Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

Scheduled Pinned Locked Moved Uncategorized
applerighttorepair
137 Posts 74 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

    @LoneLocust i feel like Apple should be FORCED to unlock this when a user deletes a device from their appleID devices list.

    lonelocust@mastodon.socialL This user is from outside of this forum
    lonelocust@mastodon.socialL This user is from outside of this forum
    lonelocust@mastodon.social
    wrote last edited by
    #26

    @codemonkeymike but if Apple can remove the lock then surely it’s equally possible that someone else could too which would sort of defeat the purpose, wouldn’t it?

    Certainly, I would agree that if a person goes through the steps to wipe the machine to give it away or sell then that process should absolutely remove all of the security locks from the machine.

    N 1 Reply Last reply
    0
    • sidb@mastodon.cloudS sidb@mastodon.cloud

      @codemonkeymike @ottaross But I *love* that thieves are disincentivized, just like with iPhones.

      If I understand, you need the original user to remove the lock before donating, but they don’t know? I wonder if Apple could build in a feature like “contact this locked machine’s registered account holder and ask if they’re really done with it”. Then I could approve if I really donated/sold it, or click “absolutely not, brick it forever w/o my password” if I didn’t. (Hmm, how could that be abused?)

      ottaross@mastodon.socialO This user is from outside of this forum
      ottaross@mastodon.socialO This user is from outside of this forum
      ottaross@mastodon.social
      wrote last edited by
      #27

      @sidb Sadly Apple doesn't show interest in helping unlock.

      @codemonkeymike

      sidb@mastodon.cloudS 2 Replies Last reply
      0
      • ottaross@mastodon.socialO ottaross@mastodon.social

        @sidb Sadly Apple doesn't show interest in helping unlock.

        @codemonkeymike

        sidb@mastodon.cloudS This user is from outside of this forum
        sidb@mastodon.cloudS This user is from outside of this forum
        sidb@mastodon.cloud
        wrote last edited by
        #28

        @ottaross Yeah, they fall down on a lot of things lately

        ottaross@mastodon.socialO 1 Reply Last reply
        0
        • sidb@mastodon.cloudS sidb@mastodon.cloud

          @ottaross Yeah, they fall down on a lot of things lately

          ottaross@mastodon.socialO This user is from outside of this forum
          ottaross@mastodon.socialO This user is from outside of this forum
          ottaross@mastodon.social
          wrote last edited by
          #29

          @sidb Sadly so.

          1 Reply Last reply
          0
          • ottaross@mastodon.socialO ottaross@mastodon.social

            @sidb Sadly Apple doesn't show interest in helping unlock.

            @codemonkeymike

            sidb@mastodon.cloudS This user is from outside of this forum
            sidb@mastodon.cloudS This user is from outside of this forum
            sidb@mastodon.cloud
            wrote last edited by
            #30

            @ottaross Still, I don’t think the lock feature itself is villainous. Would be nice if they could do something for locked donations though, at least if the owner it’s locked to can be contacted.

            1 Reply Last reply
            0
            • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

              @cygnathreadbare thing is.. the t2 disables ANY boot from USB.. so you need to set the boot security to none.. but you can only do that from inside the recovery center.. which.. you guessed it.. you need to authenticate to even use. 😞

              cygnathreadbare@retro.pizzaC This user is from outside of this forum
              cygnathreadbare@retro.pizzaC This user is from outside of this forum
              cygnathreadbare@retro.pizza
              wrote last edited by
              #31

              @codemonkeymike uggh that's awful, I expected you to just be unable to log in on a new mac os installation but at least be able to use something else there 😞

              1 Reply Last reply
              0
              • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                @paulywill they can.. of course. But you need to unlock the bootloader to do that.. and you can't do that while its locked 😞

                That's the entire issue..

                yama@tech.lgbtY This user is from outside of this forum
                yama@tech.lgbtY This user is from outside of this forum
                yama@tech.lgbt
                wrote last edited by
                #32

                @codemonkeymike @paulywill What exactly keeps the bootloader locked ?
                If its a password or a config, or anything that is runtime change-able, it is then kept alive by the onboard battery.
                So cutting off ALL available power should hard reset the thing.

