Archive for the 'Jailbreak' Category
The Dev Team has announced that redsn0w now incorporates the limera1n exploits plus some additional sweets:
- custom bootrom logos
- a custom DFU button in pwnageTool
But!
For Windows users who have run redsn0w and chosen “Just enter pwned DFU mode right now”, your device is now completely vulnerable. Running iTunes and selecting a custom IPSW from PwnageTool (choose it by pressing Shift+Restore)….you’ve now convinced your device and iTunes to restore to a custom firmware. Congratulations! If you are timid about software and running these programs…please just wait! Don’t jeopardize your carrier unlock for a firmware upgrade. Wait for even easier methods than this latest redsn0w release.
iOS 4.2 is nearing:
What does this mean to you?
- Unlockers, stay where you are; any mistake could lead to permanent bricking.
- IF you only want the jailbreak and are sure you have your personalized 4.1 SHSH hashes, you can experiment but, as the dev team says,
“Honestly unless you love living on the bleeding edge, it’s better to just wait for official updates from Cydia/redsn0w/PwnageTool.
RedSn0w Mac
RedSn0w Windows
rooster
- Jailbreak your iPod Touch – using pwnagetool (only necessary for the last option)
- An App that uses VoiP to make phone calls:
a. Skype – especially helpful for international calls but only helpful if you’re willing to pay a little money monthly
b. Fring – considered the most versatile; works with GTalk, SIP, AIM, MSN, ICQ, Twitter, Facebook. Has video chat over 3G!
c. Line2 – best option; Unlimited calling/texting in US and Canada; Make your own phone number; comes with a caveat: is only free for 30 days and costs $10/month after that.
d. google Voice – My personal favorite at no cost except for international calls.
3. Getting Constant Wifi
Using the iPod at home usually poses little problem (that is, if you have wifi). The problem is, of course, going out of the house. One solution is the Verizon MiFi, Sprint Overdrive. This will only save you money if you were to chose AT&T’s unlimited plan (which is now actually changing).
Here is a cool graph describing how the financials will work out.
The battery Issue: the iPod will of course be fine all day, but the Mifi will not. The solution to this is the car charger for the hotspot Mifi.
4. If you jailbroke your iPod Touch, you can use Siphone SIP/VoiP, installed via Cydia. This is the best and most customizable route.
Ultimate pros/cons:
Pros
- You save a ton of money over paying for an iPhone (or any newer smartphone, really), whether you get a 3G data plan or not.
- Dropped calls are about as frequent as they are on an iPhone.
- Headset features work exactly the same as they do on the iPhone, so the experience feels very similar.
- The high-end iPod touch offers twice the storage as the high-end iPhone (64GB vs. 32GB).
- The iPod touch, bereft of a 3G radio, gets better battery life.
- If you get a cellular data hotspot (like the Verizon MiFi), you can keep your iPod touch in your pocket while placing the MiFi elsewhere for a better signal.
- A lack of cellular reception in your home is completely irrelevant since you can place your calls over Wi-Fi.
Cons
- Despite being pretty close, phone features are not quite as seamless on the iPod touch as they are on the iPhone.
- Dropped calls are not as obvious as they are on an iPhone, so it’s not very easy to tell when you’ve lost someone without looking at the screen (bad for the car).
- The iPod touch isn’t built with the intention you’ll use it as a phone, so you need to purchase a headset for it to really shine.
- The iPod touch doesn’t provide a GPS, so you will need to purchase an external GPS unit at an addition cost if you want to use it as a navigation device in your car (although you could try relying on Wi-Fi signal triangulation).
- The iPod touch’s camera isn’t nearly as good as the iPhone 4′s.
- If you want to make calls using a cellular data hotspot (like the Verizon MiFi), you have to carry around two devices.
- If you use a cellular data hotspot, its battery life is pretty poor (only up to four hours). While you can get an extended battery for your hotspot that’ll last the day, it’ll cost you around $100.
rooster
The Dev Team just released PwnageTool 4.1.2 for Mac OS X!
But…
ULTRASN0W UNLOCKERS BEWARE!! ULTRASN0W UNLOCKERS BEWARE!! The biggest mistake you can make (and it is a big one!) is lettings iTunes restore to the official IPSW — you’ll lose the unlock and won’t be able to go back! You must use Option-Restore, not just the Restore button by itself. Then navigate to your custom IPSW — not to the stock one! If you accidentally started a restore to the official IPSW, unplug your iPhone immediately before the restore gets to the “Updating Firmware” step!
