Forum RSS Feed Follow @ Twitter Follow On Facebook

Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
[-]
Welcome
You have to register before you can post on our site.

Username:


Password:





[-]
Latest Threads
Exemplary Сasual Dating - Real Women
Last Post: adambolt2000
Today 11:35 PM
» Replies: 0
» Views: 5
Superlative Сasual Dating - Genuine Dams...
Last Post: wrightoctopos
Today 11:14 PM
» Replies: 0
» Views: 15
Exemplary Сasual Dating - Real-life Girl...
Last Post: BILELLAGHA
Today 11:12 PM
» Replies: 0
» Views: 12
Outstanding Сasual Dating - Real Women
Last Post: mcdjkrizantem
Today 10:38 PM
» Replies: 0
» Views: 16
[REQUEST] Lenovo B490 (H1ETxxWW) Whiteli...
Last Post: sardax
Today 10:03 PM
» Replies: 101
» Views: 31715
Super Сasual Dating - Verified Damsels
Last Post: Mirlabia
Today 10:02 PM
» Replies: 0
» Views: 27
Exemplary Сasual Dating - Verified Maide...
Last Post: kedalher
Today 09:58 PM
» Replies: 0
» Views: 25
[REQUEST] Lenovo B590 (H1ETxxWW) BIOS Un...
Last Post: sardax
Today 09:50 PM
» Replies: 23
» Views: 8579
Exemplary Сasual Dating - Real-life Fema...
Last Post: enotar
Today 07:46 PM
» Replies: 0
» Views: 43
Super Сasual Dating - Authentic Ladies
Last Post: aaronsas
Today 07:08 PM
» Replies: 0
» Views: 48
[REQUEST] Acer Aspire E1-571(G) BIOS Unl...
Last Post: Dudu2002
Today 04:44 PM
» Replies: 127
» Views: 57931
Acer Predator Helios 300 N17C1 G3-572-79...
Last Post: chadreuel
Today 11:39 AM
» Replies: 0
» Views: 95
[REQUEST] Acer Nitro 5 AN515-56 BIOS Unl...
Last Post: Dudu2002
Today 07:25 AM
» Replies: 5
» Views: 887
[REQUEST] Lenovo Y50-70 (9ECNxxWW) BIOS ...
Last Post: Dudu2002
Today 03:52 AM
» Replies: 1972
» Views: 661742
[Request] Acer Aspire Z1620 (h61h aio v1...
Last Post: spingernexx
Yesterday 06:09 PM
» Replies: 2
» Views: 162
[REQUEST] Lenovo G505 (82CNxxWW) Whiteli...
Last Post: khaos
Yesterday 04:15 PM
» Replies: 155
» Views: 55237
Asus Prime b250m plus, RAM compatibility
Last Post: Slayery777
Yesterday 06:23 AM
» Replies: 0
» Views: 151
[REQUEST] Bios Unlock Request Clevo W230...
Last Post: happycrazyman
04-23-2024 03:53 PM
» Replies: 0
» Views: 129
Rog Strix B650E-F BIOS File Extraction
Last Post: panmetrix24
04-23-2024 11:25 AM
» Replies: 0
» Views: 148
[REQUEST] Lenovo G50-70 (9ACNxxWW) White...
Last Post: Pipo89
04-23-2024 06:47 AM
» Replies: 236
» Views: 69707

[REQUEST] ] Unlocking Insyde F.21 Bios options (Guide & tools included)
#1
Information 
Hey,

First, i'd like to salute this community for being all for sharing and progress through collaboration. I'm believe that unlocking the BIOS I have have could help a lot of people, it's on the HP Pavillion 15 cx0056wm laptop, but it's very on other cx00xxx laptops, if not the same, it mentioned the model with [censored] in the BIOS. Hp for some reason decided to not provide an option to access advanced settings, it's not cool, it makes the laptop like a "black box".

Anyways, I started looking for modded BIOS updates, didn't find any for that laptop, but a lot of people are looking for it as mentioned, so I decided to research doing it on my own. I need to disable CFG-Lock to be able to run Mac, because it uses the MSR 0x0E CPU register which is protected by the BIOS by default, that's why I'm using version F.21 and not the latest one, the latest one doesn't seem to have it at all, not sure if that means that it's disabled by default, but I don't want to try and not be able to downgrade.

I found a really cool tool that's been leaked from Intel, they later decided to publish it themselves anyways, it's called Insyder BIOS Editor (InsydeH2O_03.04/H2OEZE) it allows seeing the BIOS menu and replacing different modules, but I don't have a tool to modify the exported file, so I had to find another way. I found out about a cool guide that's especially for Hp laptops, it consists getting the .bin, using PhoenixTool (to get the .rom files, but I used UEFITool to find the GUID since it has search) to export two EFI structures, DXE core and SetupUtility, then using a Hex editor to find the data offsets of the menu tabs and finally using IDA Pro to find the display tabs conditional checks to determine whether to view them or not based on the manufacturer's settings, patching them using a Hex Editor, and loading them into the original bin using the Insyder tool to be ready flashing. I believe that I can just enable the settings through Insyde tools, change the default settings, that is, but i'm interested in solving it for others too, if that works then I could do without patching it, but I rather have all the settings in the BIOS, so it's a win-win.

I'm at the point where I need to find the offsets in the structure using a Hex Editor, but I can't find non of the menu options written in the format mentioned in the guide, with space and 0x00 between bytes, nor through their regular names, I only found Advanced mentioned, but it could be something else, someone more experience might know.

I skipped that step just to try, loaded the .rom into IDA and looked for the byte sequence mentioned in the guide for menu header data and I found them , but I need the tabs offsets to know exactly where to look.

The question is, could the EFI structure data be encrypted on top of the regular compression? I checked the decompress option upon extracting. Why is Hp making it hard on the modding community  Angry

Guide link: https://dlscrib.com/unlock-bios_588a1b8b...3_txt.html
F.21 BIOS update link (for model cx0056wm):  https://ftp.hp.com/pub/softpaq/sp100501-...100754.exe
HxD (Hex Editor): https://mh-nexus.de/en/downloads.php?product=HxD20
IDA Pro (free version): https://www.hex-rays.com/products/ida/su..._freeware/
IFRExtract (could be needed using other methods, like the extract module method using Insyde Editor, the output needed to be modified after, so it need to be decrypted/decompress if it's encrypted/compresses before being able to edit it, and then a way to recompile is needed after, the replace module in Insyde Editor is to be uses after, I left it as an attatchement)

I've attatched the things needed in the process, in case someone wants to try.

I'd appreciate it if anyone could shed some light, i'm still only a beginner when it comes to BIOS modding, I only get the general idea 

P.s: I got the bios bins from the official exe through making a recovery USB, although the USB recovery mode didn't work for me to flash, I used the update feature. The .fd files in BIOSUpdate.exe extracted didn't load in the Insyder Editor. To update later I'll try the USB hotkey method while having the .bin in the USB, seems to be a common option.


Attached Files
.zip   phoenixtool273.zip (Size: 2.83 MB / Downloads: 10)
.zip   UEFITool_NE_A57_win32.zip (Size: 7.51 MB / Downloads: 14)
.zip   ifrextract_v0.3.6_win.zip (Size: 32.65 KB / Downloads: 12)
find
quote
#2
Can anyone shed some light please? I'm trying to finish this ASAP, it shouldn't be hard, just a matter of finding the offsets, I just need to know if the .rom is RSA encrypted or if I shouold find other structures
find
quote


Forum Jump:


Users browsing this thread: 1 Guest(s)