, allowing you to pass strong integrity anywhere (as shown in the pictures I shared a few months ago).
Have fun, and sorry for the messy repo. I wish I had more time to write a proper guide and clean things up.
You can find the source code and full details here: https://github.com/R0rt1z2/fenrir. Currently, it only supports the Nothing Phone 2a but it should apply to more MediaTek devices from what I've seen on
expdb dumps.You can also test the patched LK image from the releases section. It should spoof the bootloader state as locked while it’s actually unlocked, allowing you to pass strong integrity anywhere (as shown in the pictures I shared a few months ago).
Have fun, and sorry for the messy repo. I wish I had more time to write a proper guide and clean things up.
🔥14😐1
R0rt1z2’s Dumpster
Since Nothing decided to ignore my report, after waiting for about a month I decided to release it publicly :) You can find the source code and full details here: https://github.com/R0rt1z2/fenrir. Currently, it only supports the Nothing Phone 2a but it should…
Obviously, it's an example of an exploit that could be further utilized for PIA proxying. Google knows they can't really keep up with banning and the vulnerable build will keep passing strong for a significant time, hence:
https://news.1rj.ru/str/TadiBlog/547
https://news.1rj.ru/str/TadiBlog/547
Telegram
Tadi Channel
So Google already acknowledges the feasibility of proxying PIA results to/from (a good linguistic question...) vulnerable devices
😐2
The future is proxying PIA from your own vulnerable ewaste device that won't ever be downgraded to no integrity because of coming from a major OEM (assuming it'll be secured enough to make secret extraction impossible but unpatched enough to be fine with proxying)
🤯9😐2❤1🥰1
Forwarded from Codeaurora Releases
New CodeLinaro OSS release detected!
Tag:
Manifests: Vendor - dummy (AUDIO_IOT.LA.11.0.R2) - dummy (GRAPHICS.LA.16.1.R2) - dummy (VIDEO.LA.5.1.R1) - dummy (LA.QISI.16.0.R1)
Chipsets:
Build ID: BQ2A.250705.001
Date: 2025-08-22T11:17:33.000+00:00
Tag:
LA.VENDOR.16.2.1.r1-03700-LAHAINA.0 Manifests: Vendor - dummy (AUDIO_IOT.LA.11.0.R2) - dummy (GRAPHICS.LA.16.1.R2) - dummy (VIDEO.LA.5.1.R1) - dummy (LA.QISI.16.0.R1)
Chipsets:
blair, canoe, common, kalama, lahaina612, sepolicy_vndr, sun, taro, vendor-common, wlanBuild ID: BQ2A.250705.001
Date: 2025-08-22T11:17:33.000+00:00
😐3
It's an IoT tag, don't expect your lahaina smartphones or tablets on stock to get a new vendor. Unless it's Fairphone or industrial device.
😐5
If you don't swipe on your keyboard yet (especially if it's Gboard and you often use English), you should absolutely start to, it's like riding a bike, except that not enough people will shame you for missing this skill.
(I just read that there are people who WANT the Xiaomi behavior of back gesture working over the keyboard which obviously breaks swiping, smh)
Alternatively, if you still refuse to swipe, I'll excuse you if your daily phone screen time doesn't exceed an hour. Otherwise, please learn it, for your own wellbeing. Disable typing personalisation and form a basic memory on which words you can expect to be easily swipable and ones you expect to need typing manually. From there, single handed typing will become actually pleasant and accurate.
(I just read that there are people who WANT the Xiaomi behavior of back gesture working over the keyboard which obviously breaks swiping, smh)
Alternatively, if you still refuse to swipe, I'll excuse you if your daily phone screen time doesn't exceed an hour. Otherwise, please learn it, for your own wellbeing. Disable typing personalisation and form a basic memory on which words you can expect to be easily swipable and ones you expect to need typing manually. From there, single handed typing will become actually pleasant and accurate.
❤12
Google is asking non-GP developers to identify themselves so that Google gets a better opportunity to show how extremely compliant they are by skipping the Play Protect nag screens on such third party verified developers
AND/OR
they're looking for a chance to be a bigger nuisance for apps distributed by third parties which refuse to identify themselves.
Either way, you already disabled Play Protect long ago, right? The chance that disabling Play Protect won't suffice is rather slim. Going so far as to require Google stamp on every sideloaded app no matter the way of installation would be absolutely great news to move privacy conscious people away from GMS Android, hence a bulletproof restriction is very unlikely. We don't even know if European Union and other countries are completely fine with existing Apple policy where they're always in your way of permanent installation of an "unauthorized" app. Google must balance their greed.
AND/OR
they're looking for a chance to be a bigger nuisance for apps distributed by third parties which refuse to identify themselves.
Either way, you already disabled Play Protect long ago, right? The chance that disabling Play Protect won't suffice is rather slim. Going so far as to require Google stamp on every sideloaded app no matter the way of installation would be absolutely great news to move privacy conscious people away from GMS Android, hence a bulletproof restriction is very unlikely. We don't even know if European Union and other countries are completely fine with existing Apple policy where they're always in your way of permanent installation of an "unauthorized" app. Google must balance their greed.
😐5