There is 3 way :
1. Software - ADB/Fastboot. With help of stupid "security labs" almost all vendors close them.
2. HW ( high ) - USB jig. Almost closed - see p1.
HW ( low ) - factory point. In most cases it trigger , can be closed as well
3. HW low - eMMC cmd/dx short - universal. |