[ / / / / / / / / / / / / / ] [ dir / agatha / bl / builders / imouto / loomis / marx / orbg / ss ][Options][ watchlist ]

/tech/ - Technology

You can now write text to your AI-generated image at https://aiproto.com It is currently free to use for Proto members.
Name
Email
Subject
Comment *
File
Select/drop/paste files here
* = required field[▶ Show post options & limits]
Confused? See the FAQ.
Expand all images

[–]

 No.864802>>864807 >>864813 >>865379 >>865580 >>871027 [Watch Thread][Show All Posts]

Key iPhone Source Code Gets Posted Online in Biggest Leak in History

(pic 1)

<Source code for iBoot, one of the most critical iOS programs, was anonymously posted on GitHub.

<Someone just posted what experts say is the source code for a core component of the iPhone’s operating system on GitHub, which could pave the way for hackers and security researchers to find vulnerabilities in iOS and make iPhone jailbreaks easier to achieve.

<The GitHub code is labeled “iBoot,” which is the part of iOS that is responsible for ensuring a trusted boot of the operating system. In other words, it’s the program that loads iOS, the very first process that runs when you turn on your iPhone. It loads and verifies the kernel is properly signed by Apple and then executes it---it’s like the iPhone’s BIOS.

<The code says it’s for iOS 9, an older version of the operating system, but portions of it are likely to still be used in iOS 11.

<Apple has traditionally been very reluctant to release code to the public, though it has made certain parts of iOS and MacOS open source in recent years. But it has taken particular care to keep iBoot secure and its code private; bugs in the boot process are the most valuable ones if reported to Apple through its bounty program, which values them at a max payment of $200,000.

<“This is the biggest leak in history,” Jonathan Levin, the author of a series of books on iOS and Mac OSX internals, told me in an online chat. “It’s a huge deal.”

(pic 2)

<Levin said the code appears to be the real iBoot code because it aligns with code he reverse engineered himself. A second security researcher familiar with iOS also said they believe the code is real. We don’t know who is behind the leak. Apple did not respond to a request for comment.

<Having access to the source code of iBoot gives iOS security researchers a better chance to find vulnerabilities that could lead to compromising or jailbreaking the device, Levin said. That means hackers could have an easier time finding flaws and bugs that could allow them to crack or decrypt an iPhone. And, perhaps, this leak could eventually allow advanced programmers to emulate iOS on non Apple platforms.

<Vulnerabilities in previous versions of iBoot allowed jailbreakers and hackers to brute-force their way through the iPhone’s lock screen and decrypt a user’s data. But newer iPhones have a chip called the Secure Enclave Processor, which has hardened the security of the device.

<For regular users, Levin added, this means that tethered jailbreaks, which require the phone to be connected to a computer when booting, could soon be back. These jailbreaks used to be relatively easy to pull off and were common, but are now extremely hard to come by on up-to-date iOS devices, which have advanced security mechanisms that make it hard for even highly skilled researchers from even looking for bugs, as they need to first jailbreak the device before beginning to probe the device.

<It’s these security improvements that have have effectively killed the once popular jailbreak community. Nowadays, finding bugs and vulnerabilities in iOS is something that requires a significant amount of time and resources, making the resulting exploits incredibly valuable. That’s why the jailbreaking community gets excited for any leak of source code or any exploit that gets released publicly.

<This source code first surfaced last year, posted by a Reddit user called “apple_internals” on the Jailbreak subreddit. That post didn’t get much attention since the user was new and didn’t have enough Reddit karma; the post was quickly buried. Its new availability on GitHub means it’s likely circulating widely in the underground jailbreaking community and in iOS hacking circles.

