The iPhone Wiki is no longer updated. Visit this article on The Apple Wiki for current information. |
Difference between revisions of "Evasi0n"
(→Exploits: trying to give some useful names for the pages to be created) |
m (remove broken RapidShare links, minify Downloads table, move Cydia version to main table remove stub (although not complete yet)) |
||
Line 10: | Line 10: | ||
{| class="wikitable" style="text-align:left;" |
{| class="wikitable" style="text-align:left;" |
||
! Version |
! Version |
||
+ | ! Cydia Package Version |
||
! Release Date |
! Release Date |
||
! Changes |
! Changes |
||
|- |
|- |
||
! 1.0 |
! 1.0 |
||
+ | | style="text-align:center;" | 0.1-1 |
||
| 04 Feb 2013 |
| 04 Feb 2013 |
||
| |
| |
||
Line 19: | Line 21: | ||
|- |
|- |
||
! 1.1 |
! 1.1 |
||
+ | | style="text-align:center;" | 0.2-3 |
||
| 06 Feb 2013 |
| 06 Feb 2013 |
||
| |
| |
||
Line 28: | Line 31: | ||
|- |
|- |
||
! 1.2 |
! 1.2 |
||
+ | | style="text-align:center;" | 0.3-1 |
||
| 08 Feb 2013 |
| 08 Feb 2013 |
||
| |
| |
||
Line 34: | Line 38: | ||
|- |
|- |
||
! 1.3 |
! 1.3 |
||
+ | | style="text-align:center;" | 0.3-2 |
||
| 11 Feb 2013 |
| 11 Feb 2013 |
||
| |
| |
||
Line 42: | Line 47: | ||
{| class="wikitable" style="text-align:center;" |
{| class="wikitable" style="text-align:center;" |
||
! Version |
! Version |
||
− | ! Cydia Package Version |
||
− | ! Release Date |
||
! OS |
! OS |
||
! SHA-1 Hash |
! SHA-1 Hash |
||
Line 49: | Line 52: | ||
|- |
|- |
||
! rowspan="3" | 1.0 |
! rowspan="3" | 1.0 |
||
− | | rowspan="3" | 0.1-1 |
||
− | | rowspan="3" | 04 Feb 2013 |
||
| Linux |
| Linux |
||
| <code>c9e4b15a161b89f0e412721f471c5f8559b6054f</code> |
| <code>c9e4b15a161b89f0e412721f471c5f8559b6054f</code> |
||
Line 56: | Line 57: | ||
| style="text-decoration: line-through;" | [https://evad3rs.box.com/shared/static/5dped2c9ejnk5r6ahfpg.lzma Box] |
| style="text-decoration: line-through;" | [https://evad3rs.box.com/shared/static/5dped2c9ejnk5r6ahfpg.lzma Box] |
||
| [https://mega.co.nz/#!0kUkXBLC!Q8e53kQZpLbGL7PquHWgQFhMU9Ru3WJWxBuzEdkiMJo Mega] |
| [https://mega.co.nz/#!0kUkXBLC!Q8e53kQZpLbGL7PquHWgQFhMU9Ru3WJWxBuzEdkiMJo Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/2561828874/evasi0n-linux-1.0-3c53ba10e2448d311b0f4157f2d7eb568f106c4f-release.tar.lzma RapidShare] |
||
|- |
|- |
||
| OS X |
| OS X |
||
Line 63: | Line 63: | ||
| style="text-decoration: line-through;" | [https://evad3rs.box.com/shared/static/du66n0g9wl1j4ta57hpx.dmg Box] |
| style="text-decoration: line-through;" | [https://evad3rs.box.com/shared/static/du66n0g9wl1j4ta57hpx.dmg Box] |
||
| [https://mega.co.nz/#!5h0BwQoa!KdRLFwNJ3OjMS-7Zs2YGQnsvPxAKEsaAjabY__8pNtY Mega] |
| [https://mega.co.nz/#!5h0BwQoa!KdRLFwNJ3OjMS-7Zs2YGQnsvPxAKEsaAjabY__8pNtY Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/3010870584/evasi0n-mac-1.0-3c53ba10e2448d311b0f4157f2d7eb568f106c4f-release.dmg RapidShare] |
||
|- |
|- |
||
| Windows |
| Windows |
||
Line 70: | Line 69: | ||
| style="text-decoration: line-through;" | [https://evad3rs.box.com/shared/static/tg1t0cz7oakvq7hsv0bd.zip Box] |
| style="text-decoration: line-through;" | [https://evad3rs.box.com/shared/static/tg1t0cz7oakvq7hsv0bd.zip Box] |
||
| [https://mega.co.nz/#!d9ciUApQ!AkwevVU1OtUrEUU7U4fE-V8qqM9aINTAGgjkukShihE Mega] |
| [https://mega.co.nz/#!d9ciUApQ!AkwevVU1OtUrEUU7U4fE-V8qqM9aINTAGgjkukShihE Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/3503186483/evasi0n-win-1.0-3c53ba10e2448d311b0f4157f2d7eb568f106c4f-release.zip RapidShare] |
||
|- |
|- |
||
! rowspan="3" | 1.1 |
! rowspan="3" | 1.1 |
||
− | | rowspan="3" | 0.2-3 |
||
− | | rowspan="3" | 06 Feb 2013 |
||
| Linux |
| Linux |
||
| <code>6c06a6be87e003eee470eb749b42ffbaafcc9e62</code> |
| <code>6c06a6be87e003eee470eb749b42ffbaafcc9e62</code> |
||
Line 80: | Line 76: | ||
| [https://evad3rs.box.com/shared/static/8smyi2ud2ts41icmtf50.lzma Box] |
| [https://evad3rs.box.com/shared/static/8smyi2ud2ts41icmtf50.lzma Box] |
||
| [https://mega.co.nz/#!Qw9wwJpC!IE3ZcRv9-yCc-w12Ktmd_AQbVV84xCdIycB7W0OyW8g Mega] |
| [https://mega.co.nz/#!Qw9wwJpC!IE3ZcRv9-yCc-w12Ktmd_AQbVV84xCdIycB7W0OyW8g Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/330748775/evasi0n-linux-1.1-baad71faf69b65b5d97f8fc1391846d5778b289d-release.tar.lzma RapidShare] |
||
|- |
|- |
||
| OS X |
| OS X |
||
Line 87: | Line 82: | ||
| [https://evad3rs.box.com/shared/static/ydz8ctzuvyjuqb7y0oj5.dmg Box] |
| [https://evad3rs.box.com/shared/static/ydz8ctzuvyjuqb7y0oj5.dmg Box] |
||
| [https://mega.co.nz/#!I0FmTK7Q!YTBYg3e9oEFYIFwFN56XfVqcHAdh1YacWW0OkFE1dHo Mega] |
| [https://mega.co.nz/#!I0FmTK7Q!YTBYg3e9oEFYIFwFN56XfVqcHAdh1YacWW0OkFE1dHo Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/2540645295/evasi0n-mac-1.1-baad71faf69b65b5d97f8fc1391846d5778b289d-release.dmg RapidShare] |
||
|- |
|- |
||
| Windows |
| Windows |
||
Line 94: | Line 88: | ||
| [https://evad3rs.box.com/shared/static/velx0yh66mmw4jlf4igm.zip Box] |
| [https://evad3rs.box.com/shared/static/velx0yh66mmw4jlf4igm.zip Box] |
||
| [https://mega.co.nz/#!1x9EzajI!CqMhmQ8rl6NODx6S4lOZVRNHyBJ9Dgt3TtRBl4_l2NA Mega] |
| [https://mega.co.nz/#!1x9EzajI!CqMhmQ8rl6NODx6S4lOZVRNHyBJ9Dgt3TtRBl4_l2NA Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/2426342155/evasi0n-win-1.1-baad71faf69b65b5d97f8fc1391846d5778b289d-release.zip RapidShare] |
||
|- |
|- |
||
! rowspan="3" | 1.2 |
! rowspan="3" | 1.2 |
||
− | | rowspan="3" | 0.3-1 |
||
− | | rowspan="3" | 08 Feb 2013 |
||
| Linux |
| Linux |
||
| <code>2e1d1f6c7e6ca775860df03298dce3b0d798658a</code> |
| <code>2e1d1f6c7e6ca775860df03298dce3b0d798658a</code> |
||
Line 104: | Line 95: | ||
| [https://evad3rs.box.com/shared/static/jcerfiaug4ke7f4q6z15.lzma Box] |
| [https://evad3rs.box.com/shared/static/jcerfiaug4ke7f4q6z15.lzma Box] |
||
| [https://mega.co.nz/#!Ak12CQIJ!Mf6_W1l9xPQKvQUYOZEl9w_4yB0HbfqrTRWZ6BJKSjg Mega] |
| [https://mega.co.nz/#!Ak12CQIJ!Mf6_W1l9xPQKvQUYOZEl9w_4yB0HbfqrTRWZ6BJKSjg Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/1511098224/evasi0n-linux-1.2-54502235236cbca6b1fcdbce5694ae2e4c5eb703-release.tar.lzma RapidShare] |
||
|- |
|- |
||
| OS X |
| OS X |
||
Line 111: | Line 101: | ||
| [https://evad3rs.box.com/shared/static/qogbw1s82xi8ogdfk1co.dmg Box] |
| [https://evad3rs.box.com/shared/static/qogbw1s82xi8ogdfk1co.dmg Box] |
||
| [https://mega.co.nz/#!wxMFAZhR!KIMDnVwbvscogces8L2z7j1aQIgxPZgsBygLou69gfk Mega] |
| [https://mega.co.nz/#!wxMFAZhR!KIMDnVwbvscogces8L2z7j1aQIgxPZgsBygLou69gfk Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/3161324199/evasi0n-mac-1.2-54502235236cbca6b1fcdbce5694ae2e4c5eb703-release.dmg RapidShare] |
||
|- |
|- |
||
| Windows |
| Windows |
||
Line 118: | Line 107: | ||
| [https://evad3rs.box.com/shared/static/ld4e7c2ckrjyaj1cym8g.zip Box] |
| [https://evad3rs.box.com/shared/static/ld4e7c2ckrjyaj1cym8g.zip Box] |
||
| [https://mega.co.nz/#!9k0iQICT!M_gOkBSyYO5c86LqXX9UUWF-twF-wJMhH9ScPwd1CFE Mega] |
| [https://mega.co.nz/#!9k0iQICT!M_gOkBSyYO5c86LqXX9UUWF-twF-wJMhH9ScPwd1CFE Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/2387451293/evasi0n-win-1.2-54502235236cbca6b1fcdbce5694ae2e4c5eb703-release.zip RapidShare] |
||
|- |
|- |
||
! rowspan="3" class="blradiusplz" | 1.3 |
! rowspan="3" class="blradiusplz" | 1.3 |
||
− | | rowspan="3" | 0.3-2 |
||
− | | rowspan="3" | 11 Feb 2013 |
||
| Linux |
| Linux |
||
| <code>d93bc45653345e62a315e0a0aaa1b709aacd26c4</code> |
| <code>d93bc45653345e62a315e0a0aaa1b709aacd26c4</code> |
||
Line 128: | Line 114: | ||
| [https://evad3rs.box.com/shared/static/yu314zif091koehui5pb.lzma Box] |
| [https://evad3rs.box.com/shared/static/yu314zif091koehui5pb.lzma Box] |
||
| [https://mega.co.nz/#!Rg0kyRIK!T-_u6CMAgTc1lFl0XMdjwjD3sBcAnOlIUK0GdR-Nh-s Mega] |
| [https://mega.co.nz/#!Rg0kyRIK!T-_u6CMAgTc1lFl0XMdjwjD3sBcAnOlIUK0GdR-Nh-s Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/2098837020/evasi0n-linux-1.3-1cb32faf1e4f4f6c890e6fcbeb004cb694c386f5-release.tar.lzma RapidShare] |
||
|- |
|- |
||
| OS X |
| OS X |
||
Line 135: | Line 120: | ||
| [https://evad3rs.box.com/shared/static/cfbxzbn3p9gmj24tslwc.dmg Box] |
| [https://evad3rs.box.com/shared/static/cfbxzbn3p9gmj24tslwc.dmg Box] |
||
| [https://mega.co.nz/#!wgdgHCLb!AHLWLhCqoTQR-qWceDld_nODFZAo-MiMJbDug3my2iE Mega] |
| [https://mega.co.nz/#!wgdgHCLb!AHLWLhCqoTQR-qWceDld_nODFZAo-MiMJbDug3my2iE Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/2824336729/evasi0n-mac-1.3-1cb32faf1e4f4f6c890e6fcbeb004cb694c386f5-release.dmg RapidShare] |
||
|- |
|- |
||
| Windows |
| Windows |
||
Line 142: | Line 126: | ||
| [https://evad3rs.box.com/shared/static/spd5uii8p86ko6ypad1l.zip Box] |
| [https://evad3rs.box.com/shared/static/spd5uii8p86ko6ypad1l.zip Box] |
||
| [https://mega.co.nz/#!Uh0gVLbQ!YP63Pk2qb300H_bI17i8i3z7868m5aQPJEWaDob5Qe8 Mega] |
| [https://mega.co.nz/#!Uh0gVLbQ!YP63Pk2qb300H_bI17i8i3z7868m5aQPJEWaDob5Qe8 Mega] |
||
− | | style="text-decoration: line-through;" | [http://rapidshare.com/files/2063191667/evasi0n-win-1.3-1cb32faf1e4f4f6c890e6fcbeb004cb694c386f5-release.zip RapidShare] |
||
|} |
|} |
||
Line 157: | Line 140: | ||
* [[vm_map_copy_t corruption for arbitrary memory disclosure]] |
* [[vm_map_copy_t corruption for arbitrary memory disclosure]] |
||
* [[kernel memory write via ROP gadget]] |
* [[kernel memory write via ROP gadget]] |
||
− | |||
− | == Code == |
||
− | <code>launchd.conf</code> |
||
− | bsexec .. /sbin/mount -u -o rw,suid,dev / |
||
− | setenv DYLD_INSERT_LIBRARIES /private/var/evasi0n/amfi.dylib |
||
− | load /System/Library/LaunchDaemons/com.apple.MobileFileIntegrity.plist |
||
− | bsexec .. /private/var/evasi0n/evasi0n |
