-
Notifications
You must be signed in to change notification settings - Fork 447
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
BCM4389 #550
Comments
Hi @TQMatvey, |
@jlinktu |
Waitting for you, thanks |
any ETAs or any way to see the progress? i am also very interested at reverse engineering, and patching firmwares |
So, when? Im waitting for you, thanks! |
A bit more patience required. |
Okay, waitting for you thanks! |
Hello, it's been 2 months, tiny bump, any news? |
Uhhh any news..? |
@jlinktu could you send nexmon-magisk.zip for testing on S21 Ultra?) |
Hi @TQMatvey, |
trying to i have tried different NDK versions, sourced setup_env.sh.. |
Try with NDK r11c (download here) as stated here. |
Btw. the firmware image on the Galaxy S21 Ultra is named |
did not help... |
upd: fixed, had to go into utilities, and compile there first |
flashed, wifi is dead, i adapted fw name and path (/vendor/firmware/wifi/bcmdhd_sta.bin_c1
not sure what to do from here at all... |
@jlinktu, so, I see that new firmwares (bcm4389, bcm4398) are not supporting monitor and injectoins. Does it mean that newly bcms unsupport it (very hard to add). Or we just need wait until you add it |
Hi @savox-326, it is still possible to add monitor mode and frame injection to those firmwares if you want it quick and simple, you might copy the code from one of the prior chips like the bcm4375, of course you need to adapt some bits here and there, add the right dummy function addresses and structs and their members however, as the 4389 and 4398 are 802.11ax and 802.11be chips they should have new things that might be worth adding, so if I would add monitor and frame injection I want to do it in a proper/clean way, but I currently don't have the time for that - might be something for the future though regarding the 4389, on samsung phones they ship monitor and manufacturer testing firmwares that should already contain functionalities for monitor mode and frame injection, you might want to play with these if you don't want to do the patching |
@jlinktu can you tell how find addresses of functions? In example latest bcm4375 firmware has 0x13c68b length but the ucode extractor references to 0x289a58 or bigger values of length. Same history with patches. So can you explain what to do? |
I'd hate to necropost an open issue here, but if there's any update on support for the BCM4398 on the Pixel devices, I'd love the ability for monitor mode as well |
This issue is on the bcm4389, not on the bcm4398. But, yes, at some point we might add monitor mode for it here. |
Hello, @matthiasseemoo, i have spent many weeks researching monitor mode for BCM4389, had 0 luck, i can provide remote access to S21 Ultra, and any needed blobs, really hope you could help.
Here is and interesting topic i found but it didnt help at all :<
https://forum.xda-developers.com/t/get-bcm4389-into-monitor-mode-for-wifi-sniffing.4525011/
The text was updated successfully, but these errors were encountered: