<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://www.theiphonewiki.com/w/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=FrequentCe</id>
	<title>The iPhone Wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://www.theiphonewiki.com/w/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=FrequentCe"/>
	<link rel="alternate" type="text/html" href="https://www.theiphonewiki.com/wiki/Special:Contributions/FrequentCe"/>
	<updated>2026-06-16T06:25:07Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.31.14</generator>
	<entry>
		<id>https://www.theiphonewiki.com/w/index.php?title=X-Gold_618_Unlock&amp;diff=7063</id>
		<title>X-Gold 618 Unlock</title>
		<link rel="alternate" type="text/html" href="https://www.theiphonewiki.com/w/index.php?title=X-Gold_618_Unlock&amp;diff=7063"/>
		<updated>2010-07-15T23:04:21Z</updated>

		<summary type="html">&lt;p&gt;FrequentCe: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;The [[N90ap|iPhone 4]] now uses the [[X-Gold 618]]. Unlike the [[X-Gold 608]], the baseband now requires a signature akin to Apple's SHSH blobs for firmware files, so downgrading an updated baseband, provided there is a bootloader exploit, will be tougher.&lt;br /&gt;
&lt;br /&gt;
Unsigned code execution has been achieved by [[MuscleNerd]] on the device and the ability to insert a custom AT command has been demonstrated.  Shortly after, a persistent/background task was inserted. Also, the bootrom has been successfully dumped.    &lt;br /&gt;
&lt;br /&gt;
On July 13, 2010, planetbeing demonstrated a primitive but functional unlock on YouTube.[http://www.youtube.com/watch?v=41rm8MCdoh8] Currently, the unlock is being optimized and streamlined for a general release.&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==Possible Methods==&lt;br /&gt;
&lt;br /&gt;
===Class 1===&lt;br /&gt;
&lt;br /&gt;
* Find an exploit in the bootrom to break the chain of trust.&lt;br /&gt;
* Improve by several orders of magnitude the [[NCK Brute Force]]r, and find a way to extract the [[CHIPID]] and [[NORID]] &lt;br /&gt;
* Find the theorized algorithm of NCK generation&lt;br /&gt;
&lt;br /&gt;
===Class 2===&lt;br /&gt;
&lt;br /&gt;
* Use a SIM hack such as the TurboSIM Unlock &lt;br /&gt;
* Find a way to patch running memory to &amp;quot;unlock&amp;quot; the phone on every bootup. This is how [[ultrasn0w]] works. &lt;br /&gt;
* Find an exploit in the Baseband Bootloader so you can downgrade the baseband, then use an unlocking payload, similar to ultrasn0w.&lt;/div&gt;</summary>
		<author><name>FrequentCe</name></author>
		
	</entry>
</feed>