Home User CP Donate Chat Register Today!  
  Get New posts Faq / Help?
   


Go Back   Hackint0sh > Projects and Hacks > iPhone > iPhone 3G (Rev. 2) > 3G General Talk

Reply
 
LinkBack Thread Tools Display Modes
  #31 (permalink)  
Old 08-20-2008, 07:02 AM
Van Wildonher
Status: Offline
Member
 
Join Date: Jul 2008
Posts: 71
Rep Power: 5
Van Wildonher is on a distinguished road
Default

Yeah I thought I could wait for a unlock too. Guess not. :iphone:
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #32 (permalink)  
Old 08-20-2008, 10:30 AM
ta_mobile's Avatar
ta_mobile
Status: Offline
Senior Member
 
Join Date: Sep 2007
Location: HaNoi - VietNam
Posts: 120
Rep Power: 19
ta_mobile has a spectacular aura aboutta_mobile has a spectacular aura aboutta_mobile has a spectacular aura about
Send a message via MSN to ta_mobile Send a message via Yahoo to ta_mobile Send a message via Skype™ to ta_mobile
Default

Quote:
Originally Posted by brasuco View Post
Hi Everybody,

I've been away from the scene for quite a while, but I'd like to give my 2 cents to this discussion.

From what I've learned from the iPhone 2G, when the iPhone is unlocked it should come in a state known as "Factory Activated".

That's verified by the lockdownd daemon by reading the tokens inside the lockdownd directory. These tokens are likely put inside the phone by iTunes during the activation process by checking the phone's serial number (or something equivalent). If lockdownd doesn't find the tokens, it will put the baseband in a locked state (semi locked, actually, because lockdownd itself can bring it back again without the need for the NCK, it must be some silly AT command).


The way I think the pwnageTool work for activation purposes is by Patching the lockdownd daemon so it always returns some activated state. Some techniques used to do the same also change some of the inner keys so tokens could be spoofed.

In order to simplify the patching of the lockdownd binary and get activation right away, some tokens used to be erased so they wouldn't get in conflict with the ones used for youtube, etc.

What I thing is going wrong is that officially unlocked iPhone might read the factory activated tokens via another program, and since they are not there, the whole thing will result in a locked state. Or maybe even the lockdownd binary is no patched properly (maybe in some cases the execution flow follows other paths that are not covered by the patch and will inevitably make the binary seek for the tokens anyway).

So, in my opinion, it has nothing to do with the NCK. The baseband remains unlocked, but the iPhone OS is putting it in the semi-locked stage (via lockdownd or another new binary) because of the activation issues I described.


So, I guess, in order to avoid any trouble with officially unlocked phones, your should choose "No Activation" in the pwnage tool.


Well, that's only my 2 cents...
hmm, seem you almost agree with my theory. Thank you for sharing your experiences.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #33 (permalink)  
Old 08-28-2008, 03:32 PM
Shade.sh's Avatar
Shade.sh
Status: Offline
Senior Member
 
Join Date: Jul 2007
Location: Germany
Posts: 440
Rep Power: 32
Shade.sh will become famous soon enoughShade.sh will become famous soon enough
Send a message via ICQ to Shade.sh
Default

Quote:
Originally Posted by ta_mobile View Post
hmm, seem you almost agree with my theory. Thank you for sharing your experiences.
So that theory sounds for me like true. Because if have 2 phones right now, one locked 3G from swiss and one unlocked from italy. If you restore both of them and connect it to itunes, the italy one calls 3 times to the "apple store" before any other screen appears in itunes, after that, its activated (and the phone self resprings with black screen and a spinning weel on the bottom) without any notice (Ok Ok, mobile me ad and registration if not already done), the swiss one only connect one time to the "apple store" and remains locked. So, your theory is not far from the truth i think. The last times i was too lazy to grab out the traffic between iphone, itunes and the internet, but i think i manage this on weekend. The traffic is encrypted i think, but we can find out differences between the two models traffic.

Only my 2 cents from 2 phones
__________________
iPhone: 16GB White
Shop: Italy - Portogruado
Jailbreak: QuickPwn
Network: German O2 (Unlocked)
Firmware: 2.2
__________________________________________________
Largest iPhone related Filebase -RELOADED-



Pwnage, QuickPwn, WinPwn and the VMWare Toolchain all there!
Now with new page, new download system and more speed!

__________________________________________________
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Sponsored links Remove advertisements
Advertisement
Advertisement

  #34 (permalink)  
Old 08-29-2008, 01:57 PM
fiddle
Status: Offline
Junior Member
 
Join Date: Aug 2008
Posts: 1
Rep Power: 0
fiddle is on a distinguished road
Default

Hi,
I've download your one of your BB's yesterday and I discovered that there is possibly function like that "SI_MODIFY_LOCK_IND", i'll try to investigate it today, but im courious what is that.

..and I'm tracking your new uploads

Best regards
Marek
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #35 (permalink)  
Old 08-30-2008, 06:59 PM
ta_mobile's Avatar
ta_mobile
Status: Offline
Senior Member
 
Join Date: Sep 2007
Location: HaNoi - VietNam
Posts: 120
Rep Power: 19
ta_mobile has a spectacular aura aboutta_mobile has a spectacular aura aboutta_mobile has a spectacular aura about
Send a message via MSN to ta_mobile Send a message via Yahoo to ta_mobile Send a message via Skype™ to ta_mobile
Default

thank you guys for your comments, it's great to know my 2 cents theory still has someone cares. Pls try your best with what you're pretending to do then give out here the result. That's will be very excited while the unlocking scene is getting hotter each day.

Br
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #36 (permalink)  
Old 09-02-2008, 11:25 AM
nvidia2008
Status: Offline
Senior Member
 
Join Date: Jul 2008
Posts: 136
Rep Power: 8
nvidia2008 is on a distinguished road
Default

You all are our only hope now... Geohot is posting some stuff on his blog then saying "Oh I am not working on the unlock..." Confusing for us normal people.

But you, ta_mobile, all the best, I know you are trying your best. The LOCK system can't be that great, can it? Is Apple and Infineon engineering that fantastic? I can't imagine so...

PS. No news or even minor updates from Dev Team so I am worried...

I know... I am freaking out here a bit...

Quote:
Originally Posted by ta_mobile View Post
thank you guys for your comments, it's great to know my 2 cents theory still has someone cares. Pls try your best with what you're pretending to do then give out here the result. That's will be very excited while the unlocking scene is getting hotter each day.
Br

Last edited by nvidia2008; 09-02-2008 at 11:28 AM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Sponsored links Remove advertisements
Advertisement
Advertisement

  #37 (permalink)  
Old 09-02-2008, 10:28 PM
-FX-RIDER-
Status: Offline
Junior Member
 
Join Date: Aug 2008
Location: In deepest Frankonia
Posts: 10
Rep Power: 0
-FX-RIDER- is on a distinguished road
Default

Hey nvidia2008,

I know what you mean... I'm freaking out, thinking perhaps an unlock is not possible... Imagine a Hack situation like xbox<-->xbox360. Not for playing copied games... No, for the real deal, unsigned code, homebrew SW, or in case of the iPhone, not just jailbreak, the unlock! The first one was hacked very fast, and a huge community was born, the second product is much more secure, simply not hackable... at least that fast! That's what i'm bothering about... I hope Dev Team will show me, that I'm totally wrong... PLEASE!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #38 (permalink)  
Old 09-02-2008, 10:33 PM
JohnFa
Status: Offline
Senior Member
 
Join Date: Sep 2008
Posts: 173
Rep Power: 10
JohnFa is on a distinguished road
Default

Quote:
Originally Posted by -FX-RIDER- View Post
Hey nvidia2008,

I know what you mean... I'm freaking out, thinking perhaps an unlock is not possible... Imagine a Hack situation like xbox<-->xbox360. Not for playing copied games... No, for the real deal, unsigned code, homebrew SW, or in case of the iPhone, not just jailbreak, the unlock! The first one was hacked very fast, and a huge community was born, the second product is much more secure, simply not hackable... at least that fast! That's what i'm bothering about... I hope Dev Team will show me, that I'm totally wrong... PLEASE!
I haven't heard of anything that's not hackable.
If you can hack into the Pentagon you can probably hack into a cellphone
Think it's just a matter of time, and I hope that time is coming very soon.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #39 (permalink)  
Old 09-03-2008, 04:55 AM
SLIPLOCK
Status: Offline
Member
 
Join Date: Oct 2007
Posts: 77
Rep Power: 6
SLIPLOCK is on a distinguished road
Default

Quote:
Originally Posted by JohnFa View Post
I haven't heard of anything that's not hackable.
If you can hack into the Pentagon you can probably hack into a cellphone
Think it's just a matter of time, and I hope that time is coming very soon.
maybe nothing is not hackable, but some hack requier genius people and time.
BB5 was not unlocked until dejan come back, 2 years of long long wait......
But i hope infineon chip have wekness....
WBR
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Sponsored links Remove advertisements
Advertisement
Advertisement

  #40 (permalink)  
Old 09-03-2008, 10:49 AM
JohnFa
Status: Offline
Senior Member
 
Join Date: Sep 2008
Posts: 173
Rep Power: 10
JohnFa is on a distinguished road
Default

Quote:
Originally Posted by SLIPLOCK View Post
maybe nothing is not hackable, but some hack requier genius people and time.
BB5 was not unlocked until dejan come back, 2 years of long long wait......
But i hope infineon chip have wekness....
WBR
You're saying the Dev Team aren't geniuses?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT +2. The time now is 08:04 AM.



Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.3.2 Ad Management by RedTyger
follow us on Twitter!

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105