iOS 8.4.1 released 8.4 Signing window is closing. . .

new iOS version 8.4.1If you would like to restore your device for jailbreaking, now is the last chance for a while (probably until 9.0.1 or so).  It is not difficult as long as Apple is still signing the earlier version.  Simply visit https://ipsw.me/ and download the iOS version you wish to install (for us it is 8.4 for your device model).  Once this file is downloaded, fire up iTunes select the summary screen for your device, hold option (or alt if you are on windows) and click restore.  This will bring up an open dialogue and simply feed it the file you downloaded in the previous step.  You will need to temporarily turn off Find My iPhone before you will be allowed to restore.  Restoring creates a cleaner foundation for the jailbreak.  It is not always required, but i highly recommend it.  Soon, we will not be able to restore without loosing jailbreak.  We want to ensure that our devices are functioning fully.  That is why we jailbreak!

new iOS version restore

check status of apple signing:
http://api.ineal.me/tss/status

TaiG now has a mac version. Download jailbreak here:
http://www.taig.com/en/

8.4 is out. TaiG Jailbreak updated!

TiaG LogoWow, great timing guys.  Wonderful work.  I just hope you fixed the little setreuid() bug that allows root privilege escalation from any running app.  It’s nice to have a phone that cannot be reboot by a txt message.  Now that app developers have had some time to update their apps/manifests the jailbreak experience is looking glorious.

Side note:  8.3 is still being signed. Check this site for current signing status.  @notcom of TinyUmbrella also says save your blobs!  We have yet to learn what magic they have in store for us.

TaiG Homepage

TiaG releases Jailbreak 2.1.2 for iOS 8.1.3-8.3!

TiaG LogoUpdated with all the proper kernel patches for Mobile Substrate as well as fixes for earlier bugs.  Great news for the community!  Myself, I have had a great experience with the latest jailbreak despite the initial bugs.  TiaG put out a more solid then a Geohot initial release.  (No disrespect to the man, but he would have had 4 patches out by day 2.)  Where is the iPhone dev team Team Chronic or the Evad3rs Team (Dream Team) these days?

Oh Cydia- how i missed you!

Tiag 8.3 jailbreak Cydia iconsToday TiaG released a new jailbreak for iOS 8.1.3-8.3!  Finally I am jailbroken again!  As usual, lots of apps will need to be updated to work and Mobile Substrate isn’t compatible yet.  Please be patient as Saurik and others get things updated.  That is not to say that there isn’t piles of useful stuff already in Cydia.  It will probably be a few days (or maybe weeks) before we see activator and similar tweaks or themes up on 8.3.  Presently, TiaG jailbreak is only windows, but it works fine with virtualization.  Also, 8.4 should be coming soon.  I know Pangu allegedly already has a working jailbreak that they are waiting to release.  If that is true and nothing TiaG releases gets in the way, it should be great.  However, it is probably a good idea to upgrade to 8.3 before the signing window closes.  Apple usually leaves the old iOS open for a few hours or days after a new version is released.

tiag 8.3 jailbreak start

Continue reading “Oh Cydia- how i missed you!”

iOS 8.1.1 is here and 8.1 signing window is closing

I narrowly skated into an 8.1 upgrade.  With 8.1.1 out nearly 24 hours, I almost missed my chance to update my iPad.  Luckily apple is still signing 8.1 for now.  GET ON IT, if you still want your jailbreak.  Who knows when the good folks at pangu are going to make another unteathered jailbreak.  Here are some tips for those of you who are uncertain about updating to a not so current release of iOS.  Step 1:  Download the ipsw for your device and software version.  (many devices have different software versions based on CDMA vs GSM vs Wifi – pick carefully)  Step 2:  Hold the Option key (alt for windows) while clicking the Restore button in iTunes.  Step 3:  Direct the open dialogue to the downloaded ipsw and click open.  Step 4:  Wait.  (if you get an error you have either chosen the wrong ipsw or the signing window is closed)  Good Luck!

P.S. – i got lucky.  Lesson learned.  Watch the betas and update before the windows closes.

UPDATE 11/22/14 – Apple is still signing 8.1! I just restored an iPhone 6 to 8.1 this morning!

UPDATE 12/01/14 – Apple finally closed the window.   I hope you all got sorted out.

UPDATE 12/15/14 – Found a great site to track what is still being signed.  http://api.ineal.me/tss/status

Halloween surprise from Pangu! iOS 8.1 Jailbreak!

I was so wrapped up in the ghoulish holiday that I hardly noticed when @PanguTeam released an iOS 8~8.1 jailbreak tool.  This release covers all devices capable of running iOS 8. Presently it is only available for windows (but runs great in a virtual machine).  Already on the 4th version of the tool for Windows, a Mac version is promised soon.  Only just playing with it now.  More info to come.  thanks guys.  get it here:  http://pangu.io

Pangu Jailbreak 8.1

Pangu releases jailbreak for iOS 7.1/7.1.1!

pangu jailbreak icon Exciting to see a new player on the jailbreak scene.  This new player brings drama we haven’t seen since Zibri left the scene.  Wrought with the threat of malware and with the inclusion of a pirated App Store this jailbreak has certainly raised many questions as to the safety and legality of the software.  It’s installation is easy enough.  Nearly as simple as the evad3rs jailbreaks.  The main cravat is the inclusion of an expired corporate code signing certificate.  This requires that you set the date on your device to June 2nd and also to verify that you want to run an application from developer “iPhone Distribution:  Hefei Bo Fang communication technology co. LTD.”

It seems that much of the drama stems from the source of the bugs used to complete the process.  @i0n1c has been quite vocal about the whole thing.

pangu jailbreak i0n1c twitter-1

pangu jailbreak i0n1c twitter-2

Pangu makes no attempt to conceal what they did.  Thanking @i0n1c right on their app, even linking to his twitter feed.  They are not exactly claiming credit for his work, nor do i see how they are making any money from the release of this free jailbreak.  I understand that no permission was given to release this privileged info to the public, but i am glad that someone used it to release a free jailbreak.  Better then the current elevat0r to nowhere.  UPDATE:  pangu released 1.1 version of jailbreak removing @i0n1c’s info leak bugs and fixing boot loop issues experience by some users.  Not a great idea to burn more bugs, really no purpose at this point. Also, english release makes it easier for me to read.  UPDATE:  Apple released 7.1.2.  Pangu jailbreak includes 7.1.2.

pangu jailbreak new

pangu jailbreak start

pangu jailbreak finish

Lets see what the experts say. . .

pangu jailbreak twitter comex

pangu jailbreak musclenerd twitter-1

pangu jailbreak musclenerd twitter-2

pangu jailbreak musclenerd twitter-3

pangu jailbreak ih8sn0w twitter-1

Here are a few screens from the process.  I wasn’t quick enough to grab the startup screen with a thank you message.  Presently, the installer only runs in windows, but it can even be done with virtualization.  They claim a mac version is coming soon now avaliable.  pangu.io or english version:  en.pangu.io


pangu jailbreak iphone screen-1pangu jailbreak iphone screen-2
pangu jailbreak iphone screen-3pangu jailbreak iphone screen-4

Apple’s goto fail bug and what it means to you?

Apple goto fail SSL bugThe security community went into a frenzy this weekend over Apple’s latest iOS security update. On Friday, Apple quietly released iOS 7.0.6 and 6.1.6 to patch a bug in its SSL implementation. This particular bug nicknamed “goto fail” for the actual contents of its source code behind the error.  Basically, one too many goto fail causes the fail not to be conditional, but absolute.  This failure allows Apple’s SSL framework (the technology that secures web transmissions) to be easily bypassed.  In other words, Safari, Mail, Calendar, Software Update, as well as any 3rd party applications who take advantage of Apple’s SSL libraries could potentially have their communications intercepted by an unscrupulous individual.  Apple claims that it is a type-o, but many wonder if this might be a deliberate backdoor (one that has lasted over a year).

The real tragedy of this issue is that it effects Mavericks (Mac OS 10.9.x) as well as iOS, but there is yet no official fix for Apple Computers.  Update Published by Apple!  Apple desktops, laptops, and iMacs are now were left in a very dangerous position: unprotected to a known threat.  I am sure that the bad guys are already configuring their sslstrip, sslsniff, or similar tools.  Accounts will be compromised, communications will be intercepted or manipulated, or in the case of software updates, malware could even be introduced.

What can we do?  First off, run the 7.0.6 update on any iOS devices not yet up to date.  Do this from a trusted wifi, not a public one.  With your mac, avoid public wifi until this is resolved.  Avoid Apple Mail except when absolutely necessary and only from trusted networks.  Only use Google Chrome for secure web browsing (it uses its own SSL framework).  Optional:  Install @i0n1c’s binary patch.  @i0n1c’s patch fixes the bug, but may break other things.  Run Apple 10.9.2 update!

links:
Test your system:  https://gotofail.com/
Great Writeup:  https://www.imperialviolet.org/2014/02/22/applebug.html
Quick & Dirty Patch:  http://www.sektioneins.de/en/blog/14-02-22-Apple-SSL-BUG.html
Official Apple Fix  http://support.apple.com/kb/HT6150

Ready for the Evasion!

20130203-201126.jpg

Blobs are fetched, IPSWs Downloaded, iDevices Backed Up! Now the wait for the latest public jailbreak continues. The latest team includes @pimskeks, @planetbeing, @pod2g, and of course @MuscleNerd. Supposed to drop early tomorrow, but some suspected (myself included) that it might get released on “Funday.”

This jailbreak will support EVERY iPod Touch, iPhone, iPad, or iPad Mini running iOS 6.0-6.1. No doubt that atv2 support will come quickly after. No news yet about atv3.

Official Evad3rs Site