T480 advanced BIOS and KB matrix EC cracking - Some progress!

T480 advanced BIOS and KB matrix EC cracking - Some progress!

Post by H-Atkinson

I have been able to get some more info from the TP community at reddit. I made a post over there enlisting the help of anyone with info on Leokim's T480 EC crack, or any other method of achieving the same result, to let me know. A used PMed me (and requested I not name them) and provided me a step-by-step process for how the EC mod worked, but unfortunately didn't have access to what software was used, or any of Leokim's BIOS/Firmwares that he modified. The steps are as follows:

-Open bottom case, disconnect all power including CMOS
-Locate JTAG 2 connector under where WWAN card goes
-solder a lead to each pad of JTAG 2
-Solder "3 100kohm resistors to the pads above JTAG 2" (no info/photos beyond this, Im a bit confused)
-use SVOD3 in MEC mode to read firmware of MEC1653 (thinkengine) and back it up
-modify firmware (presumably somehow enabling advanced menus and adding/altering the KB matrix if what Leokim did is feasible through this method), and then reflash to MEC1653
-Disconnect SVOD3, boot and verify installation
-Traces and resistors may be left in place when machine is used again

This is copy-pasted from the message unless its in parenthesis. I dont have a SVOD3, or a rework station to effect these mods. If anyone does, and perhaps a sacrificial T480 mobo, and of course willing to try experimenting, do let me know if you get anywhere.

Its worth noting that this misses Leokim's mentions of encrypting and encrypting the firmware, but he may have just meant modifying the matrix in saying this. Unsure.

Also, if anyone knows a cheaper alternative to SVOD3 let me know, they dont exactly seem readily available unless you are willing to pay and arm and a leg for them, and accept some sketchy shipping terms from eastern Europe (as a former Moscow resident I dont entirely trust some of these ebay listings for them).
Re: T480 advanced BIOS and KB matrix EC cracking - Some progress!

Post by keithsketchley

T480 certainly inferior keyboard to small x41, key feel worse, no protection for Caps Lock key (x41 key had depressed surface on right end next to A key).

Having a large caps Lock key is foolish as it is little used, but at least x41's was depressed on inboard half.

