Tag Archives: blackra1n

Jailbreakers – Stay Away from iOS 4.1

As many of you probably know, today Apple released a new firmware for the iPhone and iPod touch, iOS 4.1. If you are currently jailbroken and would like to keep your jailbreak, do not update! There is currently two known ways to jailbreak this firmware, one way would be through redsn0w, another and much more simplistic way, is through an updated version of jailbreakme.com. Right now we’re just waiting on Comex, creator of jailbreakme, to release the jailbreak(s). Here’s the newest post from the iPhone Dev-Team regarding iOS 4.1:

Quote (via iPhone Dev-Team):

This time of year there are lots of new iPhone owners, and not everybody knows that accepting new iOS updates is the surest way to lose your jailbreak and/or unlock.  While those of you who have Cydia or TinyUmbrella backups of your FW hashes will always be able to get back to 4.0.1 if you make this mistake, this doesn’t hold for unlockers. There’s currently no known way to revert your baseband — if you update your baseband you’ll lose the ultrasn0w unlock, possible forever.

Please stay away from this 4.1 release until a safe jailbreak procedure (which also preserves ultrasn0w) is developed and released.

P.S.  There are a tiny number of iPhone3G owners who can revert their basebands due to a flaw in very early bootloaders…you will already know if you fit in this category!

ProSwitcher, Multifl0w, & Circuitous Alternative for iOS 4 (ALL DEVICES)

Video tutorial below.

As we all know, Apple decided to come out with their own version of multitasking in iOS4. The problem is that it’s not “true” multitasking. In this tutorial, I will explain how to use Apple’s multitasking bar with Backgrounder. This disables Apple’s multitasking and replaces it with Backgrounder’s multitasking.

This is great for older iDevices with 128MB RAM (iPod touch 1G, iPod touch 2G, iPhone 2G, iPhone 3G) because they don’t support Apple’s multitasking but it will still work perfectly using this method.


Steps:

1. Open Cydia and download Backgrounder
2. Open Backgrounder and go to Global. Make sure “Backgrounder” is checked as ‘Backgrounding Method’ and “Fall Back to Native” is TURNED OFF

3. SSH into the directory: /System/Library/CoreServices/SpringBoard.app
4. Locate the N72AP.plist (or N82AP.plist)
5. Backup the .plist file. Edit your .plist in any text editing software and add the following key after <dict> and before </dict>:

<key>multitasking</key>
<true/>

6. Copy the newly edited .plist file back to the directory on your iDevice (OR save it if you edited it straight from your SSH client) and REBOOT.
7. Open Cydia and download a package, “Remove Recents”.
8. Respring (or reboot if you don’t know how to respring).

How to SSH on Windows
How to SSH on Mac

iPhone 4 Jailbreak: Coming Soon

Today, July 10, 2010, George Hotz (aka Geohot) released a blog post with proof that he has jailbroken the iPhone 4 with a program he’s made called limera1n. Currently, there has been no ETA. Here’s a picture for proof:

Redsn0w 0.9 Released for Mac and Windows

Well the iPhone Dev-Team has unofically released redsn0w 0.9 beta3. The reason why they haven’t offically announced it on their blog, is because it is still currently in the beta stages.

Quote (via redsn0w 0.9beta3):

What is it?

A cross-platform jailbreaking, unlocking, and customizing tool for iPhones and iPod touches. Customizations include boot logos, recovery logos, and “verbose” boot. It’s a standalone program that doesn’t use iTunes (no custom IPSWs are involved).

The download links are at the bottom of this page (but please read the whole page anyway!).

We’ve been offering redsn0w in various incarnations over the years (including poorlad’s Windows version of QuickPwn). The most recent release before this one was redsn0w 0.8, which targeted Apple firmware 3.0/3.0.1.

What devices, platforms, and FW versions are supported?

The beta supports:

  • All iPhones and iPod touches except the iPod touch 3G
  • Windows and Mac OSX (x86)
  • Apple firmware 3.0 and 3.1.2

When it’s out of beta, it will support the iPod touch 3G, PPC OSX, and Linux.

If you need a carrier unlock, redsn0w will handle iPhone 2G by itself (by installing our BootNeuter utility). For the 3G and 3GS, use Cydia after you’re jailbroken to install ultrasn0w (baseband 04.26, preferred) or blacksn0w (baseband 05.11).

How is it different from PwnageTool?

redsn0w doesn’t require a system restore like PwnageTool does (it doesn’t even use iTunes at all). On the other hand, PwnageTool can prevent your baseband from being upgraded when you upgrade your firmware, preserving your unlock. (redsn0w doesn’t touch your baseband but it doesn’t help preserve it during an upgrade either).

redsn0w works by modifying your current filesystem, so your existing baseband, data and applications should remain intact.

How is it different from blackra1n?

It differs from blackra1n because:

  • It uses our original Pwnage bootrom exploit for iPhone 2G, iPhone 3G, and iPod 1G. (Because it’s a bootrom exploit, it can’t be fixed by Apple without a new hardware release.) Note that redsn0w 0.9 does use the USB exploit for iPhone 3GS and iPod 2G running 3.1.2, but that exploit will be fixed in Apple’s next FW release.
  • It offers custom logos and verbose boot
  • It installs Cydia without needing a separate download
  • It’s not as fast :) (but redsn0w handles more variations :))

What if I have a late-model device?

If you have a late-model iPhone 3GS, or if you have an iPod touch 2G whose serial number begins with “MC”, you can use redsn0w to jailbreak but you are currently restricted to “tethered” rebooting. That means you need to connect your device to a computer to complete the boot after a reset. Also, these devices cannot have custom logos.

redsn0w will ask you whether or not you fit in this category when used with the iPhone 3GS or iPod touch 2G. If you have a late-model device and don’t give redsn0w the correct answer, you will likely need to do a system restore to recover from the mistake.

To do a tethered boot after your late-model device resets for some reason, either run redsn0w again and select “Just boot tethered right now”, or run blackra1n.

What if I’m already jailbroken?

If you’re already jailbroken (by whatever means), redsn0w can still be used to change your boot logos, revert back to the stock logos, or switch verbose booting on and off. By selecting “Already Pwned” you can bypass the steps normally needed to enter the jailbroken state.

How long should it take

You should see a picture of a drive (“Downloading Jailbreak Data”) within 30 seconds of launching the jailbreak (after you’ve made your custom selections). It should then reboot and you should see a running pwnapple while the process is underway. It should finish within a minute or two after that, and will reboot on its own.

Is it safe?

The Windows version has been tested by small groups of volunteers on IRC and our blog since mid-January. That being said, this is still a beta and if things go wrong you may have to do a system restore…so make sure your data and pictures are synced before trying the beta.

Beta feedback

redsn0w is in beta until we get iPod Touch 3G, PPC OSX, and Linux support added. In the meantime, please send any feedback to MuscleNerd (either gmail or iphone-dev.org), or tweet with a #redsn0w tag. Please detail your device, OS, and any problem you find.

Download links

I was able to succesfully jailbreak my second generation iPod Touch using Redsn0w 0.9 beta3 and I highly reccommend it over Sn0wbreeze as Sn0wbreeze didn’t work for me whatsoever. And my feature included in 0.9 beta3, is that it offers verbose boot. Verbose boot is a boot function that shows the processes the iDevice must go through in order to boot. So instead of displaying the regular Apple logo, it displays the current processes. Here’s what it looks like:

Have fun jailbreaking your iDevice running 3.1.2! To visit the download page, click HERE.