Thursday, January 12, 2012
iPhone 3G iOS 4.2.1 Jailbreak Kit (windows)
Have fun!!!
AaRMorr
Thursday, January 20, 2011
Ultra-recycle
Today we’re pleased to announce our free carrier unlock for iPhone3G/3GS owners with a baseband later than 05.13.04. The unlock for that baseband exploited the AT+XAPP command, thanks to a crash initially discovered by @sherif_hashim (@Oranav also found this crash). So what hole are we exploiting today, since Apple closed that AT+XAPP hole? Well, we’re exploiting the exact same hole!
It turns out that the very first iPad firmware 3.2.2 has baseband version 06.15.00 still vulnerable to AT+XAPP. The iPad baseband is built for the exact same baseband chip as the iPhone3G/3GS — they’re fully compatible! Some of us have been running 06.15 for weeks now on our iPhones in preparation for this release. (And some have known about this possibility of 06.15 on the iPhones for a while — kudos to @w1kedZ and @DHowett for keeping it hush!)
Unlockers have been reporting mixed results about GPS functionality at 06.15.00. Until we can track down what differentiates those who retain GPS vs. those who lose it, be conservative and assume you’ll lose GPS at 06.15.00. As we work on finding the cause (and possibly a fix), please report your personal findings in our comments section. (Update: early indications are that while 06.15.00 is capable of GPS, it will require some further hacks. But please still be conservative and assume you will lose GPS at 06.15, in case the hacks don’t work).
SIMPLIFIED ROUTE #1 (redsn0w for OSX + Windows):
1. Read and fully understand the warning below.
2. If you have an old-bootrom 3GS and are already unlockable but want to get to 4.2.1, please wait til we release an “unofficial” bundle for you. Read no further.
3. Use redsn0w (see update #2) for OSX or Windows. Enable the “Install iPad baseband” option and accept the warning.
4. When the redsn0w ramdisk is finished, install ultrasn0w via Cydia.
5. Enjoy!
SIMPLIFIED ROUTE #2 (PwnageTool for OSX):
1. Read and fully understand the warning below.
2. If you have an old-bootrom 3GS and are already unlockable but want to get to 4.2.1, please wait til we release an “unofficial” bundle for you. Read no further.
3. Read update #1 for an updated 3GS bundle.
4. Download this IPSW
5. Run PwnageTool to create a custom 4.1 IPSW. Tell it you want to use the iPad baseband you just downloaded. Restore to this custom IPSW.
6. Install ultrasn0w through Cydia
7. Enjoy!
FULL VERSION:
Since 06.15 is a higher version than 05.14 or 05.15 (where AT+XAPP is gone), anyone stuck at those versions can simply upgrade to 06.15 to unlock again! Luckily for us, Apple *still* provides the iPad FW 3.2.2 with this vulnerable baseband right from their own servers. (Grab it now, before they take it down!)
We’ve been busy updating both PwnageTool and redsn0w to make the baseband update as seamless as possible.
1. First up is “PwnageTool 4.1.3 Unlock Edition”. It has a special dialog box which will ask you if you want to update to the iPad baseband. You must already have the iPad 3.2.2 IPSW on your computer (see the above link)….so just point PwnageTool at it (or let it find it on its own if you’re in “simple” mode).
2. Directly after PwnageTool 4.1.3 is available, the official ultrasn0w repo http://repo666.ultrasn0w.com will be updated with ultrasn0w 1.2, which covers iPhone 4 baseband 01.59.00 and iPhone 3G/3GS basebands 04.26.08, 05.11.07, 05.12.01, 05.13.04 and now 06.15.00.
3. Finally, we’ll release an update to redsn0w today for those without Macs and can’t run PwnageTool. The new redsn0w will give you the option to update your baseband to 06.15 too.
1. There is no way to come back down from 06.15, and there’s no hiding the baseband version from Apple. You’ll be voiding your warranty in a very obvious way.
2. If some future baseband comes out with a critical fix, you won’t be able to update to it if it remains down in the 05.xx sequence (then again, you wouldn’t update to it if you wanted to keep your unlock anyway).
3. Starting with FW 4.2.1 if you have 06.15 on your iPhone you won’t ever be able to restore to stock firmware (it will fail). You’ll need to only restore to custom IPSWs (then again, if you’re unlocker you should already be doing that).
Unlockers have been reporting mixed results about GPS functionality at 06.15.00. Until we can track down what differentiates those who retain GPS vs. those who lose it, be conservative and assume you’ll lose GPS at 06.15.00. As we work on finding the cause (and possibly a fix), please report your personal findings in our comments section. (Update: early indications are that while 06.15.00 is capable of GPS, it will require some further hacks. But please still be conservative and assume you will lose GPS at 06.15, in case the hacks don’t work).
Certainly don’t update to 06.15 if you don’t need to! Only do this if you need the unlock and you’re stuck on 05.14 or 05.15, and you’re willing to assume the above risks.
This PwnageTool also contains a 4.2.1 bundle for iPhone3G owners…for all else, it’s still only 4.1. If you have an iPhone3GS with an old bootrom, use redsn0w for an untethered 4.2.1 jailbreak (it can now install the iPad baseband too). For all other devices, the 4.2.1 jailbreak is tethered only (use redsn0w for it), until @comex can work some untethering magic.
Please feel free to use our comments section for questions. We have some very knowledgeable and helpful moderators: angiepangie, Confucious, sherif_hashim, dhlizard, and Frank55!
Official Bittorrent Releases
PwnageTool 4.1.3 - PwnageTool_4.1.3_Unlock_Edition.dmg.5994102.TPB.torrent
SHA1 Sum = adda6d882dce1b5117d01586037de289407e038a
Unofficial Mirrors
The following links are unofficial download mirrors, you download these archives at your own risk, we accept no responsibility if your computer explodes or if it becomes part of a NASA attacking botnet or even worse if your hands fall off mid-way during the use of these files. We do not check these links and we accept no responsibility with regard to the validity of the files, the other content that these links may provide or with the content that is on the third-party linked site.
Always check the files that you have downloaded against our published SHA1 hash.
We would prefer that you downloaded the official bittorrent release that is linked above, but you are welcome to try these if you really must.
http://8sv.de/dl/iphone/PwnageTool_4.1.3_Unlock_Edition.dmg
Mirror owners should email direct dmg download links only (no rapidshare type sites please) to blog@iphone-dev.org — please don’t place mirrors in the comments as they will be deleted.
Update #1: There’s an error in the bundle for the iPhone3GS 4.1 that prevents the new baseband from being used. If you know your way around OSX, please download the fixed bundle, and unzip it if Safari hasn’t already done so. Then “Show Package Contents” of PwnageTool.app, navigate to Contents->Resources->FirmwareBundles and drop it there. Otherwise, please wait for the updated PwnageTool, or the OSX version of redsn0w coming soon.
Update #2: The new redsn0w 0.9.6beta5 is out. It gives both Windows and OSX users the ability to flash the iPad 06.15 baseband on iPhone3G or iPhone3GS. It fetches the baseband files directly from Apple for now (the only IPSW you ever point it at is the stock IPSW for the FW on your iPhone right now). There may be a long delay while it’s doing this (their servers are currently getting pounded).
If you do flash your baseband via redsn0w, please keep it plugged into USB the whole time. You don’t want your battery to die during the flash process!
Update #3: For those Mac users with an old-bootrom 3GS who really know what they’re doing, here’s a minimal 3GS 4.2.1 bundle that will get you to 4.2.1 without updating your baseband. Be sure to uncheck “Activate the iPhone” using Expert mode. To actually jailbreak after you’ve restored with the help of that bundle, please use redsn0w. If you don’t know how to drop a bundle into PwnageTool.app, please hold off on 4.2.1 until it’s untethered for everyone (or wait for a nice tutorial from somewhere like http://iclarified.com)
Update #4: Our terrific moderators angiepangie, Confucious, sherif_hashim, dhlizard, and Frank55 have done a stupendous job moderating 7700 comments over just the first 12 hours (that’s 10 per minute for half a day!). Hats off to them, and to all of our great commenters who rack up those + points for helping total strangers jailbreak and unlock their iPhones! That’s what makes this community great :)
Update #5: Unlockers have been reporting mixed results about GPS functionality at 06.15.00. Until we can track down what differentiates those who retain GPS vs. those who lose it, be conservative and assume you’ll lose GPS at 06.15.00. As we work on finding the cause (and possibly a fix), please report your personal findings in our comments section. (Update: early indications are that while 06.15.00 is capable of GPS, it will require some further hacks. But please still be conservative and assume you will lose GPS at 06.15, in case the hacks don’t work).
Update #6: Developer @sbingner (author of TetherMe) has made some excellent progress devising a new hactivation method that kills two birds with one stone for all you ultrasn0w unlockers. His tool, “Subscriber Artificial Module (SAM)” tricks your iPhone and iTunes into creating legitimate activation tickets even though you’re unlocked with ultrasn0w. This means you get the full benefit of push applications, and your battery life increases substantially. If you’d like to try it out, check out http://www.bingner.com/SAM.html
To help make it easier to try out @sbingner’s tool, we’ve updated redsn0w to include a new “Deactivate” option for the 3G and 3GS. Use this option *after* you’ve installed SAM…it will remove the normal patches made to lockdownd and let SAM take over. (sbingner plans on making a button to do this within SAMPrefs too). Great work, @sbingner!
The new redsn0w with the “Deactivate” option is at:
* OSX
* Windows (Windows 7 and Vista users, please run redsn0w as Administrator in “XP Compatiblity Mode”)
Tuesday, September 21, 2010
redsn0wier
We’ve released a beta version of redsn0w for the iPhone3G and iPod Touch 2G at FW 4.1 or 4.0. It uses the same pwnage2 DFU-mode exploit that we’ve been using since the 2.x days. It does not include the SHAtter exploit developed by pod2g. Nothing new is revealed to Apple with this jailbreak.
IF YOU USE THE ULTRASN0W UNLOCK, PLEASE WAIT FOR PWNAGETOOL TO SUPPORT 4.1. DO NOT USE REDSN0W. That’s because to use redsn0w at 4.1, you need to already have updated to official 4.1 from Apple. If you do that, you lose the ultrasn0w unlock (possibly forever).
Note: if you have an “MC” model of the ipt2g, your 4.1 jailbreak will be tethered…sorry! (Consider rolling back to a FW supported by jailbreakme.com or spiritjb.com)
===== What devices, platforms, and FW versions are supported? =====
This BETA release supports:
* iPhone 3G and iPod touch 2G only (for now)
* Mac OS X x86 and Windows only (for now)
* 4.1 or 4.0 firmware from Apple

