• Breaking News

    Saturday, August 11, 2018

    iOS Jailbreak [Discussion] Apple Senior Rep basically said jailbreaking is fine as long it doesn't do permanent damage. I'll leave the case# if you want to verify.

    iOS Jailbreak [Discussion] Apple Senior Rep basically said jailbreaking is fine as long it doesn't do permanent damage. I'll leave the case# if you want to verify.


    [Discussion] Apple Senior Rep basically said jailbreaking is fine as long it doesn't do permanent damage. I'll leave the case# if you want to verify.

    Posted: 10 Aug 2018 03:42 PM PDT

    [Upcoming] DarkWeb - a dark mode for webpages in the Safari app!

    Posted: 10 Aug 2018 07:51 AM PDT

    [Request] Cydia 'Trending Tab'

    Posted: 10 Aug 2018 01:38 PM PDT

    This would be really useful to find the current best tweaks, without checking reddit/youtube every minute.

    submitted by /u/Bob_With_A_B
    [link] [comments]

    [Beta]Sylph - Customize the LS Music Player

    Posted: 10 Aug 2018 02:46 PM PDT

    [Release] R3spring - quickly respring your device by triple pressing the power button! Available from my repo, has been submitted to BigBoss.

    Posted: 10 Aug 2018 07:54 PM PDT

    My repo: https://patrick-Knauf.yourepo.com/

    R3spring: Quickly respring your device by triple pressing the power button!

    Follow me on twitter: https://twitter.com/patrickk1734

    Compatible with iOS 11

    submitted by /u/patrickk1734
    [link] [comments]

    [Discussion] A very well put together "History of Jailbreaking" video.

    Posted: 10 Aug 2018 07:29 AM PDT

    [Request]Tweak That Adds 15 Second Forward/Rewind Buttons to The Stock Music App

    Posted: 10 Aug 2018 08:42 PM PDT

    [Request] Volume HUD tweak like twitter please ����

    Posted: 10 Aug 2018 06:39 PM PDT

    [News] 9.3.X might be receiving a Untether Jailbreak

    Posted: 10 Aug 2018 08:17 AM PDT

    [Discussion] What's a really underappreciated tweak you use?

    Posted: 10 Aug 2018 12:48 PM PDT

    [question] Is there any way to avoid the lag on the lockscreen when you wake up the phone?

    Posted: 10 Aug 2018 09:03 PM PDT

    I have the lockscreen option turned off for xenhtml but its still lagging

    edit: i know its xenhtml causing it because when i turn off xenhtml overall, the lag goes away but sadly im using a homescreen widget so I cant turn it off completely lol

    submitted by /u/OBxo
    [link] [comments]

    [Request] Urban Dictionairy Word of the day + definition as a widget or replace the “No Older Notifications” text

    Posted: 10 Aug 2018 08:48 PM PDT

    Just what the title says

    submitted by /u/j_rasberry
    [link] [comments]

    [UPCOMING] Jitter: Animate apps that have notifications!

    Posted: 10 Aug 2018 10:16 AM PDT

    Jitter is really simple, yet really customizable. Jitter animates your app icons that have notifications.

    Here is an example and the original idea of Jitter, but that is not all. Jitter has many animations to choose from, and yes, they can be combined. You can customize Jitter to your liking and create something subtle or crazy.

    Jitter is coming soon and a very important note is that it depends on the tweak iOS Blocks (Free) from repo.auxiliumdev.com/ so make sure to download that

    You don't have to use iOS Blocks if you don't want to, Jitter just needs it for some back-end stuff.

    submitted by /u/SecondEight1
    [link] [comments]

    [Tutorial] How to use xerub's iOS 7.0.x iBoot exploit to up/downgrade iPhone5,2.

    Posted: 10 Aug 2018 12:29 PM PDT

    NOTE: Initially available modified Odysseus bundles for downgrading with xerub's iBoot exploit are for iOS 6.1.4, 7.0.2, 7.1.2, 8.1.3, 8.3, 9.0, 9.1, and iOS 9.3.4. More bundles will be added in the future, and bundles for iOS betas will only be made on request, and remember, requests to make iOS 10 bundles won't be accepted, because iOS 10 is much more complicated, and iOS 10.3 removes AMFI boot-arguments. OK, let's get started.

    First, these are the requirements to up/downgrade with xerub's iBoot exploit:

    • A jailbroken iPhone5,2 on iOS 7.0.4, and iOS 7.0.4 SHSH blobs. Dumped or OTA blobs work. You could try on other iOS 7 versions, on iOS 6, or on other devices, but do it on your own risk as I haven't tested the exploit on other devices. If you happen to get the exploit working on other devices, please let me know and I'll happily make bundles for more devices.

    • xpwntool from Odysseus

    • My modified Odysseus bundles from here

    • idevicererestore, you can use idevicerestore from Odysseus if you wish to preserve the currently installed baseband.

    • Odysseus

    • irecovery, either from Odysseus or libirecovery

    • OpenSSH on the device

    • iBoot32Patcher to patch the iBEC for booting the device

    Now the actual tutorial begins.

    Building the ipsw(s)

    1. Download the ipsw you want to install and dump the iOS 7.0.4 blobs using this tutorial. Skip the blob dumping step if you already have valid blobs.

    2. Download the modified Odysseus bundles I made from here, and copy them to the FirmwareBundles directory, and on the Terminal app, type cd /Odysseus/macos.

    3. Build the ipsw by typing ./ipsw /path/to/ipsw /path/to/output/ -bbupdate. Note: Do NOT add the -bbupdate flag if you want to preserve the baseband, if you want to save the baseband, install OpenSSH on the device, and on the terminal app, type ./sshtool -s baseband.tar -p 22 device_IP. The default password is alpine. To pack the baseband when building the ipsw, type ./ipsw /path/to/ipsw /path/to/output -memory baseband.tar. Only use the -memory flag if your computer has at least 4GBs or RAM.

    4. This step is very important, as the device will enter a DFU loop if you don't do this, and you'll have to restore, open the ipsw with any software that can edit zip files and replace the LLB and iBoot in Firmware/all_flash with LLB/iBoot for iOS 7.0.4 or with LLB/iBoot that matches your blobs. Note that unzipping the ipsw and zipping it again doesn't work or else idevicererestore will fail to extract the ipsw.

    Extracting iBSS and using kloader to boot pwned iBSS

    Note: This part is only needed if you are restoring for the first time (if you're already on a version installed with this method, just upload a patched, unpacked iBSS and upload an iOS 9.x iBEC patched with these .patch files. Don't upload an iBEC from Odysseus however, because when idevicererestore uploads another iBEC, the device will hang upon loading another iBEC, and the device will need to be hard rebooted).

    1. Unzip the ipsw by renaming the extension to .zip, and extract the ipsw. Then, unpack iBSS by typing xpwntool /path/to/iBSS /path/to/output, but do not specify any keys, since it is already decrypted. Then copy kloader and the iBSS to the root directory of the device.

    2. SSH into the device by typing ssh root@device_ip. If it says "Are you sure you want to continue connecting?", type yes and the root password. Next, type chmod +x /kloader. Then type /kloader /iBSS. If it worked, then iTunes would say "iTunes has detected an iPhone in recovery mode", but the screen on the device would be black with no logos and the backlight should be off. Alternatively, you can use kDFUApp to boot a pwned iBSS.

    Starting the restore

    1. Once you have verified that you replaced LLB/iBoot with LLB/iBoot from iOS 7.0.4 or with LLB/iBoot that matches your blobs and you have SHSH blobs for iOS 7, download idevicererestore and create a folder named "shsh", copy the iOS 7 blob, and rename the blob to be, for example, if you are trying to install iOS 6.1.4, rename the blob to be ECID_here-iPhone5,2-6.1.4-10B350.shsh.

    2. Now type idevicererestore -r /path/to/ipsw. When it asks "What type of blobs are you using?", type e, since we want to erase the device.