                The only way around this is if Apple hard coded the lock/password/whatever on a silicon level.

                realgene@hachyderm.ioR N 2 Replies Last reply
                0
                • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                  @coldclimate it really hurts every one of my brain cells. How could they not have thought about this?

                  hitokirieric@defcon.socialH This user is from outside of this forum
                  hitokirieric@defcon.socialH This user is from outside of this forum
                  hitokirieric@defcon.social
                  wrote last edited by
                  #33

                  @codemonkeymike @coldclimate Well. The use case they were trying to solve for was someone steals your laptop and tries to access it without your permission.

                  Hard part is getting owners to unlock it before donating/selling to someone else.

                  codemonkeymike@fosstodon.orgC 1 Reply Last reply
                  0
                  • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                    Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                    Without donor contact, these machines are useless. 😞

                    I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                    brandonscript@appdot.netB This user is from outside of this forum
                    brandonscript@appdot.netB This user is from outside of this forum
                    brandonscript@appdot.net
                    wrote last edited by
                    #34

                    @codemonkeymike counterpoint is that it's preventing theft so... 🤷

                    csgraves@turtleisland.socialC 1 Reply Last reply
                    0
                    • R relay@relay.publicsquare.global shared this topic
                    • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                      Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                      Without donor contact, these machines are useless. 😞

                      I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                      octaviaconamore@cutie.cityO This user is from outside of this forum
                      octaviaconamore@cutie.cityO This user is from outside of this forum
                      octaviaconamore@cutie.city
                      wrote last edited by
                      #35

                      @codemonkeymike @xeno oh dear, that's quite the fancy stack of paperweights

                      1 Reply Last reply
                      0
                      • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                        Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                        Without donor contact, these machines are useless. 😞

                        I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                        june@mspsocial.netJ This user is from outside of this forum
                        june@mspsocial.netJ This user is from outside of this forum
                        june@mspsocial.net
                        wrote last edited by
                        #36

                        @codemonkeymike what the fuck

                        K 1 Reply Last reply
                        0
                        • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                          Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                          Without donor contact, these machines are useless. 😞

                          I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                          adacosta@twit.socialA This user is from outside of this forum
                          adacosta@twit.socialA This user is from outside of this forum
                          adacosta@twit.social
                          wrote last edited by
                          #37

                          @codemonkeymike The sad part of this too is most #Apple Macs post T2 might not be suitable collectors items because of this. I own a lot vintage era #PowerBook G4's and G3's and there were times where I might want to reinstall OS X. Doing that is next to impossible on devices like this. Not to mention, even pre-T2 machines, if you don't use them for a while they lock you out requiring resetting the password through recovery.

                          1 Reply Last reply
                          0
                          • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                            Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                            Without donor contact, these machines are useless. 😞

                            I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                            oscherler@tooting.chO This user is from outside of this forum
                            oscherler@tooting.chO This user is from outside of this forum
                            oscherler@tooting.ch
                            wrote last edited by
                            #38

                            @codemonkeymike Android tablets are exactly the same, by the way.

                            K dalias@hachyderm.ioD 2 Replies Last reply
                            0
                            • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                              Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                              Without donor contact, these machines are useless. 😞

                              I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                              aaron@social.aaroncrocco.comA This user is from outside of this forum
                              aaron@social.aaroncrocco.comA This user is from outside of this forum
                              aaron@social.aaroncrocco.com
                              wrote last edited by
                              #39

                              @codemonkeymike @bigzaphod Doesn’t Apple have a program that will remove activation lock if you can prove provenance of the device?

                              TBH it’s also poor educating of the donors on Apple’s part that this step must be done prior to donating.

                              codemonkeymike@fosstodon.orgC 1 Reply Last reply
                              0
                              • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                                @Victorsigmoid have you seen the video of that? I just watched it and holy shit its intense haha.

                                I mean I AM considering it.. but what a nightmare.. its' super time consuming.. and you still need another up to date mac to hook it up to in DFW mode..

