Page 1 of 20 1234567891011 ... LastLast
Results 1 to 10 of 196
Discuss [NCK] validation algorithm public at the iPhone "2G" (Rev. 1) - Hackint0sh.org; Well geohot has made his NCK brute force tool public (he was the reliable source ...
  1. #1
    Senior Professional Array

    Join Date
    Nov 2007
    Posts
    155
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    15

    Default [NCK] validation algorithm public

    Well geohot has made his NCK brute force tool public (he was the reliable source I referred to previously that has attempted the BF before).

    You can download the toolkit from geohot site:

    http://lpahome.com/nckbf/nckbf.rar

    I just did and am looking into it, it would be nice if this thread would be for those of us attempting to look at the BF side of things and any useful comments.

    PS! has anyone (including geohot) got a valid combination of the ltoken+norid+chipid+NCK+RSA message to validate that this indeed works e.g. if one gives the correct NCK that it spits out woohoo, key found
    iPhone 3G 16GB white. Official on contract. Used to have a w48 iPhone (OTB 1.1.2) all the way to 2.0.1 when I went legit.

    Current FW: 2.0.2
    Carrier: EMT (Estonia)
    All functions working



  2. #2
    Professional Array

    Join Date
    Dec 2007
    Posts
    98
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    12

    Default

    How do you extract the information necessary from the phone in order to tinker with this?

  3. #3
    Advanced Array

    Join Date
    Nov 2007
    Posts
    41
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    0

    Default

    Are we looking at an unlock method for our 4.6 BL? What did you find out so far? Thanks

  4. #4
    Senior Professional Array

    Join Date
    Nov 2007
    Posts
    120
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    13

    Default

    Wow...I'll be watching this thread. Thanks.
    iPhone 8GB
    Great Music player but can only hold 1000 songs
    Need an iPhone that can hold my >100,000 songs :p
    I'm still dreaming.

  5. #5
    Senior Professional Array

    Join Date
    Nov 2007
    Posts
    155
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    15

    Default

    Quote Originally Posted by macke View Post
    How do you extract the information necessary from the phone in order to tinker with this?
    The closest what I know is this:

    http://c_ode.google.com/p/iphone-elite/wiki/TEASecZone

    remove the _ ... However as I have understood this will not work with 4.6BL. As I have read from various places and latest claimed by MuscleNerd in another thread is that there is a way to read data still in 4.6BL and gray has a way. This is still warm stuff (the link to BF code wasn't on the link yesterday), so it's all quite new and takes some time...
    iPhone 3G 16GB white. Official on contract. Used to have a w48 iPhone (OTB 1.1.2) all the way to 2.0.1 when I went legit.

    Current FW: 2.0.2
    Carrier: EMT (Estonia)
    All functions working


  6. #6
    Senior Professional Array

    Join Date
    Nov 2007
    Posts
    155
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    15

    Default

    Quote Originally Posted by asher_ungar View Post
    Are we looking at an unlock method for our 4.6 BL? What did you find out so far? Thanks
    Again, relax Even if this proves to be an unlock way, it'll first take a lot of time to make sure and then it'll take still huge effort per phone. So I wouldn't go out and buy 500 iPhones like some do
    iPhone 3G 16GB white. Official on contract. Used to have a w48 iPhone (OTB 1.1.2) all the way to 2.0.1 when I went legit.

    Current FW: 2.0.2
    Carrier: EMT (Estonia)
    All functions working

  7. #7
    Senior Professional Array duwde's Avatar

    Join Date
    Oct 2007
    Location
    Tatooine
    Posts
    164
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    15

    Default

    I've just download and compiled this nckbf from geohot... Some people might have problems compiling it because it needs libGMP, and compiling this on windows isn't so easy...

    If someone wants the already compilte libgmp.a and gmp.h, I've uploaded them to: http://**********.com/files/77125401...2-compiled.rar
    (So with those 2 files it's easy to compile nckbf with dev-cpp)

    Also, if you doesn't want to compile anything at all, just download the already compiled .exe, i've also uploaded it to:
    http://**********.com/files/77125702/nckbf-binary.rar

    both are r-a-p-i-d-s-h-a-r-e links

    Well, It's POSSIBLE, but I really don't think this unlock method would be practical... Yes, of course we SURELY will find a solution before the end of the entire 15-digit range, but... even them, it woudl take a while (or a lot of computers) to do it...

    Geohot provided a very good brute-force program, it already accepts the first 7 digits manually, so we can easly code something with boinc or something to distribute the effort, but... the question remains, would that be practical or just a curiosity ?

    toruonu or anyeone else, can you guys really provide lot of computer power ? Would the entire community want to join this effort ? (remember, this time would be to break only ONE iphone, for every iphone we need to do this AGAIN, so... we can do it as a curiosity or just to have a proof that it works, but...)
    Last edited by duwde; 12-17-2007 at 09:35 AM.

  8. #8
    Senior Professional Array Anarchy's Avatar

    Join Date
    Oct 2007
    Location
    Prishtina, Kosovo
    Posts
    339
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    23

    Default

    So this means if we had these keys: ltoken+norid+chipid+NCK+RSA we shouldve been able to open the bootloader? But what about the only 5 times rule of the iphone?

  9. #9
    Professional Array

    Join Date
    Aug 2007
    Posts
    59
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    24

    Default

    Okay, THIS IS NOT AN UNLOCK. Don't try to brute force your phones seczone, it won't succeed. This brute force needs to be optimized 100x before it can even be attempted on a *distributed* system.

    Also if you want to see the program work, run it on ltoken_test included in the rar file. I encrypted that seczone with the nck "123456". It successfully unlocked the phone when I uploaded it so I know the tool works.

    Someone should h/w dump a French/German phone then order the unlock for it. That'll really test the brute forcer with an Apple NCK.

    WE STILL REALLY NEED THOSE PLISTS

  10. #10
    Advanced Array

    Join Date
    Nov 2007
    Posts
    41
    Post Thanks / Like
    Downloads
    0
    Uploads
    0
    Rep Power
    0

    Default

    You can do it geohot!! I know you can


 

 
Page 1 of 20 1234567891011 ... LastLast

Similar Threads

  1. Looking for Volunteers for Product Validation
    By mafili in forum iPhone Developer Exchange
    Replies: 0
    Last Post: 06-01-2011, 04:39 AM
  2. Help with Multiple Text Field Validation
    By zacharyrs in forum iPhone Developer Exchange
    Replies: 0
    Last Post: 01-12-2010, 08:02 PM
  3. MacNN: Cheetah3D 5.1 intros new automatic skinning algorithm
    By hackint0sh in forum Latest Headlines
    Replies: 0
    Last Post: 12-01-2009, 07:50 PM
  4. MacNN: AKVIS Sketch 9.0 provides new conversion algorithm
    By hackint0sh in forum Latest Headlines
    Replies: 0
    Last Post: 08-17-2009, 09:20 PM
  5. [Update] iPod touch $20 validation on reload
    By juliangall in forum iPod Touch 1G
    Replies: 8
    Last Post: 01-21-2008, 03:53 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Powered by vBulletin®
Copyright © 2014 vBulletin Solutions, Inc. All rights reserved.
Search Engine Friendly URLs by vBSEO
(c) 2006-2012 Hackint0sh.org
All times are GMT +2. The time now is 02:41 AM.
twitter, follow us!