    3. Wait for the device to restore, if the restore fails when flashing LLB, this means you didn't replace LLB and iBoot before, and you have to restore to iOS 10.3.3, replace LLB and iBoot in the ipsw, kload a patched iBSS, but you'll have to use kloader that works with hgsp4. You can download hgsp4 version of kloader from here.

    Installing the iBoot payload

    1. When the restore finishes or fails, the device won't reboot on its own, because reboot is renamed to reboot_bak. Now on the Terminal app, type iproxy 2222 22, and open a new window on Terminal. Then, type ssh -p 2222 root@127.0.0.1, and the root password is alpine. First, type mount -t hfs /dev/disk0s1s2 /mnt2 to mount the data partition. Now type gptfdisk /dev/rdisk0s1, type i and 2, and get the unique GUID for the data partition. Type d and 2 to delete the data partition. Don't worry, it doesn't save the changes right away. Type n and 2, and hit Enter once, Next, subtract the last sector by 128 sectors, or 524288 bytes to make room for the partition that serves as the exploit. Type c and 2 and rename the second partition to Data. Now type x, a, 2, 48, 49. Then type c, 2, and copy and paste the unique GUID from before. This is very important, if you don't, the data partition will be corrupted. Type s, 4 to resize the partition table. Type m, n, 3, hit Enter once, and this time subtract 3 sectors to create the third partition for the exploit, or else gptfdisk will fail to save the partition table. You don't need to name the third partition. Type i and 2 once again to get the size of the data partition. Multiply the size in sectors by 4096 and you'll get the size of data partition in bytes. Hit w and type y to save the changes to the disk. Next, type hfs_resize /mnt2 <size_in_bytes>, because the data partition is actually now smaller. To write the exploit to the third partition, first type nvram boot-partition=2, then type newfs_hfs /dev/disk0s1s3 && dd if=/ramdiskF.dmg of=/dev/rdisk0s1s3 bs=512k count=1, and also nvram boot-ramdisk="/a/b/c/d/e/f/g/h/i/j/k/l/m/disk.dmg" to set the boot-ramdisk variable if up/downgrading for the first time. Then reboot the device by typing reboot_bak.

    Booting

    1. When the device turns on, it'll show the recovery logo. Then, upload an unpacked iBSS because the load address is set to 0x8400000 by typing irecovery -f /path/to/iBSS. Then type irecovery -c go. If it hangs here, hard reset the device and try again. It is fine if the screen becomes glitchy after typing go. If it succeeded, iTunes will say "iTunes has detected an iPhone in recovery mode", and then patch an iBEC from the original ipsw with iBoot32Patcher and repack it with xpwntool by typing:

    xpwntool /path/to/original/iBEC /path/to/decrypted/iBEC -iv <iv_here> -k <key_here>

    iBoot32Patcher /path/to/decrypted/iBEC /path/to/patched/iBEC -b "-v"

    xpwntool /path/to/patched/iBEC /path/to/packed/iBEC -t /path/to/original/iBEC

    The -b flag is optional, and is only needed if you want to verbose boot your device. Also, iOS 9 iBECs clear boot-partition variable upon loading, and on next reboot, you'll be forced to restore. I made some .patch files for iOS 9.x iBECs here, which includes the boot-partition patch and the iBoot32Patcher patch. That is only necessary when going to iOS 9, and for all other versions, you can just patch an iBEC with iBoot32Patcher like before, repack it into an img3 file, and upload it with irecovery.

    Upload the patched iBEC twice to get the display working, and on the second time, type irecovery -c go. Finally, upload the devicetree and kernelcache with these commands. They can be encrypted or decrypted, since the AES engine is enabled:

    irecovery -s

    /upload applelogo

    setpicture

    bgcolor 0 0 0

    /upload devicetree

    devicetree

    /upload kernelcache

    bootx

    Finally, set up the device, and you're done!

    FAQ

    Q: Do I need SHSH blobs to use this tutorial?

