Difference between revisions of "Talk:IDA Pro Setup"

From The iPhone Wiki
Jump to: navigation, search
m
(Sign your talk page entries, folks! (Also removed the "update please" headers and duplicate entries.))
 
(6 intermediate revisions by 3 users not shown)
Line 1: Line 1:
  +
==More instructions==
  +
It could be great if someone writes more instructions for the other basebands and models.. I tried with the instruction for 3G baseband in 3gs 5.12.01 baseband and I got an error in IDA Pro...
  +
--[[User:L0g0|L0g0]] 18:54, 29 July 2010 (UTC)
  +
 
Thank you all for contributing. -caique2001-
 
Thank you all for contributing. -caique2001-
   
  +
==Please update!==
 
----
 
 
 
Hi! I'm a n00b trying to learn a way to discover vulnerabilities in baseband 05.12.01 ... but this article needs an update... please, someone update it , also it could help me to help you xD
 
Hi! I'm a n00b trying to learn a way to discover vulnerabilities in baseband 05.12.01 ... but this article needs an update... please, someone update it , also it could help me to help you xD
 
Also, there is no tutorial on how to find a way to jailbreak, and there arent well documented all the actually available jailbreaks...
 
Also, there is no tutorial on how to find a way to jailbreak, and there arent well documented all the actually available jailbreaks...
Line 12: Line 14:
   
 
use the greenpois0n utilities. [[User:Leobruh|Leobruh]] 07:34, 28 June 2010 (UTC)!
 
use the greenpois0n utilities. [[User:Leobruh|Leobruh]] 07:34, 28 June 2010 (UTC)!
  +
  +
This page is correct and doesnt need an update. You need to read up on exploits if you want to make jailbreaks. Lately buffer based overflows have been used the most. Google it, Wikipedia it and understand what exploits are. Use IDA next. As for a tutorial, let me write one for you: 1. Find a function which can be exploited to run usercode, 2. Insert code to edit/overwrite fstab to
  +
mount (all) disks as read/write, instead of read-only. Optional 3. Transfer cydia.app. Done.
  +
  +
- toomuchjames
  +
  +
Hi, could anyone explain, how to dump the bootrom (iPod Touch 2G MC). Thank you {{unsigned|Kubatek94|11:42, June 28, 2010}}
  +
  +
== help ==
  +
  +
where do I get the baseband fls file??? {{unsigned|L0g0|09:09, July 26, 2010}}
  +
  +
Decrypt the root filesystem dmg, and look in /usr/local/standalone/firmware or similar. ~toomuchjames

Latest revision as of 15:26, 13 August 2010

More instructions

It could be great if someone writes more instructions for the other basebands and models.. I tried with the instruction for 3G baseband in 3gs 5.12.01 baseband and I got an error in IDA Pro... --L0g0 18:54, 29 July 2010 (UTC)

Thank you all for contributing. -caique2001-

Please update!

Hi! I'm a n00b trying to learn a way to discover vulnerabilities in baseband 05.12.01 ... but this article needs an update... please, someone update it , also it could help me to help you xD Also, there is no tutorial on how to find a way to jailbreak, and there arent well documented all the actually available jailbreaks...

--L0g0 06:21, 28 June 2010 (UTC)

http://www.theiphonewiki.com/wiki/index.php?title=Greenpois0n

use the greenpois0n utilities. Leobruh 07:34, 28 June 2010 (UTC)!

This page is correct and doesnt need an update. You need to read up on exploits if you want to make jailbreaks. Lately buffer based overflows have been used the most. Google it, Wikipedia it and understand what exploits are. Use IDA next. As for a tutorial, let me write one for you: 1. Find a function which can be exploited to run usercode, 2. Insert code to edit/overwrite fstab to mount (all) disks as read/write, instead of read-only. Optional 3. Transfer cydia.app. Done.

- toomuchjames

Hi, could anyone explain, how to dump the bootrom (iPod Touch 2G MC). Thank you --The preceding unsigned comment was added by Kubatek94 (talk) 11:42, June 28, 2010. Please consult this page for more info on how to sign pages, and how to fix this.

help

where do I get the baseband fls file??? --The preceding unsigned comment was added by L0g0 (talk) 09:09, July 26, 2010. Please consult this page for more info on how to sign pages, and how to fix this.

Decrypt the root filesystem dmg, and look in /usr/local/standalone/firmware or similar. ~toomuchjames