*Read disclaimer before using this software.
-
Jailbreak and downgrade iPhone 3GS (new bootrom) with alloc8 untethered bootrom exploit. :-)
-
Dump NOR on S5L8920 devices.
-
Flash NOR on S5L8920 devices.
This tool should be compatible with Mac and Linux. It won't work in a virtual machine.
- libusb,
If you are using Linux: install libusb using your package manager.
- iPhone 3GS iOS 4.3.5 iBSS
Write-up for alloc8 exploit can be found here:
https://github.com/axi0mX/alloc8
Download iPhone 3GS iOS 4.3.5 IPSW from Apple:
http://appldnld.apple.com/iPhone4/041-1965.20110721.gxUB5/iPhone2,1_4.3.5_8L1_Restore.ipsw
In Terminal, extract iBSS using the following command, then move the file to ipwndfu folder:
unzip -p iPhone2,1_4.3.5_8L1_Restore.ipsw Firmware/dfu/iBSS.n88ap.RELEASE.dfu > n88ap-iBSS-4.3.5.img3
This is BETA software.
Backup your data.
This tool is currently in beta and could potentially brick your device. It will attempt to save a copy of data in NOR to nor-backups folder before flashing new data to NOR, and it will attempt to not overwrite critical data in NOR which your device requires to function. If something goes wrong, hopefully you will be able to restore to latest IPSW in iTunes and bring your device back to life, or use nor-backups to restore NOR to the original state, but I cannot provide any guarantees.
There is NO warranty provided.
THERE IS NO WARRANTY FOR THE PROGRAM, TO THE EXTENT PERMITTED BY APPLICABLE LAW. THE ENTIRE RISK AS TO THE QUALITY AND PERFORMANCE OF THE PROGRAM IS WITH YOU. SHOULD THE PROGRAM PROVE DEFECTIVE, YOU ASSUME THE COST OF ALL NECESSARY SERVICING, REPAIR OR CORRECTION.
You will not need to use make
or compile anything to use ipwndfu. However, if you wish to make changes to assembly code in src/*
, you will need to use an ARM toolchain and assemble the source files by running make
.
If you are using macOS with Homebrew, you can use gcc-arm-embedded. You can install it with this command:
brew cask install gcc-arm-embedded
chronic, CPICH, ius, MuscleNerd, Planetbeing, pod2g, posixninja, et al. for 24Kpwn exploit
walac for pyusb