    A: You just need iOS 7 SHSH blobs, no matter what version you're trying to install, since the LLB and iBoot is replaced with the ones from iOS 7.

    Q: How do I do it on Windows?

    A: You can, but with a few differences: First you need Odysseus for Windows, and if you want to preserve currently installed baseband, the -memory flag doesn't work, and you dump the baseband in the same way, but when bundling the baseband into the ipsw, you type ./ipsw /path/to/ipsw /path/to/output /path/to/baseband.tar. And second, you need Putty to SSH into the device, and bsdiff for Windows.

    Q: Does this work on iOS 10.3.3? Or 8.4.1?

    A: No, because the iBoot exploit was patched in iOS 8. You can use the exploit if you have iOS 7(.0.4).

    Q: Does this work on 64 bit devices?

    A: Hypothetically yes, but it would only work on iPhone 5s/iPad Air on iOS 7.x, and you'll have to heavily patch AppleSEPManager.kext so it can communicate with SEP.

    Q: Is this untethered?

    A: It could be untethered, but the iBoot payload will have to be modified in such that it patches the running iBoot so it loads kernel from partition 0 (partitions are indexed from 0), and also that it ignores boot-ramdisk variable.

    Q: How do I jailbreak after up/downgrading?

    A: You can. Just remember that pangu jailbreaks time out after a few minutes, so upload the iBSS, iBEC, etc. fast after reboot if jailbreaking with pangu.

    submitted by /u/Benfxmth
    [link] [comments]

    [Request] Someone please make this a real thing.

    Posted: 10 Aug 2018 07:16 AM PDT

    [request] A tweak that actually work: bypass jailbreak detection for apps (iPhone x 11.3.1)

    Posted: 10 Aug 2018 11:37 PM PDT

    [Question] Just got this prompt while jail broken with Meridian. I thought Meridian had built in update prevention. Where can I find the firmware update file so I can delete it as a precaution?

    Posted: 10 Aug 2018 08:04 PM PDT

    [REQUEST] Update glitchy-effect Apple bootlogo for newer devices

    Posted: 10 Aug 2018 08:45 AM PDT

    [Request] A tweak to sort installed Cydia tweaks by repo

    Posted: 10 Aug 2018 07:56 PM PDT

    Title. I've ended up with like 40 repos added and I know I can clean up a bunch I'm no longer using. Maybe an addition to [[Flame]]?

    submitted by /u/tomfoolery72
    [link] [comments]

    [Beta] HomeScreenSwipeLock - Swipe up on the home screen to lock the device (animated)

    Posted: 10 Aug 2018 04:30 PM PDT

    It's my first tweak and it's currently in beta.

    Demo: https://www.youtube.com/watch?v=X9IYsbr_X0E

    Repo: https://shiftcmdk.github.io/repo/

    I created it from this request https://redd.it/943e8o. I hope that some of you find this useful.

    submitted by /u/xp333p333x
    [link] [comments]

    [Question] How do apps detect a jailbreak being present?

    Posted: 10 Aug 2018 11:02 AM PDT

    Do they have access to system files? Is it because they found "Cydia" in the files?

    submitted by /u/lapanoma
    [link] [comments]

    [Request] We NEED iOS 9 control center tweak for iOS 11! Any dev?

    Posted: 10 Aug 2018 11:24 AM PDT

    [Meta] Expand the tweak bot to Chariz & Packix?

    Posted: 10 Aug 2018 08:10 AM PDT

    Almost no developer uses BigBoss today. Most developers migrated to Packix & Chariz so the tweak bot ([[tweak]]) can't recognize most of the modern tweaks.

    Is it possible to expand it to Chariz & Packix, the more modern repos?

    submitted by /u/TheNicestAF
    [link] [comments]

    [Release] LowPowerDND - Enable Low Power Mode, when enabling DND

    Posted: 10 Aug 2018 09:06 AM PDT

    [Question] Does anyone know the repo of the tweak in this picture?

    Posted: 10 Aug 2018 07:10 PM PDT

    No comments:

    Post a Comment

    Fashion

    Beauty

    Travel