===== How do I use it? =====
If you’ve already updated your device to 4.1 or 4.0, the next steps are:
- Launch the beta redsn0w 0.9.6b1
- Select your stock 4.1 or 4.0 ipsw (you’ve already used this to update your device to 4.1 or 4.0)
- Select “Install Cydia” and any of the other options shown above, then click “Next”. Use DFU mode to install the jailbreak.
Note: If you choose to “Enable battery percentage”, you actually toggle that off and on via Settings->General->Usage.
===== Download links =====
Please do not directly link to these URLs because they’ll be changing according to bandwidth demands.
Mac OSX x86
Windows
ISPW Downloads (Pick your iDevice and firware):
4.1.0 (3G): iPhone1,2_4.1_8B117_Restore.ipsw
4.1.0 (3GS): iPhone2,1_4.1_8B117_Restore.ipsw
4.1.0 (4): iPhone3,1_4.1_8B117_Restore.ipsw
Update: Any Windows users seeing “Waiting for reboot” for too long (more than 20 seconds or so), please try “shaking” the JB process by unplugging then replugging your USB cable (while letting redsn0w continue to run). Also, try using a USB port “closer” to your computer (as opposed to on your monitor or behind another hub). We’re still tweaking the Windows flow and so any feedback you can provide will help!
Wednesday, August 11, 2010
Wednesday, August 4, 2010
Unlock with Ultrasn0w: A Step by Step
1st, your iPhone must be Jailbroken with Cydia installed. Launch Cydia as seen below:

