Tag Archives: iPhoneDevTeam

[iPhone] Google Android Running On iPhone

Notorious Planetbeing – member of the famous iPhone Dev Team – just released a vid showing he managed to install Google’s Android operating system on an iPhone 2G.


In the video below Android is demonstrated on an iPhone 2G; however, it should be pretty simple to port forward to the iPhone 3G. The 3GS will take more work.

Planetbeing thanks CPICH for reversing support, harmn1, posixnina, jean, marcan and saurik for patches, and last but not least, TheSeven for his work on the FTL.

Pre-built images and sources can be found at http://www.mediafire.com/?xqjzn12igfn.

Via http://linuxoniphone.blogspot.com



[iPhone] Neurosurgeon Finds Baseband Bug for 3.1.3

Egyptian neurosurgeon Sherif Hashim seems to have found something very interesting. He found a way to actually crash the iPhone’s baseband 05.12.01 of the latest firmware update 3.1.3.

MuscleNerd of the iPhone Dev Team has confirmed this bug. Though the iPhone Dev Team posted later today that they cannot tell if this bug actually leads to an unlock. The iPhone Dev Team also warns for potential scammers trying to rip us off.

More information to come. Congrats to Egypt! Nice find…

Links

» Sherif Hashim’s intense debate comments…
» MuscleNerd confirms bug on twitter…
» iPhone Dev Team Blog: Scam season
» Incomplete-News.com: Incomplete List of Unlock Scam Sites

[iPhone] iPhone Dev Team Release RedSn0w Unlock Solution

From the iPhone Dev Team’s Wiki:

What is it?

A cross-platform jailbreaking, unlocking, and customizing tool for iPhones and iPod touches. Customizations include boot logos, recovery logos, and “verbose” boot. It’s a standalone program that doesn’t use iTunes (no custom IPSWs are involved).

The download links are at the bottom of this page (but please read the whole page anyway!).

We’ve been offering redsn0w in various incarnations over the years (including poorlad’s Windows version of QuickPwn). The most recent release before this one was redsn0w 0.8, which targeted Apple firmware 3.0/3.0.1.

» More information and download here

[iPhone] GeoHot Announces Latest Baseband Unlock

George Hotz – by now almost any iPhone user should know that guy – hacked the latest baseband firmware 05.11.07. The unlock will be named BlackSn0w, well …

That means all carrier or SIM locked iPhones around the globe running this latest firmware can be used with different SIM cards from different carriers. Thus making holidays no roaming fee horror show.

Information about the unlock procedures will be released on BlackRa1n.com on Nov 04, 2009. Until then, enjoy GeoHot’s video proof:

Kudos fly out to GeoHot. Standing work, dude. But why the hell is there always Snow, Rain, Snow, Rain. Why no sunshine, guys?

[iPhone] GeoHot releases iPhone 3Gs Jailbreak (Upd.)

Update July 5th, 2009: GeoHot now also provides a Mac OS X version of the jailbreak tool. Windows and Mac versions ready for download at purplera1n.com

That’s it with the 3.0 firmware and the iPhone jailbreaks. Apple has been beaten again. This time by GeoHot. Although the iPhone Dev Team seems to have their programs already prepared they preferred to wait with the release of an updated PwnageTool. GeoHot did not wanna wait and decided to release a Windows based jailbreak tool for the iPhone 3Gs called PurpleRa1n.

Status

All three iPhone generations can now be activated, jailbroken and unlocked with the current firmware 3.0. Currently for the iPhone 3Gs there is only a Windows version available that is under strong beta testing. Anyway you can give it a try. The security whole that gets exploited in the iPhone 3Gs is well known as the 24k bug that has been found in january in the iPod Touch 2nd generations.

After jailbreaking, the iPhone Dev Team’s UltraSn0w should unlock your baseband.

Our recommendations

By now you know we are the conservative ones. We recommend: wait a couple of days. PurpleRa1n is still beta. But can hacks ever become stable? ;-)

More information to be found here:
» GeoHot accounces jailbreak for iPhone 3Gs
» iPhone Dev Team confirm unlock of iPhone 3Gs
» Get iPhone 3Gs jailbreak tool (PurpleRa1n.exe) here

iPhone 3GS Unlock Demonstration from planetbeing on Vimeo.

[iPhone] HowTo Jailbreak and Unlock using RedSn0w

I. Abstract

The following article will show you how to install firmware 3.0 on your iPhone 2G by also allowing to jailbreak, activate and eventually to unlock (JAU process). At the moment of writing this article is for Mac OS X users with iPhone 2G’s only.

II. Who needs this article?

We suppose 50% of all 2G users around the globe. As iPhone 2G’s were sold almost everywhere with Sim-Lock enabled (besides some T-Mobile Germany or Orange France unlocked 2G’s).

III. Warning

You’d better read all of this in detail before you do anything practically! If you feel there is something you don’t understand or something you will not be able to handle, then go and ask someone who is in the know.

!!!!!!!! Otherwise your devices may be terribly screwed up! !!!!!!!

