Jailbreak

Check out the most comprehensive jailbreaking coverage on the internet, including the latest news, apps, tweaks, and detailed tutorials about everything jailbreak.

Why jailbreak your iPhone

BigBoss, as usual, has a very interesting post on his blog about the reasons why you would jailbreak your iPhone. I wrote many posts about jailbreaking your phone and you may see most of them here. I will sum this up the reasons why you would want jailbreak your iPhone but I invite you to read his full post.

WinterBoard + Customize Jailbreak to fix Apple's bugs Cycorder and Snapture Launchers Cydia Taking control of your system Unlocking

BigBoss goes more into detail for each of these reasons and it's worth the read.

A new ZiPhone in the work

Zibri posted this weekend that he is currently working on a new version of ZiPhone. I have always been a big fan of ZiPhone as it offers a one-click jailbreak/unlock for the iPhone. I really respect the DevTeam and cmw for QuickPwn and WinPwn, but I have to admit my heart goes to ZiPhone...

Here is what Zibri says:

I’m testing at the moment a very preliminary version of the next ZiPhone.. Let me tell you it’s impressive. A very few testers screamed when they saw how simple is this. I can’t tell you more for now.. It’s really to early.

This makes me think that ZiPhone is gonna be much easier to use than QuickPwn and WinPwn, which are already dead simple...

WinPwn Updated

Facing many complains from people saying that WinPwn 2.5 Beta was crashing on them (especially while building ISPW), WinPwn was updated today with the release of WinPwn 2.5.0.2.

Three ways to upgrade:

Just click the pineapple and select check for upgrades to upgrade Download from our iPhone Downloads section

This update is just about bug fixes, namely:

Crash when building ipsw Quickpwn crash bug fix

Good job cmw on updating WinPwn so quickly!

QuickPwn Mac OS X Tutorial

[digg-me]How to use QuickPwn Mac OS X to jailbreak the iPhone? This is a very good question that will find answer in the new few paragraphs. Before we start, I want to make it clear that QuickPwn for Mac OS X does not activate; it just pawns firmware 2.0.2 (at least to this date).

Another thing I would like to add is that you are pawning your iPhone at your own risk and it will void Apple's warranty. It is also worth noting that pawning your iPhone is illegal. I know, it's your phone, you should be able to do whatever you do with it but it still illegal. Ok, let's go.

QuickPwn Mac OS X Guide:

Before starting: your iPhone must be on firmware 2.0.2.

Download QuickPwn Mac OS X from here or from our iPhone Downloads section. Also download the 2.0.2 firmware for your iPhone and place it in your DOCUMENTS folder. It is very important you put it there as QuickPwn will automatically look for it at this location. Open QuickPwn and click OK to the warning. The next few steps are all automated, you pretty much have nothing to do but sit and relax. QuickPwn will ask you to connect your iPhone. Do so and click OK. QuickPwn will then automatically detect your device. Then QuickPwn will automatically build the custom firmware for you. It should say "Building IPSW". It will then ask for your password. Enter it. OK, now is the part where you actually work a little bit... Follow the onscreen instructions to put your iPhone into DFU mode. Wait for QuickPwn to pawn your iPhone. Then you will get a message telling you that "QuickPwn is modifying your device". Click OK and you will get a cute success message (you'll see what I mean). This process may take a few minutes and your iPhone will reboot automatically. Done!

So, wasn't that hard, was it? Please leave comments.

QuickPwn for Mac OS X is out

A lot is going on today. First, the release of WinPwn 2.5 (see tutorial here) and now the DevTeam informs us on their blog that they have released the long-awaited QuickPwn for Mac.

From the DevTeam:

QuickPwn is not a replacement for PwnageTool, they are different tools and provide different features, QuickPwn is for quickly pwning a device, whereas PwnageTool is designed to custom build and tailor the ipsw production process, both tools will be actively developed in the future.

To use QuickPwn 1.0 Mac OS X your device should be running 2.0.2, if it isn’t then you can upgrade it to 2.0.2 using iTunes and then use the QuickPwn tool, we repeat, it’ll only work on version 2.0.2 of the iPhone or iPod touch firmware.

If you don’t want specific things to happen such as baseband updates then PwnageTool should be used to create a custom .ipsw with your specifics.

QuickPwn for Mac can be downloaded from here (Bittorent) or from our iPhone Downloads section.