Allow Cydia to load and update. This may take several minutes. If there is an indicator on the "changes" tab at the bottom, install all changes before continuing.
Now click on Manage at the bottom:

Now click on "Sources"

Now you need to add the ultrasn0w repository by clicking on "Edit" and enter http://repo666.ultrasn0w.com as seen below and hit "Add Source"

Verify the Ultrasn0w Repo is added and now click "Search"

Select "Ultrasn0w" from the results list:

Select "Install"

And now "Confirm"

This process will take a few minutes and you will be asked to reboot your device. Once booted up, you are unlocked and can test this by entering another carriers SIM to the iPhone!!
Friday, April 30, 2010
Calm before the Spirit storm - iPad 3G
At some point after (don’t ask when!) the iPad 3G is actually in customers’ hands, the first “userland” jailbreak since firmware 1.x will be released by @comex. It’s called “Spirit” and was first demonstrated working on an iPad by @MuscleNerd within 24 hours of the iPad’s release on April 3.
Userland jailbreaks are more troublesome for Apple since they expose security weaknesses that exist even for non-jailbroken owners. As such, Apple is likely to close them soon after they’re made public. One recent example of this is the SMS vulnerability exposed at Blackhat last summer. Apple released new firmware to close that hole within a day.
The Spirit jailbreak is most useful for newer devices: iPhone 3GS, iPod Touch 3G, and the iPads. Unfortunately those devices are the same ones that Apple can prevent you from downgrading unless you’ve got a backup of your personalized SHSH blobs. Unless you’ve backed up your SHSH blobs for vulnerable firmware versions, you’ll lose the ability to use the current Spirit jailbreak if you accidentally upgrade.
Please take the steps now to backup your SHSH blobs. Use either Firmware Umbrella to create a local copy, or go through saurik’s server. If you are getting an iPad 3G, it’s safest to backup your blobs using Firmware Umbrella, in case saurik’s server gets bogged down with requests.
Other things about Spirit that are useful to know:
-Spirit is an untethered jailbreak.
-Spirit works on all devices. (However, the redsn0w and PwnageTool flows will continue to work on those devices they’ve always worked on)
-Spirit does not include a carrier unlock. (Please don’t bug @comex about that)
-Spirit requires your device to be activated or hacktivated
Please make sure you have your SHSH blobs backed up! While @comex has indicated he’s not going to release the very minute the iPad 3G is out, there’s no telling what Apple might do anyway.
Monday, November 16, 2009
How to Jailbreak and Unlock iPhone 2G/3G/3GS on 3.1.2 w/ Blackra1n / Blacksn0w: The Guide
- The methods listed below can be followed on BOTH PC and Mac users.
- Your iPhone/iPod Touch must be updated to firmware 3.1.2 via iTunes before beginning this process.
- For users that already have a jailbroken device and want to keep their jailbroken apps, before you begin the process below, download “AptBackup” from Cydia and back up your jailbroken apps. Now connect your device to iTunes and backup your device using the iTunes backup process. After you do the jailbreak process below, redownload AptBackup from Cydia and plug your device into your computer. Using AptBackup, restore your apps.
- If you are already jailbroken and/or unlocked and have problems with WiFi, GPS or Youtube, click here.
The following is how to Jailbreak and Unlock the iPhone 3G/3GS on 3.1.2 Firmware
1.) Plug your iPhone into iTunes, do a backup and then click “Update” to install firmware 3.1.2. After the update, eject your iPhone from iTunes using the “eject” button and close iTunes. Leave your iPhone connected to your computer.
2.) Click on the PC or Mac links to download Blackra1n for PC or MAC. Save the file to your computer desktop.
3.) Locate the downloaded file “Blackra1n” and double-click on it. Click on "Make it ra1n" to launch the tool.

4.) Your iPhone will now enter into Recovery Mode. If iTunes opens, simply close it.



5.) After the reboot, Blackra1n will indicate that your iPhone has been jailbroken. Click “OK”. You can also close Blackra1n now if it is still open.
6.) Once at your iPhone home-screen, go to Settings > WiFi and turn on WiFi.
7.) On your iPhone home-screen, you will see a new Blackra1n icon. Tap on it.

8.) When Blackra1n opens, tap on Cydia (or Rock) and tap “Install” in the top right corner.
9.) Cydia (or Rock) will now be visible on your iPhone home-screen. Your iPhone is now Jailbroken.
How to Unlock the iPhone 3G/3GS
1.) On your iPhone home-screen, tap on the Blackra1n icon.
2.) In the Blackra1n app, tap on “Sn0w”. Your iPhone will now be unlocked.

Note: You may go back into the Blackra1n app on your home-screen and use the Uninstall toggle to remove the Blackra1n app from your home-screen. This does not affect the jailbreak or unlock.
---------------------------------------------------------------------------------
The following is how to Unlock the iPhone 3G/3GS if you are already Jailbroken and running Baseband 05.11.07
1.) On your iPhone home-screen, tap on the Cydia icon.
2.) If Cydia prompts you for updates, install them all.
3.) In Cydia, tap on the “Manage” tab at the bottom.

4.) Tap on the “Sources” button.
5.) Tap on the “Edit” button in the top right corner of the screen and then tap the “Add” button in the top left corner.
6.) Type in http://www.blackra1n.com and then tap “Add Source“.

7.) Now tap on the “Done” button in the top right corner of the screen.
8.) Tap on “blackra1n” from the “Sources” List under the “Manage” tab.

9.) Select “blacksn0w” from the list of packages and then tap “Install” in the top right corner of the screen and then tap “Confirm“.

10.) After the unlock is installed, tap on “Return to Cydia“. Your iPhone is now unlocked.
--------------------------------------------------------------------------------------
The following is how to Jailbreak and Unlock the iPhone 2G on 3.1.2 Firmware
1.) Plug your iPhone into iTunes, do a backup and then click “Update” to install firmware 3.1.2. After the update, eject your iPhone from iTunes using the “eject” button and close iTunes. Leave your iPhone connected to your computer.
2.) Click on the appropriate link for PC or MAC and download Blackra1n. Save the file to your computer desktop.
3.) Locate the downloaded file “Blackra1n” and double-click on it. Then click on the "Make it Ra1n" button.

4.) Your iPhone will now enter into Recovery Mode. If iTunes opens, simply close it.



5.) After the reboot, Blackra1n will indicate that your iPhone has been jailbroken. Click “OK”. You can also close Blackra1n now if it is still open.
6.) Once at your iPhone home-screen, go to Settings > WiFi and turn on WiFi.
7.) On your iPhone home-screen, you will see a new Blackra1n icon. Tap on it.

8.) When Blackra1n opens, tap on Cydia (or Rock) and tap “Install” in the top right corner.
9.) Cydia (or Rock) will now be visible on your iPhone home-screen. Your iPhone is now Jailbroken.
How to Unlock the iPhone 2G
1.) On your iPhone home-screen, tap on the Blackra1n icon.
2.) In the Blackra1n app, tap on “Cydia” to install Cydia. (If you already installed Cydia, move to Step 3)

3.) Cydia will prompt you for updates. Tap on “Complete Upgrade” and install them all.
4.) In Cydia, search for the app “BootNeuter” and install the app.
5.) Open BootNeuter and make sure the settings match the image below:

6.) When the settings match the above image, tap on “Flash” in the top right corner. The iPhone 2G will now be unlocked.
Note: You may go back into the Blackra1n app on your home-screen and use the Uninstall toggle to remove the Blackra1n app from your home-screen. This does not affect the jailbreak or unlock.
--------------------------------------------------------------------------------------
The following is how to Jailbreak the iPod Touch on 3.1.2 Firmware
1.) Plug your iPod Touch into iTunes, do a backup and then click “Update” to install firmware 3.1.2. After the update, eject your iPod Touch from iTunes using the “eject” button and close iTunes. Leave your iPod Touch connected to your computer.
2.) Click on the appropriate link for PC or MAC and download Blackra1n. Save the file to your computer desktop.
3.) Locate the downloaded file “Blackra1n” and double-click on it. Click on the "Make it Ra1n" button.

4.) Your iPod Touch will now enter into Recovery Mode. If iTunes opens, simply close it.



5.) After the reboot, Blackra1n will indicate the your iPod Touch has been jailbroken. Click “OK”. You can also close Blackra1n now if it is still open.
6.) Once at your iPod Touch home-screen, go to Settings > WiFi and turn on WiFi.
7.) On your iPod Touch home-screen, you will see a new Blackra1n icon. Tap on it.

8.) When Blackra1n opens, tap on Cydia (or Rock) and tap “Install” in the top right corner.
9.) Cydia (or Rock) will now be visible on your iPod Touch home-screen. Your iPhone is now Jailbroken.
Note: You may go back into the Blackra1n app on your home-screen and use the Uninstall toggle to remove the Blackra1n app from your home-screen. This does not affect the jailbreak.
--------------------------------------------------------------------------------------
The following is how to Revert Your iPhone 2G/3G/3GS or iPod Touch Back To “Normal”
1.) Open iTunes and plug your iPhone 2G/3G/3GS or iPod Touch in via the USB. Backup your iPhone/iPod Touch if iTunes allows you to.
2.) When iTunes recognizes the iPhone/iPod Touch, click on the “Restore” button in iTunes. This will restore your iPhone/iPod Touch with fresh 3.1.2 firmware.
3.) After the restore is complete, iTunes will prompt you to Set up a New Device or Restore from Back Up from an existing backup (the backup from step 1). Choose which ever method you want and let iTunes process.
4.) After the processing is complete, your iPhone/iPod Touch will be loaded with the fresh 3.1.2 firmware or loaded with your back up that you may have chosen.
5.) Eject the iPhone/iPod Touch from iTunes using the “eject” button and disconnect the USB cable from the iPhone/iPod Touch. Turn the iPhone/iPod Touch off and then turn the iPhone/iPod Touch back on.
Use Bonus Code: TGiPJB for 100% up to $100 on 1st Deposit
Apple battles 'jailbreakers' over iPhone control
When he was 17, George Hotz (creator of blackra1n) poured hundreds of hours of his summer vacation into a special project: learning the iPhone's secrets. His unpaid labor eventually paid off.
With the help of a soldering iron, he was the first to unlock the iPhone, delivering the handset to international networks before Apple had a chance to.
He got some perks, too. His unlock catapulted him to internet stardom, catching the eye of an entrepreneur who traded his Nissan 350Z car for Hotz's restriction-free iPhone.
Hotz, now 20, makes a living as a "hacker for hire" of sorts -- getting paid to break into different types of gadgets. He gets to spend his free time unofficially attending a college, where he pretends to be a student just to socialize.
What's best, Hotz didn't think unlocking the iPhone was even hard.
"It did take 500 hours, but thinking back to some of the stuff I've done now, the first iPhone was incredibly easy," Hotz said in a phone interview.
But what was an easy task for a curious teen has turned into a persistent headache for Apple, one that the company has been trying to cure for over two years, with little success.
With each new version of the iPhone operating system, a small army of independent programmers and hackers get to work prying it open, removing restrictions and making their iPhones do things that Apple CEO Steve Jobs never intended.
To stay faithful to agreements with telecom partners, Jobs in September 2007 declared Apple was playing a "cat-and-mouse game" to disable unlocked iPhones. Apple regularly issues software updates to disable hacked, unlocked versions of the handset. But within a few weeks, new hacks emerge, freeing the iPhone from carrier restrictions again.
In fact, Hotz just last month released the easiest hacking solution for the iPhone to date.
Named "Blackra1n," his software can hack and unlock an iPhone in just two minutes. All the user needs to do is plug in an iPhone, launch the application and click a button.
It's safe to say this is a game where the mouse has outrun the cat, and it's unlikely Apple will catch up anytime soon. That's because Apple is up against a lot more than an individual hacker.
The iPhone and its App Store not only gave birth to a new digital frontier for mobile software, but created an entire underground ecosystem: the Jailbreak community.
In addition to multiple iPhone hacker groups pumping out different unlocking solutions on a regular basis, there are several stores hosting unauthorized iPhone apps and programmers developing software strictly for hacked iPhones.
Hackers adopted the word "jailbreak" to describe the act of overriding the iPhone's restrictions to install unauthorized software in the device. Jailbreaking is the first step an iPhone owner must take in order to later execute the hack to unlock the handset, enabling it to work with any carrier.
The original iPhone was extremely insecure and thus very easy to jailbreak, according to Hotz, and hackers almost immediately broke into the gadget after it debuted in June 2007.
Jailbreaking accelerated quickly. Soon, hackers reverse-engineered major parts of the iPhone API, and they opened doors to creating and installing third-party apps for the device.
Games, utilities and even custom themes and wallpapers enhanced the capabilities of the handset. To Apple enthusiasts, this was exciting: The iPhone at the time had no App Store, so jailbreaking was the only way to get more than the handful of basic apps provided by Apple.
In August 2007, Hotz announced he had unlocked the iPhone with the Dev Team, a group of hackers that posts jailbreak tools and instructions. Soon after, Hotz released software that anyone in the world could use to make their iPhone work with any carrier's SIM card.
When Apple in July 2008 opened its official App Store, the urge to jailbreak got less exciting. The App Store grew quickly -- with 100,000 apps to date -- making the act of jailbreaking seemingly irrelevant to the average iPhone owner, who could download Apple-sanctioned apps without risk.
Reformation
But the App Store didn't stop the Jailbreak community from proliferating. Now that the App Store exists, jailbreakers have shifted their focus to creating work-arounds for the iPhone's many restrictions. Most share an open-software philosophy, giving consumers full ownership rights over their product, or the ability to do whatever they wish with the gadget they paid for.
Jay Freeman owns Cydia, an unauthorized app store open to jailbroken iPhones, which distributes iPhone apps Apple would otherwise forbid. Before opening his store, Freeman played an instrumental role in setting up the early groundwork for the jailbreak platform.
Often referred to as "Saurik" in the Jailbreak community, Freeman admitted he was initially reluctant about the iPhone due to its stifling limitations.
"Apple seems to have spent very little time looking at previous phones, and left out many features that users, such as myself, have come to expect," said Freeman, reflecting on the original iPhone. "However, [a friend] insisted to me that jailbreaking was the future. The software it comes with doesn't matter; I can just rewrite it all to my liking."
The need for an underground app store became more clear after Apple rejected several iPhone apps. The company faced severe scrutiny when it rejected the official Google Voice app, which would enable consumers to use a single phone number to ring all their phones, send free text messages and make cheap international calls.
The move stirred so much controversy that even the Federal Communications Commission investigated the rejection.
Unauthorized app stores served as a way of circumventing Apple's censorship. And some programmers are even making money coding forbidden iPhone apps.
"People are so annoyed by Apple and their shit, and if you give them opportunity to go around it, then they'll even pay for it," said Kim Streich, a developer whose app 3G Unrestrictor earned $19,000 in sales in just two weeks through Cydia.
With more than 10 million jailbroken iPhones registered, Freeman's Cydia store is the most popular underground app store. Icy and Installer, two previous unauthorized iPhone software distributors, have been discontinued.
Whenever Apple releases an iPhone update, the new software usually erases unauthorized apps and disables unlocked iPhones. In response, the iPhone hacker group Dev Team continues to post regular updates on its blog with instructions and new jailbreak patches for newer iPhone software. The Dev Team's main jailbreak weapon is called Pwnage Tool, which creates a custom (hacked) patch for Apple's iPhone firmware and then installs it on the device.
To further combat jailbreaks, Apple has attempted to claim to the U.S. Copyright Office that jailbreaking is illegal.
However, the Dev Team skirts around copyright issues by not copying and providing Apple's software, according to Eric McDonald, a member of the Dev Team. Instead, the Pwnage Tool requires iPhone users to download Apple's legitimate firmware, and the Pwnage Tool patches it with jailbreak code.
Hotz, who was kicked out of the Dev Team after prematurely publishing information on iPhone hacks, still hacks away the iPhone on his own. Hotz doesn't demand money for his work, though he does accept donations.
He isn't shy about showing his face to Apple or the world, either: When running Blackra1n, the iPhone temporarily displays a photo of Hotz styled as an angel from a Caravaggio painting (above).
"Blackra1n is only 600K, and 200k of it is my picture," Hotz said, laughing.
Though the Jailbreak community persistently issues new hacks for iPhone updates, Apple is continuing to fight. A recent Apple job listing reveals the company is seeking an iPhone OS security manager to help prevent exploits, which could block future jailbreak solutions.
Hotz doubted a security expert could block his efforts. In fact, he said he's already discovered a brand new exploit that will jailbreak and unlock Apple's fourth-generation iPhone -- presumably due in stores summer of 2010 -- even though he hasn't touched it.
"Personally I love that Apple keeps the iPhone closed," Hotz said. "This is a personal hobby; it'd be no fun if Apple didn't have it closed anymore. Get a Jailbreak cop and then I'll show them what I can really do."
Use Bonus Code: TGiPJB for 100% up to $100 on 1st Deposit
blackra1n
Click here for MAC users

