**** NOTE: This method currently requires you be on 1.1.1 of the firmware. If you are on 1.1.2
you must downgrade prior to being able to use this jailbreak. ****
Updates:
- Activation/YouTube for iPhones
- Added an automatic fix for SpringBoard crash problem on touches
- PPC support
- Some improvements to crossplatform compatibility
Step 1: Downgrade to 1.1.1 (if required)
*** NOTE: This guide does not guarantee it will work 100%. Also errors 1015 is expected at
the end of the process. Continue reading to understand. ***
1. Download the 1.1.1 ipsw firmware file from Apple. If the downloaded file has the extension
".zip", please remove it and modify it to end up with a filename ending in _Restore.ipsw
2. Reboot your iPhone holding the top (power) and home buttons BUT release the top button 10
seconds into it (right after the screen goes dark) and continue to hold the home button until
iTunes detects the phone in recovery mode. The iPhone screen will appear to be off, but start
iTunes if not started yet .
3. Restore your iPhone by pressing and holding the ‘Shift’ key on windows or ‘option’ key on Mac,
then click ‘restore’ to select the 1.1.1 firmware file you downloaded earlier. The restore should
go through and errors at the end with error 1015. However you will notice that the iphone is in
DFU mode with the connect to itunes screen from 1.1.1.
4. In order to kick the phone out of that mode I just had to launch iNdependence version 1.2.5
and wait a minute or so. If you are using iTunes 7.5 you will have to get a MobileDevice from a
previousv version in order to run Independence.
- If iNdependence is not available or you are on a Windows machine, download a working copy of
iPhuc and issue the following commands:
cmd setenv auto-boot true
cmd saveenv
cmd fsboot
----------------------------------------------------------------------------------------------------
Step 2a: Jailbreak 1.1.1 on Unactivated iPhone
*** NOTE: If your phone has been activated through iTunes, you can proceed to step 2b. ***
1. enter *#307# press call, now use the back button on the top of your screen to remove *#307# ,
now enter 0 , press call, press answer, press hold, press decline. And you get to the contact
list. And thereafter every time you push the homebutton you just slide the "emergency call"
slide, then enter 0 , press call, press hold, press decline.
2. Push contacts, end call and you get called again, this time hit decline and you access one of
menus with favorites, you can edit contacts, do a test ride on keyboard, take photos etc.
3. Now edit a new contact and type in "prefs://11" as web-address and "http://jailbreakme.com" as
an additional URL.
4. When you tap "prefs://11" you can now select your favorite WiFi gateway.
5. Now press the home button and move the slider to the dial-pad.
6. Now you can go back to the contact list by Dialing 0, push call, then answer, then contacts,
then hit the "http://jailbreakme.com" web address you typed in.
7. Scroll down to the bottom, click "Install AppSnapp". Safari will exit and you'll return to your
springboard. Wait for the phone to reboot. You are now jailbroken. and are able to use
Installer.app.
----------------------------------------------------------------------------------------------------
Step 2b: Jailbreaking on iPod Touch or iTunes Activated iPhone
1. Launch Safari
2. Visit http://jailbreakme.com, Scroll down to the bottom, click "Install AppSnapp". Safari will
exit and you'll return to your springboard. Slide to unlock, you are now jailbroken. and are
able to use Installer.app.
----------------------------------------------------------------------------------------------------
Step 3: Prepare your 1.1.1 device for the Update
1. Launch Installer.app
2. Scroll down to Tweaks (1.1.1)
3. Select OktoPrep
4. Click Install
----------------------------------------------------------------------------------------------------
Step 3b: Prevent SpringBoard crash on previous hacked iPod touches
If you have installed MobileMail on your iPod touch, there is a chance an update to 1.1.2 will
render your device inoperable until a restore. This issue can be prevented by switching Auto-Check
off.
- Go to General->Mail->Auto-Check. Set it to Manual.
If you forget to do this step and update, proceed with the jailbreak in step 5 (even though
SpringBoard is unusable) and we will fix it for you.
----------------------------------------------------------------------------------------------------
Step 4: Update to 1.1.2
1. Connect your device to your computer
2. Launch iTunes
3. Choose your device
4. Click Update
- If update still shows 1.1.1 as being the newest version, you may download the 1.1.2 from an
Apple download server and shift-click (PC) or option-click (Mac) on "Check for update" and
select the update you downloaded.
- DO NOT CLICK OR SHIFT-CLICK RESTORE: That will wipe the changes OktoPrep made.
5. Wait forever for your device to update
----------------------------------------------------------------------------------------------------
Step 5: Jailbreak your iPod Touch or iPhone
WARNING: If your iPhone is unactivated, it will be factory "hactivated" for you and YouTube enabled.
If this is not desired behavior, activate your iPhone with iTunes before proceeding.
1. Close iTunes
2. Connect your device to your computer
3. On Windows, double click on windows.bat, on Mac, double click on jailbreak.jar
4. Follow the on screen instructions.
http://conceitedsoftware.com/iphone/1.1.2-jailbreak.zip
大意为现在的Oktoprep并不是最终的破解版本, 现在发布只是为了让破解开发以及测试用户能够更容易在1.1.2下找到其他可行步骤. 现在网上的一些破解办法也只是暂时的, 并不能想1.1.1版本那样较完美的进行jailbreak, planetbeing还在继续为终极破解努力着....
------------------------------------------------------------
从Erica Sadun在Nov 9th 2007 1:30AM发布在tuaw.com的文章来看, 1.1.2版本的iPod touch/iPhone未等到发布就已先行破解!! 破解者公布了一张jailbreak后的iPod截图, 整个破解细节还需debug并进行安全检测.当然, 只有第三方软件才可以进行screenshot, 找到升级包也不过才5hr就搞定破解这是厉害!~
1.1.2v的iPod touch升级包:
http://appldnld.apple.com.edgesuite.net/.../iPod1,1_1.1.2_3B48b_Restore.ipsw
1.1.2v的iPone升级包:
http://appldnld.apple.com.edgesuite.net/.../iPhone1,1_1.1.2_3B48b_Restore.ipsw
乔老不知是否得知此息, 欢呼吧, iPt和iPhone的用户们...
原文:
(http://www.tuaw.com/2007/11/09/1-1-2-ipod-touch-jailbroken-before-its-official-release/)
1.1.2 iPod touch Jailbroken--before its official release!
Posted Nov 9th 2007 1:30AM by Erica Sadun/Filed under: iPod Family, Hacks, iPhone
They say a picture is worth a thousand words. And here is the first picture from a jailbroken 1.1.2 iPod touch, courtesy of hacker planetbeing. Congratulations to all the iPhone/iPod team, including Pumpkin, Edgan, Dinopio, Drudge, Kroo, and all the rest. Details will be forthcoming as the method gets debugged and safety-features put in-place.
另外附上现在的破解方法(我还没测试过 forum上已经有人升级成功了)
1) 打开 install.app 双击底部的 "Install"
2) 打开 "Recent Packages"即最近更新的程序包
3) 你可以看到OktoPrep, 安装它.
4) 预先下载1.1.2的升级包(链接上面有) 将iPod Touch与电脑连接好, 打开iTunes(这个过程就和平时同步歌曲一样) 在iTunes中你可以看到"核查更新"的按钮, 关键步骤: shift+鼠标单击这个按钮, 会出来一个文件选择对话框, 然后选择刚才下载的1.1.2的升级包继续接下来的傻瓜步骤
5) 完成
其中提到的install.app这个程序是破解后的iPod Touch装上的一个安装程序, 它可以通过wi-fi自动更新适用的程序(当然, 这个最先用于iphone).....看来有必要详细的说一下破解的步骤了(-___-||| 下回..)
所以 1.1.2的破解可以暂时通过安装Okotoprep来避免iTunes升级造成的第三方程序被清理. Well Done!
详情看这儿: http://www.ipodtouchfans.com/...hp?t=8183
这里提到的这个方法应该是临时的, 因为iPhone/iPod team, including Pumpkin, Edgan, Dinopio, Drudge, Kroo, and all the rest没有真是公布破解办法, 所以我会继续更新破解办法的.
恩 用了三天的时间已经把touch的相关设置以及破解修改研究的很透彻了
上两张做的iPod Touch的主题:
还有一个自己修改的充电页面的截图::