Archive

Posts Tagged ‘geohot’

Blacksn0w Released (Early)

Geohot has released his BlackSn0w unlock for the iPhone 3G and 3GS.

“blacksn0w is the unlock for the latest 05.11.07 baseband, and will also enable official tethering. blackra1n, a jailbreak for 3.1.2, has been updated to RC3, with hacktivation support, 15 second speed improvement, Tiger+PPC support, and installation of the latest blackra1n.app.”

You can find instructions on how to use blacksn0w to unlock your iPhone here: WindowsMac.

If you have already jailbroken using blackra1n, run the application again. You will see Icy replaced by an option “ra1n”. Install this to upgrade your blackra1n application. Run the blackra1n application again. This time you will see “sn0w”. Install sn0w to unlock your device.

(via iClarified.com)

Here’s what the iPhone Dev Team had to say concerning BlackSn0w

iPhone 3G/3GS owners who found themselves stuck with version 05.11 of the baseband (either by accident or because they bought it that way) are now in luck!  geohot was able to turn the already-public at+xemn crash into an injection vector, which can be used to inject his version of the unlock.  The blacksn0w unlock is available for free via Cydia by adding the repository http://blackra1n.com in the Manage->Sources panel.  Congratulations, geohot!

Those of you who are already unlocked at 3.1.2 because you kept your 04.26 baseband now have an extra cushion of comfort, and more choices: ultrasn0w, purplesn0w, and now blacksn0w (and of course the original yellowsn0w too if you’re still back at FW 2.x).   Whether or not you choose to update your baseband solely to use the new unlock is a personal choice, but so far there are no advantages to doing so (and remember you can’t come back to 04.26 after you’ve gone to 05.11).

As with all the unlocks, it will probably very soon be re-sold through scam sites that charge you money for what is offered to the community for free.  Please stay vigilant for these scam sites and steer your friends away from them.

 Retweet This Post

3G iPhone, Featured, Jailbreak/Activate, Software Unlock - YES!, What's New, iPhone 3G S, iPhone Unlock Updates , , , , , , , ,

Blackra1n Released

GeoHot has released his BlackRa1n jailbreak for Windows users only. 

BlackRa1n should work on all devices using OS 3.0 and up. Please note that the new iPod touch requires a tethered jailbreak. Meaning, if you let the battery die you will need to use BlackRa1n to boot it again.

Also, its important to note that BlackRa1n does not hactivate your iPhone. This means that you must be using an official Apple carrier for activation purposes.

No word yet on a Mac version.

You can download the jailbreak utility from here.

 Retweet This Post

3G iPhone, Featured, Firmware 3.0, Jailbreak/Activate, What's New, iPhone, iPhone 3G S, iPod Touch News , , , , , ,

Sn0wBreeze & BlackRa1n News

Sn0wBreeze is a new project aiming to bring PwnageTool functionality to Windows computers by October 12th. 

iH8sn0w tweeted some details about the upcoming software… 

The new project that we are working on is sn0wbreeze. It is basically PwnageTool for Windows. Our ETA is October 12. 

We will ask for Beta Testers as soon as we have a stable build ready! 

It will be pretty much everything the the Mac version of PwnageTool can do atm.


GeoHot has posted picture evidence of a jailbroken third generation iPod Touch to his blog. 

For those waiting eagerly to jailbreak their iPhones and iPods, GeoHot plans to release the jailbreak tool within the next day or so. 

The exploit should work for every version of iPhone OS including OS 3.1. 

10 seconds. and may work for every version of software *ever*, based on the prettiness of the exploit

The soon to be released jailbreak tool by GeoHot has been named BlackRa1n and will be found at http://www.blackra1n.com.



 Retweet This Post

3G iPhone, Featured, Jailbreak/Activate, Software Unlock - YES!, What's New, iPhone, iPhone 3G S, iPhone Unlock Updates, iPod Touch News , , , , , , , , ,

GeoHot Is A Busy Guy

GeoHot has added an entry to TheiPhoneWiki explaining how his purplera1n iPhone 3GS jailbreak works.

Below you can read the step by step description of what the exploit does…

—–
* purplera1n sends the enter recovery commands using iTunesMobileDevice
* once in recovery(iBoot), it sends the IBoot Environment Variable Overflow exploit
* the exploit adds a “geohot” command to the phone which runs the payload
* the “geohot” command is run, control is now transferred from iboot to the payload
* the purplera1n client is done 

Inside payload
* the payload restores the default environment variable ring buffer and saves the environment to nvram(sets auto-boot to true)
* it patches iBoot to load unsigned img3s and not care about the tags
* it loads the purplera1n picture(sent with payload)
* the nor patcher starts
* llb is decrypted, patched, and increased in size to 0×24200. this is the resident 0×24000 Segment Overflow exploit
* a little loader code is put @ 0×20000 in the LLB to load it and fix the stack
* iboot is decrypted, patched
* everything else is read as is
* nor is written back, nor patcher is done
* kernel is loaded, decrypted, and patched
* ramdisk is loaded(sent with payload) and moved to ramdisk region at 0×44000000, patched kernel is tacked on to the end
* patched kernel is booted
* control is now transferred from payload to ramdisk 

Inside ramdisk
* launchd is run, all stuff happens here
* /dev/disk0s1 is mounted
* fstab and services are overwritten here to allow disk0s1 writes and afc2 respectively
* Freeze.app is transferred and Freeze.app loader has SUID bit set
* patched kernel is read from end of ramdisk block device and written to filesystem
* ramdisk is done, rebooting… 

Reboots as jailbroken phone

&

GeoHot has released his own purplesn0w unlock for the iPhone 3GS which he says will improve issues with Wi-Fi problems, Battery problems, and unlock problems.