SHA1(QuickPwn_1.0.0.tbz)= 22ee0d6814a6bac9b1b9a8c7715dd714bd6bb449

Thanks DevTeam

How to jailbreak your iPhone using WinPwn 2.5

We've been waiting for WinPwn 2.5 for quite a bit now (see my previous posts on the topic) but it is finally out!

WinPwn 2.5 makes it stupid simple to jailbreak or unlock your iPhone. Note that so far, you can only jailbreak the iPhone 2G. An unlock method for the iPhone 3G is not available yet but check out my blog every once in a while as I will be staying on top of that and I will be informing you.

So, how to jailbreak the iPhone? Pretty simple. I just created a guide that will show you every step of the process: jailbreak your iPhone with WinPwn 2.5.

This tutorial works for iPhone 2G and 3G. Only a few steps slightly change. Read the tutorial and leave comments.

How to unlock the iPhone using WinPwn

WinPwn 2.5 is out and it is making it even easier to unlock or jailbreak your iPhone 2G. So far, it doesn't allow you to unlock the iPhone 3G but the DevTeam is working day and night on it.

I just created and published a tutorial on how to use WinPwn 2.5. This tutorial works whether you have an iPhone 3G or an iPhone 2G. It also works whether you simply want to jailbreak or unlock your iPhone.

Enough talk: use this WinPwn tutorial to unlock your iPhone 2G.

WinPwn 2.5 Guide

How to jailbreak 3G iPhone? How to unlock an iPhone 2G? These are 2 questions that will find an answer in the next few paragraphs. Believe it or not but it is illegal to jailbreak or unlock your iPhone but more importantly, it voids your warranty. Basically, you are unlocking/jailbreaking your iPhone at your own risk.

One last thing before we start.... Please do not complain to me if you have problems or if you have to restore several times. I am providing this WinPwn tutorial without any guarantee. I mean, I know it works and I know if you do everything I tell you, you won't have any problem. But I hate receiving insulting emails telling me what a jackass I am (I already know that, haha). If you're having issues, please post in the comments and I will do my best to answer your questions. Any insulting comment will be deleted.

IMPORTANT UPDATE: There is a confirmed bug with WinPwn 2.5 that can cause the WinPwn application to crash during the creation of your IPSW. Some users are finding that increasing the partition size to 700MB will resolve the issue. To specify the root size partition click the "Expert Mode" button before starting the tutorial. You will be asked to resize the partition before the IPSW starts building.

UPDATE 2: A new version of WinPwn (WinPwn 2.5.0.2) is now available and fixes bugs such as crashes. Go to our iPhone Downloads section to download WinPwn 2.5.0.2.

Ok, so let's learn how to jailbreak or unlock an iPhone (note that unlock is only available for iPhone 2G so far).

Download WinPwn 2.5 from our iPhone Downloads section. make sure you have iTunes 7.7 or upper. Download bootloaders 3.9 and 4.6 if you want to unlock your iPhone 3G. Open WinPwn 2.5. You will need the .net framework installed on your PC. It is most likely already here but if WinPwn 2.5 crashes, go to Microsoft website and download the .net framework. Leave the "Basic Mode" on. Choose your device. Select the green thumb up if you are using an official carrier like AT&T. If not, select the red thumb down. The red thumbs down will unlock and activate while the green will not. Answer the rest of the questions WinPwn will ask you. They are pretty simple. Select if you want to use a custom logo or not. For the purpose of this tutorial, we will use a custom logo. Select your firmware. Select the logo you want. Click the "Browse" button should you want to go online find more logos. If you are on an approved carrier such as AT&T in the US, skip to the next step. Otherwise, you will have a message saying: "Could not find BL-39.bin! Do you want to search for the file?" Click the green thumb to find the file that you downloaded in step 1. Your custom firmware will be built, which should take a little while. Once your custom ipsw firmware has been built, WinPwn 2.5 will ask you if you want to see instructions on putting your iPhone into DFU Mode. Click the green thumbs up button for yes or the red thumbs down button for no. For this tutorial, we will assume you want to see instructions. WinPwn will then prompt you to connect your iPhone via USB and make sure it's turned off. Do this then click the green thumbs up button. WinPwn will then say its ready to start Pwnage. Click the green OK button. Follow the steps to get your iPhone into DFU mode. Once you iPhone is in DFU mode WinPwn will begin the pwnage process. You will be informed when pwnage is complete. Notice that your iPhone will display a "Ready to restore Custom IPSW" message. iTunes will now prompt you that you are in recovery mode. Hold down SHIFT and click the Restore button in iTunes. Select the Custom firmware file we created using WinPwn. Your iPhone will now be restored to the jailbroken 2.0.x firmware of your choice!

