The iPhone Wiki is no longer updated. Visit this article on The Apple Wiki for current information. |
Difference between revisions of "PwnStrap"
m (Fixed an iRecovery syntax error that would course ome issues :)) |
|||
Line 2: | Line 2: | ||
This is the procedure to use greenpois0n to bootstrap the loading of a new limera1n exploit-based pwnagetool image via windows or other irecovery and a supported device: |
This is the procedure to use greenpois0n to bootstrap the loading of a new limera1n exploit-based pwnagetool image via windows or other irecovery and a supported device: |
||
− | # irecovery - |
+ | # irecovery -s |
# setenv boot-args 2 |
# setenv boot-args 2 |
||
# setenv auto-boot false |
# setenv auto-boot false |
Revision as of 10:37, 16 April 2011
Link to original info and some binaries
This is the procedure to use greenpois0n to bootstrap the loading of a new limera1n exploit-based pwnagetool image via windows or other irecovery and a supported device:
- irecovery -s
- setenv boot-args 2
- setenv auto-boot false
- saveenv
- run greenpois0n - it will stop on a white screen.
- extract iBSS from your custom pwnagetool image
- irecovery -f iBSS
- irecovery -s
- setenv boot-args 0
- saveenv
- go image decrypt 0x41000000
- go jump 0x41000040
- restore your CFW from itunes
You will need one of the new binaries posted above if you have an AppleTV2