—–
Wifi fails? Battery fails? Unlock fails? You need purplesn0w, the geohot 3GS unlock solution. Now I know you here a lot about different colors of sn0w, but I’m here to tell you why purplesn0w is the best. First off, what is purplesn0w? It’s a soft unlock for your 3GS that I’d actually use day to day. It’s not a daemon that takes any resources, and it doesn’t add a task to your baseband. It’s very close to a true unlock. All it does is patch three files, CommCenter, lockdownd, and your wildcard activation plist(which you need, activate w at&t sim first, no hacktivation support yet). That’s it, no other files are installed. Props to Oranav for the at+xlog exploit!

A full explanation is coming soon, but I think you clever reversers out there will see what it does, and see why it’s so pristine :-) The payload is radically different from other varieties of sn0w. beta as usual, back up first.

Be sure to have legit activated 3GS
Disable 3G if you don’t have it(like T-Mobile).
Add apt.geohot.com to Cydia
Install com.geohot.purplesn0w
Watch for success output in Cydia
Reboot, and enjoy your unlocked iPhone

(both via iClarified.com)

 Retweet This Post

Featured, Firmware 3.0, Jailbreak/Activate, Software Unlock - YES!, What's New, iPhone 3G S, iPhone Unlock Updates , , , , , , ,

GeoHot makes it rain - iPhone 3GS Jailbreak Released - purplera1n.com

GeoHot released the iPhone 3GS Jailbreak today which means thats users will not only be able to jailbreak but also unlock their iPhone 3GS device using ultrasn0w once their device is jailbroken as demonstrated by the dev team earlier.. Sweet!

Friday, July 3, 2009

I make it ra1n

Yes, this is what you’ve all been waiting for. A jailbreak for the iPhone 3GS. And it’s awesome. To get started right now, go to purplera1n.com. Download it. Make sure you have windows(but not 7), the latest iTunes installed, and an iPhone 3GS with 3.0 firmware. Connect your iPhone normally. Click “make it ra1n”. Wait. On bootup, run Freeze, the purplera1n installer app. Hopefully you’ll figure out what to do from there. Best tutorial gets linked to from purplera1n site. This tool is beta. Make sure to have everything backed up before running. Also if Cydia doesn’t show up after running Freeze, reboot.

If you need help email purplera1n.support at gmail and attach your purplera1n.log file. Or call the purplera1n support hotline @ (650) 265-1210 Mac version is coming shortly.

Normally I don’t make tools for the general public, and rather wait for the dev team to do it. But guys, whats up with waiting until 3.1? That isn’t how the game is played. We release, Apple fixes, we find new holes. It isn’t worth waiting because you might have the “last” hole in the iPhone. What last hole…this isn’t golf. I’ll find a new one next week. Also your purplera1nyday files ensure that you can always get back to a jailbroken state, so if you have it it’s just a matter of tools.

Props to chronic dev for their help, and to kroo for writing v2 of Freeze. And props to Saurik for making an awesome package set. Note the binary size of purplera1n, it’s smaller than C++ hello world. No 20MB thing that needs to be torrented. And no IPSW to download. This is how jailbreak should be!

 Retweet This Post

3G iPhone, Apple News, Featured, Firmware 3.0, Jailbreak/Activate, What's New, iPhone, iPhone 3G S, iPhone 3G(S) , , ,

“It’s 4AM, do you know where your jailbreak is?”

Very early this morning GeoHot posted photo evidence of a jailbroken iPhone 3GS. 

GeoHot wrote:
“It’s 4AM, do you know where your jailbreak is?”

The jailbreak was accomplished using the 24kpwn exploit as we announced earlier. The screenshot shows the output of uname being run from MobileTerminal. 

The Dev-Team will likely release the jailbreak for the iPhone 3GS along with versions of PwnageTool and RedSn0w that are updated for the upcoming 3.0.1 firmware. 


(via iClarified.com)

 Retweet This Post

Featured, Firmware 3.0, Jailbreak/Activate, What's New, iPhone 3G S , , ,

GeoHot: iPhone 3GS Owners Should Do This Now

Apple has added a new layer of security for the iPhone 3GS and steps need to be taken to prevent these measures from affecting future jailbreaks.

Apple has added a new layer of security to the iPhone 3GS. I mentioned it several posts earlier; it’s the ECID field. When iTunes starts the restore process, they contact Apple servers to generate signatures just for your device. It’s important you get these signatures for your phone before a new version of the software comes out. I had previously suggested doing this by dumping usb while the iPhone restores. But this is complicated.

Thanks to GeoHot purplera1n.com will help you generate a unique certificate for your phones iBSS. You will need to keep this certificate for possible use in the future. 

Instructions can be found here: WindowsMac.

(via iClarified.com)

(on a side note RIP to Michael Jackson & Farrah Fawcett)

 Retweet This Post

Featured, Firmware 3.0, Jailbreak/Activate, Off Topic, What's New, iPhone 3G S , , , , ,

GeoHot wants to know - What is it? - See Deeper than the Code