IV. Required Downloads

Download these tiny things first:

» RedSn0w for Mac OS X
» iPhone OS 3.0 for iPhone 2G
» if you are using an iPhone 2G: get Bootloader 3.9 and 4.6

RedSn0w is almost the same as QuickPwn was in the ancient days of iPhone firmware 2.x

V. Preparing for Take off

  1. you need to have iPhone OS 3.0 already installed / updated /restored via iTunes
  2. install RedSn0w
  3. start RedSn0w
  4. Browse to the downloaded restore firmware (iPhone1,1_3.0_7A341_Restore.ipsw)
  5. Wait for the firmware to be checked

  6. Click Next
  7. Wait for the firmware to be modified
  8. Select Install Cydia (and Unlock if you are using an iPhone 2G. If you are using an iPhone 3G, don’t select to unlock, since it will not work this way)
  9. Click Next
  10. Browse for the Bootloaders you downloaded
  11. Click Next
  12. Turn your iPhone off
  13. Turn iTunes off

VI. Fasten your seat belts // Get into DFU mode

  1. Click Next
  2. bring out beloved jesus phone into DFU mode
  3. RedSn0w guides you thru the required steps (anyway this may take several repetitions as this is not as easy as some people write on the net!)

VII. Ignition sequence start

  1. the uploaded modified ramdisk will do all the required stuff
  2. to indicate what is going on your iPhone will show some nice pictures like this:
  3. don’t disturb the process
  4. instead: relax and get yourself a good drink or a cigarette
  5. as this may take some minutes

VIII. Possible issues

Although we haven’t been reported any yet, this doesn’t mean there can’t go something wrong. If you run into problems, try:

  • restoring original unmodified 3.0 firmware from within iTunes 8.2
  • make sure you installed firmware 3.0 with iTunes 8.2
  • generate a custom pre-hacked ipsw using PwnageTool (find article here)

IX. Kudos

Fly out to the iPhone Dev Team. You guys should get paid by Apple…

[iPhone] HowTo Jailbreak and Unlock using PwnageTool

I. Abstract

The following article will show you how to install firmware 3.0 on your iPhone 2G by also allowing to jailbreak, activate, and eventually to unlock (JAU process). At the moment of writing this article is for Mac OS X users with iPhone 2G’s only.

II. Who needs this article?

We suppose 50% of all 2G users around the globe. As iPhone 2G’s were sold almost everywhere with Sim-Lock enabled (besides some T-Mobile Germany or Orange France unlocked 2G’s).

III. Warning

You’d better read all of this in detail before you do anything practically! If you feel there is something you don’t understand or something you will not be able to handle, then go and ask someone who is in the know.

!!!!!!!! Otherwise your devices may be terribly screwed up! !!!!!!!

IV. Required Downloads

Download these tiny things first:

» Pwnage 3.0 for Mac OS X
» iPhone OS 3.0 for iPhone 2G
» if you are using an iPhone 2G: get Bootloader 3.9 and 4.6

V. Preparing for Take off // Prepping your custom iPhone OS 3.0

  1. make sure you synced your iPhone with iTunes before to have all your current calendar and address book entries in a safe place
  2. Install PwnageTool
  3. start PwnageTool
  4. Choose Expert Mode
  5. Select iPhone
  6. Click the Next button (down right of PwnageTool window)
  7. Select (or browse for) the iPhone1,1_3.0_7A341.ipsw firmware
  8. Click the Next button
  9. You now may choose some more Cydia Packages (like SSH), but you can also safely install this later via Cydia on the iPhone. This is a matter of taste
  10. Click Create (here in german “Erstellen”)
  11. Click the Next button
  12. Select a location to save the custom firmware 3.0
  13. wait some minutes for the creation of your custom firmware 3.0
  14. you may provide your adminstrator password during creation phase, this is normal !

VI. Fasten your seat belts // Get into DFU mode

  1. in case you never pwned your iPhone before: bring it into DFU mode first.
  2. PwnageTool guides you thru the required steps (anyway this may take several repetitions as this is not as easy as some people write on the net!)

VII. Ignition sequence start // Restore

  1. start iTunes (make sure you’re using iTunes 8.2)
  2. Select your iPhone (found on the left column under devices)
  3. and hold the Alt Key and Click the Restore button (this allows browsing for your custom firmware)
  4. The iPhone software will be extracted and prepared for restoring
  5. in the meantime your iPhone will show a status bar like this:
  6. The whole process will take some minutes, don’t wonder about that

VIII. Possible issues

You may receive an “unknown error 1600”, “unknown error 2001”, “unknown error 10”, or “unknown error 20” . If this is the case you may try this:

  • restore the original unmodified iPhone firmware 3.0 first and the re-restore your custom firmware and
  • try aswell in DFU mode as in normal mode
  • if all that does not work: restore with original unmodified iPhone firmware and jailbreak with redsn0w (article here)

IX. Kudos

Fly out to the iPhone Dev Team…

[iPhone] Jailbreak for iPhone 3Gs on the Way?

GeoHot posted a picture showing that he managed to run custom commands on iBoot. This seems to be the first major step for a jailbreak. Moreover GeoHot also managed to find the key for the Ramdisk while MuscleNerd of the iPhoneDevTeam obviously has already found the vfdecrypt key.

All this is good news. Anyway aswell as GeoHot and the DevTeam will have lots of work to do. Don’t expect anything soon, since GeoHot also found a new security addition called ECID, which obviously gets generated by Apple’s servers and which seems to be unique to every iPhone. Every restore seems to have to be validated by Apple’s servers. And this is bad news.

» Running custom commands on iBoot
» Ramdisk key found
» ECID signature layer found

[iPhone] 3G Runs Modified Baseband and Custom Tools

The iPhone Dev Team posted some news during the last days. First of all they show us they are able to run a modified 3G baseband, although it fails integrity checks (see picture). And obviously they coded a baseband tool that allows execution of custom commands on the baseband.

Their silent and evolving works seems to be succesfull. Both these steps are major steps into a custom unlock. Anyway we don’t have information how long it will take until the final unlock, but we expect it to be aired before Chrismas.

Picture and video is courtesy of iPhone Dev Team.