This exploit works untethered on these devices at firmware 4.1:
- AppleTV 2G
- iPad (firmware 3.2.2)
- iPod touch 4G
- iPod touch 3G
- iPhone4
- iPhone 3GS
- iPhone 3G
So, what does PwnageTool do:
IT allows you to restore a custom made IPSW file. Ex) you can restore to a pre-jailbroken firmware while still keeping your current baseband. For iPhone 3G users, one can also get their own boot and recovery logos as well as multitasking and battery charge percentage.
PwnageTool’s main advantage to ramdisk-based methods (limera1n, greenpois0n, redsn0w) is for unlockers — those that need to keep their current baseband and preserve their ultrasn0w unlock. But in this new age of both bootrom- and userland-based exploits, it’s an excellent platform for continuing the jailbreak through all future firmwares.
Here is the official Torrent:
PwnageTool 4.1.2 Torrent - PwnageTool_4.1.2.dmg.5904259.TPB.torrent
SHA1 Sum = 1c0d5ea45464e336fcb38c644dc125c3a16b5493
rooster
Well, geohot has done it again, and with class. . . it was a surprise.
Almost randomly and certainly with great surprise, geohot has released limera1n, the newest jailbreak tool. This is a bootrom-level jailbreak that works on a great amount of devices:
iPhone 3GS
iPhone 4
iPod Touch 3G
iPod 4G
iPad
AppleTV 2G
DO NOT USE LIMERA1N IF YOU USE THE ULTRASN0W CARRIER UNLOCK — wait for PwnageTool to incorporate the limera1n exploit. This is so that you can avoid updating your baseband and losing the unlock (possibly forever).
TO DO BEFORE YOU JAILBREAK:
Backup your SHSH hashes for 4.1.
- This can be accomplished by either using Cyida – which is probably the easiest
- Or using Tiny Umbrella – which allows you to always come back to an untethered, jailbreakable 4.1 on your device.
and finally, here is the limrain!
rooster
“SHAtter” developed by @pod2G, is well on its way toward finding a jailbreak for the iPod Touch 4th Generation.
This early in the game, I’m quite pleased they have already found some holes in Apple’s code.
The dev team comments that this jailbreak solution is far faster than the one set up by pwnagetool (which is reserved more toward iPhone 4 users)
Here is a video of SHAtter!
I will update you as soon as this becomes a user friendly reality.
Apple TV and SHAtter:
It’s looking like SHAtter is going to be the gift that keeps on giving. Even though the new AppleTV isn’t yet in people’s homes, the firmware is available on Apple’s normal public distribution servers and SHAtter has been used to decrypt its keys! The main filesystem (“Mojave8M89.K66OS”) key for 018-8609-066.dmg is:
31c700a852f1877c88efc05bc5c63e8c7f081c4cb28d024ed7f9b0dbc98c7e1406e499c6
If you’re familiar with vfdecrypt, you can use that key to decrypt the image and mount it.
pretty cool thing this SHAtter.
If you want to follow their twitter updates directly click here!
rooster
If the exhaustive eight step install process I posted a few weeks ago is a bit too long or complex, here is a new, easier, and faster way to accomplish the same thing: install flash on your:
iPhone 3Gs, iPhone 4, or iPad
step 1. A jailbroken device is necessitated so if you haven’t already, here is tutorial.
step 2. Then simple open Cydia > Manage > Sources
step 3. Edit source and add http://repo.benm.at
step 4: Download Frash and install it!!
have fun,
rooster
Well, after an extended vacation, Comex has brought back Jailbreakme 2.0!
This miraculous jailbreak solution is so amazingly simple. Merely go to:
www.jailbreakme.com
or
www.jailbreakme.modmyi.com
on your iPad, iPhone, or iPod Touch to start the process.
Once there the on-screen instructions will baby you through the jailbreak.