                                So even after ALL that.. you still end up needing a current Mac.. god i hate them

                                victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                victorsigmoid@hachyderm.io
                                wrote last edited by
                                #40

                                @codemonkeymike Yes it looked like something to undertake if and only if the plan is to learn it as a skill then use it for a while. If I had a few months' worth of laptops to liberate, though, it would be a fun challenge. Plus the desoldering and resoldering is a skill applicable to other repair and analysis. I think Matt Brown's hardware pen testing videos have gotten to me!

                                1 Reply Last reply
                                0
                                • magnetic_tape@infosec.exchangeM magnetic_tape@infosec.exchange

                                  @codemonkeymike
                                  I'll be curious to see that, do you have a link to it?
                                  @Victorsigmoid

                                  victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                  victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                  victorsigmoid@hachyderm.io
                                  wrote last edited by
                                  #41

                                  @magnetic_tape @codemonkeymike I watched the ifixit video, https://www.ifixit.com/Guide/How+to+Remove+MacBook+ID+Activation+Lock+by+T203/143072

                                  dazo@infosec.exchangeD 1 Reply Last reply
                                  0
                                  • yama@tech.lgbtY yama@tech.lgbt

                                    @codemonkeymike @paulywill What exactly keeps the bootloader locked ?
                                    If its a password or a config, or anything that is runtime change-able, it is then kept alive by the onboard battery.
                                    So cutting off ALL available power should hard reset the thing.

                                    The only way around this is if Apple hard coded the lock/password/whatever on a silicon level.

                                    realgene@hachyderm.ioR This user is from outside of this forum
                                    realgene@hachyderm.ioR This user is from outside of this forum
                                    realgene@hachyderm.io
                                    wrote last edited by
                                    #42

                                    @yama @codemonkeymike @paulywill
                                    It's in non-volatile memory (EEPROM) embedded in the chipset. It won't forget for 100 years.

                                    yama@tech.lgbtY 1 Reply Last reply
                                    0
                                    • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                                      Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                                      Without donor contact, these machines are useless. 😞

                                      I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                                      wafflesies@infosec.exchangeW This user is from outside of this forum
                                      wafflesies@infosec.exchangeW This user is from outside of this forum
                                      wafflesies@infosec.exchange
                                      wrote last edited by
                                      #43

                                      @codemonkeymike I've had go stop taking most idevices because even after resetting them they end up being locked to a schools activation server which makes them unusable
                                      So they all end up going to recycle

                                      1 Reply Last reply
                                      0
                                      • yama@tech.lgbtY yama@tech.lgbt

                                        @codemonkeymike @paulywill What exactly keeps the bootloader locked ?
                                        If its a password or a config, or anything that is runtime change-able, it is then kept alive by the onboard battery.
                                        So cutting off ALL available power should hard reset the thing.

                                        The only way around this is if Apple hard coded the lock/password/whatever on a silicon level.

                                        N This user is from outside of this forum
                                        N This user is from outside of this forum
                                        nicolas17@social.treehouse.systems
                                        wrote last edited by
                                        #44

                                        @yama @codemonkeymike @paulywill Why would they put it in volatile storage kept alive with a battery, if they have flash memory?

                                        elly@donotsta.reE 1 Reply Last reply
                                        0
                                        • limebar@mastodon.socialL limebar@mastodon.social shared this topic
                                        • lonelocust@mastodon.socialL lonelocust@mastodon.social

                                          @codemonkeymike but if Apple can remove the lock then surely it’s equally possible that someone else could too which would sort of defeat the purpose, wouldn’t it?

                                          Certainly, I would agree that if a person goes through the steps to wipe the machine to give it away or sell then that process should absolutely remove all of the security locks from the machine.

                                          N This user is from outside of this forum
                                          N This user is from outside of this forum
                                          nicolas17@social.treehouse.systems
                                          wrote last edited by
                                          #45

                                          @LoneLocust @codemonkeymike no, only Apple can clear it from their server database.

                                          lonelocust@mastodon.socialL 1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups