Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

Scheduled Pinned Locked Moved Uncategorized
applerighttorepair
137 Posts 74 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • vicash@fosstodon.orgV vicash@fosstodon.org

    @codemonkeymike I am interested to see if you have tried this method

    Just a moment...

    favicon

    (mrmacintosh.com)

    And

    Just a moment...

    favicon

    (mrmacintosh.com)

    You need a second Mac that works and you control the one with a firmware lock using Apple Configurator. I have converted Apple Macs to run Linux but all of them have been 2017 or earlier.

    codemonkeymike@fosstodon.orgC This user is from outside of this forum
    codemonkeymike@fosstodon.orgC This user is from outside of this forum
    codemonkeymike@fosstodon.org
    wrote last edited by
    #23

    @vicash yup.. doesnt work if you don't know the activation password.. AND if you can't prove ownership.

    It's shit mate

    Link Preview Image
    vicash@fosstodon.orgV 1 Reply Last reply
    0
    • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

      @vicash yup.. doesnt work if you don't know the activation password.. AND if you can't prove ownership.

      It's shit mate

      Link Preview Image
      vicash@fosstodon.orgV This user is from outside of this forum
      vicash@fosstodon.orgV This user is from outside of this forum
      vicash@fosstodon.org
      wrote last edited by
      #24

      @codemonkeymike did you try https://theapplewiki.com/wiki/Checkra1n their site says they have experimental support for T2 processors.

      1 Reply Last reply
      0
      • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

        Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

        Without donor contact, these machines are useless. 😞

        I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

        sidb@mastodon.cloudS This user is from outside of this forum
        sidb@mastodon.cloudS This user is from outside of this forum
        sidb@mastodon.cloud
        wrote last edited by
        #25

        @codemonkeymike @ottaross But I *love* that thieves are disincentivized, just like with iPhones.

        If I understand, you need the original user to remove the lock before donating, but they don’t know? I wonder if Apple could build in a feature like “contact this locked machine’s registered account holder and ask if they’re really done with it”. Then I could approve if I really donated/sold it, or click “absolutely not, brick it forever w/o my password” if I didn’t. (Hmm, how could that be abused?)

        ottaross@mastodon.socialO 1 Reply Last reply
        0
        • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

          @LoneLocust i feel like Apple should be FORCED to unlock this when a user deletes a device from their appleID devices list.

          lonelocust@mastodon.socialL This user is from outside of this forum
          lonelocust@mastodon.socialL This user is from outside of this forum
          lonelocust@mastodon.social
          wrote last edited by
          #26

          @codemonkeymike but if Apple can remove the lock then surely it’s equally possible that someone else could too which would sort of defeat the purpose, wouldn’t it?

          Certainly, I would agree that if a person goes through the steps to wipe the machine to give it away or sell then that process should absolutely remove all of the security locks from the machine.

          N 1 Reply Last reply
          0
          • sidb@mastodon.cloudS sidb@mastodon.cloud

            @codemonkeymike @ottaross But I *love* that thieves are disincentivized, just like with iPhones.

            If I understand, you need the original user to remove the lock before donating, but they don’t know? I wonder if Apple could build in a feature like “contact this locked machine’s registered account holder and ask if they’re really done with it”. Then I could approve if I really donated/sold it, or click “absolutely not, brick it forever w/o my password” if I didn’t. (Hmm, how could that be abused?)

            ottaross@mastodon.socialO This user is from outside of this forum
            ottaross@mastodon.socialO This user is from outside of this forum
            ottaross@mastodon.social
            wrote last edited by
            #27

            @sidb Sadly Apple doesn't show interest in helping unlock.

            @codemonkeymike

            sidb@mastodon.cloudS 2 Replies Last reply
            0
            • ottaross@mastodon.socialO ottaross@mastodon.social

              @sidb Sadly Apple doesn't show interest in helping unlock.

              @codemonkeymike

              sidb@mastodon.cloudS This user is from outside of this forum
              sidb@mastodon.cloudS This user is from outside of this forum
              sidb@mastodon.cloud
              wrote last edited by
              #28

              @ottaross Yeah, they fall down on a lot of things lately

              ottaross@mastodon.socialO 1 Reply Last reply
              0
              • sidb@mastodon.cloudS sidb@mastodon.cloud

                @ottaross Yeah, they fall down on a lot of things lately

                ottaross@mastodon.socialO This user is from outside of this forum
                ottaross@mastodon.socialO This user is from outside of this forum
                ottaross@mastodon.social
                wrote last edited by
                #29

                @sidb Sadly so.