Use Bonus Code: TGiPJB for 100% up to $100 on 1st Deposit
Tuesday, November 10, 2009
redsn0w in june (From the iPhone dev-team)
redsn0w is an easy to use, multi-platform, multi-device jailbreaking and unlocking tool for the iPhone 2G (original iPhone), the iPhone 3G/3GS and also the iPod touch (first and second generation). It is available for Linux, Mac OS X and Windows.
REDSN0W PROVIDES SIMILAR FUNCTIONALITY TO QUICKPWN.
If you want to build custom firmware files with more flexibility it is suggested that you use ‘PwnageTool’ on Mac OS X.
1. UltraSn0w has been released via APT (cydia and icy), you can use that to unlock your iPhone.
2. Yellowsn0w has been replaced with Ultrasn0w which has been released via APT (this means you will be able to get it via Cydia or Icy).
3. Please read all parts of this post before downloading and using these tools.
4. Read items 1, 2 and 3 again and again.
5. At the bottom of this post are the bittorrent files for the latest version of redsn0w.
6. This app is suitable for the 3.0 release
7. redsn0w WILL work for all iPhones (the original type), Original iPod touch, iPod touch 2G and the iPhone 3G (and the iPhone 3GS).
To use redsn0w simply upgrade the device in iTunes to firmware version 3.0 and run redsn0w to activate and jailbreak the device (and if you are using an original iPhone 2G, it will unlock it too!)
SHA1 SUMS
SHA1(redsn0w-mac_0.8.zip)=
SHA1(redsn0w-win_0.8.zip)=
SHA1(redsn0w-linux_0.8.zip)=
Official Bittorrent Releases -
Mac torrent
Windows torrent
Linux torrent
Unofficial Mirrors
The following links are unofficial download mirrors, you download these at your own risk, we accept no responsibility if your computer explodes or if it becomes part of a NASA attacking botnet or even worse if your hands fall off mid-way during the use of these files. We do not check these links or archives and we accept no responsibility with regard to the validity of the files, or with other content these links provide or with the content that is on the linked site. Always check the published SHA1 sums. We would prefer that you downloaded the official bittorrent release that is linked above, but you are welcome to try these if you really must. Mirror owners should email direct links only to blog@iphone-dev.org , please don’t place mirrors in the comments as they will be deleted.
Mac
Windows
Linux
Use Bonus Code: TGiPJB for 100% up to $100 on 1st Deposit
Tuesday, August 25, 2009
Recycling goodness
From the iPhone Dev Team:
Short version:
You can re-use redsn0w v0.8 we released a few weeks ago to jailbreak today’s 3.0.1 update. Just let iTunes update or restore you to official 3.0.1 then run redsn0w. The only “trick” is that when redsn0w asks you to identify the IPSW used, point it at the 3.0 IPSW instead of the 3.0.1 one. After the jailbreak, reinstall ultrasn0w 0.9 if you need the unlock.
More details:
The 3.0.1 release is a “branch” from 3.0 that occurs (code-wise) before all the 3.1 betas. The programs redsn0w needs to change for the jailbreak are identical when you compare the 3.0 and 3.0.1 versions. It seems pretty much the only changes Apple made were for the SMS bug, which affects programs that redsn0w doesn’t touch. That’s why you can re-use redsn0w 0.8 on 3.0.1 even though it was written for 3.0.
And since 3.0.1 doesn’t touch the baseband either, ultrasn0w 0.9 works for those needing the soft unlock. Just install it from the repo666.ultrasn0w.com repository using Cydia as usual.
We’ll at some point fix redsn0w to recognize both 3.0 and 3.0.1 IPSW’s, but really that’s the only change that would be made to it. Everything else would be identical, so there’s no need to wait for the “proper” version that recognizes the 3.0.1 IPSW as valid.
Use Bonus Code: TGiPJB for 100% up to $100 on 1st Deposit
Wednesday, May 20, 2009
Half way home? (from the iPhone Dev-Team)
As should be expected, the modern devteam jailbreak process is still valid. The picture below is 3.0beta5 jailbroken on an iPhone 3G. As we’ve said in previous posts, nothing other than a hardware respin can prevent our jailbreak from working on all exisiting iPhone and iPod Touches. They’ve chased our jailbreak so far down in the chain of trust, the only way they can fix it is in hardware.

