It was thought that the bug would mainly be of use for people downgrading from iOS 9.3.5 to a lower firmware, to jailbreak with Home Depot or Pangu9. However, it turns out the bug is in fact more powerful and wide-ranging than previously thought, and may have much wider utility.
However, it turns out the bug in fact affects every firmware change in which iOS 9.x is the destination. This means that as long as you are going to iOS 9, you can use it to upgrade from iOS 6-8, or even to downgrade from iOS 10 without a jailbreak.
This is of course big news, and hopefully our readers have been taking our advice and saving their blobs. As long as you have correct blobs saved for any firmware from iOS 9.0-9.3.4, you should be able to downgrade/upgrade to that firmware, and use Pangu9 or Home Depot to jailbreak. Users stuck on iOS 10 can return to a jailbreak, and users on iOS 6-8 who want to upgrade but missed the window can move to iOS 9. iOS 9 users can move up or down as they please, and even use this as a way to restore to the same firmware for a fresh start.
After talking to a couple of the developers of the tool, who were really obliging, some further technical information and restrictions have come to light, which I'll quickly sum up below.
Requirements:
- 32-bit devices only, do not ask about 64-bit.
- Destination firmware must be iOS 9.x, do not ask about restoring to any other firmware.
- Starting firmware can theoretically be any, though only iOS 6, 8, 9 and 10 have so far been tested.
- Starting firmware does not require a jailbreak.
- Process does not require keys, bundles, or nonces.
- Process requires blobs for the destination firmware.
- The blobs have specific requirements. They must be Erase blobs, not OTA, and they must begin with the string MIIKkj. This is not yet fully understood.
Further details
The technique requires a signed baseband, like Prometheus. However, between the currently signed basebands for iOS 10 and the signed OTA basebands most, if not all, devices should be able to get a working baseband without issues.
iOS 9 -> iOS 9 restores can be done from Recovery mode, iOS ≠9 -> iOS 9 restores must be done from DFU.
In the interim, another tool may be released which will check your saved blobs for compatibility with the technique, as unfortunately not all blobs will work.
Advice
Save your blobs! Never delete any old blobs, and check to see if any of them are for iOS 9.
If on iOS 9.3.5, do not update to iOS 10 (if your device can).
Source: idownloadblog
Join our Facebook User's group, or visit our 3uTools official site for the latest iPhone tips and jailbreak updates.
Comments
Post a Comment