yiPhone and other

I still can't disbelieve how galore group believed yiPhone. It's awe-inspiring how a couple lines of javascript(the counter) can excreta so galore group off. I was just hard to push dev to work a little harder ;-)
I have never finished the jailbreaks for some former versions of the telecommunicate, what makes you think this one would be dissimilar? I also like to think I have more than honor than victimisation person elses put to work before they do. And really, United Nations agency was the being in the picture? Yorro? Once he exists, maybe yiPhone will exist.

Also, heres wherefore a certain somebody claimed the DFU was the key. You could, without some exploits, download the 114 iBoot(even to the 3g), the 114 kernelcache(ok, this crashes on the 3g), and a hacked ramdisk. But the filesystems don't mount. And even if they did, you'd requisite a way around sig checking.

Here is a little program(with source of course) to run some you want at the DFU level; an enforcement of the dev pwnage 2.0 put to work. Pass it a positional notation file, it will start death penalty at the start of the file(no file formats to deal with). I'll leave it to dev to excuse the put to work old.
 
 

How to restraint your iPhone 3G and surf the web victimisation your 3G connection

Thanks to the fantabulous work of the iPhone Dev Team and the porting work of Jay Freeman as well as the authors of 3Proxy, it is nowadays possibility to "restraint" your iPhone 3G and use its Computer network connection on your laptop.

Warning - Tethering your iPhone is against the iPhone collection plan damage. AT&T could bump you with Brobdingnagian fees if you utilise this. I suggest lone victimisation it during emergencies.

Here's the alkaline rundown:
- Escape your iPhone 3G
- Instal 3Procurator and Terminal
- Make an ad-hoc Wi-fi communication system victimisation your laptop
- Disjoin the communication system with your iPhone
- Find the iPhone's IP address
- Open Terminal and run the procurator program
- Open Campaign on your iPhone and open a web page
- Set up your spectator to use the proxy

I will be victimisation a Macintosh and Firefox to demonstrate,...

Read the rest of this post


 
 

Infineon, we have a question

The 3G bootloader is sig patterned by the bootrom. So even removing the NOR and fixture the bootloader(to remove piping fw sig checks) and piping firmware doesn't work for an withdraw. Big acknowledgement to TA_Mobile for dumping the NOR and confirmatory this. You have no real skills.

The X-Gold 608 is the chip old. The lame "datasheet" infineon gives us shows the implements of war RSA and the secure bootrom. So we have a real question. Even if we find an unsigned encrypt put to work, which wasn't finished for the former deuce bootloaders in software(we remuneration tricks to play with the nor), we still can't unlock.

Even though the bootloader isn't easy for transfer, theres really zero here. This bootloader doesn't be some of the synergistic modality functions, just a stub which is precise like to the old bootrom(but with sig checking). The synergistic attender is tacked on to the end of all fls and eep file, and is soused at 0x86000. BBUpdaterExtreme contains various ramloaders as well, but I disbelieve the one old is from the news file itself. You do not requisite the bootloader to work on the baseband, you just requisite the files off the ramdisk. Also newsworthy to note, the 2 rsa keys the bootloaders use haven't denaturised since 3.9 or 4.6 So you have these too.

Putting to death CommCenter on 2.0 kills the wi-fi, which will make excavation with the baseband a bit harder. Change of location synergistic modality is nowadays finished with a call to the meat to raise an I/O pin before resetting.

The first step to tackling this is dumping the bootrom. We requisite no put to work, I don't care where, to dump discretional storage device. Point we can dump 0x400000, which is the new "secure" bootrom.
 
 

How-do-you-do Jody!

Seems like “Jody Sanders” of the West Midlands, UK (United Nations agency we mentioned in our release post) is at it again and is felony our work and passing it off as his personal, he has finished this before and this swindle was rumored by the Guardian and also by on this communicate last year and was also crusted in a very precise long thread concluded at hackint0sh forums.

We specifically curb the advert use of our software system, and yellowsn0w is included in these restrictions. This unsafe man is commercialism our software system to you at a deal £19.99 he says:-

“We can nowadays fully withdraw the iPhone 3G for use on some GSM communication system for just £19.99 DIY (£49.99 in-store at either National capital or Metropolis) - just in time for the release of the iPhone 3G PAYG in the UK (easy from Carphone Depot and o2).”

Jody’s “software system” contains our encrypt and also copyrighted encrypt from elsewhere. No you requisite is free and defined Hera . What he is doing just isn’t cool.

If you square measure in Metropolis or National capital point if you could find out any aggregation about Jody Sanders at “iph*neunl*ckuk” we’d be precise appreciative.

Also if here square measure some UK founded lawyers or student lawyers that could help us with this, point gratify contact us at blog@iphone-dev.org of course student lawyers can’t give us general judicial proposal, but even your unrhetorical public opinion helps.

Seems like even though Jody claims he doesn’t offer our software system, he is offer his “own software” (that is construct just QuickPwn with no edits, also forbidden) and also claims (in soul to yellowsn0w) -

“Gratify bear with us at the minute - the software system is in exploratory stage and we square measure hard to get it excavation for no users.”

The spotted QuickPwn isn’t the lone warez they sell or offer, they also provide a hacked turning of the Edible fruit IOUSBFamily meat extension.

Some newsworthy stuff has been exposed about Jody, no which can’t be posted Hera, but his limited company “Telecommunicate Withdraw Limited” is way buttocks on submitting the company accounts, if anyone would like details of his company it can be read Hera - 1, 2, 3 and 4

Seems like commercialism our work has unpaid off, his electric current housing (not the one recorded in the companies house records) is up for sales agreement for £190,000 - looks like he is unreeling onto a large and better belongings. We also requisite aggregation on his associate “Tim Hinton” also of the West Midlands.

There square measure also otherwise companies United Nations agency square measure in operation the European swindle, but Jody has been warned specifically, so he is first (two wrongs don’t make a right).

Please don’t report in this post about yellowsn0w issues, non Jody similar comments will be deleted, if you square measure having problems with yellowsn0w, gratify report here

Cute youtube video recording by nrox653 :)


 
 

What a period of time!

What a period of time it’s been for the 3G withdraw! Here’s where we’re at:

Past

  • As foretold in our beta release post, expanding yellowsn0w from dev group experimentation to world-wide activity disclosed no unhoped situations.
  • Thanks to general natural action from you on our reporting page, we’ve been able-bodied to fine-tune the performing by which yellowsn0w injects the unlocking loading. We disbelieve we’re convergency on a performing that deeds for least cases.

Present

  • The electric current exploratory turning of yellowsn0w is 0.9.6, easy via Cydia. Gratify have in mind to our beta release post for more than technical content about how to instal and use it.
  • Although ultimately the loading is the European as in the precise first exploratory, we’ve denaturised the way that it’s injected into the baseband.
  • Although no of you have endowed time and strength in reaching up with a precise general flow that deeds for you, the best way to first try 0.9.6 is as-provided, straight out of the box with no special activity around it.
  • Please continue to provide natural action on our reporting page so that we can golf-club out wrinkles.

Future

  • One major feature we have left to provide support for is PIN protection. We have spattered in this a bit and think we have a answer, but want to make that a separate exertion from component yellowsn0w work with as galore SIMs as possible.
  • At that point, we can probably declare yellowsn0w out of “exploratory” status.
  • The “stable” withdraw is still the last destination for no of us. We’d like to break the chain of trust a bit earliest in the boot process (if lone for the witticism in trying).