


Once you’ve opened up the device and found the necessary test ports, you can short them with a pair of tweezers or something else metallic while inserting the USB cable into the device. (this link also gives a great write up on the EDL exploit and how it works as well). Not all devices have JTAG test ports, but if they do, this method works quite well. If the cable method doesn’t work, another helpful method is to short out the CMD pin on the test ports to direct the device to boot into EDL mode. Once the phone is in EDL mode, you’re free to continue with the acquisition. If you’re not sure the phone is in EDL mode, check Windows Device Manager for any Qualcomm devices listed under COM Ports which should confirm the device is in EDL mode and ready to go. After releasing the toggle button, the phone should boot into EDL mode. Just plug the cable into the computer, press and hold the toggle button and plug it into the phone. Once you have the cable, the workflow is straight forward. You can buy these cables and they are often included in commercial forensic solutions. The cable is designed with a toggle switch to short out the correct data pin and force the phone into EDL mode. Using a special cable to put the phone into EDL mode is probably the easiest method listed here. Below you can find instructions for all three methods, so you can get comfortable performing them to make use of this acquisition method. Finally, if the device is unlocked, you can use ADB or fastboot to reboot the phone into EDL mode. On some devices you can use a special cable, while others might require you to disassemble the device. There are three ways to put a device into EDL mode and no single method works on all phones. The method for putting a device into EDL mode can vary depending on the model. On supported devices, we can use EDL to extract a full image. Emergency Download (EDL) mode is a Qualcomm feature that can allow you to recover data from a device and perform tasks like unbricking or flashing the device. Abusing Qualcomm EDL Mode for Device CaptureĮDL acquisitions are one of many ways you can bypass passcodes and gain physical access to many Android devices with Qualcomm based chipsets.
