Apple Already fixed Comex's new exploit?

  • Thread starter Thread starter iFish
  • Start date Start date
  • Views Views 4,351
  • Replies Replies 36
Regardless of the fact jailbreaking is now legal any future exploit that is released will always be patched by Apple. They have an obligation to patch them due them be security risks for standard users. I mean this current exploit could allow remote access to all your contacts, texts etc etc
 
SifJar said:
Yeah, you're right, they can just download the 4.0 IPSW and restore it in iTunes, by Shift+Clicking restore and selecting the 4.0 IPSW. DFU mode may be necessary.

^^ this == win ^^

EDIT:
when/if they release a updated iphone 4 (reguarding the signal issue) they would probably hard-patch the exploit out of the system... or will try... thats what i would do...
 
overlord00 said:
SifJar said:
Yeah, you're right, they can just download the 4.0 IPSW and restore it in iTunes, by Shift+Clicking restore and selecting the 4.0 IPSW. DFU mode may be necessary.

^^ this == win ^^

EDIT:
when/if they release a updated iphone 4 (reguarding the signal issue) they would probably hard-patch the exploit out of the system... or will try... thats what i would do...

You can only restore to 4.0 if you have your SHSH files backed up.
 
no, all ipad/iphones in stores can be jailbroken
smile.gif
 
No just make sure yo quickly backup your SHSH files for 4.0.1 before the new firmware drops because when it does you wont be able to back them up.

Also this isnt just a mobile safari issue this needs to be fixed in ibooks aswell as it loads PDF files.
 
lenselijer said:
no, all ipad/iphones in stores can be jailbroken
smile.gif

yeah, currently... but future releases, these jailbreak bugs will be ironed out... unless you can restore... and if you have no backup... you cant restore... so your fraked...

or am i taking this wrong?
 
I kinda want one as i am inbetween phones, can i get an iphone activated with my carrier (Page Plus), and it not have a sim card to use phone features?

I can unlock it myself.

But to be on topic: Darn you Germany!!! And with all the apps on the appstore, whos to really say that it is the browser that can let ppl look at the holders info on the device?
 
jaxxster said:
No just make sure yo quickly backup your SHSH files for 4.0.1 before the new firmware drops because when it does you wont be able to back them up.

Also this isnt just a mobile safari issue this needs to be fixed in ibooks aswell as it loads PDF files.

as it likely will be, is there a way to use a donor shsh?
 
No way to use a donor one at all. Only apple signs your SHSH files and each one is unique to your phone. You can still back up your SHSH files for 4.0.1 right now using umbrella. Which i highly recomend doing because if you accidently have to upgrade you can downgrade to 4.0.1 again and re-jailbreak
 
jaxxster said:
No way to use a donor one at all. Only apple signs your SHSH files and each one is unique to your phone. You can still back up your SHSH files for 4.0.1 right now using umbrella. Which i highly recomend doing because if you accidently have to upgrade you can downgrade to 4.0.1 again and re-jailbreak

i ask all these stupid questions as i do not currently own a iphone... and if i did intend on getting one, it prob wouldnt be for some time... and hence too late.
 
My iPhone is supposed to show up in a few days (7 to 14 if ATT is to be believed, heh). Just hope I get it in time.
 
jaxxster said:
overlord00 said:
SifJar said:
Yeah, you're right, they can just download the 4.0 IPSW and restore it in iTunes, by Shift+Clicking restore and selecting the 4.0 IPSW. DFU mode may be necessary.

^^ this == win ^^

EDIT:
when/if they release a updated iphone 4 (reguarding the signal issue) they would probably hard-patch the exploit out of the system... or will try... thats what i would do...


You can only restore to 4.0 if you have your SHSH files backed up.

To clarify, you can only downgrade to 4.0 with SHSH blobs, but you can upgrade without them. So current iPad/iPhone/iPod Touch owners on 3.X firmwares will always be able to install 4.0 provided they can find a 4.0 IPSW. But people buying new phones with 4.0.1+ will NEVER be able to install 4.0 and make use of this exploit, unless someone finds a way to generate valid custom SHSH blobs, which would allow downgrading any device to any firmware, but thats unlikely.


QUOTE(overlord00 @ Aug 5 2010, 05:39 PM) QUOTE(jaxxster @ Aug 6 2010, 12:37 AM)
No way to use a donor one at all. Only apple signs your SHSH files and each one is unique to your phone. You can still back up your SHSH files for 4.0.1 right now using umbrella. Which i highly recomend doing because if you accidently have to upgrade you can downgrade to 4.0.1 again and re-jailbreak

i ask all these stupid questions as i do not currently own a iphone... and if i did intend on getting one, it prob wouldnt be for some time... and hence too late.

Well, I'm sure they'll find more exploits. Apparently there are a bunch of known Safari exploits, which haven't been patched. I even read something about the crashes they exploit being present on the Apple website (i.e. some parts of Apple devices will crash on Mobile Safari, and the same crashes can be implemented on a custom website and exploited to jailbreak. The bugs are fixed in regular Safari, but not Mobile Safari.)
 
Slyakin said:
madridi4ever said:
RupeeClock said:
Seeing as it was a browser exploit, it must've been considerably easy to fix it.
Curious, does it work before IOS 4.0 or not? If it doesn't then those who didn't update yet are screwed.
Why would they be? They could always update to 4.0 and jailbreak.. or am I missing something here?
When they update, they will by-pass 4.0 and go to 4.0.1 or whatever the fix is. Updates are handled by Apple.

Unless you do the Shift-Restore in iTunes. That requires DFU mode, though.
Yeah I know this, which is why I dont understand his comment about people on previous firmwares could be screwed.
If he has the blobs for his iphone/ipod touch, he can upgrade/downgrade to any version he has the blobs for..
 
madridi4ever said:
Slyakin said:
madridi4ever said:
RupeeClock said:
Seeing as it was a browser exploit, it must've been considerably easy to fix it.
Curious, does it work before IOS 4.0 or not? If it doesn't then those who didn't update yet are screwed.
Why would they be? They could always update to 4.0 and jailbreak.. or am I missing something here?
When they update, they will by-pass 4.0 and go to 4.0.1 or whatever the fix is. Updates are handled by Apple.

Unless you do the Shift-Restore in iTunes. That requires DFU mode, though.
Yeah I know this, which is why I dont understand his comment about people on previous firmwares could be screwed.
If he has the blobs for his iphone/ipod touch, he can upgrade/downgrade to any version he has the blobs for..

People on previous firmwares don't need blobs to upgrade to 4.0 AFAIK, simply a 4.0 IPSW. And requiring DFU mode is no big deal, from what I've read its not that hard to achieve, and attempting to do so and failing is no big deal either.
 

Site & Scene News

Popular threads in this forum