* Jailbreakme works on the following devices:
- iPod Touch 1G on iOS 3.1.2
- iPod Touch 1G on iOS 3.1.3
- iPod Touch 2G on iOS 3.1.2
- iPod Touch 2G on iOS 3.1.3
- iPod Touch 2G on iOS 4.0
- iPod Touch 3G on iOS 3.1.2
- iPod Touch 3G on iOS 3.1.3
- iPod Touch 3G on iOS 4.0
- iPad on iOS 3.2
- iPad on iOS 3.2.1
- iPhone 3G on iOS 3.1.2
- iPhone 3G on iOS 3.1.3
- iPhone 3G on iOS 4.0
- iPhone 3G on iOS 4.0.1
- iPhone 3G[S] iOS on 3.1.2
- iPhone 3G[S] iOS on 3.1.3
- iPhone 3G[S] iOS on 4.0
- iPhone 3G[S] iOS on 4.0.1
- iPhone 4 on iOS 4.0
- iPhone 4 on iOS 4.0.1
Check out more jailbreak solutions here on our official jailbreak help page.
have fun!
rooster
In order to customize and edit the theme of your device, one needs to be able to SSH into the device.
1. You need an FTP client.
* CyberDuck for Mac (You can also use Fugu or iPhone Explorer)
2. Install OpenSSH and SBSettings to your iPhone.
- SBSettings will help you toggle SSH on/off
Tip: change your devices root and user passwords periodically
3. Now follow the appropriate instructions below:
- iPhone Explorer users – plug in your phone and launch iPhone Explorer and it should automatically populate your iPhone file system, then skip to step 5
- Most other FTP clients:
-Get on a WiFi network
-Record your iPhone’s IP address (Setting-> Wi-Fi ->blue arrow next to the network you are connected to)
-Launch your FTP client
Tip: SSH is a huge battery hog, so keep it off unless actively using it

4. Enter your iPhone’s IP address and set port to 22. Your username is root and the default password is ‘alpine’ (without the quotes). Click connect or continue. You should now have a list of all your iPhone’s files.
Tip: Keep your device plugged in during this process to ensure that your battery doesn’t die

Your browser may not support display of this image.
5. Now merely click Library —> Themes to find all the themes you have downloaded.
Tip: Go to Settings -> Autolock -> Never. Sometimes your SSH client will show an error screen when the device sleeps; this ensures that will never happen.
The Android community is growing and the OS is improving greatly. Naturally, somebody thought it would be a great idea to run Android on their iPhone. Its still a bit unstable but if you want to test it you, here is very simple and therefore justifiably long tutorial provided by android-a-lot.
DISCLAIMER: Do this at your own risk
Downloads
Here’s a bunch of stuff that you’ll need before you start:
- IMPORTANT! Jailbroken iPhone 2G only!!!!
- VirtualBox Get the right version Windows/Mac
- VirtualBox Ubuntu Image. Download number 10, Ubuntu Linux 9.10 codename Karmic Koalax86
- iPhone Explorer.
- Android images and sources
- Patched images.
Preparation
Let’s get some of the basics out of the way:
- Open Task Manager
- Kill the iTunes Helper process
- Install iPhone Explorer
- Connect your iPhone to your Mac/PC
- Run iPhone Explorer
- Click the Change Root button
- Select “/” Real iPhone Root Directory
- Browse to private/var
- Copy ramdisk.img, userdata.img, cache.img and zImage from Downloads#5 (Android images and sources) to that var directory
- Copy system.img and android.img.gz from Downloads#6 (patched images) to the that var directory
- That’s all the Android files on your iPhone, now to make them run!
Setting Up Virtual Box
- Install VirtualBox
- Open VirtualBox
- Go on File > Virtual Media Manager
- Make sure Hard Disks is selected
- Click Add
- Locate the ubuntu-9.10.vdi file (download#3) and select it
- Close Virtual Media Manager
- Go on Machine > New
- Click Next
- Under Name enter “Ubuntu”
- Select Linux Operating System
- Select Ubuntu Version
- Click Next
- Set an amount of RAM, the default should be fine
- Click Next
- Select “Use existing hard disk”
- Select the ubuntu-9.10.vdi
- Click Next
- Click Finish
- Select that new machine to start up Ubuntu
- The password to login is: reverse
Setting Up Ubuntu
Almost there – if this feels a bit long, just consider how short and simple each step is!
- Click System (top bar) > Administration > Synaptic Package Manager
- Enter the password: reverse
- In the quicksearch box, type libusb-1.0, click the Check Box next to libusb-1.0-0 and select Mark for installation
- In the quicksearch box, type libreadline, click the Check Box next to libreadline5 and select Mark for installtion
- Click Apply
- When it’s all installed close the Package Manager
- Open Firefox (in Ubuntu)
- Download openiboot installer from here
- Click Places (top bar) > Downloads
- Right-click openiboot.zip and click Extract Here
- Click Applications (top bar) > Accessories > Terminal
- Without the quotes, type ‘cd Downloads/openiboot’
- Restart your iPhone in Recovery Mode (power off, hold down Home button, connect to USB cable)
Getting Android Working!