                1 Reply Last reply
                0
                • ottaross@mastodon.socialO ottaross@mastodon.social

                  @sidb Sadly Apple doesn't show interest in helping unlock.

                  @codemonkeymike

                  sidb@mastodon.cloudS This user is from outside of this forum
                  sidb@mastodon.cloudS This user is from outside of this forum
                  sidb@mastodon.cloud
                  wrote last edited by
                  #30

                  @ottaross Still, I don’t think the lock feature itself is villainous. Would be nice if they could do something for locked donations though, at least if the owner it’s locked to can be contacted.

                  1 Reply Last reply
                  0
                  • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                    @cygnathreadbare thing is.. the t2 disables ANY boot from USB.. so you need to set the boot security to none.. but you can only do that from inside the recovery center.. which.. you guessed it.. you need to authenticate to even use. 😞

                    cygnathreadbare@retro.pizzaC This user is from outside of this forum
                    cygnathreadbare@retro.pizzaC This user is from outside of this forum
                    cygnathreadbare@retro.pizza
                    wrote last edited by
                    #31

                    @codemonkeymike uggh that's awful, I expected you to just be unable to log in on a new mac os installation but at least be able to use something else there 😞

                    1 Reply Last reply
                    0
                    • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                      @paulywill they can.. of course. But you need to unlock the bootloader to do that.. and you can't do that while its locked 😞

                      That's the entire issue..

                      yama@tech.lgbtY This user is from outside of this forum
                      yama@tech.lgbtY This user is from outside of this forum
                      yama@tech.lgbt
                      wrote last edited by
                      #32

                      @codemonkeymike @paulywill What exactly keeps the bootloader locked ?
                      If its a password or a config, or anything that is runtime change-able, it is then kept alive by the onboard battery.
                      So cutting off ALL available power should hard reset the thing.

                      The only way around this is if Apple hard coded the lock/password/whatever on a silicon level.

                      realgene@hachyderm.ioR N 2 Replies Last reply
                      0
                      • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                        @coldclimate it really hurts every one of my brain cells. How could they not have thought about this?

                        hitokirieric@defcon.socialH This user is from outside of this forum
                        hitokirieric@defcon.socialH This user is from outside of this forum
                        hitokirieric@defcon.social
                        wrote last edited by
                        #33

                        @codemonkeymike @coldclimate Well. The use case they were trying to solve for was someone steals your laptop and tries to access it without your permission.

                        Hard part is getting owners to unlock it before donating/selling to someone else.

                        codemonkeymike@fosstodon.orgC 1 Reply Last reply
                        0
                        • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                          Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                          Without donor contact, these machines are useless. 😞

                          I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                          brandonscript@appdot.netB This user is from outside of this forum
                          brandonscript@appdot.netB This user is from outside of this forum
                          brandonscript@appdot.net
                          wrote last edited by
                          #34

                          @codemonkeymike counterpoint is that it's preventing theft so... 🤷

                          csgraves@turtleisland.socialC 1 Reply Last reply
                          0
                          • R relay@relay.publicsquare.global shared this topic
                          • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                            Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                            Without donor contact, these machines are useless. 😞

                            I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                            octaviaconamore@cutie.cityO This user is from outside of this forum
                            octaviaconamore@cutie.cityO This user is from outside of this forum
                            octaviaconamore@cutie.city
                            wrote last edited by
                            #35

                            @codemonkeymike @xeno oh dear, that's quite the fancy stack of paperweights

                            1 Reply Last reply
                            0
                            • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                              Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                              Without donor contact, these machines are useless. 😞

                              I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                              june@mspsocial.netJ This user is from outside of this forum
                              june@mspsocial.netJ This user is from outside of this forum
                              june@mspsocial.net
                              wrote last edited by
                              #36

                              @codemonkeymike what the fuck

                              K 1 Reply Last reply
                              0
                              • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                                Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                                Without donor contact, these machines are useless. 😞

                                I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                                adacosta@twit.socialA This user is from outside of this forum
                                adacosta@twit.socialA This user is from outside of this forum
                                adacosta@twit.social
                                wrote last edited by
                                #37

                                @codemonkeymike The sad part of this too is most #Apple Macs post T2 might not be suitable collectors items because of this. I own a lot vintage era #PowerBook G4's and G3's and there were times where I might want to reinstall OS X. Doing that is next to impossible on devices like this. Not to mention, even pre-T2 machines, if you don't use them for a while they lock you out requiring resetting the password through recovery.