Done!

WinPwn 2.5 is out

WinPwn 2.5 is out and can be download either from here or from our iPhone Downloads section.

So, what's new on WinPwn 2.5?

QuickPwn Support for 2.0/2.0.1/2.0.2 Root partition resize support Installer support Basic / Expert modes Wizard style interface Automatic updater Support for WinXP and Vista 32/64bit

Notes from cmw:

- ONLINE IMAGE BROWSING IS DOWN DUE TO HIGH TRAFFIC

- Why is it beta? Well it's my way of saying.. Use at your own risk

- You MUST do a full uninstall of winpwn 1/2 before installing the new version

- Make sure you have the latest version of iTunes (Currently 7.7)

How to use WinPwn 2.5?

Use my WinPwn 2.5 Tutorial.

QuickPwn vs. Ziphone

PlanetBeing, a member of the DevTeam, wrote a very interesting post about the similarities and differences between QuickPwn and Ziphone. If you're not an iPhone geek, don't even bother reading this...

Here is what PlanetBeing took into account (as you can see, there are more differences than similarities):

Similarities:

jailbreak payload medium

Differences:

Technique

ZiPhone uses, as the root filesystem device, a pseudo-device that provides a window to an arbitrary section of memory. This memory is not allocated or otherwise reserved by the operating system and hence will be used by other random processes in other random ways and will become more and more corrupted with every CPU clock cycle. The only safe way to use this is to mlock all memory used by the jailbreak binary as soon as possible, and then use data previously uploaded to flash. Anything else will cause either the jailbreak binary to crash at random moments or cause random data to be written to flash. I am not sure why Zibri elected not to implement ZiPhone in a safer fashion.

QuickPwn uses the same mechanism that Apple uses to send its update ramdisk. This memory is both allocated and reserved. It will not crash at random moments, or give you repeating BSD root errors. This is the way the XNU kernel is designed to use ramdisks.

Longevity

ZiPhone hinges on a BUG in iBoot that was quickly fixed by Apple.

QuickPwn uses an iBoot FEATURE that Apple cannot remove without rewriting their own software and undergoing lengthy QA. Even if Apple did change the architecture, it would be straight-forward to simply mimic what they do and adapt to it. The reason QuickPwn can do this is because it relies on a hardware exploit to bootstrap into this phase. Apple cannot fix this problem without changing the manufactured hardware.

Elegance

ZiPhone modifies an existing Apple ramdisk and ships it as a complete set.

QuickPwn contains all-original code and features a very tiny bootstrapper that allows it to use libraries and code that's already on the iPhone.

Not only does ZiPhone's distribution of Apple's binaries violate copyright laws, it also takes up a large portion of room on the ramdisk that could be used for the payload. Keeping its existing algorithm, ZiPhone would never have been able to install Cydia, for example. The maximum feasible ramdisk size is 32 MB; Cydia takes 13 and Apple's library take up a significant amount. With some work, Zibri could possibly make it just under the 32 MB limit, but with the large number of files in Cydia, and the large size of the corruptible area of memory, corruption would be inevitable.

Click here to read the full post.

WinPwn 2.5 preparing for beta release

cmw just posted on his site that he was preparing WinPwn 2.5 for a beta release. Yeahh! I'll let you know when the beta is out and available.

WinPwn 2.5 ( Update 08/28/08 )

Yay! Squpix fixed the 2.0.2 bug and we are now preparing for beta release! Get your iPhone/iTouch's ready it's winpwning time. Thanks again for the support.

In the meanwhile, here is a screenshot of WinPwn 2.5 in action. You may see more here.

PwnageTool 2.0.3

Well, I just posted and "predicted" that following a short post on the the DevTeam's blog they would make available an updated version of their PwnageTool. I was right on as they just announced that PwnageTool 2.0.3 for Mac OS X is now available as a Sparkle update, or a direct download here.

So what's new on PwnageTool 2.0.3?

Support for iPhone/iPod touch firmware 2.0.2 5C1 Updated version of Installer.app beta 6 New .de localization for German speaking users

DevTeam warns us that:

The application SHOULD ONLY be downloaded as a .tbz file from our servers and should NOT be decompressed using the application called “the unarchiver” (this breaks permissions within PwnageTool) just use the standard OS X built in ‘Archive Utility’ to decompress. The SHA1 sum of PwnageTool_2.0.3.tbz is 91e670e0c623cd43f5e8cfbfaae6c23d98d8f31b.