We've posted a tutorial on exploiting the most recently released android vulnerability which affects the Google TV platform. This process uses a tool called Cydia Impactor by Saurik which allows execution of commands as the "system" user. On some devices this can easily be leveraged for root and on others there is not a known public privilege escalation available.
Saurik's Analysis of the Bug: http://www.saurik.com/id/17
Exploiting Key Signing Tutorial: http://gtvhacker.com/index.php/Exploiti ... g_for_Root
This bug is separate from anything we plan to release at DEF CON. If your device is not currently exploitable check back in a few weeks
This thread will be used to help users troubleshoot the exploit process, for updates needing to be made to the wiki in the tutorial, and for anything else relevant to this bug.
Thanks,
Zenofex
Generic Root Guide: Works for MOST of the platform.
Generic Root Guide: Works for MOST of the platform.
Bitcoin donations can be sent to:
15mb6ER9gbujUXJABBd146W34FwWX2F1Lx
15mb6ER9gbujUXJABBd146W34FwWX2F1Lx
Re: Generic Root Guide: Works for MOST of the platform.
has anyone tried this on the Vizio CoStar?
edit: nevermind, I missed that section. WOOHOO!!!
edit: nevermind, I missed that section. WOOHOO!!!
-
- Android 1.0
- Posts: 43
- Joined: Tue Nov 20, 2012 11:30 am
- GTV Device Owned: Sony NSZ-GS7 (v2 streamer)
Re: Generic Root Guide: Works for MOST of the platform.
I tried to install on my NSZ GS7, but in the end I get permission denied on the temporary folder
-
- Android 1.0
- Posts: 43
- Joined: Tue Nov 20, 2012 11:30 am
- GTV Device Owned: Sony NSZ-GS7 (v2 streamer)
Re: Generic Root Guide: Works for MOST of the platform.
i got this screen in last "Program Output":
### Google TV Modification Package ###
For Support Visit: http//wwwGTVHacker.com
/data/local/tmp/impactor-1:cannot create /tmp/log: permission denied
### Google TV Modification Package ###
For Support Visit: http//wwwGTVHacker.com
/data/local/tmp/impactor-1:cannot create /tmp/log: permission denied
-
- Android 1.0
- Posts: 43
- Joined: Tue Nov 20, 2012 11:30 am
- GTV Device Owned: Sony NSZ-GS7 (v2 streamer)
Re: Generic Root Guide: Works for MOST of the platform.
Where is everybody? , I have the perception that this forum is dying
- jbloggs
- 1.5 Cupcake
- Posts: 62
- Joined: Sat May 05, 2012 10:53 am
- GTV Device Owned: NSZ-GT1 (Bluray Player)
Re: Generic Root Guide: Works for MOST of the platform.
Seems like no one has been successful yet.
Oh BTW, when is DEF CON?
Oh BTW, when is DEF CON?
Re: Generic Root Guide: Works for MOST of the platform.
This does not get root on the NSZ-GS7/8. What you're seeing is that the initial command from impactor is going through and placing abovoro wrote:i got this screen in last "Program Output":
### Google TV Modification Package ###
For Support Visit: http//wwwGTVHacker.com
/data/local/tmp/impactor-1:cannot create /tmp/log: permission denied
Code: Select all
ro.kernel.qemu=1
As for the Logitech and Sony users, we're working on something for you guys.
I can at some point go and test more of my devices. However its been pretty hectic getting things ready for DEF CON.jbloggs wrote:Seems like no one has been successful yet.
Oh BTW, when is DEF CON?
DEFCON August 1st-4th
Thanks,
Zenofex
Bitcoin donations can be sent to:
15mb6ER9gbujUXJABBd146W34FwWX2F1Lx
15mb6ER9gbujUXJABBd146W34FwWX2F1Lx
-
- Android 1.0
- Posts: 43
- Joined: Tue Nov 20, 2012 11:30 am
- GTV Device Owned: Sony NSZ-GS7 (v2 streamer)
Re: Generic Root Guide: Works for MOST of the platform.
I'm testing the new version of cydia impactor, and really works , congrats devs =)
-
- Android 1.0
- Posts: 2
- Joined: Tue Jul 30, 2013 12:04 pm
- GTV Device Owned: NSZ-GT1 (Bluray Player)
Re: Generic Root Guide: Works for MOST of the platform.
What about Sony NSZ-GT1 ? Anybody with success running exploit ? Tried both ways to no avail. Also may need a separate busybox as x86 architecture.
Re: Generic Root Guide: Works for MOST of the platform.
Is there a version of Cydia Impactor for linux users? We have adb access etc......what can currently be accomplished with root on logitech revue without file read/write? Is that only for data partition or also system? can I install apps or remove apps?