                                1 Reply Last reply
                                0
                                • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                                  Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                                  Without donor contact, these machines are useless. 😞

                                  I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                                  oscherler@tooting.chO This user is from outside of this forum
                                  oscherler@tooting.chO This user is from outside of this forum
                                  oscherler@tooting.ch
                                  wrote last edited by
                                  #38

                                  @codemonkeymike Android tablets are exactly the same, by the way.

                                  K dalias@hachyderm.ioD 2 Replies Last reply
                                  0
                                  • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                                    Another reason to hate #Apple We're seeing more 2018+ MacBook Pro/Air donations — but Apple's T2 chip means even after iCloud sign-out and reset, the firmware stays locked to the original account.

                                    Without donor contact, these machines are useless. 😞

                                    I've upcycled ~1,000 older Macs, but T2 era machines will end that. It's controlling, creates e-waste, and will only get worse. #righttorepair matters — Apple couldn't care less.

                                    aaron@social.aaroncrocco.comA This user is from outside of this forum
                                    aaron@social.aaroncrocco.comA This user is from outside of this forum
                                    aaron@social.aaroncrocco.com
                                    wrote last edited by
                                    #39

                                    @codemonkeymike @bigzaphod Doesn’t Apple have a program that will remove activation lock if you can prove provenance of the device?

                                    TBH it’s also poor educating of the donors on Apple’s part that this step must be done prior to donating.

                                    codemonkeymike@fosstodon.orgC 1 Reply Last reply
                                    0
                                    • codemonkeymike@fosstodon.orgC codemonkeymike@fosstodon.org

                                      @Victorsigmoid have you seen the video of that? I just watched it and holy shit its intense haha.

                                      I mean I AM considering it.. but what a nightmare.. its' super time consuming.. and you still need another up to date mac to hook it up to in DFW mode..

                                      So even after ALL that.. you still end up needing a current Mac.. god i hate them

                                      victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                      victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                      victorsigmoid@hachyderm.io
                                      wrote last edited by
                                      #40

                                      @codemonkeymike Yes it looked like something to undertake if and only if the plan is to learn it as a skill then use it for a while. If I had a few months' worth of laptops to liberate, though, it would be a fun challenge. Plus the desoldering and resoldering is a skill applicable to other repair and analysis. I think Matt Brown's hardware pen testing videos have gotten to me!

                                      1 Reply Last reply
                                      0
                                      • magnetic_tape@infosec.exchangeM magnetic_tape@infosec.exchange

                                        @codemonkeymike
                                        I'll be curious to see that, do you have a link to it?
                                        @Victorsigmoid

                                        victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                        victorsigmoid@hachyderm.ioV This user is from outside of this forum
                                        victorsigmoid@hachyderm.io
                                        wrote last edited by
                                        #41

                                        @magnetic_tape @codemonkeymike I watched the ifixit video, https://www.ifixit.com/Guide/How+to+Remove+MacBook+ID+Activation+Lock+by+T203/143072

                                        dazo@infosec.exchangeD 1 Reply Last reply
                                        0
                                        • yama@tech.lgbtY yama@tech.lgbt

                                          @codemonkeymike @paulywill What exactly keeps the bootloader locked ?
                                          If its a password or a config, or anything that is runtime change-able, it is then kept alive by the onboard battery.
                                          So cutting off ALL available power should hard reset the thing.

                                          The only way around this is if Apple hard coded the lock/password/whatever on a silicon level.

                                          realgene@hachyderm.ioR This user is from outside of this forum
                                          realgene@hachyderm.ioR This user is from outside of this forum
                                          realgene@hachyderm.io
                                          wrote last edited by
                                          #42

                                          @yama @codemonkeymike @paulywill
                                          It's in non-volatile memory (EEPROM) embedded in the chipset. It won't forget for 100 years.

                                          yama@tech.lgbtY 1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups