<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0"><channel><description></description><title>Dev-Team Blog</title><generator>Tumblr (3.0; @devteam)</generator><link>https://blog.iphone-dev.org/</link><item><title>In Memoriam:
Ben “bushing” Byer</title><description>&lt;figure class="tmblr-full" data-orig-height="450" data-orig-width="300" data-orig-src="https://64.media.tumblr.com/5579bd0575cb04a58c64cff7e44eec9d/tumblr_inline_o2afxaos1o1qzn9o2_540.jpg"&gt;&lt;img src="https://64.media.tumblr.com/db4d1a158ef2c070a03f48bdbd5711ed/tumblr_inline_p7fzp5AEl91qzn9o2_540.jpg" alt="image" data-orig-height="450" data-orig-width="300" data-orig-src="https://64.media.tumblr.com/5579bd0575cb04a58c64cff7e44eec9d/tumblr_inline_o2afxaos1o1qzn9o2_540.jpg"/&gt;&lt;/figure&gt;&lt;p&gt;We are deeply saddened by the news that our member, colleague, and friend &lt;b&gt;Ben &amp;ldquo;bushing&amp;rdquo; Byer&lt;/b&gt; passed away of natural causes on Monday, February 8th.&lt;br/&gt;&lt;/p&gt;&lt;p&gt;Many of you knew him as one of the public faces of the iPhone Dev Team, Team Twiizers and &lt;a href="https://fail0verflow.com" target="_blank"&gt;fail0verflow&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;Outspoken but never confrontational, he was proof that even in the competitive and oftentimes aggressive hacking scene, there is a place for both a sharp mind and a kind heart.&lt;/p&gt;&lt;p&gt;To us he was, of course, much more. He brought us together, as a group and in spirit. Without him, we as a team would not exist. He was a mentor to many, and an inspiration to us all.&lt;/p&gt;&lt;p&gt;Yet above anything, he was our friend. He will be dearly missed.&lt;/p&gt;&lt;p&gt;Our thoughts go out to his wife and family.&lt;/p&gt;&lt;p&gt;Keep hacking. It&amp;rsquo;s what bushing would have wanted.&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/138996628971</link><guid>https://blog.iphone-dev.org/post/138996628971</guid><pubDate>Tue, 09 Feb 2016 09:08:32 -0800</pubDate></item><item><title>Restoration reinvigoration</title><description>&lt;p&gt;Today we&amp;rsquo;re pleased to release redsn0w version 0.9.15b1, with significant new features supporting restoring to older firmware no longer being signed by Apple.  For brevity, we&amp;rsquo;ll list most of the new features in bullet form.  For more details, please feel free to drop by our comments section, or check out any upcoming guides on tutorial sites like &lt;a href="http://iclarified.com" target="_blank"&gt;http://iclarified.com&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;First, the &lt;strong&gt;high-level new feature list:&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;restore from &lt;strong&gt;any&lt;/strong&gt; 5.x iOS to any other (up, down or the same) 5.x iOS on all devices as long as you have the correct blobs (see more below)&lt;/li&gt;
&lt;li&gt;Cydia now included in the tethered 6.0 jailbreak on A4 devices&lt;/li&gt;
&lt;li&gt;automatically &amp;ldquo;Just Boot&amp;rdquo; tethered when qualifying A4 device connects in DFU mode&lt;/li&gt;
&lt;li&gt;untethered 6.0 jailbreak on old-bootrom 3GS&lt;/li&gt;
&lt;li&gt;untethered 6.0 hactivation on any 3GS or iPhone4&lt;/li&gt;
&lt;li&gt;directly restore pre-A5 devices to earlier firmware &amp;ndash; no more complicated 15-step how-to&amp;rsquo;s with stitching, iTunes errors, and &amp;ldquo;hosts file&amp;rdquo; concerns&lt;/li&gt;
&lt;li&gt;fetch new signed blobs for any IPSW (present or future &amp;ndash; &lt;em&gt;no redsn0w update required&lt;/em&gt;) using Extras-&amp;gt;SHSH Blobs-&amp;gt;New&lt;/li&gt;
&lt;li&gt;block the BB update for any 3GS or iPhone4 restore (past, present, or future &amp;ndash; &lt;em&gt;no redsn0w update required&lt;/em&gt;) using Extras-&amp;gt;Even More-&amp;gt;Restore&lt;/li&gt;
&lt;li&gt;deactivate any iPhone, useful for testing your &amp;ldquo;official&amp;rdquo; unlock status through iTunes.  (Please only deactivate your own iPhone!)&lt;/li&gt;
&lt;li&gt;activation status shown on &amp;ldquo;Even more&amp;rdquo; page&lt;/li&gt;
&lt;li&gt;significantly more (very nerdy) info returned by &amp;ldquo;Identify&amp;rdquo; button when device is in Normal mode&lt;/li&gt;
&lt;li&gt;tethered jailbreak of ATV2 supported (but the only thing available for it is the SSH2 custom bundle available &lt;a href="https://sites.google.com/a/iphone-dev.com/files/" target="_blank"&gt;here&lt;/a&gt; &amp;ndash; no Cydia yet.  Must use &amp;ldquo;Select IPSW&amp;rdquo; for tethered boot of ATV2 for now).&lt;/li&gt;
&lt;li&gt;auto-exit WTF mode for older devices with broken buttons&lt;/li&gt;
&lt;li&gt;any time a set of blobs is fetched remotely (from Apple or Cydia), redsn0w also saves them locally (and will check there first if you click &amp;ldquo;Local&amp;rdquo;)&lt;/li&gt;
&lt;li&gt;for your future restoring convenience, you should also submit all of your past and present TinyUmbrella blobs to Cydia if you haven&amp;rsquo;t done so yet.  Resubmitting is okay and won&amp;rsquo;t cause conflicts.&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;Here are more details on the iOS5-to-iOS5 restores for A5+ devices.  (&lt;em&gt;Note:&lt;/em&gt; &lt;em&gt;pre-A5 devices don&amp;rsquo;t have these restrictions &amp;ndash; just follow the redsn0w prompts during the restore&lt;/em&gt;).&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;1. redsn0w now lets you restore an A5+ device from any iOS5 to any other iOS5 as long as you have correct 5.x blobs for the starting (current) and ending points of the restore&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;APtickets eliminated &amp;ldquo;higher-version only&amp;rdquo; comparison of firmware restores (just like BBtickets did for the baseband)&lt;/li&gt;
&lt;li&gt;example restores supported by redsn0w if you have the correct blobs: 5.1.1-to-5.0.1, 5.0.1-to-5.1.1, 5.1.1-to-5.1.1, 5.0.1-to-5.0.1&lt;/li&gt;
&lt;li&gt;if you don&amp;rsquo;t have the blobs locally, let redsn0w try to fetch them remotely (redsn0w always tries both Apple and Cydia).  Any succesful remote fetch also saves a local copy too.&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;2. You DO NOT QUALIFY for iOS5-to-iOS5 restores if you got to your current 5.x via an OTA update&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;the tickets saved by Cydia, redsn0w, and TinyUmbrella do not cover OTA update ramdisk images &lt;/li&gt;
&lt;li&gt;even if they did, it&amp;rsquo;s the &amp;ldquo;wrong kind&amp;rdquo; of ramdisk (you&amp;rsquo;d need to start at that earlier pre-OTA FW)&lt;/li&gt;
&lt;li&gt;devices fresh from factory or refurb may fall in the &amp;ldquo;does not qualify&amp;rdquo; category (your results will vary)&lt;/li&gt;
&lt;li&gt;it&amp;rsquo;s okay if you previously got to 5.x via an OTA update, as long as your &lt;strong&gt;current&lt;/strong&gt; 5.x was installed via a normal iTunes restore.  All that matters is how you got to your current 5.x &lt;strong&gt;most recently&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;redsn0w detects an OTA/normal-restore APticket mismatch very early, so if you don&amp;rsquo;t know your status there should be no harm in trying.  Any device in recovery mode after such a mismatch can boot normally again just by going back to &amp;ldquo;Even More&amp;rdquo; screen from the &amp;ldquo;Restore&amp;rdquo; screen (or use &amp;ldquo;Recovery Fix&amp;rdquo; if you quit redsn0w before doing that).&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;3. Unlike the A4 devices, redsn0w can&amp;rsquo;t (usefully) prevent the baseband updates of A5+ iPhones and iPads.&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;and so, redsn0w automatically flashes the currently signed baseband when it does A5+ restores, even if those basebands didn&amp;rsquo;t come with the original firmware&lt;/li&gt;
&lt;li&gt;stay away from this if you have an unofficial unlock that isn&amp;rsquo;t supported by the newest baseband&lt;/li&gt;
&lt;li&gt;the least-tested baseband update code in redsn0w is for iPad2,3 and iPad3,2.  Please give any feedback on those iOS5 restores in the comments section below.&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;4. iPad2 owners (all three models) with saved 4.x blobs can use those instead, even from 6.x&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;if you have both 4.x and 5.x iPad2 blobs, you can always get to 5.x via the 4.x blobs, even if you&amp;rsquo;re currently on 6.x&lt;/li&gt;
&lt;li&gt;you cannot get to 5.x from 6.x without the 4.x blobs (but you may still qualify for the iOS5-to-iOS5 restore described above)&lt;/li&gt;
&lt;li&gt;if somehow you have 4.x blobs but no 5.x blobs, you can still go down to 4.x from 6.x&lt;/li&gt;
&lt;li&gt;this only applies to iPad2 owners (they&amp;rsquo;re the only A5+ devices that ever had a public 4.x FW)&lt;/li&gt;
&lt;li&gt;redsn0w still supports (but doesn&amp;rsquo;t require) jailbreaking A5+ devices at 5.0.1 and 5.1.1.  Just head back to the first page after re-restoring to 5.x.  It&amp;rsquo;s always &lt;strong&gt;much&lt;/strong&gt; faster to jailbreak those FW versions with a freshly-restored device, before letting iTunes restore from a saved userland backup.&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;And finally, some random details:&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;5. ultrasn0w isn&amp;rsquo;t yet updated for 6.x&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;by now you probably should be taking advantage of the extremely cheap IMEI-based unlocks of iPhones sold by established online retailers like &lt;a href="http://cutyoursim.com" target="_blank"&gt;http://cutyoursim.com&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;still, IMEI-based unlocks don&amp;rsquo;t work in all cases.  We&amp;rsquo;ll announce when ultrasn0w is ported up to 6.x&lt;/li&gt;
&lt;li&gt;redsn0w will still hactivate your 3GS or iPhone4 if you run it before the device is activated.  Due to the current tethered 6.x JB status, redsn0w now hactivates 6.x &lt;strong&gt;without&lt;/strong&gt; requiring subsequent tethered boots.  If you accidentally hactivate with redsn0w, use the &amp;ldquo;Deactivate&amp;rdquo; checkbox available from the Jailbreak screen, not the normal one in &amp;ldquo;Even more&amp;rdquo;&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;6. As always, redsn0w lets you &amp;ldquo;Fetch&amp;rdquo; the SHSH blobs currently flashed onto your pre-A5 device&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;use this if you&amp;rsquo;re at 5.x or 4.x but without having saved your blobs when the window was open&lt;/li&gt;
&lt;li&gt;this is only useful when Apple is no longer signing the firmware, otherwise Cydia/redsn0w &amp;ldquo;New&amp;rdquo;/TinyUmbrella blobs are superior (but you&amp;rsquo;re welcome to fetch your 6.0 blobs this way anyway)&lt;/li&gt;
&lt;li&gt;fetching blobs in this fashion will automatically forward them up to Cydia, as well as save a local copy&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;We realize there&amp;rsquo;s a lot of info in this post.  If you&amp;rsquo;re at all confused about things remember to visit our comments section, with our very helpful user base and moderators like dhlizard, Frank55, 41willys, and slavakulikoff.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;If you&amp;rsquo;re in the Melbourne, Australia area&lt;/strong&gt;, MuscleNerd (and another anonymous long-time Dev Team member) will be giving some talks at the Breakpoint conference &lt;a href="http://www.ruxconbreakpoint.com" target="_blank"&gt;http://www.ruxconbreakpoint.com&lt;/a&gt; this week.  And @mdowd&amp;rsquo;s iOS talk at the same conference should be quite interesting too!  We&amp;rsquo;ll also all be attending Ruxcon a few days later, so say hi if you see us!&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #1 (Oct 15): &lt;/strong&gt;Version 0.9.15b2 fixes a few issues for 3GS owners: old-bootrom awesomeness is no longer forgotten directly after a restore, and iPad baseband upgrade/downgrade support is fixed (same production date cutoffs apply!).  If your 3GS is currently tethered at 6.0 even though you have an old bootrom, just re-run redsn0w&amp;rsquo;s Jailbreak step (no need to restore).  Don&amp;rsquo;t forget you can add some pizzaz with your own boot logo or a nerdy verbose boot.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #2 (Nov 1): &lt;/strong&gt;Version 0.9.15b3 fixes the redsn0w &amp;ldquo;error 2601&amp;rdquo; that Windows users were seeing using the Restore button.  It also fixes a related Windows iTunes error 14 for stitched files.   Note that if you have a baseband, you should probably avoid stitching and simply use redsn0w&amp;rsquo;s native Restore (not iTunes).  &lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Those lucky recipients of new iPad minis and iPad4s &lt;/strong&gt;on Friday can use this redsn0w to save your 6.0 blobs off to Cydia.  First connect your new device and turn it on, then use redsn0w&amp;rsquo;s Extras-&amp;gt;SHSH Blobs-&amp;gt;New and point it at the 6.0 IPSW.&lt;/p&gt;
&lt;p&gt;Expect an ultrasn0w compatibility update for iOS 6.0 by Friday (mostly useful for 3GS old-bootrom users who are currently enjoying the untethered 6.0 jailbreak!).  Same baseband support as with 5.x.&lt;/p&gt;
&lt;p&gt;Thanks to @iamgolfy for helping test the 2601 Windows fix!&lt;/p&gt;
&lt;p&gt;Here are the download links.  Enjoy!&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.15b3.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.15b3&lt;/a&gt; (OS X &amp;ndash; use Ctrl-Click-&amp;gt;Open if on Mountain Lion for now)&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.15b3.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.15b3&lt;/a&gt; (Windows &amp;ndash; run in Adminstrator Mode)&lt;/li&gt;
&lt;/ul&gt;</description><link>https://blog.iphone-dev.org/post/33546509336</link><guid>https://blog.iphone-dev.org/post/33546509336</guid><pubDate>Sat, 13 Oct 2012 21:42:00 -0700</pubDate><category>redsn0w</category></item><item><title>Blob-o-riffic</title><description>&lt;p&gt;Today marks the public release of iOS6!  For those devices capable of running 6.0, the 5.1.1 SHSH blob signing window will soon close, so it&amp;rsquo;s very important that you &lt;strong&gt;backup your 5.1.1 blobs now while you still can&lt;/strong&gt;.  We advise you do it for every device you have (see tutorial sites like &lt;a href="http://iClarified.com" target="_blank"&gt;iClarified&lt;/a&gt; if you don&amp;rsquo;t know the process).&lt;/p&gt;
&lt;p&gt;A few months back we released a redsn0w feature that lets you downgrade A5+ devices from 5.1.1 to anything lower (if you had saved blobs).  Unfortunately once the 5.1.1 window closes, &lt;strong&gt;redsn0w&amp;rsquo;s 5.x downgrade feature will no longer work&lt;/strong&gt;.  Most A5+ users will not be able to downgrade.  So if you&amp;rsquo;re an A5+ owner up at 6.0 when the 5.1.1 window closes, you&amp;rsquo;ll be stuck there without a jailbreak for now.&lt;/p&gt;
&lt;p&gt;We&amp;rsquo;re happy to report there are some serious deficiences in the 5.x restore process that are permanently exploitable. They&amp;rsquo;ll never be fixable by Apple because they&amp;rsquo;re all self-contained in the 5.x IPSWs.  Here&amp;rsquo;s the breakdown:&lt;/p&gt;
&lt;ol&gt;&lt;li&gt;A4 devices and 3GS will always be downgradable (and jailbreakable) with saved blobs due to limera1n.  The tethered iOS6 jailbreak for those devices (and untethered for old-bootrom 3GS) will be out when Cydia and other important pieces are all working properly.&lt;/li&gt;
&lt;li&gt;iPad2 owners who have &lt;strong&gt;both&lt;/strong&gt; 4.x blobs and 5.x blobs will always be able to downgrade to those versions, even once you come up to 6.0 and the 5.1.1 window closes (don&amp;rsquo;t do that yet though!).  &lt;strong&gt;You need both 4.x and 5.x blobs to qualify for the 5.x downgrade&lt;/strong&gt; even though you only wish to downgrade to 5.x (you need only your 4.x blobs to downgrade to 4.x)&lt;/li&gt;
&lt;li&gt;iPad3, i4S (and iPad2 owners who don&amp;rsquo;t satisfy #2) will always be able to RE-restore &lt;strong&gt;the current 5.x OS that&amp;rsquo;s already on their device.&lt;/strong&gt;  So if you&amp;rsquo;re at 5.1.1 when the window closes (and you&amp;rsquo;ve saved your blobs), you&amp;rsquo;ll always be able to RE-restore to 5.1.1 again.  This makes the 5.1.1 jailbreak a lot less fragile &amp;ndash; you don&amp;rsquo;t have to worry about messing up your install with funky extensions or getting into a boot loop, because you can always RE-restore from &lt;strong&gt;5.1.1 to 5.1.1&lt;/strong&gt; again (or from &lt;strong&gt;5.0.1 to 5.0.1&lt;/strong&gt; again, etc).  But &lt;strong&gt;once you fall off the 5.x train by restoring to 6.x, you&amp;rsquo;ll be stuck there until the next jailbreak.&lt;/strong&gt;&lt;/li&gt;
&lt;/ol&gt;&lt;p&gt;Please be aware that RE-restores and iPad2 downgraded devices will always end up with the latest baseband (not the one that came with that firmware).  So don&amp;rsquo;t go near any of this if your unlock depends on the baseband version.&lt;/p&gt;
&lt;p&gt;All of these features will be released shortly in a new version of redsn0w.  In the meantime please be sure you have your 5.1.1 blobs and stay at 5.1.1.  Happy iOS6 day!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #1: &lt;/strong&gt;For a refresher on why saved blobs are not as powerful as they used to be, please see &lt;a href="http://blog.iphone-dev.org/post/6952986620/blob-monster" target="_blank"&gt;our Blob Monster post&lt;/a&gt; (the scenarios described above are possible only due to mistakes made by Apple, but those mistakes are being cleaned up with each new firmware).&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/31869383801</link><guid>https://blog.iphone-dev.org/post/31869383801</guid><pubDate>Wed, 19 Sep 2012 11:22:00 -0700</pubDate></item><item><title>Baseband Freedom</title><description>&lt;p&gt;Happy 4th of July!  Today&amp;rsquo;s release of redsn0w 0.9.14b2 improves the iPad baseband downgrade and should cover anyone who couldn&amp;rsquo;t downgrade with 0.9.14b1.  This version covers 3 different types of NOR chips in the iPhone 3G and 3GS (the earlier version covered only the most prevalent NOR chip).  We&amp;rsquo;ve also simplified the process and added logging to help diagnose any remaining stubborn iPhones.&lt;/p&gt;
&lt;p&gt;The revised steps are:&lt;/p&gt;
&lt;ol&gt;&lt;li&gt;Connect your iPhone in normal mode, then click &amp;ldquo;Jailbreak&amp;rdquo; after redsn0w identifies its model and BB version (you needn&amp;rsquo;t pre-select the IPSW anymore).&lt;/li&gt;
&lt;li&gt;Choose the &amp;ldquo;Downgrade from iPad baseband&amp;rdquo; option (you needn&amp;rsquo;t worry about de-selecting Cydia anymore).&lt;/li&gt;
&lt;li&gt;Do a &lt;strong&gt;controlled&lt;/strong&gt; &amp;ldquo;slide to power off&amp;rdquo; shutdown of your phone and proceed through the normal DFU ramdisk steps.&lt;/li&gt;
&lt;/ol&gt;&lt;p&gt;Should the downgrade fail to take, feel free to leave the redsn0w log in the comments below.  Use the &amp;ldquo;Extras-&amp;gt;Even more-&amp;gt;Backup&amp;rdquo; button to grab a copy of /var/mobile/Media/redsn0w_logs, then extract the log text file(s) from the zip and paste them into the comments (currently that log file is generated only during baseband downgrade runs).&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;NOTE&lt;/strong&gt;: The original warning about 3GS units manufactured in early 2011 or later still holds!  They have a NOR chip that&amp;rsquo;s incompatible with 06.15.00 and so trying to install it will brick the device.  Please read and &lt;a href="http://blog.iphone-dev.org/post/25350690843/0615-fun" target="_blank"&gt;re-read the warning in our earlier post.&lt;/a&gt; &lt;/p&gt;
&lt;p&gt;Thanks to bobmutch, &lt;a href="http://twitter.com/healeydave" target="_blank"&gt;@healeydave&lt;/a&gt; and &lt;a href="http://twitter.com/dilbert4life" target="_blank"&gt;@dilbert4life&lt;/a&gt; for lending us their iPhones to improve the baseband downgrade!&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strong&gt;DFU IPSW&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;We&amp;rsquo;ve gotten a lot of feedback from users who can&amp;rsquo;t launch a DFU ramdisk because their iPhone home/power buttons are broken or intermittent.  We&amp;rsquo;ve added a new redsn0w feature that lets you enter DFU mode as long as your phone is healthy enough to restore to a normal, everyday IPSW.  &lt;strong&gt;You don&amp;rsquo;t need to be already jailbroken&lt;/strong&gt; to use this method.&lt;/p&gt;
&lt;p&gt;In redsn0w, go to &amp;ldquo;Extras-&amp;gt;Even More&amp;gt;DFU IPSW&amp;rdquo; and select an IPSW that is currently being signed for your device and that you&amp;rsquo;d normally be able to restore to without any hacks.  redsn0w will create an &amp;ldquo;ENTER_DFU_&amp;rdquo; version of the IPSW that you can restore to just like any other IPSW, except that now you&amp;rsquo;ll be dumped into DFU mode towards the end of the restore (WARNING, your screen will remain completely black&amp;hellip;the only way to even know its on is that iTunes and redsn0w will detect it!).  The technique used by this feature is &lt;a href="https://twitter.com/musclenerd/status/3211746820" target="_blank"&gt;3 years old&lt;/a&gt; but surprisingly still works today!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #1 7/25/12: &lt;/strong&gt;redsn0w is compatible with today&amp;rsquo;s retail release of Mountain Lion OS X 10.8.  Until we start using an official developer ID for it (!), you&amp;rsquo;ll need to use the new Ctrl-Click-Open security bypass the first time you run it after downloading.&lt;/p&gt;
&lt;p&gt;Here are the download links.  Enjoy!&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.14b2.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.14b2&lt;/a&gt; (OS X)&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.14b2.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.14b2&lt;/a&gt; (Windows &amp;ndash; run in Administrator Mode)&lt;/li&gt;
&lt;/ul&gt;&lt;div&gt;&lt;/div&gt;</description><link>https://blog.iphone-dev.org/post/26534086824</link><guid>https://blog.iphone-dev.org/post/26534086824</guid><pubDate>Wed, 04 Jul 2012 20:07:00 -0700</pubDate><category>redsn0w</category><category>Ultrasn0w</category></item><item><title>0615 fun</title><description>&lt;p&gt;The iPhone Dev Team is happy to announce a baseband downgrade option in redsn0w for those who are using the iPad&amp;rsquo;s 06.15 baseband on the iPhone3G or iPhone3GS.&lt;/p&gt;
&lt;p&gt;Typically you&amp;rsquo;d have the 06.15 baseband if you unlock with ultrasn0w but updated your iPhone baseband past 05.13.04.  With this new capability, you can now downgrade specifically from 06.15 to 05.13.04 (even if you never had 05.13.04 on that device before).  This gives you the best of both worlds: ultrasn0w compatibility and a normal iPhone baseband with full GPS and the ability to use stock IPSWs again.&lt;/p&gt;
&lt;p&gt;Here are the steps:&lt;/p&gt;
&lt;ol&gt;&lt;li&gt;Use the &amp;ldquo;Extras-&amp;gt;Select IPSW&amp;rdquo; button in redsn0w to tell it which firmware version you have installed (new-bootrom 3GS users can usually skip this step but it doesn&amp;rsquo;t hurt for them to do it too).&lt;/li&gt;
&lt;li&gt;Do a &lt;strong&gt;controlled&lt;/strong&gt; shutdown of your iPhone (&amp;ldquo;slide to power off&amp;rdquo;).  This step is very important to avoid mount problems when the ramdisk is running!&lt;/li&gt;
&lt;li&gt;Go back to the first screen and click &amp;ldquo;Jailbreak&amp;rdquo;.  Enable the &amp;ldquo;Downgrade from iPad baseband&amp;rdquo; checkbox, disable Cydia if you already have it installed, and click Next to proceed through the normal DFU ramdisk steps.&lt;/li&gt;
&lt;/ol&gt;&lt;p&gt;After the ramdisk gets launched and you see the Pwnapple running on your iPhone, you&amp;rsquo;ll eventually get to the &amp;ldquo;Flashing Baseband&amp;rdquo; step.  &lt;strong&gt;THIS STEP TAKES A VERY LONG TIME&lt;/strong&gt; to complete and there won&amp;rsquo;t be any feedback while its running.  Please just let it be for the next 3-8 minutes!  When the ramdisk has done its job it will reboot the phone on its own.&lt;/p&gt;
&lt;p&gt;For those who are wondering if you can update your 3G or 3GS to 06.15 solely for the purposes of downgrading to 05.13.04, the answer is &amp;ldquo;yes&amp;rdquo; for 3G owners, and &amp;ldquo;maybe&amp;rdquo; for 3GS owners.  The iPad baseband is not compatible with 3GS units manufactured week 34 of 2011 or later.  &lt;strong&gt;If you have an iPhone3GS and if digits 3-5 of its Serial Number are 134 or later (xx134&amp;hellip;), then you should NOT try to install the 06.15 baseband on your 3GS!&lt;/strong&gt;  It will brick your radio, preventing both the downgrade from working and normal iPhone software from using it as a phone!  Be warned!&lt;/p&gt;
&lt;p&gt;Thanks very much to &lt;a href="http://twitter.com/dilbert4life" target="_blank"&gt;@dilbert4life&lt;/a&gt; for graciously loaning us his 3GS at 06.15 (we had no such devices because we always prevent BB updates!)&lt;/p&gt;
&lt;p&gt;If you have any questions or comments, please use our comments section below!&lt;/p&gt;
&lt;p&gt;Here are the download links.  Enjoy!&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.14b1.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.14b1&lt;/a&gt; (OS X)&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.14b1.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.14b1&lt;/a&gt; (Windows &amp;ndash; run in Administrator Mode)&lt;/li&gt;
&lt;/ul&gt;&lt;div&gt;&lt;strong&gt;Update #1: &lt;/strong&gt;If you&amp;rsquo;re still using ultrasn0w after going down to 05.13.04, many people have reported that re-installing Mobile Substrate and/or ultrasn0w fixes crashes and &amp;ldquo;No Signal&amp;rdquo;.&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;&lt;br/&gt;&lt;/strong&gt;&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Update #2: &lt;/strong&gt;There&amp;rsquo;s a subset of 3GS iPhones that won&amp;rsquo;t take the downgrade.  We now understand why (they use a slightly different NOR chip), and should be receiving a loaner of such a phone on Thursday the 28th.  &lt;strike&gt;After we have one in hand we&amp;rsquo;ll tweak the redsn0w payload to handle that variation too!&lt;/strike&gt; The improved downgrader is now available &lt;strong&gt;&lt;a href="http://blog.iphone-dev.org/post/26534086824/baseband-freedom" target="_blank"&gt;here.&lt;/a&gt;&lt;/strong&gt;&lt;/div&gt;</description><link>https://blog.iphone-dev.org/post/25350690843</link><guid>https://blog.iphone-dev.org/post/25350690843</guid><pubDate>Sun, 17 Jun 2012 23:54:00 -0700</pubDate><category>redsn0w</category><category>Ultrasn0w</category></item><item><title>Pre-DC</title><description>&lt;p&gt;With only a week to go before WWDC 2012 and the surprises Apple will announce there, today seems like a good time to release updates to our suite of free software to include the rocky-racoon jailbreak and untether developed by @pod2g and @planetbeing!  Today&amp;rsquo;s updates are:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;PwnageTool 5.1.1&lt;/li&gt;
&lt;li&gt;redsn0w 0.9.12b1&lt;/li&gt;
&lt;li&gt;cinject 0.5.4 (version 0.5.3 also had rocky-racoon but this includes some updates)&lt;/li&gt;
&lt;li&gt;ultrasn0w 1.2.7 (5.1.1 compatibility only - no new baseband support)&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;If you&amp;rsquo;ve already installed rocky-racoon, don&amp;rsquo;t bother reinstalling it unless you&amp;rsquo;ve had problems and would like to try a different tool.  The underlying untethered jailbreak (rocky-racoon) is identical to what is already installed by last week&amp;rsquo;s tools like Absinthe, cinject-0.5.3, and the rocky-racoon Cydia package &amp;ndash; only the injection method offered by the above tools differs.&lt;/p&gt;
&lt;p&gt;redsn0w allows owners of A4+earlier devices to install rocky-racoon two different ways:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;backup/restore method similar to Absinthe and cinject&lt;/li&gt;
&lt;li&gt;its traditional limera1n-based ramdisk install.  If you have a lot of media on your A4 device (music, movies, TV shows, etc), then the ramdisk method is preferrred because it avoids any possibility of later problems related to syncing to iCloud (including Photo Stream and Music Match).  The ramdisk method is not available for A5 devices or later because limera1n can&amp;rsquo;t be used.  If you&amp;rsquo;d like to use redsn0w&amp;rsquo;s ramdisk method, just be sure to put the A4 device in DFU or Recovery mode before starting redsn0w (otherwise it will immediately start to use the backup/restore method).&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;We&amp;rsquo;ve also added a new redsn0w feature specifically for those who got in on the SAM unlock: you can now include your SAM tickets as part of your initial ramdisk jailbreak of iPhone4 or earlier, or alternatively you can upload your SAM tickets to any device after its been jailbroken.  redsn0w accepts either the individual SAM activation ticket plist file, or the entire zip file created by redsn0w&amp;rsquo;s &amp;ldquo;Backup&amp;rdquo; button.  As usual, redsn0w continues to cover all of its previous jailbreaks and untethers (so redsn0w-0.9.12b1 covers everything from 5.1.1 all the way back to 4.1). &lt;/p&gt;
&lt;p&gt;PwnageTool also avoids any possible sync issues, but again it applies only to A4+earlier devices.  &lt;strong&gt;If you unlock your iPhone with ultrasn0w or a commercial method, you must use PwnageTool to avoid updating your baseband&lt;/strong&gt; otherwise you&amp;rsquo;ll lose the unlock.  PwnageTool will also jailbreak+untether the AppleTV2,1 5.0_2B206f (unless you customize the IPSW further, you&amp;rsquo;ll have just basic SSH access to the device).&lt;/p&gt;
&lt;p&gt;If you&amp;rsquo;d like to contribute to those that actually developed rocky-racoon, please visit &lt;a href="https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&amp;amp;hosted_button_id=4U6DQGJ2NRVUN" target="_blank"&gt;here&lt;/a&gt; (any other links you may see are &lt;strong&gt;not&lt;/strong&gt; going to the actual rocky-racoon developers, they&amp;rsquo;re being diverted to other &amp;ldquo;related&amp;rdquo; or fraudulent accounts).&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;This particular jailbreak brought an unusual amount of fanfare and hoopla to the table, including &amp;ldquo;press releases&amp;rdquo; and other haughty silliness.  &lt;/strong&gt;We&amp;rsquo;d just like to take this opportunity to remind everyone that jailbreaking is about freedom, not fame and donations!&lt;/p&gt;
&lt;p&gt;Here are the download links.  Please use our comment section below to give feedback.  Enjoy!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #1: &lt;/strong&gt;Starting with version 0.9.12b2, redsn0w will now explicitly ask users with limera1n-able devices whether they want to inject rocky-racoon using the DFU ramdisk method or the backup/restore method (the ramdisk method is better for those with lots of media on their device that would create very large backups, and it&amp;rsquo;s required for those with unactivated iPhones).  If you&amp;rsquo;ll always want to use limera1n, you can select that in the Preferences pane.  It also fixes an iBooks issue on old-bootrom 3GS iPhones, and provides more useful error messages when things go wrong.&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/ipad-dev.com/files/pwnagetool/PwnageTool_5.1.1.dmg?attredirects=0&amp;amp;d=1" target="_blank"&gt;PwnageTool 5.1.1&lt;/a&gt; (OS X)&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.12b2.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.12b2&lt;/a&gt; (OS X)&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.12b2.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.12b2&lt;/a&gt; (Windows &amp;ndash; run in Administrator Mode)&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/cinject-0.5.4.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;cinject 0.5.4&lt;/a&gt; (OS X + Windows)&lt;/li&gt;
&lt;li&gt;ultrasn0w 1.2.7 &amp;ndash; install this via Cydia&lt;/li&gt;
&lt;/ul&gt;</description><link>https://blog.iphone-dev.org/post/24395681708</link><guid>https://blog.iphone-dev.org/post/24395681708</guid><pubDate>Mon, 04 Jun 2012 03:01:00 -0700</pubDate><category>pwnagetool</category><category>redsn0w</category><category>Ultrasn0w</category></item><item><title>5x redux</title><description>&lt;p&gt;What&amp;rsquo;s old is new again!&lt;/p&gt;
&lt;p&gt;Jailbreakers with devices that pre-date the iPad2 will always be able to downgrade (with SHSH blobs) to previous firmware versions due to geohot&amp;rsquo;s limera1n exploit, which allows us to bypass the restrictions that Apple places on restores.  But until now, that ability has been limited to those older devices (if you have an older device and don&amp;rsquo;t know how to do that, check the popular tutorial sites or ask in the comments below).&lt;/p&gt;
&lt;p&gt;Starting with redsn0w version 0.9.11b1, those with newer devices (iPad2, iPad3, and iPhone4S) can join the downgrade fun too!  In a radical departure from previous versions of redsn0w, it now directly supports restoring IPSWs to your device.  &lt;strong&gt;The first use of this new feature implements a hack that allows A5 downgrades without a bootrom-level exploit&lt;/strong&gt;.&lt;/p&gt;
&lt;p&gt;Some important points:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;The new feature is at Extras-&amp;gt;Even More-&amp;gt;Restore&lt;/li&gt;
&lt;li&gt;You cannot downgrade without the personalized SHSH blobs for your device at that lower firmware.  You need to have fetched those blobs while the signing window was open, using either Cydia&amp;rsquo;s built-in TSS@Home feature, or with TinyUmbrella.  The new Restore screen of redsn0w lets you choose either the remote blobs or local ones (for the earlier firmware).  If you don&amp;rsquo;t know where TinyUmbrella put your blobs, TinyUmbrella has a button that will show you (copy them out of that folder and feed them to redsn0w).&lt;/li&gt;
&lt;li&gt;The A5 downgrade method actually &lt;strong&gt;updates&lt;/strong&gt; to the latest firmware before downgrading to the earlier one. &lt;strong&gt;This process updates your baseband to whatever is newest.&lt;/strong&gt;  &lt;strong&gt;DO NOT USE THIS METHOD IF YOU RELY ON UNOFFICIAL UNLOCKS&lt;/strong&gt; of your iPhone4S.  Those who used the temporary SAM technique to unlock their iPhones to specific SIMs shouldn&amp;rsquo;t be affected by this baseband update.&lt;/li&gt;
&lt;li&gt;This method can be fixed by Apple with a firmware update.  It&amp;rsquo;s a (pleasant) mystery why they haven&amp;rsquo;t fixed it yet, because reverse-engineering of the restore ramdisk indicates they do know about it.  It&amp;rsquo;s possibly too niche to bother to fix right now.&lt;/li&gt;
&lt;li&gt;The least-tested devices with this method are the iPad2,3 and iPad3,2 (because we don&amp;rsquo;t have those models).  If you do and you feel like experimenting, please let us know how it turns out in the comment section below!&lt;/li&gt;
&lt;li&gt;This update involves a bunch of new redsn0w code.  We recommend sticking to the previous version 0.9.10b8b unless you&amp;rsquo;re specifically using this new feature, until all the bugs are worked out!  (Note: If redsn0w gets stuck at the &amp;ldquo;Waiting for device&amp;rdquo; stage for more than 30 seconds, you&amp;rsquo;ve hit a pesky GUI bug&amp;hellip;that will be fixed in an upcoming version!)&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;Of course all eyes are on @pod2g for his upcoming 5.1 untethered jailbreak.  Watch &lt;a href="http://pod2g-ios.blogspot.com/" target="_blank"&gt;his blog&lt;/a&gt; or twitter feed for the latest updates about that, but in the meantime if you accidentally updated your jailbroken A5 device to something later than 5.0.1, feel free to try this new A5 firmware downgrade feature of redsn0w!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #1: &lt;/strong&gt;&lt;strike&gt;We accidentally left out one of the two flavors (&amp;ldquo;9A406&amp;rdquo;) of 5.0.1 for iPhone4S.  It&amp;rsquo;ll be in the next update, but in the meantime check if Cydia or TU saved your blobs for the other 5.0.1 for iPhone4S (&amp;ldquo;9A405&amp;rdquo;).&lt;/strike&gt; Version 0.9.11b2 adds support for that second &amp;ldquo;9A406&amp;rdquo; flavor of 5.0.1 for the iPhone4S.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #2: &lt;/strong&gt;Version 0.9.11b3 should fix the spurious &amp;ldquo;Restore failed&amp;rdquo; messages people were sometimes getting, and it behaves better with nearby devices that have wifi syncing enabled!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #3: &lt;/strong&gt;Version 0.9.11b4 completes the tethered JB support for 5.1.1 on A4 devices and earlier, including proper &amp;ldquo;Stitching&amp;rdquo; and &amp;ldquo;Custom&amp;rdquo; creation of NO_BB IPSWs.&lt;/p&gt;
&lt;p&gt;Here are the redns0w download links:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.11b4.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.11b4 for OS X&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.11b4.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.11b4 for Windows&lt;/a&gt; (be sure to run in Administrator mode)&lt;/li&gt;
&lt;/ul&gt;</description><link>https://blog.iphone-dev.org/post/22834622159</link><guid>https://blog.iphone-dev.org/post/22834622159</guid><pubDate>Fri, 11 May 2012 03:06:00 -0700</pubDate><category>redsn0w</category></item><item><title>iPad(3) Fever!</title><description>&lt;p&gt;Despite the awkward name Apple announced last week for the new iPad (we&amp;rsquo;ll continue to call it iPad3!), by all signs it&amp;rsquo;s going to be another big hit.  We suspect many of you are lined up at this very minute, and so it&amp;rsquo;s a good time to give you some info for maximizing your chance to eventually jailbreak the iPad3.&lt;/p&gt;
&lt;p&gt;There are a few bits of good news already.&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;We can confirm that the method used to jailbreak the &lt;a href="http://www.youtube.com/watch?v=oJVGl1eRW2A&amp;amp;list=UUkgNF9Y4SVkt0iBJeeQXZGQ" target="_blank"&gt;iPad2 4 months ago&lt;/a&gt; (before corona) still works even in 5.1.  That means we&amp;rsquo;ll at least be able to get our foot in the door to get the required kernel dumps on the iPad3.  That&amp;rsquo;s an important step, but by no means is it the end of the story.&lt;/li&gt;
&lt;li&gt;Those of you following @i0n1c may have noticed he&amp;rsquo;s already &lt;a href="https://twitter.com/#!/i0n1c/status/180329102115479554" target="_blank"&gt;tweeted pictures&lt;/a&gt; of his iPad2 jailbroken at 5.1.  As far as we know, he&amp;rsquo;s using a method completely unrelated to the one mentioned above.  That would be great news!&lt;/li&gt;
&lt;li&gt;We&amp;rsquo;ve also seen bits and pieces of an entirely different jailbreak method being investigated by someone close to the Cydia repo scene: &lt;a href="https://twitter.com/#!/phoenixdev/status/180826729663836160" target="_blank"&gt;@phoenixdev&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;That&amp;rsquo;s three different angles, and we&amp;rsquo;re not even including the continuous work @pod2g makes towards a new jailbreak!  As always, keep in mind this is very preliminary progress, and it&amp;rsquo;s impossible to predict how or when these things turn out.  The only thing you need to remember is the golden rule:&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Don&amp;rsquo;t update your new iPad3 past whatever iOS it comes shipped with&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;By the way, it&amp;rsquo;s rare but entirely possible that some of you may find your iPad3 comes with an iOS version that&amp;rsquo;s not quite 5.1.  If you do, be sure to let us know in the comments below!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #1: &lt;/strong&gt;It turns out that all three of the jailbreak methods mentioned above have had great success today!  We&amp;rsquo;re off to a good start (but remember there&amp;rsquo;s still lots of work to do)!&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://twitter.com/#!/MuscleNerd/status/180708759855841280" target="_blank"&gt;Method 1 shown by @MuscleNerd&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://twitter.com/#!/i0n1c/status/180807698458222592" target="_blank"&gt;Method 2 shown by @i0n1c&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://twitter.com/#!/chpwn/status/180811460392402945" target="_blank"&gt;Method 3 shown by @chpwn&lt;/a&gt; &lt;a href="https://twitter.com/#!/phoenixdev/status/180826729663836160" target="_blank"&gt;and @phoenixdev&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description><link>https://blog.iphone-dev.org/post/19383772351</link><guid>https://blog.iphone-dev.org/post/19383772351</guid><pubDate>Thu, 15 Mar 2012 21:11:00 -0700</pubDate></item><item><title>March Mayhem</title><description>&lt;p&gt;As the whole tech world waits for today&amp;rsquo;s Apple Event, it seems like a good time to remind both veteran and amateur jailbreakers about the fundamental rule of jailbreaking:  &lt;strong&gt;Avoid firmware updates!&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;In all likelihood we&amp;rsquo;ll see the GM &amp;ldquo;gold master&amp;rdquo; version of 5.1 this week.  &lt;strong&gt;DO NOT UPDATE TO 5.1&lt;/strong&gt;, because you may lose your jailbreak!  The rest of this post details the subtleties with this rule, but if there&amp;rsquo;s only one message to take home, it&amp;rsquo;s the overall &amp;ldquo;&lt;strong&gt;do not update&lt;/strong&gt;&amp;rdquo; message!  Now for the nitty gritty exceptions:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;Soon after 5.1 appears on Apple&amp;rsquo;s public servers (i.e. iTunes starts to offer it), Apple will stop signing 5.0.1 SHSH blobs.&lt;/li&gt;
&lt;li&gt;If you have an&lt;strong&gt; iPhone4S&lt;/strong&gt;, the basic rule above is really the only rule:  you cannot restore back to 5.0.1 once the 5.0.1 signing window is closed, no matter what (even if you saved your SHSH blobs).&lt;/li&gt;
&lt;li&gt;If you have an &lt;strong&gt;iPad2&lt;/strong&gt; with saved 4.x hashes, you can in fact downgrade to that 4.x but you won&amp;rsquo;t be able to get to 5.0.1 once the 5.0.1 signing window is closed (even if you saved your 5.0.1 SHSH blobs).&lt;/li&gt;
&lt;li&gt;If you have a &lt;strong&gt;device earlier than the iPad2&lt;/strong&gt;, you can downgrade to whatever version you want, as long as you have saved SHSH blobs for that version.  You&amp;rsquo;ll need the assistance of geohot&amp;rsquo;s limera1n exploit with tools like redsn0w to get into &amp;ldquo;pwned DFU mode&amp;rdquo; and bypass the downgrade restriction.&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;As you can see, it really is a nuanced landscape so it&amp;rsquo;s sometimes hard to drive the message home to new jailbreakers.  But the basic rule is the simplest (and it&amp;rsquo;s better to be safe than sorry!):  If you update to 5.1 you&amp;rsquo;ll very likely lose your jailbreak, so don&amp;rsquo;t do it!  Exceptions are noted above.&lt;/p&gt;
&lt;p&gt;Now let&amp;rsquo;s see what Apple unveils today!&lt;/p&gt;
&lt;div&gt;
&lt;div&gt;&lt;strong&gt;Update #1&lt;/strong&gt;:  &lt;strong&gt;First, please read and re-read the above warnings!&lt;/strong&gt;  With all of that in mind, we realize that some of you non-A5 jailbreakers are itching to get to 5.1, even though there seems to be no compelling new feature there. Because of geohot&amp;rsquo;s limera1n exploit, those with devices earlier than the iPad2 can test the 5.1 jailbreak waters if they really want to, using redsn0w 0.9.10b6.  Here&amp;rsquo;s what you need to know:&lt;/div&gt;
&lt;div&gt;&lt;/div&gt;
&lt;div&gt;
&lt;ul&gt;&lt;li&gt;&lt;strong&gt;This is a *tethered* 5.1 jailbreak for non-A5 devices.&lt;/strong&gt;  You&amp;rsquo;ll need to use redsn0w to &amp;ldquo;Just Boot&amp;rdquo; your device every time it power cycles, otherwise jailbreak apps won&amp;rsquo;t work (neither will Safari).&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;If you use ultrasn0w for your carrier unlock, be sure to use a custom IPSW to get to 5.1 first!&lt;/strong&gt;  Don&amp;rsquo;t ever restore to a stock Apple IPSW!  Use redsn0w&amp;rsquo;s &amp;ldquo;Custom IPSW&amp;rdquo; button to create a NO_BB_* version of the 5.1 IPSW and restore to that instead of the stock one.  (That option is available only to 3GS and iPhone4-GSM owners.)  &lt;strong&gt;ultrasn0w itself will be updated for 5.1 in the next few days (same baseband support, not 5.1&amp;rsquo;s baseband).&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;If you&amp;rsquo;re lucky enough to have an old-bootrom 3GS, this jailbreak is actually untethered (redsn0w will figure that part out automatically).&lt;/li&gt;
&lt;li&gt;While we were at it, we added @pod2g&amp;rsquo;s steaks4uce exploit to support MC models of the iPod touch 2G (whose last firmware was 4.2.1).  So now redsn0w will auto-detect and jailbreak both MB and MC versions of that older device.&lt;/li&gt;
&lt;li&gt;iBooks won&amp;rsquo;t work until a future update of redsn0w&lt;/li&gt;
&lt;/ul&gt;&lt;div&gt;&lt;strong&gt;Update #1b: &lt;/strong&gt;The OS X version of redsn0w has been updated to fix an issue for those running OS X 10.5.x or earlier.&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Update #2: &lt;/strong&gt;Version 0.9.10b7 of redsn0w adds a collection of useful features:  It finally implements the corona-A5 jailbreak for iPhone4S and iPad2 devices still at 5.0.1.  It can also re-install that jailbreak for those who accidentally uninstalled the untether.  When stitching an IPSW, it can now grab your blobs directly from Cydia.   It now shows a lot more info about your device (for instance, whether your iPhone3G has the vulnerable baseband boot loader, or whether your iPhone3GS has the old exploitable bootrom.   (And the next new feature to be added will be built-in restore support, to provide an alternative to iTunes restores.)&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Update #3: &lt;/strong&gt;redsn0w 0.9.10b8 adds the ability to backup arbitrary directories or files from your device into a zip file on your Mac or PC.  The new button is Extras-&amp;gt;Even More-&amp;gt;Backup and it requires your device to be jailbroken with the afc2 service enabled (most jailbreaks include that).  By default it will backup your activation records from /var/root/Library/Lockdown, which is useful for everyone taking advantage of today&amp;rsquo;s &lt;a href="http://laforeta.blogspot.co.nz/2012/04/how-to-spoof.html" target="_blank"&gt;SAM unlock using Loktar_Sun&amp;rsquo;s trick&lt;/a&gt; (more on that in a later post!).&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Update #3b: &lt;/strong&gt;The 0.9.10b8b update to redsn0w makes the zip files more compatible with the native Windows explorer (which doesn&amp;rsquo;t like leading slashes in the filenames).&lt;/div&gt;
&lt;div&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div&gt;&lt;/div&gt;
&lt;div&gt;Here are the redns0w download links:&lt;/div&gt;
&lt;div&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.10b8b.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.10b8b for OS X&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.10b8b.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.10b8b for Windows&lt;/a&gt; (be sure to run in Administrator mode)&lt;/li&gt;
&lt;/ul&gt;&lt;/div&gt;
&lt;/div&gt;</description><link>https://blog.iphone-dev.org/post/18906290309</link><guid>https://blog.iphone-dev.org/post/18906290309</guid><pubDate>Wed, 07 Mar 2012 09:30:00 -0800</pubDate><category>redsn0w</category></item><item><title>Welcome new A5 jailbreakers!</title><description>&lt;p&gt;Here&amp;rsquo;s a quick breakdown of how many A5 owners have jailbroken their devices since Friday morning.  The numbers as of Monday afternoon are:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;491,325 new iPhone4,1 devices&lt;/li&gt;
&lt;li&gt;308,967 new iPad2 devices&lt;/li&gt;
&lt;li&gt;152,940 previously jailbroken (at 4.x) iPad2 devices&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;Total: 953,232 new A5 jailbreaks in a little over 3 days&lt;/p&gt;
&lt;p&gt;The reason these numbers can be so precise is that one of the housekeeping activities that happens when you launch Cydia is a query to @saurik&amp;rsquo;s server for the list of available SHSH blobs.  (Even if you have none on file, the query is still made).&lt;/p&gt;
&lt;p&gt;Welcome to the jailbreak family!&lt;/p&gt;
&lt;p&gt;P.S. Remember the cardinal rule of jailbreaking: &lt;strong&gt;never update your firmware &lt;/strong&gt;until a new jailbreak is available.  This is especially true for A5 owners, who currently have no way of restoring to 5.0.1 once the 5.0.1 SHSH blob signing window is closed.&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/16366982367</link><guid>https://blog.iphone-dev.org/post/16366982367</guid><pubDate>Mon, 23 Jan 2012 10:44:14 -0800</pubDate></item><item><title>Corona A5 jailbreak nearly ready to pop!</title><description>&lt;p&gt;Ever since the December release of @pod2g&amp;rsquo;s &amp;ldquo;corona&amp;rdquo; untether for iOS 5.x on A4 and earlier devices, all eyes have been on the attempts to extend it to the A5 devices: the iPhone4S and iPad2.  Due to the combined efforts of @pod2g and members of the iPhone Dev Team and Chronic Dev Team, we&amp;rsquo;re nearly ready for a general release!  All technical hurdles dealing with the underlying technique have been overcome, and it&amp;rsquo;s now all about making the jailbreak as bug free as possible.&lt;/p&gt;
&lt;p&gt;On &lt;a href="http://pod2g-ios.blogspot.com/" target="_blank"&gt;his blog&lt;/a&gt;, @pod2g playfully nicknamed the combined effort a &amp;ldquo;dream team&amp;rdquo;.  It&amp;rsquo;s an ironic name, because the past few weeks have left everyone involved with very little sleep and the opportunity to dream :) But we&amp;rsquo;re now near the final stages of testing the public version of the jailbreak.  Please allow time to clean up any remaining bugs in the jailbreak clients.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Jailbreak programs:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;To be as flexible as possible, the A5 version of the corona jailbreak will take multiple forms:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;Chronic Dev have incorporated the overall flow into a GUI that runs on your Mac or PC.  The goal is for the GUI to be enough for most cases.&lt;/li&gt;
&lt;li&gt;iPhone Dev have also incorporated the exact same flow into an alternative command-line interface (CLI). This will allow us to help users through individual steps of the jailbreak manually, to both help the user and help improve the overall flow.  Although the CLI will also allow the user to perform the entire jailbreak from beginning to end, we anticipate it will be more useful in debugging the occasional errors.  The CLI currently has over 20 individual options (in addition to the single &amp;ldquo;jailbreak&amp;rdquo; option) that should be useful during debug after the GUI release.&lt;/li&gt;
&lt;li&gt;Once all the bugs in the flow are worked out, we&amp;rsquo;ll also incorporate it into the redsn0w GUI (but still leave the CLI freely available too).  In order to maximize the chances of the jailbreak working for everyone, the redsn0w GUI will use native Apple iTunes libraries &amp;ndash; this technique is slightly different than how the Chronic Dev GUI handles communications, and should provide nice combined coverage for all the odd computer configurations out there.&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Paypal Contributions:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Because there were so many different people and teams involved in the A5 corona release, we all felt the most equitable approach to any Paypal contributions should involve a single shared account.  &lt;strong&gt;If you do feel the desire to contribute to &lt;a href="https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&amp;amp;hosted_button_id=DPFUPCEAYUD4L" target="_blank"&gt;the &amp;ldquo;dream team&amp;rdquo; Paypal account&lt;/a&gt;, it will be distributed to the members according to internally agreed-upon proportions :)&lt;/strong&gt;  (Please refer to this blog post for that specific &lt;a href="http://is.gd/39YMWg" target="_blank"&gt;http://is.gd/39YMWg&lt;/a&gt; link, to avoid frauds!)  The same link will be on both the Chronic Dev and iPhone Dev versions of the GUI.  This method seemed like the fairest to everyone involved!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Firmware:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The supported firmware versions will be:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;iPhone4S: 5.0 (9A334), 5.0.1 (9A405) and the &amp;ldquo;other&amp;rdquo; 5.0.1 (9A406)&lt;/li&gt;
&lt;li&gt;iPad2: 5.0.1 (9A405)&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;iPhone4S owners looking to maximize their chances of achieving an eventual software-based carrier unlock should be staying at 5.0.&lt;/strong&gt;  Everyone else should be at 5.0.1.  If you&amp;rsquo;re an iPhone4S owner who already updated to 5.0.1, it&amp;rsquo;s too late to go back down to 5.0, but if you&amp;rsquo;re on 9A406 it is possible to downgrade the BB by going to the 9A405 version of 5.0.1 while the window is still open.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Support:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The overall flow used by the GUI and CLI to inject the A5 corona jailbreak has never been done before, and there may be unforeseen problems once it&amp;rsquo;s released to the public.  It&amp;rsquo;s very important for you to sync your data, photos, and music before attempting any version of this jailbreak.  We&amp;rsquo;ll be watching the comments section below for signs of any widespread problems, but please be aware that you jailbreak at your own risk! &lt;/p&gt;
&lt;p&gt;&lt;strong&gt;When:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;del&gt;As mentioned at the start of this post: when testing has shown most of the bugs have been fixed!&lt;/del&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Updates:&lt;/strong&gt;&lt;/p&gt;
&lt;ol&gt;&lt;li&gt;&lt;strong&gt;If the Absinthe webclip shows &amp;ldquo;Error establishing a database connection&amp;rdquo;, &lt;/strong&gt;please go to Settings, turn on VPN and wait instead.         
&lt;ul&gt;&lt;li&gt;Toggle VPN only AFTER Absinthe says it&amp;rsquo;s done, or it will not work. &lt;/li&gt;
&lt;li&gt;VPN SHOULD error and then reboot soon. If it does not, rerun Absinthe!&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;li&gt;If you get a strange problem, we advise you to restore your iPhone with iTunes, if you can (i.e. if you&amp;rsquo;re not on 5.0 waiting for an eventual 4S unlock).&lt;/li&gt;
&lt;li&gt;The OS X version of the CLI mentioned in the post can be downloaded &lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/cinject_0.4.3.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;here&lt;/a&gt;.  It&amp;rsquo;s primarily to help us debug specific issues, but tinkerers might like to play around with some of its advanced options!  More info is &lt;a href="http://musclenerd.com/cinject-readme.txt" target="_blank"&gt;here&lt;/a&gt;.
&lt;ul&gt;&lt;li&gt;Version 0.4.3 adds support for Windows users.  It also makes the &amp;ldquo;-j&amp;rdquo; jailbreak option much more functional :)  See the README.txt for usage.&lt;/li&gt;
&lt;/ul&gt;&lt;/li&gt;
&lt;/ol&gt;</description><link>https://blog.iphone-dev.org/post/16162905938</link><guid>https://blog.iphone-dev.org/post/16162905938</guid><pubDate>Thu, 19 Jan 2012 23:18:00 -0800</pubDate></item><item><title>Untethered holidays</title><description>&lt;p&gt;@pod2g has created a terrific gift for iOS fans &amp;ndash; an untethered 5.0.1 jailbreak for non-A5 devices! &lt;/p&gt;
&lt;p&gt;Many of you have already been following @pod2g&amp;rsquo;s &lt;a href="http://pod2g-ios.blogspot.com" target="_blank"&gt;blog&lt;/a&gt; where he&amp;rsquo;s been keeping everyone up to date on his progress.  And so you know that he recently decided to push the button on a release for all devices except the new iPhone4S and iPad2.  @pod2g&amp;rsquo;s untether involves two separate exploits and a few other &amp;ldquo;tricks&amp;rdquo; &amp;ndash; and since he&amp;rsquo;s taken the @comex approach of doing nearly everything himself, you know his plate has been full these past few months!&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;A few days ago, @pod2g gave the untether to both the iPhone devteam and the chronic devteam.&lt;/strong&gt;  We&amp;rsquo;ve put it into redsn0w 0.9.10 and PwnageTool, and the chronic devteam put it into a Cydia package (the same set of exploits is in all three).&lt;/p&gt;
&lt;p&gt;Here are the basic steps for how to get it:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;strong&gt;The untether is for iOS 5.0.1 on iPhone3GS, iPhone4, iPhone4-CDMA, iPad1, iPod touch 3G, iPod touch 4G&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;If you have one of those devices and are not on 5.0.1 yet, update now!  The SHSH window is still open for 5.0.1  &lt;strong&gt;If you unlock via ultrasn0w or gevey&lt;/strong&gt;, make sure you only get to 5.0.1 via a custom IPSW!  See the guides at places like &lt;a href="http://iclarified.com" target="_blank"&gt;iClarified.com&lt;/a&gt; if you don&amp;rsquo;t know how.  &lt;strong&gt;Once you&amp;rsquo;re at 5.0.1, use the latest redsn0w 0.9.10 to both jailbreak and untether.&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;If you&amp;rsquo;re already at 5.0.1 with a tethered jailbreak, you have two choices:&lt;/strong&gt; either run redsn0w 0.9.10 over your current jailbreak (deselect &amp;ldquo;Install Cydia&amp;rdquo; if you do that), or install the Cydia package prepared by the chronic devteam.  &lt;strong&gt;The patches are the same regardless of which you choose.&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Some of you are using a hybrid 5.0/5.0.1 configuration.  If so, do not attempt to install this untether over that setup!  You will most likely get into a reboot cycle.  Do a sync and fresh restore to 5.0.1 then install the jailbreak + untether.&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;As mentioned earlier, @pod2g has spent months working on all the exploits and tricks in this untether, and many of you may be wondering how you can send donations.  Although the iPhone devteam itself doesn&amp;rsquo;t take donations, we thought it was appropriate to provide a link at the end of the redsn0w run for you to more easily donate directly to @pod2g if you wish (alternatively, you can go right &lt;a href="https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&amp;amp;hosted_button_id=VLSHU7DG68H52" target="_blank"&gt;here&lt;/a&gt;).  There&amp;rsquo;s a link in the Cydia package for donating to the chronic devteam for the Cydia version of @pod2g&amp;rsquo;s untether.&lt;/p&gt;
&lt;p&gt;@pod2g is now looking for a way to extend this to A5 devices.  Because those devices cannot use geohot&amp;rsquo;s limera1n exploit to inject the untether, they require exploits above and beyond those used for this release.  Keep following pod2g on &lt;a href="http://twitter.com/pod2g" target="_blank"&gt;twitter&lt;/a&gt; or his blog for any progress reports!&lt;/p&gt;
&lt;div&gt;&lt;strong&gt;Update #2: &lt;/strong&gt;The b2 version of redsn0w includes the launchctl-related fix by @planetbeing as mentioned by @saurik &lt;a href="https://twitter.com/#!/saurik/status/151831295280947202" target="_blank"&gt;here&lt;/a&gt; and &lt;a href="https://twitter.com/#!/saurik/status/151851829074989056" target="_blank"&gt;here&lt;/a&gt;.  As usual, you can just re-run redsn0w in jailbreak mode over your existing 5.0.1 jailbreak (even a PwnageTool one), making sure to de-select &amp;ldquo;Install Cydia&amp;rdquo; if you do.  Always be sure to do a controlled &amp;ldquo;slide to power off&amp;rdquo; shutdown of your device before running redsn0w.&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Update #3: &lt;/strong&gt;The b3 version of redsn0w fixes a problem where re-running redsn0w over an existing jailbreak would cause MobileSubstrate-based apps to stop running until MS was installed again.  Now you can re-run the redsn0w jailbreak step without worrying about that (but still remember to de-select the &amp;ldquo;Install Cydia&amp;rdquo; option if it&amp;rsquo;s already installed).&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Update #4: &lt;/strong&gt;The b4 version of redsn0w incorporates the 5.0.1 fix for iBooks, and also for sporadic problems with launchctl.  Thanks to @xvolks for merging the iBooks (sandbox) fix from @comex&amp;rsquo;s github into the overall corona untether from @pod2g!  &lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Update #5: &lt;/strong&gt;redsn0w version b5 incorporates yet another fix for iBooks, this time involving DRM.  @planetbeing wrote a utility called &amp;ldquo;crazeles&amp;rdquo; that overcomes jailbreak detection by iBooks that would cause about 10% of images to show incorrectly.  This fix is similar to the &amp;ldquo;hunnypot&amp;rdquo; fix that @comex wrote for the 4.x jailbreak.  As usual, you can choose to install the fix either by re-running redsn0w over your existing jailbreak (de-select Cydia if you do that), or by installing the corona package from Cydia (it&amp;rsquo;s the same set of files no matter which way you choose).&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;Updates #5b and #5c:  &lt;/strong&gt;Version b5b fixes an issue with using custom ramdisks on iPhone3G and iPod2G, and version b5c prevents redsn0w from crashing due to the ever-growing ramdisk size :).&lt;/div&gt;
&lt;div&gt;&lt;strong&gt;TIP: &lt;/strong&gt;If auto-detection fails and redsn0w tells you no identifying data was found, you can always pre-select the &lt;a href="http://theiphonewiki.com/wiki/index.php?title=Firmware" target="_blank"&gt;appropriate 5.0.1 IPSW&lt;/a&gt; using &amp;ldquo;Extras-&amp;gt;Select IPSW&amp;rdquo;.&lt;/div&gt;
&lt;div&gt;&lt;/div&gt;
&lt;hr&gt;&lt;div&gt;Here are the redsn0w download links&lt;strong&gt;:&lt;/strong&gt;&lt;/div&gt;
&lt;div&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.10b5c.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.10b5c for OS X&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.10b5c.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;redsn0w 0.9.10b5c for Windows&lt;/a&gt; (be sure to run in Administrator mode)&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;PwnageTool Official Bittorent Releases&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="http://torrents.thepiratebay.org/6915059/PwnageTool_5.0.1.dmg.6915059.TPB.torrent" target="_blank"&gt;PwnageTool_5.0.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;SHA1 Sum = 32e90607378988cdebb6c76d3acf8ffac6366e35&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Unofficial Mirrors&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The following links are unofficial download mirrors, you download these archives at your own risk, we accept no responsibility if your computer explodes or if it becomes part of a NASA attacking botnet or even worse if your hands fall off mid-way during the use of these files. We do not check these links and we accept no responsibility with regard to the validity of the files, the other content that these links may provide or with the content that is on the third-party linked site.&lt;/p&gt;
&lt;p&gt;Always check the files that you have downloaded against our published SHA1 hash.&lt;/p&gt;
&lt;p&gt;We would prefer that you downloaded the official bittorrent release that is linked above, but you are welcome to try these if you really must.&lt;/p&gt;
&lt;p&gt;Mirror owners should email mirrors to blog@iphone-dev.org - please ensure that they are direct dmg download links only  (no rapidshare type sites please) and that your web-server can serve DMG MIME types properly. — please don’t place mirrors in the comments as they will be deleted.&lt;/p&gt;
&lt;/div&gt;</description><link>https://blog.iphone-dev.org/post/14857834236</link><guid>https://blog.iphone-dev.org/post/14857834236</guid><pubDate>Tue, 27 Dec 2011 02:55:00 -0800</pubDate><category>PwnageTool</category><category>redsn0w</category></item><item><title>pre-QUALifier</title><description>&lt;p&gt;&lt;img src="http://musclenerd.com/us124.png" alt="ultrasn0w 1.2.4" width="320" height="480" align="middle"/&gt;&lt;/p&gt;
&lt;p&gt;We&amp;rsquo;ve updated ultrasn0w to be compatible with iOS5, which came out a few days ago.  While ultrasn0w 1.2.4 (available now in Cydia) doesn&amp;rsquo;t add support for any new basebands, the update is required for any ultrasn0w unlockers trying out iOS5 (it remains backwards compatible though, so you should be able to use it no matter what firmware you have).  &lt;/p&gt;
&lt;p&gt;The supported basebands for the iPhone 3G and 3GS are 04.26.08, 05.11.07, 05.12.01, 05.13.04, and 06.15.00.  The baseband supported for the iPhone4 is 01.59.00.&lt;/p&gt;
&lt;p&gt;Remember, the only way to get to iOS5 while preserving your ultrasn0w-compatible baseband is by using a custom IPSW.  redsn0w now has the ability to create such a custom IPSW for you (at least on Macs&amp;hellip;the same capability for Windows will be coming soon).&lt;/p&gt;
&lt;p&gt;The majority of people who use ultrasn0w at iOS5 right now will probably be those with old-bootrom iPhone3GS devices, since they already have an untethered jailbreak via redsn0w.  For everyone else, the iOS5 jailbreak is currently tethered and you need to &amp;ldquo;Just boot&amp;rdquo; tethered with redsn0w every time your phone reboots.  That&amp;rsquo;s not always easy to do if your phone reboots while away from home!&lt;/p&gt;
&lt;p&gt;&lt;strike&gt;&lt;strong&gt;Note: there&amp;rsquo;s a special &amp;ldquo;trick&amp;rdquo; that iPhone3GS owners with baseband 06.15 need for iOS5.&lt;/strong&gt;  During the new setup screens you see when you start iOS5 for the first time, you&amp;rsquo;ll be asked about Location Services.  &lt;strong&gt;Be sure to select &amp;ldquo;Disable Location Services&amp;rdquo; when asked!  Later on in the setup, you&amp;rsquo;ll have the chance to turn on Location Services again&lt;/strong&gt; when asked if you want to use &amp;ldquo;Find my iPhone&amp;rdquo;.  It&amp;rsquo;s fine to turn it back on at that point, if that&amp;rsquo;s your desire (or you can always go in and enable it in Settings.app).&lt;/strike&gt;&lt;/p&gt;
&lt;p&gt;Edit: The above &amp;ldquo;trick&amp;rdquo; is no longer needed as of v0.9.9b6 of redsn0w.&lt;/p&gt;
&lt;p&gt;Also, some iPhone3GS users with the 06.15 baseband may have tried to install iOS5 using a stock IPSW (even though you should never ever try to use a stock IPSW if you&amp;rsquo;re an ultrasn0w unlocker).  If you did try this, your baseband is probably in an inconsistent state, and you&amp;rsquo;ll need to reflash the 06.15 baseband again (using redsn0w).  Be very careful if you use redsn0w to reflash the iPad baseband &amp;ndash; don&amp;rsquo;t interrupt the process! And please avoid using stock IPSWs in the future :)  &lt;strong&gt;Unlockers should never go near stock IPSWs.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;If you need to use redsn0w for any of the above tasks, please make sure it&amp;rsquo;s version 0.9.9b4 or higher, which is &lt;a href="http://blog.iphone-dev.org/redsn0w-iOS5" target="_blank"&gt;available here&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Enjoy!&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/11430068008</link><guid>https://blog.iphone-dev.org/post/11430068008</guid><pubDate>Fri, 14 Oct 2011 01:01:00 -0700</pubDate></item><item><title>RIP</title><description>&lt;p&gt;&lt;img height="360" width="549" alt="Steve Jobs" src="http://musclenerd.com/steve.jpg"/&gt;&lt;/p&gt;

&lt;p&gt;&lt;iframe width="420" height="315" src="http://www.youtube.com/embed/UF8uR6Z6KLc" frameborder="0"&gt;&lt;/iframe&gt;&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/11081248963</link><guid>https://blog.iphone-dev.org/post/11081248963</guid><pubDate>Wed, 05 Oct 2011 17:38:50 -0700</pubDate></item><item><title>The coolest cat</title><description>&lt;p&gt;&lt;img src="http://xs1.iphwn.org/TomJerry2_468x342.jpg" alt="The coolest cat" width="468" height="342"/&gt;&lt;/p&gt;

&lt;p&gt;We loved the chase!  &lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.apple.com/pr/library/2011/08/24Letter-from-Steve-Jobs.html" target="_blank"&gt;Good luck&lt;/a&gt;, Steve.&lt;/p&gt;
&lt;p&gt;Signed,&lt;br/&gt;Jailbreakers and tinkerers everywhere.&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/9352689002</link><guid>https://blog.iphone-dev.org/post/9352689002</guid><pubDate>Wed, 24 Aug 2011 16:40:00 -0700</pubDate></item><item><title>jailbreakme times 3</title><description>&lt;p&gt;Once again, &lt;a href="http://twitter.com/comex" target="_blank"&gt;@comex&lt;/a&gt; has resurrected &lt;a href="http://www.jailbreakme.com" target="_blank"&gt;http://www.jailbreakme.com&lt;/a&gt; for your jailbreaking ease and pleasure!&lt;/p&gt;
&lt;p&gt;@comex developed what is now the third installment (and his second) of jailbreakme.com, the easiest way to jailbreak your iPhone, iPod touch, and iPad (including the iPad2!).  No computer is necessary for jbme3.0&amp;hellip;just browse to &lt;a href="http://www.jailbreakme.com" target="_blank"&gt;http://www.jailbreakme.com&lt;/a&gt; on your device and install it from there!&lt;/p&gt;
&lt;p&gt;While @comex and others have worked hard to make this as simple as possible, some people may have questions and problems may arise.  Rather than inundate comex with any questions over twitter, please consider using either our comments section below, or visit &lt;a href="http://jbqa.me" target="_blank"&gt;http://jbqa.me&lt;/a&gt; &lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Please read &lt;a href="http://www.jailbreakme.com/#moreinfo" target="_blank"&gt;&amp;ldquo;More Information&amp;rdquo;&lt;/a&gt; on the jbme3.0 page for some basic background information and ways you can thank @comex&lt;/strong&gt;.  Here are some additional Q&amp;amp;As beyond that:&lt;/p&gt;
&lt;p&gt;Q: Which devices and firmware versions are supported?&lt;br/&gt;A: In this initial release, the following configurations are supported:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;iPad1: 4.3 through 4.3.3&lt;/li&gt;
&lt;li&gt;iPad2: 4.3.3&lt;/li&gt;
&lt;li&gt;iPhone3GS: 4.3 through 4.3.3&lt;/li&gt;
&lt;li&gt;iPhone4: 4.3 through 4.3.3&lt;/li&gt;
&lt;li&gt;iPhone4-CDMA: 4.2.6 through 4.2.8&lt;/li&gt;
&lt;li&gt;iPod touch 3g: 4.3, 4.3.2, 4.3.3&lt;/li&gt;
&lt;li&gt;iPod touch 4g: 4.3 through 4.3.3&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;Q: Do the holes discovered by @comex put my device at risk?&lt;br/&gt;A: Yes.  &lt;strong&gt;We recommend installing &amp;ldquo;PDF Patcher 2&amp;rdquo; in Cydia once you&amp;rsquo;re jailbroken&lt;/strong&gt; to eliminate this risk (any firmware version). &lt;/p&gt;
&lt;p&gt;Q: How does jbme3.0 differ from the existing jailbreaks?&lt;br/&gt;A: jbme3.0 is entirely userland-based, from start to finish.  The A5 chip in the iPad2 has no iBoot or bootrom-level exploits yet, so tools like redsn0w, PwnageTool and sn0wbreeze can&amp;rsquo;t use the limera1n bootrom exploit to inject the jailbreak.  Even for those devices where limera1n works, jbme3.0 injects the jailbreak with a userland exploit.&lt;/p&gt;
&lt;p&gt;Q: If I&amp;rsquo;m already jailbroken on the latest firmware, is there any advantage to jailbreaking again?&lt;br/&gt;A: No, but you should c&lt;strong&gt;onsider showing this to your friends!  Spread the jailbreaking fever.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Q: Are the holes exploited by jbme3.0 closed in iOS5?&lt;br/&gt;A: The holes still exist in the iOS5 betas, but they&amp;rsquo;ll almost certainly be fixed by the time iOS5 is public.  However because the iPad2 had no public jailbreak yet, it probably wasn&amp;rsquo;t worth waiting until the fall to use them.  If history repeats itself though, there will be more holes and exploits.&lt;/p&gt;
&lt;p&gt;Q: Will I permanently lose the jailbreak if I need to restore my device?&lt;br/&gt;A: For all except the iPad2, saving your SHSH blobs should let you always restore your device to iOS versions where this jailbreak works.  The iPad2 is a little more complicated.  If you have a wifi-only iPad2 and saved SHSH blobs, you&amp;rsquo;re in good shape.  But&lt;strong&gt; if you have the GSM or CDMA iPad2, you won&amp;rsquo;t be able to restore to 4.3.3 or lower once Apple stops signing its baseband&lt;/strong&gt;.  There are a few ideas that might work to get around this limitation, but for now it&amp;rsquo;s best to assume there&amp;rsquo;s no going back to 4.3.3 once 4.3.4 is out for iPad2 GSM or CDMA owners. &lt;/p&gt;
&lt;p&gt;Q: I heard this new unionfs stuff is dangerous?&lt;br/&gt;A: Define dangerous :)  Seriously though, although unionfs is a huge improvement to the install time of the jailbreak, it is brand new code and there is the possibility something will go wrong.  Just keep regular backups of your media and content and you should be fine.  If there are any problems, they should appear within the first few days, so hold off and let &amp;ldquo;everyone else&amp;rdquo; test the waters if you&amp;rsquo;d like.&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/7295551750</link><guid>https://blog.iphone-dev.org/post/7295551750</guid><pubDate>Tue, 05 Jul 2011 23:43:00 -0700</pubDate><category>jailbreakme</category></item><item><title>Blob monster</title><description>&lt;p&gt;It looks like Apple is about to aggressively combat the &amp;ldquo;replay attacks&amp;rdquo; that have until now allowed users to use iTunes to restore to previous firmware versions using saved SHSH blobs.&lt;/p&gt;
&lt;p&gt;Those of you who have been jailbreaking for a while have probably heard us periodically warn you to &amp;ldquo;save your blobs&amp;rdquo; for each firmware using either Cydia or TinyUmbrella (or even the &amp;ldquo;copy from /tmp during restore&amp;rdquo; method for advanced users).  Saving your blobs for a given firmware on your specific device allows you to restore *that* device to *that* firmware even after Apple has stopped signing it.  That&amp;rsquo;s all about to change.&lt;/p&gt;
&lt;p&gt;Starting with the iOS5 beta, the role of the &amp;ldquo;APTicket&amp;rdquo; is changing &amp;ndash; it&amp;rsquo;s being used much like the &amp;ldquo;BBTicket&amp;rdquo; has always been used.  The LLB and iBoot stages of the boot sequence are being refined to depend on the authenticity of the APTicket, which is uniquely generated at each and every restore (in other words, it doesn&amp;rsquo;t depend merely on your ECID and firmware version&amp;hellip;it changes every time you restore, based partly on a random number).  This APTicket authentication will happen at every boot, not just at restore time.  Because only Apple has the crypto keys to properly sign the per-restore APTicket, replayed APTickets are useless.&lt;/p&gt;
&lt;p&gt;This will only affect restores starting at iOS5 and onward, and Apple will be able to flip that switch off and on at will (by opening or closing the APTicket signing window for that firmware, like they do for the BBTicket).  geohot&amp;rsquo;s limera1n exploit occurs before any of this new checking is done, so &lt;strong&gt;tethered jailbreaks will still always be possible&lt;/strong&gt; for devices where limera1n applies.  Also, &lt;strong&gt;restoring to pre-5.0 firmwares with saved blobs will still be possible&lt;/strong&gt; (but you&amp;rsquo;ll soon start to need to use older iTunes versions for that). Note that iTunes ultimately is *not* the component that matters here..it&amp;rsquo;s the boot sequence on the device starting with the LLB.&lt;/p&gt;
&lt;p&gt;Although it&amp;rsquo;s always been just &amp;ldquo;a matter of time&amp;rdquo; before Apple started doing this (they&amp;rsquo;ve always done this with the BBTicket), it&amp;rsquo;s still a significant move on Apple&amp;rsquo;s part (and it also dovetails with certain technical requirements of their upcoming OTA &amp;ldquo;delta&amp;rdquo; updates).&lt;/p&gt;
&lt;p&gt;Note: although there may still be ways to combat this, &lt;strong&gt;a beta period is really not the time or place to discuss them&lt;/strong&gt;.  We&amp;rsquo;re just letting you know what Apple has already done in their exisiting beta releases &amp;ndash; they&amp;rsquo;ve stepped up their game!&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/6952986620</link><guid>https://blog.iphone-dev.org/post/6952986620</guid><pubDate>Sun, 26 Jun 2011 15:57:00 -0700</pubDate></item><item><title>Tic tac toe...</title><description>&lt;p&gt;&amp;hellip; three in a row!  Apple released iOS 4.3.3 on Wednesday, and once again the untethered jailbreak exploit that &lt;a href="http://twitter.com/i0n1c" target="_blank"&gt;@i0n1c&lt;/a&gt; created for 4.3.1 still works.  That makes it an unprecedented three firmwares where the same userland exploit works.  We&amp;rsquo;re not exactly sure why Apple hasn&amp;rsquo;t fixed the hole yet, but we&amp;rsquo;re not complaining!&lt;/p&gt;
&lt;p&gt;Today&amp;rsquo;s PwnageTool and redsn0w incorporate @i0n1c&amp;rsquo;s port to 4.3.3 (it&amp;rsquo;s ironic that such a long-lasting untether doesn&amp;rsquo;t even have an official name!).  It also of course uses geohot&amp;rsquo;s limera1n bootrom exploit to inject the jailbreak. The 4.3.3 untether works on all devices that actually support 4.3.3 except for the iPad2:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;iPhone3GS&lt;/li&gt;
&lt;li&gt;iPhone4 (GSM)  &lt;/li&gt;
&lt;li&gt;iPhone4 (CDMA) (4.2.8 - See update #3)&lt;/li&gt;
&lt;li&gt;iPod touch 3G&lt;/li&gt;
&lt;li&gt;iPod touch 4G&lt;/li&gt;
&lt;li&gt;iPad1&lt;/li&gt;
&lt;li&gt;AppleTV2G (v4.3 8F202&amp;hellip;see update #2 below for the v4.3 8F305 bundle)&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;Some things to note:&lt;/p&gt;
&lt;ol&gt;&lt;li&gt;&lt;strong&gt;ultrasn0w unlockers must stay away from redsn0w!  Use only a custom IPSW to update to 4.3.3, to avoid updating your baseband.&lt;/strong&gt;  There are plenty of tutorials for both redsn0w and PwnageTool at sites like &lt;a href="http://iclarified.com" target="_blank"&gt;iClarified.com&lt;/a&gt;.  Or feel free to ask away in our comments section below.&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;ultrasn0w has been updated to v1.2.3 to be compatible with iOS 4.3.3 and earlier (the ultrasn0w update does not include any new baseband support!).&lt;/strong&gt;  Please reboot your iPhone using the normal &amp;ldquo;slide to power off&amp;rdquo; swipe after installing ultrasn0w 1.2.3.&lt;/li&gt;
&lt;li&gt;By popular demand, redsn0w now allows you to enable multitasking gestures (although most will find it useful only on iPads).&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;iPad2 update&lt;/strong&gt;:  The iPad2 jailbreak remains under development.  As you may know, the original exploit @comex developed in the first week of the iPad2 release was mysteriously fixed by Apple within days of its development.  Partly because of this, don&amp;rsquo;t expect much public discussion of the iPad2 jailbreak until it&amp;rsquo;s actually finished and ready for release (and please avoid asking about it).  In all liklihood, it will be a userland exploit like the first (unreleased) one, not dependent on bootrom dumps.  The first one can&amp;rsquo;t be released even for those with the original 4.3 firmware due to legal (distribution) reasons.&lt;/li&gt;
&lt;/ol&gt;&lt;p&gt;As always, please feel free to ask for help or advice in our comment section, with our friendly moderators Confucious, sherif_hashim, dhlizard, Frank55, and subarurider (and many other very knowledgable commenters too!)&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #1&lt;/strong&gt;: PwnageTool and redsn0w have been updated to include a fix for the iPhone3GS/i4 side switch vibration issue (&lt;strong&gt;only for 4.3.3!&lt;/strong&gt;).  Thanks to @i0n1c for tracking this down (even though he doesn&amp;rsquo;t even have an iPhone!).&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;If you&amp;rsquo;re already jailbroken at 4.3.3 (by either redsn0w rc15 or custom IPSW), you can install this fix simply by running redsn0w rc16 over your existing 4.3.3 jailbreak.&lt;/strong&gt;  Just uncheck the &amp;ldquo;Install Cydia&amp;rdquo; option and check any other options you want.  The fix will be installed no matter what you&amp;rsquo;ve selected.  This is safe for even ultrasn0w unlockers to do (because redsn0w itself won&amp;rsquo;t update your baseband&amp;hellip;only an iTunes stock IPSW update/restore will do that).&lt;/p&gt;
&lt;p&gt;redsn0w rc16 has a few more improvements:  &lt;strong&gt;Windows 7 and Vista users should no longer need to set their CPU affinity&amp;hellip;just run redsn0w as Administrator in XP compatiblity mode&lt;/strong&gt;.  Also, the &amp;ldquo;verbose boot&amp;rdquo; option for old-bootrom iPhone 3GS has been fixed for 4.3.3 (remember: old-bootrom 3GS users can even have custom bootlogos that show right at power-up).  Enjoy!&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #2&lt;/strong&gt;:  Apple released a minor update to iOS 4.3 for AppleTV2G (the IPSW name still says 4.3, but the build version changed from 8F202 to 8F305).  &lt;a href="http://twitter.com/i0n1c" target="_blank"&gt;@i0n1c&lt;/a&gt; was once again able to quickly port his original 4.3.1 untether (the exploit that wouldn&amp;rsquo;t die!) to this version.  &lt;/p&gt;
&lt;p&gt;If you do feel like updating to the &amp;ldquo;new&amp;rdquo; 4.3, you&amp;rsquo;ll need to drop &lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/AppleTV2%2C1_4.3_8F305.bundle.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;this bundle&lt;/a&gt; into the correct folder in PwnageTool.app.  If you don&amp;rsquo;t know how to do that, there are lots of tutorials on the web, and we&amp;rsquo;d be glad to help in the comments below.  &lt;/p&gt;
&lt;p&gt;Thanks once again, @i0n1c!&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #3&lt;/strong&gt;: We&amp;rsquo;ve updated redsn0w (0.9.6rc18) to also include the Verizon iPhone4-CDMA iOS version 4.2.8 untether (which uses the &lt;a href="http://blog.iphone-dev.org/post/3314130778/whats-in-a-name" target="_blank"&gt;HFS exploit&lt;/a&gt;).&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #4&lt;/strong&gt;: redsn0w has been updated to 0.9.6rc19 to include changes in the way custom bundles are handled.  Now when you use a custom bundle, most of the normal jailbreak steps (like stashing and untethering) are skipped.  This makes it easier for custom bundles like the Verizon i4 jailbreakme &lt;a href="http://a.qoid.us/verizon-iphone.html" target="_blank"&gt;fix&lt;/a&gt;.&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;redsn0w 0.9.6rc19:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.6rc19.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;OS X&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.6rc19.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;Windows&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;hr&gt;&lt;p&gt;&lt;strong&gt;PwnageTool Official BitTorrent Release&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;strong&gt;&lt;a href="http://torrents.thepiratebay.org/6375459/PwnageTool_4.3.3.1.dmg.6375459.TPB.torrent" target="_blank"&gt;PwnageTool_4.3.3.1.dmg.6375459.TPB.torrent&lt;/a&gt;&lt;/strong&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;SHA1 Sum = &lt;/strong&gt;2c8b17c28ae10295b72dabde30bb4b39b0e85821&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Unofficial Mirrors&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The following links are unofficial download mirrors, you download these archives at your own risk, we accept no responsibility if your computer explodes or if it becomes part of a NASA attacking botnet or even worse if your hands fall off mid-way during the use of these files. We do not check these links and we accept no responsibility with regard to the validity of the files, the other content that these links may provide or with the content that is on the third-party linked site.&lt;/p&gt;
&lt;p&gt;Always check the files that you have downloaded against our published SHA1 hash.&lt;/p&gt;
&lt;p&gt;We would prefer that you downloaded the official bittorrent release that is linked above, but you are welcome to try these if you really must.&lt;/p&gt;
&lt;p&gt;Mirror owners should email mirrors to blog@iphone-dev.org - please ensure that they are direct dmg download links only  (no rapidshare type sites please) and that your web-server can serve DMG MIME types properly. — please don’t place mirrors in the comments as they will be deleted.&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="http://mayask.com/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://mayask.com/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://ibloo.net/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://ibloo.net/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://m0o.eu/d/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://m0o.eu/d/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://mirror.omegarazer.ca/PwnageTool/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://mirror.omegarazer.ca/PwnageTool/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://smotrikino.net/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://smotrikino.net/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://mirror.StrongRoute.com/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://mirror.StrongRoute.com/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.idevice.ro/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://www.idevice.ro/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://white-buy.ru/PwnageTool_4.3.3.1.dmg" target="_blank"&gt;http://white-buy.ru/PwnageTool_4.3.3.1.dmg&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description><link>https://blog.iphone-dev.org/post/5239805497</link><guid>https://blog.iphone-dev.org/post/5239805497</guid><pubDate>Fri, 06 May 2011 01:57:00 -0700</pubDate><category>PwnageTool</category><category>redsn0w</category><category>ultrasn0w</category></item><item><title>The untether rolls on</title><description>&lt;p&gt;Only a few weeks after the 4.3.1 untether created by &lt;a href="http://twitter.com/i0n1c" target="_blank"&gt;@i0n1c&lt;/a&gt; was released, Apple pushed out firmware 4.3.2. Thankfully, it appears Apple didn&amp;rsquo;t have a chance to fix the hole used by @i0n1c&amp;rsquo;s untether, so he ported his code over to 4.3.2&amp;rsquo;s kernel.  Today&amp;rsquo;s redsn0w has been updated to include it.&lt;/p&gt;
&lt;p&gt;The&lt;strong&gt; 4.3.2 untether&lt;/strong&gt; works on all devices that actually support 4.3.2 except for the iPad2:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;iPhone3GS&lt;/li&gt;
&lt;li&gt;iPhone4 (GSM)  &lt;/li&gt;
&lt;li&gt;iPod touch 3G&lt;/li&gt;
&lt;li&gt;iPod touch 4G&lt;/li&gt;
&lt;li&gt;iPad1&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;redsn0w 0.9.6rc14:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.6rc14.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;OS X redsn0w&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.6rc14.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;Windows redsn0w&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;As always, ultrasn0w unlockers should stay away from redsn0w and only update their firmware through a custom IPSW.&lt;/strong&gt;   See update #3 below.&lt;/p&gt;
&lt;p&gt;For any questions or problems, please use our comments section below with our ever-helpful moderators Confucious, sherif_hashim, dhlizard, Frank55, and subarurider.&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strike&gt;Update #1: Until @i0n1c has a chance to fix the i4 version, we&amp;rsquo;ve removed the i4 untether from redsn0w (making it a tethered-only JB for i4 right now).&lt;/strike&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Update #2: &lt;/strong&gt;redsn0w rc14 includes the fixed i4 untether from @i0n1c.  You can re-run redsn0w rc14 right over the tethered rc13b to transform the i4 JB into an untethered one.&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #3: &lt;/strong&gt;PwnageTool 4.3.2 now includes the iOS 4.3.2 untether from @i0n1c.  (And look, the PwnageTool and iOS version numbers actually match!).&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Note that there&amp;rsquo;s a corresponding update to ultrasn0w, which has been bumped up to v1.2.2 to get along with iOS 4.3.2 (the ultrasn0w update does not include any new baseband support!).&lt;/strong&gt;  Please reboot your iPhone using the normal &amp;ldquo;slide to power off&amp;rdquo; swipe after installing ultrasn0w 1.2.2.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;PwnageTool Official BitTorrent Release&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="http://torrents.thepiratebay.org/6340182/PwnageTool_4.3.2.dmg.6340182.TPB.torrent" target="_blank"&gt;PwnageTool_4.3.2.dmg.6340182.TPB.torrent&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;SHA1 Sum = &lt;/strong&gt;fdf9d7cba7872451bbca1ccae95a82cfefb352e7&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Unofficial Mirrors&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The following links are unofficial download mirrors, you download these archives at your own risk, we accept no responsibility if your computer explodes or if it becomes part of a NASA attacking botnet or even worse if your hands fall off mid-way during the use of these files. We do not check these links and we accept no responsibility with regard to the validity of the files, the other content that these links may provide or with the content that is on the third-party linked site.&lt;/p&gt;
&lt;p&gt;Always check the files that you have downloaded against our published SHA1 hash.&lt;/p&gt;
&lt;p&gt;We would prefer that you downloaded the official bittorrent release that is linked above, but you are welcome to try these if you really must.&lt;/p&gt;
&lt;p&gt;Mirror owners should email mirrors to blog@iphone-dev.org - please ensure that they are &lt;em&gt;direct dmg download links only&lt;/em&gt;  (no rapidshare type sites please) and that your web-server can serve &lt;em&gt;DMG MIME types&lt;/em&gt; properly.  — please don’t place mirrors in the comments as they will be deleted.&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="http://public.kioskofpiracy.org/iphone-dev/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://public.kioskofpiracy.org/iphone-dev/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://ikeygen.com/PwnageTool_4.3.dmg" target="_blank"&gt;http://ikeygen.com/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.vespaonline.de/iphone/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://www.vespaonline.de/iphone/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://iphoners.org/download/PwnageTool/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://iphoners.org/download/PwnageTool/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.vespaforum.com/iphone/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://www.vespaforum.com/iphone/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.youritechsupport.com/apple-files/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://www.youritechsupport.com/apple-files/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://cool.storybro.net/dl/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://cool.storybro.net/dl/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://evilvibes.com/downloads/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://evilvibes.com/downloads/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://downloads.ulfklose.de/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://downloads.ulfklose.de/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://public.stuff.hu/pwnagetool/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://public.stuff.hu/pwnagetool/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://idea4it.com/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://idea4it.com/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.idevice.ro/d/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://www.idevice.ro/d/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://mirror.omegarazer.ca/pwnagetool/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://mirror.omegarazer.ca/pwnagetool/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.packetcollision.com/files/PwnageTool/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://www.packetcollision.com/files/PwnageTool/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://up.iNeal.ME/PwnageTool_4.3.2.dmg" target="_blank"&gt;http://up.iNeal.ME/PwnageTool_4.3.2.dmg&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description><link>https://blog.iphone-dev.org/post/4731948971</link><guid>https://blog.iphone-dev.org/post/4731948971</guid><pubDate>Mon, 18 Apr 2011 17:02:00 -0700</pubDate><category>PwnageTool</category><category>redsn0w</category><category>ultrasn0w</category></item><item><title>Three years of pwnage(tool)</title><description>&lt;p&gt;Three years ago (almost to the day!), the first version of PwnageTool was released for firmware 1.1.4.  So today we&amp;rsquo;re excited to release another edition of both PwnageTool and redsn0w to bring an untethered jailbreak for Apple&amp;rsquo;s latest firmware, FW 4.3.1.&lt;/p&gt;
&lt;p&gt;The 4.3.1 untether exploit comes courtesy of Stefan Esser (&lt;a href="http://twitter.com/i0n1c" target="_blank"&gt;@i0n1c on twitter&lt;/a&gt;), a security researcher based in Germany.  Stefan has a &lt;a href="http://www.suspekt.org" target="_blank"&gt;long history of vulnerability research&lt;/a&gt;, and ironically his first contribution to the iPhone jailbreak community was &lt;strong&gt;improved security&lt;/strong&gt; &amp;ndash; last year he beat Apple to the punch and implemented ASLR for jailbroken iPhones with his &amp;ldquo;antid0te&amp;rdquo; framework. We&amp;rsquo;re happy to see that Stefan then turned his iPhone attention over to an untethered jailbreak exploit!&lt;/p&gt;
&lt;p&gt;The 4.3.1 untether works on all devices that actually support 4.3.1 &lt;strong&gt;except for the iPad2&lt;/strong&gt;:&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;iPhone3GS&lt;/li&gt;
&lt;li&gt;iPhone4 (GSM)&lt;/li&gt;
&lt;li&gt;iPod touch 3G&lt;/li&gt;
&lt;li&gt;iPod touch 4G&lt;/li&gt;
&lt;li&gt;iPad1&lt;/li&gt;
&lt;li&gt;AppleTV 2G (PwnageTool only for now)&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;The reason the untether won&amp;rsquo;t work as-is on the iPad2 is that it requires a bootrom or iBoot-level exploit to install, and the iPad2 is not susceptible to either the limera1n or SHAtter bootrom exploits.&lt;/p&gt;
&lt;p&gt;&lt;strike&gt;&lt;strong&gt;WARNING WARNING &amp;ndash; ultrasn0w users don&amp;rsquo;t update yet! &lt;/strong&gt; We need to first release an update to ultrasn0w that fixes some incompatibilities when FW 4.3.1 is used on the older basebands supported by ultrasn0w.&lt;/strike&gt;  And remember once we do fix ultrasn0w for 4.3.1 (we&amp;rsquo;ll announce it here and on twitter),&lt;strong&gt; you must only get there via a custom IPSW&lt;/strong&gt; from PwnageTool, Sn0wbreeze or xpwn!  Don&amp;rsquo;t ever try to restore or update to a stock IPSW, or you&amp;rsquo;ll lose the unlock!&lt;/p&gt;
&lt;p&gt;For everyone else, redsn0w is the easier program to use (and redsn0w runs on both Mac and Windows).  Please check out places like &lt;a href="http://www.iclarified.com" target="_blank"&gt;iClarified&lt;/a&gt; for some excellent guides on how to use both PwnageTool and redsn0w.&lt;/p&gt;
&lt;p&gt;Feel free to ask for help in our comments section.  &lt;strong&gt;Thanks once again to our fantastic moderators for volunteering their time and knowledge and keeping order: Confucious, sherif_hashim, dhlizard, Frank55, and subarurider&lt;/strong&gt;!&lt;/p&gt;
&lt;hr&gt;&lt;p&gt;&lt;strike&gt;redsn0w 0.9.6rc9:&lt;/strike&gt;&lt;br/&gt; redsn0w 0.9.6rc12 (updated to rc12..details in Update #1 below):&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.6rc12.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;OS X redsn0w&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.6rc12.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;Windows redsn0w&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;hr&gt;&lt;p&gt;&lt;strong&gt;PwnageTool Official Bittorent Releases&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="http://torrents.thepiratebay.org/6293151/PwnageTool_4.3.dmg.6293151.TPB.torrent" target="_blank"&gt;PwnageTool_4.3.dmg.6293151.TPB.torrent&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;SHA1 Sum = &lt;/strong&gt;9e8ce7d4eb79b5f839efa0233893ef1a6a5e3c5c&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Unofficial Mirrors&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;The following links are unofficial download mirrors, you download these archives at your own risk, we accept no responsibility if your computer explodes or if it becomes part of a NASA attacking botnet or even worse if your hands fall off mid-way during the use of these files. We do not check these links and we accept no responsibility with regard to the validity of the files, the other content that these links may provide or with the content that is on the third-party linked site.&lt;/p&gt;
&lt;p&gt;Always check the files that you have downloaded against our published SHA1 hash.&lt;/p&gt;
&lt;p&gt;We would prefer that you downloaded the official bittorrent release that is linked above, but you are welcome to try these if you really must.&lt;/p&gt;
&lt;p&gt;Mirror owners should email mirrors to blog@iphone-dev.org - please ensure that they are &lt;em&gt;direct dmg download links only&lt;/em&gt;  (no rapidshare type sites please) and that your web-server can serve &lt;em&gt;DMG MIME types&lt;/em&gt; properly.  — please don’t place mirrors in the comments as they will be deleted.&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.idevice.ro/PwnageTool_4.3.dmg" target="_blank"&gt;http://www.idevice.ro/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://iphoners.org/download/PwnageTool/PwnageTool_4.3.dmg" target="_blank"&gt;http://iphoners.org/download/PwnageTool/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://public.stuff.hu/pwnagetool/PwnageTool_4.3.dmg" target="_blank"&gt;http://public.stuff.hu/pwnagetool/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.vespaonline.de/iphone/PwnageTool_4.3.dmg" target="_blank"&gt;http://www.vespaonline.de/iphone/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.riccardomastellone.com/files/PwnageTool_4.3.dmg" target="_blank"&gt;http://www.riccardomastellone.com/files/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://dl.crzz.co/PwnageTool_4.3.dmg" target="_blank"&gt;http://dl.crzz.co/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://jailbreakzone.com/files/PwnageTool_4.3.dmg" target="_blank"&gt;http://jailbreakzone.com/files/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://up.iNeal.ME/PwnageTool_4.3.dmg" target="_blank"&gt;http://up.iNeal.ME/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://repairmyiphonenyc.com/vl/PwnageTool_4.3.dmg" target="_blank"&gt;http://repairmyiphonenyc.com/vl/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://claytonbraasch.com/downloads/PwnageTool_4.3.dmg" target="_blank"&gt;http://claytonbraasch.com/downloads/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://leimobile.com/PwnageTool_4.3.dmg" target="_blank"&gt;http://leimobile.com/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://tpsproductions.com/downloads/PwnageTool_4.3.dmg" target="_blank"&gt;http://tpsproductions.com/downloads/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://youritechsupport.com/apple-files/PwnageTool_4.3.dmg" target="_blank"&gt;http://youritechsupport.com/apple-files/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://riccardomastellone.com/files/PwnageTool_4.3.dmg" target="_blank"&gt;http://riccardomastellone.com/files/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.appleturk.net/PwnageTool_4.3.dmg" target="_blank"&gt;http://www.appleturk.net/PwnageTool_4.3.dmg&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #1:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;Those running redsn0w may have noticed we enabled too many Settings options in some versions of the jailbreak (for instance, what you want your side switch to do, even if you have no side switch because you&amp;rsquo;re not using an iPad).   Release &lt;strike&gt;rc10&lt;/strike&gt; rc12 of redsn0w corrects that (you can just run it over your existing jailbreak&amp;hellip;be sure to de-select Cydia to avoid package conflicts).&lt;/p&gt;
&lt;p&gt;Along the way, we&amp;rsquo;ve also added the option to enable boot animations&amp;hellip;these animations can be installed via Cydia, but be sure to select which animation to use via the Settings-&amp;gt;Bootlogo setting after you&amp;rsquo;ve downloaded an animation (and again, you can just run &lt;strike&gt;rc10&lt;/strike&gt; rc12 over your existing jailbreak&amp;hellip;be sure to de-select Cydia to avoid package conflicts).&lt;/p&gt;
&lt;p&gt;(The boot animation we tested against was &amp;ldquo;Android Boot Logo&amp;rdquo;.  It correctly installs all the dependencies needed to run the animation at each boot).&lt;/p&gt;
&lt;p&gt;&lt;strike&gt;redsn0w 0.9.6rc10:&lt;/strike&gt;&lt;br/&gt; redsn0w_0.9.6rc12: (rc12 should fix any lingering issues with the boot animation)&lt;/p&gt;
&lt;ul&gt;&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_mac_0.9.6rc12.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;OS X redsn0w&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://sites.google.com/a/iphone-dev.com/files/home/redsn0w_win_0.9.6rc12.zip?attredirects=0&amp;amp;d=1" target="_blank"&gt;Windows redsn0w&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;hr&gt;&lt;p&gt;&lt;strong&gt;Update #2:&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;We&amp;rsquo;ve pushed out the 4.3.1 compatibility fix for ultrasn0w in Cydia &amp;ndash; it&amp;rsquo;s now at version 1.2.1.  If you&amp;rsquo;re not already at 4.3.1 and you need the unlock, &lt;strong&gt;please be sure you understand how to get to 4.3.1 using a custom IPSW that doesn&amp;rsquo;t update your baseband.&lt;/strong&gt;  There are lots of guides for this (like at &lt;a href="http://iclarified.com" target="_blank"&gt;iClarified.com&lt;/a&gt;).&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;This isn&amp;rsquo;t a new unlock!  It&amp;rsquo;s to allow those who are already using ultrasn0w to use FW 4.3.1.&lt;/strong&gt;  It also fixes the signal bar issue for those who aren&amp;rsquo;t using the unlock but retain an older baseband intentionally.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;AFTER INSTALLING ULTRASN0W 1.2.1, PLEASE REBOOT YOUR iPHONE &lt;/strong&gt;using the normal &amp;ldquo;slide to power off&amp;rdquo; swipe.  T-Mobile users in the USA also should disable 3G mode in Settings-&amp;gt;General-&amp;gt;Network.&lt;/p&gt;
&lt;p&gt;A big thanks to @sbingner and @ronaldsb for helping with the testing of this update!&lt;/p&gt;</description><link>https://blog.iphone-dev.org/post/4332841631</link><guid>https://blog.iphone-dev.org/post/4332841631</guid><pubDate>Sun, 03 Apr 2011 22:00:00 -0700</pubDate><category>PwnageTool</category><category>redsn0w</category><category>ultrasn0w</category></item></channel></rss>
