Page 7 of 14 FirstFirst 1234567891011121314 LastLast
Results 61 to 70 of 140
Discuss [1.1.3] Firmware Image Decryption Key at the General - Hackint0sh.org; Originally Posted by iphonedev the exploit IS Media file related! Did a dev tell you ...
  1. #61
    Respected Professional Array

    Join Date
    Sep 2007
    Posts
    695
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    54

    Default

    Quote Originally Posted by iphonedev View Post
    the exploit IS Media file related!
    Did a dev tell you this? They previously said it was hardware based to get people off of their backs, so be wary of them...


  2. #62
    Advanced Array

    Join Date
    Jan 2008
    Posts
    45
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    0

    Default

    Quote Originally Posted by ChronicProductions View Post
    We could use this thread instead, I'll just change the name...
    Sweet. I am all for it.

    I created an IRC Channel in DALNET called #iPhone-Dev if anyone would like to use it for discussion.

    DEVS, we need you! Be a part of something rewarding! Put your name beside GeoHot in iPhone Lore! Let's crack this mother!

  3. #63
    Senior Professional Array

    Join Date
    Nov 2007
    Posts
    406
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    0

    Default

    Quote Originally Posted by ChronicProductions View Post
    Did a dev tell you this? They previously said it was hardware based to get people off of their backs, so be wary of them...
    Nope : ) it's common-sense this is the only real line of attack open now on the iPhone!
    O2 UK iPhone Tarrif
    1.1.4 Firmware Jailbroken / Unlocked

  4. #64
    Senior Professional Array

    Join Date
    Dec 2007
    Posts
    352
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    29

    Default

    Quote Originally Posted by pcguysam View Post
    Sweet. I am all for it.

    I created an IRC Channel in DALNET called #iPhone-Dev if anyone would like to use it for discussion.

    DEVS, we need you! Be a part of something rewarding! Put your name beside GeoHot in iPhone Lore! Let's crack this mother!
    well what you need is, people that wont need 1h to write 10 lines of working code and people that actualy understand in to details what needs to happen. We can read/seach google/give ideas how ever we like, but the end of the day we will never really understand if we wont code for our selfs

    also im quiet sure there could be much more ways to JB (in 1.1.3 at least to mobileuser problem is you are very limited with this...), but you would need real skills in coding/debuging/disassembling applications (altho probably once SDK is out you could just "buy" certain application on itunes and viola JB to mobileuser). For ex. there could be buffer overflow in (something stupid) Stocks, that if you feed it with fucked up info you are cant execute arbitrary code.

  5. #65
    Respected Professional Array

    Join Date
    Sep 2007
    Posts
    695
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    54

    Default

    http://www.toc2rta.com/files/itiff_exploit.cpp

    This could be a good starting point for attempting the .mov buffer overflow. It is the exploit currently used with .tif for 1.1.1 phones.


  6. #66
    Professional Array

    Join Date
    Sep 2006
    Posts
    53
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    9

    Default

    Quote Originally Posted by SoLoR View Post
    http://www.kb.cert.org/vuls/id/659761 probably problem is you need to inject code that will eventualy used some other exploit to elevate to root privilages
    Hate to ruin the party, but the iPhone and iPod touch do NOT have RTSP streaming support, therefore they don't share this vulnerability either. If we find another vulnerability however, I'll be happy to help

  7. #67
    Senior Professional Array

    Join Date
    Nov 2007
    Posts
    406
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    0

    Default

    Quote Originally Posted by AriX View Post
    Hate to ruin the party, but the iPhone and iPod touch do NOT have RTSP streaming support, therefore they don't share this vulnerability either. If we find another vulnerability however, I'll be happy to help
    the fact of the matter is it was a BO they used to get in.
    O2 UK iPhone Tarrif
    1.1.4 Firmware Jailbroken / Unlocked

  8. #68
    Professional Array

    Join Date
    Sep 2006
    Posts
    53
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    9

    Default

    What do you mean by BO?

  9. #69
    Senior Professional Array

    Join Date
    Nov 2007
    Posts
    406
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    0

    Default

    Quote Originally Posted by AriX View Post
    What do you mean by BO?
    BufferOverflow!
    O2 UK iPhone Tarrif
    1.1.4 Firmware Jailbroken / Unlocked

  10. #70
    Professional Array

    Join Date
    Sep 2006
    Posts
    53
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    9

    Default

    Quote Originally Posted by iphonedev View Post
    BufferOverflow!
    Oh. I really don't think that the iPhoneDevTeam used this to get in. In fact I'm 99% sure they didn't. But it could have been something similar.


 

 

Similar Threads

  1. 1.1.4 firmwire decryption
    By winmedia in forum General
    Replies: 8
    Last Post: 04-15-2008, 10:43 AM
  2. Firmware image signed
    By non4bidden in forum iPhone "2G" (Rev. 1)
    Replies: 3
    Last Post: 02-27-2008, 11:00 AM
  3. [1.1.3] deleting the firmware image
    By syamazing15 in forum General
    Replies: 4
    Last Post: 01-25-2008, 01:53 PM
  4. I have an idea on how to decrypt the 1.1.1 firmware image
    By ChronicProductions in forum iPhone "2G" (Rev. 1)
    Replies: 27
    Last Post: 10-01-2007, 01:04 PM
  5. Regarding new firmware image 1.1.1
    By vpr in forum General
    Replies: 0
    Last Post: 09-29-2007, 12:09 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Powered by vBulletin®
Copyright © 2013 vBulletin Solutions, Inc. All rights reserved.
Search Engine Friendly URLs by vBSEO
(c) 2006-2012 Hackint0sh.org
All times are GMT +2. The time now is 04:08 AM.
twitter, follow us!