||
− | unsetenv DYLD_INSERT_LIBRARIES |
||
− | bsexec .. /bin/rm -f /private/var/evasi0n/sock |
||
− | bsexec .. /bin/ln -f /var/tmp/launchd/sock /private/var/evasi0n/sock |
||
== External Links == |
== External Links == |
||
Line 174: | Line 147: | ||
* [http://www.forbes.com Forbes news] with an [http://www.forbes.com/sites/andygreenberg/2013/02/05/inside-evasi0n-the-most-elaborate-jailbreak-to-ever-hack-your-iphone/ explanation by planetbeing] |
* [http://www.forbes.com Forbes news] with an [http://www.forbes.com/sites/andygreenberg/2013/02/05/inside-evasi0n-the-most-elaborate-jailbreak-to-ever-hack-your-iphone/ explanation by planetbeing] |
||
− | {{stub|jailbreaking}} |
||
[[Category:Jailbreaks]] |
[[Category:Jailbreaks]] |
Revision as of 22:16, 15 February 2013
evasi0n is a jailbreak tool that can be used to jailbreak (untethered) iOS 6.0-6.1 on all supported devices, excluding the revisions of the Apple TV 3G. It was released on 4 February 2013 by the evad3rs, and is available for Windows, OS X, and Linux (x86 and x86_64). There is also a Cydia package called "evasi0n iOS 6.0-6.1 untether" which can untether an existing tethered jailbreak without the need to restore and use the desktop tool.
Supported Devices
As of evasi0n's release, the only unsupported devices are the Apple TV 3G revisions, since the kernels on these devices are still missing an injection vector to run unsigned code. All other devices on iOS 6.0-6.1.1 are supported (as well as iOS 5.2 for the Apple TV 2G).
Version History
Version | Cydia Package Version | Release Date | Changes |
---|---|---|---|
1.0 | 0.1-1 | 04 Feb 2013 |
|
1.1 | 0.2-3 | 06 Feb 2013 | |
1.2 | 0.3-1 | 08 Feb 2013 |
|
1.3 | 0.3-2 | 11 Feb 2013 |
|
Download
Version | OS | SHA-1 Hash | Download | |||
---|---|---|---|---|---|---|
1.0 | Linux | c9e4b15a161b89f0e412721f471c5f8559b6054f
|
Google Sites | Box | Mega | |
OS X | 23f99a0d65e71fd79ff072b227f0ecb176f0ffa8
|
Google Sites | Box | Mega | ||
Windows | 2ff288e1798b4711020e9dd7f26480e57704d8b2
|
Google Sites | Box | Mega | ||
1.1 | Linux | 6c06a6be87e003eee470eb749b42ffbaafcc9e62
|
Google Sites | Box | Mega | |
OS X | ae9d20bc927976a1f55089cd80afca48de0f7a2e
|
Google Sites | Box | Mega | ||
Windows | 4225b01afd4a4fd1277565954964bd3310ad8b5f
|
Google Sites | Box | Mega | ||
1.2 | Linux | 2e1d1f6c7e6ca775860df03298dce3b0d798658a
|
Google Sites | Box | Mega | |
OS X | 8f91aba478ad28bda800dc5c303be1699fcfb800
|
Google Sites | Box | Mega | ||
Windows | 9942559caf779da6526b9fd0e207d21554a8a9cf
|
Google Sites | Box | Mega | ||
1.3 | Linux | d93bc45653345e62a315e0a0aaa1b709aacd26c4
|
Google Sites | Box | Mega | |
OS X | c239da3fd4e312c8468cdca967c86962b2cbd3f9
|
Google Sites | Box | Mega | ||
Windows | 92bbe23f125f3b0155334f1925943624e24ce130
|
Google Sites | Box | Mega |
Exploits
evasi0n takes advantage of several vulnerabilities:
- Symbolic Link Vulnerability
- Malformed PairRequest
- Shebang Trick
- AMFID code signing evasion
- launchd.conf untether
- IOUSBDeviceFamily Vulnerability
- ARM Exception Vector Info Leak
- dynamic memmove() locating
- vm_map_copy_t corruption for arbitrary memory disclosure
- kernel memory write via ROP gadget