Security | Jailbreak iPhone, iPod Touch, iPad - Part 3 Skip to content

Jailbreak iPhone, iPod Touch, iPad

новости про джейлбрейк iPhone, iPod Touch и iPad

Archive

Tag: security

aslr

Pod2g has bypassed ASLR at bootup, making progress towards the public release of an iOS 5.1 jailbreak. ASLR is a security method that randomly arranges important data areas. This is one more step toward untethered iOS 5.1 jailbreak for all devices including iPhone 4S, iPad 2 and new iPad 3.

ASLR seems bypassed! Weird machines FTW. Time to ROP the payload.

Earlier this week pod2g revealed that the Chronic Dev-Team now has all the exploits required to release a userland jailbreak of iOS 5.1. It takes time to put them together in a public ready tool.

iphonefb

This week Gareth Wright reported that Facebook’s app for iOS has a security vulnerability through which malicious users can access login credentials saved in a .plist file of the app. With a copy of that .plist file malicious users could automatically log into the affected user’s Facebook account on another device. Reportedly, the vulnerability also exists on Android devices.


Read the rest of this entry »

pwned

Pod2g has recently announced that Planetbeing, MuscleNerd, and P0sixninja have joined his effort to release an iOS 5.0.1 untethered jailbreak for the iPhone 4S and iPad 2.

@planetbeing, the legendary hacker behind iPhone Linux and lot of jailbreaks has joined the A5 research! The famous @MuscleNerd, the leader of the iPhone Dev Team, who did a lot of tests for Corona and whom integrated it and made it simple in redsn0w is willing to help also. And last, but not least @p0sixninja, the leader of the Chronic Dev Team, and my partner for years on iPhone security research has started to code and fuzz the Apple sandbox.

That means that we now have a dream team to create a public release of the A5 jailbreak.


Read the rest of this entry »

noupdate501

Apple has recently released iOS 5.0.1. It is still tethered jailbreakable. However if you want untethered jailbreak or unlock – you should stay away from 5.0.1

Earlier this week pod2g reported that a code signing bug found in iOS 5.0 will make it easier for hackers to develop a full jailbreak for iOS 5 firmware version. That bug might have been closed in iOS 5.0.1. UPDATE: According to pod2g the bug is still present, but harder to exploit because another exploit found by Charlie Miller is fixed in iOS 5.0.1.

Also, MuscleNerd via twitter has warned iOS users that there is no downgrade from iOS 5.0.1 to iOS 5.0 yet and he recommends to wait until downgrade mechanism is available.

Jailbreakers and unlockers should avoid today’s 5.0.1 until a flow for downgrading to 5.0 is developed.

Downgrade flow needs to be modified for AP “nonce” http://is.gd/b3G0io … saved SHSH blobs are not enough to downgrade to 5.0

ios_4_3_4

Apple has released iOS 4.3.4 to block the PDF exploit used by comex in JailbreakMe utility. JailbreakMe can wireless jailbreak all devices on iOS 4.3.3.

iOS 4.3.4 Software Update
Fixes security vulnerability associated with viewing malicious PDF files.

Products compatible with this software update:
iPhone 4 (GSM model)
• iPhone 3GS
• iPad 2
• iPad
iPod touch (4th generation)
• iPod touch (3rd generation)

For iPhone 4 Verizon Apple released iOS 4.2.9.

The official information is available here: http://support.apple.com/kb/HT1222

ios432

Apple has released iOS 4.3.2 for the iPhone, iPad, and iPod touch.

This update contains improvements and other bug fixes including:

  • Fixes an issue that occasionally caused blank or frozen video during a FaceTime call
  • Fixes an issue that prvented some international users from connecting to 3G networks on iPad W-Fi + 3G
  • Contains the latest security updates

Products compatible with this software update:

  • iPhone 4 (GSM model)
  • iPhone 3GS
  • iPad 2
  • iPad
  • iPod touch (4th generation)
  • iPod touch (3rd generation)

For information on the security content of this update, please visit http://support.apple.com/kb/HT1222.

Apple has also updated the firmware for the Verizon iPhone to 4.2.7 although this wasn’t listed in the release notes.

Current jailbreak tools work with iOS 4.3.2 in tethered mode only. Please save your SHSH keys for iOS 4.3.1 asap.

Here are direct download links for the latest firmwares:


Read the rest of this entry »

android market

This week Google has released a new version of its client app for Android Market, which will work on any smartphone running Android OS 1.6 or higher.

The company aims to facilitate the process of discovering new software and its purchase. That’s why new Android Market will have a Cover Flow-like style of app listings and include new categories like Widgets and Live Wallpapers, as currently the catalog is filled pretty much with these kinds of software. Besides that, app pages will now have more info and links to related content.

Read the rest of this entry »

Famous hacker Geohot is back and today he released the latest iOS 4.1 jailbreak. It is called LimeRa1n and supports iPhone 3GS, iPod Touch 3G, iPad, iPhone 4, iPod Touch 4G with iOS firmwares 4.0-4.1 and beyond. It can also hacktivate your device, so there is no need in phone SIM-cards and other tricks.

This software is still in beta and was updated 3 times in last several hours. So use with caution.

There is Windows version only for now. Geohot plans to release LimeRa1n for Mac and Linux soon. You can Download it here.

Some users report that they have jailbroken their iOS 3.2.2 iPads successfully with limera1n, while others report that they tried, but failed.

Do not forget to backup.

For many users of iPhone 3GS and iPhone 4 with iOS 4.0.2 now there is a hope to perform jailbreak using LimeRa1n and unlock using ultrasn0w. We recommend NOT to do it if you have not saved your SHSH keys. You can try, but if something goes wrong without SHSH keys you’ll have to restore to iOS 4.1, and there is no unlock for iOS 4.1 (possibly forever). Just wait for PwnageTool utility.

DevTeam reported that Limera1n uses a different exploit than SHAtter, so they will not release SHAtter utility, they don’t want let Apple fix both security holes. However they plan to release PwnageTool using the same exploit.


Read the rest of this entry »

pdffix

As you may know, few days ago Apple had released a new version of iOS for all its mobile devices except first-generation iPhone and iPod touch, so owners of the latter are still not protected from a security flaw that allows hackers to obtain a remote control of their handsets. In fact, the latest compatible version for them is currently iOS 3.1.3.

But Saurik (who is known as a developer of Cydia) recently announced on the Dev-Team blog that he released a PDF patch that is compatible with any iOS version down to 2.x. It can be found in Cydia if you’ll search for “PDF Patch”. After installing it you can check if the patch is working properly with visiting jailbreakme.com page. After sliding the box to jailbreak you should only see the star background (and not a dialog box), which means you are no longer vulnerable.

Read the rest of this entry »

4.0.2 3.2.2

Today Apple released patches for its iOS that address a security hole in Mobile Safari, which allowed users to jailbreak their iDevices. The PDF exploit they used also allowed hackers to gain remote control over the device with an iOS.

iOS 4.0.2 is available for:

Apple did NOT release the patch for the first generation iPhones.

iOS 3.2.2 is intended to use on the iPad and iPad 3G.

You can update your device via the links above or simply by connecting your device to iTunes and clicking Update. But note, if you want to continue using jailbreak you should not update your handset/tablet and don’t forget to backup your SHSH blobs.