Because there are so many beta releases, we couldn’t possible refine, test, and release both PwnageTool and QuickPwn for each of them. That’s why we’re waiting until the final release. You may have seen other “hijacked” versions of QuickPwn out there, but all of them are buggy, none of them work on OSX, and almost everyone who uses them reverts back to 2.2.1 (because none of the useful jailbroken apps (Qik, Cycorder, and others) work on 3.0 yet).
But this is a good time to remind everyone. If you care about the yellowsn0w unlock, don’t go anywhere near the beta releases. You will lose your unlock, possibly forever.
Stay iTuned for more on 3.0!!
Use Bonus Code: TGiPJB for 100% up to $100 on 1st Deposit
Saturday, January 31, 2009
How To Jailbreak NEW 2.2.1 Firmware For iPhone,iPhone 3G & iPod Touch 1st Gen
Stay iTuned for more!!!
Friday, January 30, 2009
**UPDATE** 2.2.1 Firmware Jailbreak
Close the stable door!
This is the low down on our tools for use with the 2.2.1 firmare from Apple, read the whole post in full before attempting anything. Please note that the Windows version of QuickPwn has been updated to version 2.2.5-2
- GOLDEN RULE: If you have a 3G iPhone running 2.2 firmware and you want to keep your ability to use yellowns0w (or the option to use it in the future) do NOT use QuickPwn, and do not use the official ipsw or the iTunes update process without using PwnageTool.
- Yellowsn0w will NOT work with the baseband version (02.30.03) that is present in the recent 2.2.1 update. If you want to use Yellownsn0w you will need to create and restore using a custom .ipsw that will allow you to update safely to 2.2.1 without applying the 02.30.03 baseband update. You’ll then have a 3G iPhone running 2.2.1 with an older baseband version that is still vulnerable to yellowsn0w, following these steps ensures that yellowsn0w will still operate.
- Please read all parts of this post before downloading and using these tools.
- Read items 1, 2 and 3 again and again.
- At the bottom of this post are the bittorrent files for the latest versions of PwnageTool and QuickPwn.
- These apps are suitable for the recent 2.2.1 release.
- The Yellowsn0w version has been updated to 0.9.7. Yellowsn0w is available from Cydia or Installer - this version allows compatibility with pwned 2.2.1 system (not baseband). Again„ remember 0.9.7 yellowsn0w DOES NOT WORK WITH 2.2.1 (02.30.03) directly - you need to be running a ‘pwned’ version of 2.2.1 which didn’t upgrade the baseband during the restore/upgrade.
- Users of OS X 10.5.6 will be unable to use DFU mode correctly, please see the note towards the end of this post to easily fix this issue.
Baseband 101
The ‘baseband’ is the generic name given to the internal components of the iPhone that handle the phone calls and Internet access. This ‘baseband’ is a tiny and unique independent computer system that runs inside your iPhone, it is separate to the main system that handles the applications (such as email and google maps) and it talks to the main part of the phone over an internal communications network. Think of it like a cable modem or other peripheral that is attached to your home PC that needs occasional updates. When a software update is released and presented to you within iTunes the baseband is sometimes updated (to fix bugs or add new features). The 2.2.1 update for the iPhone 3G contains such an update, so running the vanilla updater straight away with iTunes will reprogram and update the baseband. This could be bad for certain people, depending on your ultimate aim.
SIM Free/SP Unlocked/Factory Unlocked iPhone 3G
This applies if you bought your iPhone 3G for $$$$$$$. This model of iPhone 3G doesn’t have an Service Provider lock (aka factory unlocked) and you are able to put any SIM card into the phone and get service. Your phone is already unlocked so you do not need to worry about baseband updates, simply upgrade to 2.2.1 using iTunes and then use QuickPwn to Pwn and Jailbreak. This will add Cydia and Installer too.
Locked iPhone 3G - Preserve Baseband
This applies if you have a locked iPhone 3G and you wish to update to 2.2.1 but preserve the iPhone’s current baseband software. Preserving the baseband will ensure that you can still use “yellowsn0w” the iPhone 3G unlock application. To upgrade your phone to 2.2.1 and preserve the state of the baseband you need to create a custom .ipsw with PwnageTool. This custom .ipsw will not contain the baseband update but of course will still give you any new stuff from 2.2.1
There are plenty of tutorials about this process on the web, but PwnageTool contains intuitive graphics and easy to follow prompts that should have you up and running in no time at all. Please note: PwnageTool is only available for Mac OS X.
Locked iPhone 3G
If you are using your iPhone with one carrier and have no interest in the possibility of an iPhone 3G unlock in the near future then just restore or upgrade to 2.2.1 using iTunes and use QuickPwn to Jailbreak and add Cydia and Installer.
iPhone 2G (1st Generation)
Update or Restore your iPhone 2G with iTunes then run QuickPwn to do the magic, ‘nuff said, you don’t need to worry about anything.

iPod Touch 1G (Original iPod Touch)
Update to 2.2.1 with iTunes and run QuickPwn.
iPod Touch 2G (New iPod Touch)
Sorry, no support at this time, but Redsn0w is being actively researched and developed.
Fixing DFU mode on 10.5.6
As noted previously OS X 10.5.6 introduced a bug that affected the use of DFU mode. with some Macs. There have been previously published hacks and techniques to fix this, but here is another method that can be used to temporarily restore DFU functionality in order to use QuickPwn or PwnageTool.
- You will need an account with ADC (Apple Developer Connection) this is free and takes a few minutes to sign up, you should read the terms and conditions carefully and you should only sign up if you are thinking of developing applications in the future - http://developer.apple.com/mac/
- Download the disk image “IOUSBFamily-315.4-log.dmg” for Mac OS X 10.5.5 Build 9F33” (yes, that is a “5” in 10.5.5 - this is a developer debug package of the USB kernel extension).
- Unplug non-vital USB equipment, such as external DVD writers, USB scanners, USB mass storage devices, at the most leave a Keyboard and Mouse connected.
- Install IOUSBFamily-315.4.1.pkg from within the disk image
- Reboot your system!
- Perform necessary DFU activity with QuickPwn or PwnageTool.
- Download the disk image “IOUSBFamily-327.4.0-log.dmg” for Mac OS X 10.5.6 Build 9G55”
- Intall IOUSBFamily-327.4.0.pkg from within the disk image
- Reboot your system!
- Reattach your USB peripherals.
Official Bittorrent Releases -
- PwnageTool 2.2.5 for Mac OSX is here SHA1 Sum - 8fe2f20c00f48b37d8262d6872a12166c6e165ba
- QuickPwn 2.2.5 for Mac OSX is here SHA1 Sum - 2f1353242ef10dc408e95786643e497fcd04e4ea
QuickPwn 2.2.5 for Windows is here SHA1 Sum - <release deleted use 2.2.5-2 instead>
QuickPwn 2.2.5-2 for Windows is here SHA1 Sum - 82aae63218316af42e4fa20f8c69d9eb4fe9d4ee
Unofficial Mirrors
The following links are unofficial download mirrors, you download these at your own risk, we accept no responsibility if your computer explodes or if it becomes part of a NASA attacking botnet or even worse if your hands fall off mid-way during the use of these archives. We do not check these links or archives and we accept no responsibility with regard to the validity of the files, or with other content these links provide or with the content that is on the linked site. Always check the published SHA1 sums. We would prefer that you downloaded the official bittorrent release that is linked above, but you are welcome to try these if you really must. Mirror owners should email direct links only to blog@iphone-dev.org , please don’t place mirrors in the comments as they will be deleted.
Mac PwnageTool
- http://iphone-dev.fgv6.net/PwnageTool_2.2.5.dmg
- http://iphone.schwarzmetall.cn/PwnageTool_2.2.5.dmg
- http://rabstalk.bplaced.net/mirrors/PwnageTool_2.2.5.dmg
- http://jmcoon.net/PwnageTool_2.2.5.dmg
- http://downloads2.ipod.backshot.eu/PwnageTool_2.2.5.dmg
- http://www.iphone-storage.de/PwnageTool_2.2.5.dmg
- http://miphone.ca/iphone-dev/PwnageTool_2.2.5.dmg
Mac QuickPwn
- http://iphone-dev.fgv6.net/QuickPwn_2.2.5.dmg
- http://iphone.schwarzmetall.cn/QuickPwn_2.2.5.dmg
- http://rabstalk.bplaced.net/mirrors/QuickPwn_2.2.5.dmg
- http://jmcoon.net/QuickPwn_2.2.5.dmg
- http://www.iphone-storage.de/QuickPwn_2.2.5.dmg
- http://downloads2.ipod.backshot.eu/QuickPwn_2.2.5.dmg
- http://miphone.ca/iphone-dev/QuickPwn_2.2.5.dmg
Windows QuickPwn
- http://miphone.ca/iphone-dev/QuickPwn225-2.zip
- http://foskarulla.com/QuickPwn-225-2.zip
- http://downloads2.touch-mania.com/QuickPwn-225-2.zip
- http://www.applei.ph/devteam/QuickPwn-225-2.zip
- http://phonenews.com/phones/gsm/apple/QuickPwn225-2.zip
- http://rabstalk.bplaced.net/mirrors/QuickPwn-225-2.zip
- http://www.evil-crew.de/QuickPwn-225-2.zip
- http://daniel14.com/QuickPwn-225-2.zip
Stay iTuned for more....
Tuesday, January 27, 2009
How to Jailbreak your iPhone 3G 2.2
Step 1
Download Quickpwn by clicking on the following link HERE
Or copy and past the link below in a new browser
http://thepiratebay.org/user/iphonedev/
The link leads to a torrent site. If you don't know what that is. Google it!
Step 2
Connect your powered on iPhone / iPod Touch to your PC
Step 3
Launch iTunes
Step 4
Make sure you have the latest iPhone Firmware. At the time this is being posted, that would be 2.2
Step 5
Leaving iTunes on, launch QuickPwn
Step 6
Follow the QuickPwn instrcutions (if you make a mistake you can go back and do it again) There is timing involved in holding either the home or power buttons alone or at the same time for a small amount of time, so be prepared.
Step 7
Make sure you select Cydia and Installer to be added to your device Apps. You will need these for later.
Step 8
Power cycle your device and you are done!
The next post will give ways to take advantage of a Jailbroken iPhone / iPod Touch.
Stay iTuned!!!!