Jailbreak

From The iPhone Wiki
Revision as of 22:35, 7 July 2011 by 5urd (talk | contribs) (Jailbreak Tools: i am doing this so the source code of the page is easier to navigate)
Jump to: navigation, search

This is the process by which full execute and write access is obtained on all the partitions of the iPhone. It is done by patching /etc/fstab to mount the System partition as read-write. This is entirely different from an unlock. Jailbreaking is the first action that must be taken before things like unofficial activation (hacktivation), and unofficial unlocking can be applied.

The original jailbreak also included modifying the AFC service (used by iTunes to access the filesystem) to give full filesystem access from root. This was later updated to create a new service (AFC2) that allows access to the full filesystem.

Modern jailbreaks also include patching the kernel to get around code signing and other restrictions.

Exploits which were used in order to jailbreak 1.x

1.0.2

  • Restore Mode (iBoot had a command named cp, which had access to the whole filesystem)

1.1.1

1.1.2

  • Mknod (an upgrade jailbreak)

1.1.3 / 1.1.4 / 1.1.5

Exploits which are used in order to jailbreak 2.0+

Userland (used for all devices)

iPhone / iPhone 3G / iPod touch

iPod touch 2G

iPhone 3GS

iPod touch 3G

Apple TV 2G / iPad / iPhone 4 (GSM and CDMA models) / iPod touch 4G

Jailbreak Tools

Jailbreak/Apple TV 2G

Jailbreak/iPad

Jailbreak/iPad 2

Jailbreak/iPhone

Jailbreak/iPhone 3GS

Jailbreak/iPhone 4

Jailbreak/iPhone 4 CDMA

iPod touch

Jailbreak Tool Works with firmware...
1.1 1.1.1 1.1.2 1.1.3 1.1.4 1.1.5 2.0 2.0.1 2.0.2 2.1 2.2 2.2.1 3.0 3.1 3.1.2 3.1.3
AppSnapp No Yes No No No No No No No No No No No No No No
OktoPrep No No Update from jailbroken 1.1.1 No No No No No No No No No No No No No
Soft Upgrade No No No Update from jailbroken 1.1.2 No No No No No No No No No No No No
ZiPhone No No No Yes Yes Yes No No No No No No No No No No
iLiberty / iLiberty+ No No No Yes Yes Yes No No No No No No No No No No
QuickPwn No No No No No Yes Yes Yes Yes Yes Yes No No No No No
PwnageTool No No No No 1.1.4 No 2.0/2.0.3 2.0.1/2.0.3 2.0.2/2.0.3 2.1 2.2 2.2.5 3.0 3.1/3.1.3 3.1.4 3.1.5
redsn0w No No No No No No No No No No No 0.9.3 0.9.3 0.9.3 0.9.3 0.9.4
Star No No No No No No No No No No No No No No Yes Yes
blackra1n No No No No No No No No No No No No No Yes Yes No
purplera1n No No No No No No No No No No No No Yes No No No

iPod touch 2G

This table needs improvement. (Particularly, information for redsn0w and anything notable for 2.x.)

Jailbreak Tool Works with firmware...
2.1.1 2.2 2.2.1 3.0 3.1.1 3.1.2 3.1.3 4.0 4.0.2 4.1 4.2.1
purplera1n No No No Yes1 No No No No No No No
blackra1n No No No No Yes3 Yes3 No No No No No
PwnageTool No No No No 3.1.32 3.1.41 3.1.51 4.01/4.011 No No No
redsn0w Tethered1 No No 0.9.21/0.9.31 0.9.21/0.9.31 0.9.21/0.9.31 0.9.41 0.9.5b3/0.9.6b31 0.9.5b3/0.9.6b31 0.9.6b13/0.9.6rc181 0.9.6b41/0.9.6rc181
Star No No No No No Yes Yes Yes No No No
greenpois0n No No No No No No No No No RC4 RC5/RC6.1

1 Only applicable for devices with the old bootrom.

2 Only applicable for devices with the old bootrom. Requires the device to have signature checks disabled (pwned).

3 Tethered jailbreak on devices with the new bootrom.

iPod touch 3G

Jailbreak Tool Works with firmware...
3.1.1 3.1.2 3.1.3 4.0 4.0.2 4.1 4.2.1 4.3 4.3.1 4.3.2 4.3.3
blackra1n Yes1 Yes1 No No No No No No No No No
redsn0w 0.9.31 0.9.31 No No No 0.9.6b2-0.9.6rc16 0.9.6b41-0.9.6rc16 0.9.6rc91-0.9.6rc161 0.9.6rc91-0.9.6rc16 0.9.6rc131-0.9.6rc16 0.9.6rc16
Spirit No Yes Yes No No No No No No No No
Star No Yes Yes Yes No No No No No No No
sn0wbreeze No 2.0.21 2.0.21 2.0.21 2.0.21 2.1 2.2 2.3b41 2.5 2.6-2.6.1 2.7-2.7.1
limera1n No No No Yes Yes Yes No No No No No
greenpois0n No No No No No RC4 RC5-RC6.1 No No No No
PwnageTool No No No No No 4.1-4.1.3 4.2 No 4.3 4.3.2 4.3.3-4.3.3.1
Saffron No No No No No No No Yes No Yes Yes

1 Tethered jailbreak.

iPod touch 4G

Jailbreak Tool Works with firmware...
4.1 (both builds) 4.2.1 4.3 4.3.1 4.3.2 4.3.3
limera1n Yes No No No No No
greenpois0n RC4 RC5/RC6.1 No No No No
PwnageTool 4.1/4.1.3 4.2 No 4.3 4.3.2 4.3.3/4.3.3.1
sn0wbreeze 2.1 2.2 2.3b41 2.5 2.6/2.6.1 2.7/2.7.1
redsn0w 0.9.6b2/0.9.6rc18 0.9.6b41/0.9.6rc18
or 0.9.7b61 2
0.9.6rc91/0.9.6rc18 0.9.6rc91/0.9.6rc18 0.9.6rc131/0.9.6rc18 0.9.6rc15/0.9.6rc18
Saffron No No Yes Yes Yes Yes

1 Tethered jailbreak.
2 If SHSHs were saved for iOS 4.2b3 and if you have a developer access to its IPSW, Jailbreak Monte can be used.