The iPhone Wiki is no longer updated. Visit this article on The Apple Wiki for current information. |
PwnStrap
Revision as of 15:40, 16 February 2011 by Windows Helpdesk (talk | contribs) (Fixed an iRecovery syntax error that would course ome issues :))
Link to original info and some binaries
This is the procedure to use greenpois0n to bootstrap the loading of a new limera1n exploit-based pwnagetool image via windows or other irecovery and a supported device:
- irecovery -c
- setenv boot-args 2
- setenv auto-boot false
- saveenv
- run greenpois0n - it will stop on a white screen.
- extract iBSS from your custom pwnagetool image
- irecovery -f iBSS
- irecovery -s
- setenv boot-args 0
- saveenv
- go image decrypt 0x41000000
- go jump 0x41000040
- restore your CFW from itunes
You will need one of the new binaries posted above if you have an AppleTV2