PDA

View Full Version : For the iPhone jailbreakers


Sam I Am
09-09-2010, 07:31 AM
LINK (http://www.theregister.co.uk/2010/09/09/ios_4_dot_1_jailbreak/)

Jailbreak hole in iOS 4.1 will be hard to close

Just hours after Apple released iOS 4.1 to great fanfare, hardware hackers found a way to jailbreak devices that run the new operating system. More surprising still, there doesn't appear to be anything Steve Jobs can do to stop them in the near future.

The exploit in the boot ROM of iOS devices was first announced (http://twitter.com/pod2g/status/23950781610) by iPhone Dev-Team member pod2g. It was soon confirmed by other hackers, who said that because the exploit targets such a low-level part of the operating system, Apple won't be able to stop jailbreakers without making significant hardware changes.

That's in stark contrast to previous jailbreak holes, such as the one exploited for weeks on a site called Jailbreakme.com. That hack relied on two software bugs in iOS, allowing Apple engineers to stop the jailbreaking with a simple update (http://www.theregister.co.uk/2010/08/11/critical_iphone_vuln_patched/). Ironically, an even earlier jailbreak known as the 24kpwn exploit (http://www.reghardware.com/2009/06/26/iphone_3gs_unlock/) was eliminated by tweaking iPhone 3GS phones to add — you guessed it — the vulnerable boot ROM (http://www.theregister.co.uk/2009/10/14/iphone_jailbreak_exploit_patched/).

All iPhones, iPod touches, and iPads that have shipped since November contain the same component.

Dev-Team members say there is still work to be done to fine-tune the exploit technique and that would-be jailbreakers are best served by forgoing the update to 4.1 for now. The admonition comes after they called iOS 4.1 a trap (http://www.reghardware.com/2010/09/08/ios_4_1_release/) designed to prevent future jailbreaking and unlocks. ®

Hoofbite
09-09-2010, 10:19 AM
I think companies should just quit devoting time to "closing" the holes and be content with users voiding the warranty.

It's like the war on drugs. Absolutely a waste of time and resources.

theogt
09-09-2010, 10:38 AM
I think companies should just quit devoting time to "closing" the holes and be content with users voiding the warranty.

It's like the war on drugs. Absolutely a waste of time and resources.Apple recently announced they're relaxing their screening rules for new apps. I wonder if this is a sort of philosophy change for them.

Sam I Am
09-09-2010, 10:53 AM
I think companies should just quit devoting time to "closing" the holes and be content with users voiding the warranty.

It's like the war on drugs. Absolutely a waste of time and resources.

I think it really depends on the security risk. If it's a security risk that can be attacked by a third party, they need to close it even if it prevents the owner of the device from jailbreaking it.

Personally, I think putting a jail on the device itself is what needs to stop. Then there is no jailbreak security holes to close.