Well done on getting this far! This is where the fun beings (credits to WinX Blog for these instructions –link)
- In VirtualBox, the Ubuntu Window, go on Devices > USB Devices and select iPhone (Recovery Mode)
- In the terminal type (without quotes): ’sudo su’
- Enter the password: reverse
- In the terminal type ./loadibec openiboot.img3
- You’ll see the OpeniBoot screen appear on your iPhone
- Hold down the power button a couple of seconds (iPhone)
- The bottom option, openiboot console, will become selected
- Press Home (iPhone). You’ll see a bunch of text appear and stop at “Welcome to openiboot”
- In VirtualBox, the Ubuntu Window, go on Devices > USB Devices and select iPhone (OpeniBoot Mode)
- In terminal type su ./oibc
- Enter the password: reverse
- If this doesn’t work just type: ./oibc
- You’ll see the same text from the iPhone in the Terminal
- Type (without quotes) ‘nor_read 0×09000000 0×0 1048576? and press Enter
- Wait for it to say Done
- Type (without quotes) ‘~norbackup.dump:1048576?
- This creates a backup of your NOR memory – save a copy on USB stick, or email it to yourself or something
- Type install, press Enter. When this is done you’ve got openiboot installed on your iPhone. You’re done!
Finishing Off
What you’ve achieved up til now is Android files on your iPhone, and then installing openiboot so that you have an option to start iPhone OS or Android when you turn on your phone. Openiboot was necessary because that’s the only way right now that you can boot into Android. Here’s how to finish off and get into Android:
- If you still have Terminal open with the oibc still running, just type ‘reboot’, press Enter and skip to step 3
- If you don’t have Terminal open, disconnect your phone, turn it off and back on
- When openiboot appears press Power button to switch to openiboot console (bottom option)
- Hold down the Home button
- Android will start to boot, but it might take a while
Thanks to:
planetbeing – the man who did all the hard work!
WinXBlog – guide for getting openiboot running
Geekoid – for the system images
and a huge thanks to Superhero
rooster
Well, they did it.
The Untethered jailbreak for the iPhone, iPod touch, and yes, the iPad is here!
This new jailbreak works on the latest firmwares.
The creator of Spirit, @comex, give us some advice about their his JB:
- Spirit is an untethered jailbreak for iPad, iPhone, and iPod touch on the latest firmwares.
- Spirit is not a carrier unlock.
- If you currently are using a tethered jailbreak, you have to restore to use Spirit. Do not upgrade if you use an unlock on an iPhone 3G or 3GS. (You can, however, restore to 3.1.2 if you have SHSH blobs for that version.)
. . . and the requirements for the JB:
- Any iPad, iPhone, or iPod touch on firmware 3.1.2, 3.1.3, or 3.2.
- An activated device: one not stuck on the Connect to iTunes or Emergency Call screen.
- Any version of iTunes 9 (including 9.1.1).
- Syncing with iTunes before trying this is highly recommended.
- Note: On iPad, all this is still sort of beta. Some packages in Cydia, not designed for iPad, might screw up your system and require you to restore. Be careful. (And no, Cydia’s appearance is not final.)
As noted above, this is all still in beta mode and so take heed of the above warning and be careful when installing iPhone Cydia packages on the iPad.
Here is the official site with the available Mac and Windows downloads!
IMPORTANT – Dev Team:
Unless you’ve backed up your SHSH blobs for vulnerable firmware versions, you’ll lose the ability to use the current Spirit jailbreak if you accidentally upgrade.
Please take the steps now to backup your SHSH blobs. Use either Firmware Umbrella to create a local copy, or go through saurik’s server. If you are getting an iPad 3G, it’s safest to backup your blobs using Firmware Umbrella, in case saurik’s server gets bogged down with requests.
- Spirit works on all devices. (However, the redsn0w and PwnageTool flows will continue to work on those devices they’ve always worked on)
- Spirit does not include a carrier unlock. (Please don’t bug @comex about that)
- Spirit requires your device to be activated or hacktivated
Thanks to all the developers esp. @Comex
rooster

|
|