
Just done ! Here’s the serial debug output from the evaluation board. For technical details, it’s exploiting the iBoot USB exploit found in firmware 3.1.2 and below, and then jailbreak/boot the tethered device as Blackra1n does.
I only have my iPhone on hand, but it should work for all 3.1.2 devices (iPT2G, iPT3G…).
Since the MCU is only USB high speed, the operation can take up to 30 seconds, I’ll post a video as soon as possible. Stay tuned !
While working on my evaluation board, I started the CAD in the same time. That should’nt be too difficult, I only need an USB Host and some storage.


My iPhone was shipped with the new bootrom… This mean that every time I reboot or I’m getting out of battery, I’m stuck with a 600$ brick until I “hacktivate” it again using RedSn0w or BlackRa1n. Last time, it hang, and I had to wait the end of noon to back home in order to boot it tethered… I decided to work on a piece of hardware, able to hacktivate my iPhone everywhere, starting with some evaluation boards available around. Go !