<“iBoot is the one component Apple has been holding on to, still encrypting its 64 bit image,” Levin said. “And now it’s wide open in source code form.”

https://motherboard.vice.com/en_us/article/a34g9j/iphone-source-code-iboot-ios-leak

https://web.archive.org/web/20180208021221/https://motherboard.vice.com/en_us/article/a34g9j/iphone-source-code-iboot-ios-leak

get sauce before baleetion:

git clone https://github.com/ZioShiba/iBoot.git

or download it from:

https://github.com/ZioShiba/iBoot/archive/master.zip

 No.864807>>864813 >>865269 >>865407 >>865481 >>865813

>>864802 (OP)

>https://github.com/ZioShiba/iBoot/archive/master.zip

Alternative download when GitHub nukes it: https://my.mixtape.moe/fytdmd.zip

(sage for self-reply)


 No.864813>>864817 >>864848 >>865220

File (hide): b98d585937b6d13⋯.jpg (34.71 KB, 313x500, 313:500, it was nothing.jpg) (h) (u)

>>864802 (OP)

>>864807

>A snippet of code thats isolated from higher os functions which in addition uses a hardware root of trust to ensure code integrity is leaked


 No.864817>>864945 >>864980 >>865481 >>866017

File (hide): 369b4d1da4136b3⋯.jpg (215.31 KB, 1011x976, 1011:976, snapshot-2011-08-27-16-17-….jpg) (h) (u)

>>864813

>implying layers upon layers necessarily means better security

>falling for buzzworded security marketing technobabble

Hello (((Apple)))! Scared the goyim are waking up? For those of you out there who aren't shilling macfags, have a read: https://www.defectivebydesign.org/apple


 No.864846>>865509

So this basically means we can just straight up compile our own bootloaders to enable root user in iOS

Or alternatively, it means we can port Android to Apple devices


 No.864848>>864980

>>864813

>>A snippet of code thats isolated from higher os functions

It doesn't matter what level of abstraction is used between the ROM-resident bootloader and the iOS bootloader, iBoot supersedes iOS init which means we can inject payloads into the OS before any security features are loaded and supersede them


 No.864895

Part of the project is licensed under the MPLv1.1. This means that the source for the licensed code should have been distributed with the iphone / downloadable from https://opensource.apple.com/.

Unfortunately, the MPL license allows you to statically link with proprietary code so the rest of the iBoot remains proprietary.


 No.864945>>866017 >>880399

>>864817

It is my greatest regret that I never got to ask Steve Jobs "Hi Steve, how's Lisa?". I'm glad he's dead, but I'm not glad he's gone.


 No.864947>>864953 >>865108

File (hide): 0cb5a56fcaeb36f⋯.gif (1.3 MB, 352x270, 176:135, laughing bros.gif) (h) (u)

>That post didn’t get much attention since the user was new and didn’t have enough Reddit karma; the post was quickly buried.

rofl what a shit forum.


 No.864953>>865100 >>865108

File (hide): 1e8bce3e1f55e13⋯.png (302.09 KB, 291x265, 291:265, Scary, Isn't It.PNG) (h) (u)

>>864947

Reddit really is the worse


 No.864959

>>Open Sauce is big threat to my proprietary solutions peons

oh no


 No.864960>>865481

File (hide): bc88e0916f9130a⋯.png (62.19 KB, 785x1012, 785:1012, boot.png) (h) (u)

># Check for spaces in critical paths - we can't handle that

Did anyone look through this? Anything interesting? Sure are a lot of files.


 No.864963>>865481

No raunchy comments it seems


lib/heap/heap.c: /* just in case some idiotic user modifies winfo, update loop iterator before calling */


 No.864977>>865022

Repository unavailable due to DMCA takedown.

This repository is currently disabled due to a DMCA takedown notice. We have disabled public access to the repository. The notice has been publicly posted.

If you are the repository owner, and you believe that your repository was disabled as a result of mistake or misidentification, you have the right to file a counter notice and have the repository reinstated. Our help articles provide more details on our DMCA takedown policy and how to file a counter notice. If you have any questions about the process or the risks in filing a counter notice, we suggest that you consult with a lawyer.


 No.864980>>865481

File (hide): da9cc26f546b4af⋯.jpg (75.99 KB, 583x572, 53:52, deep fried scooby gun.jpg) (h) (u)

>>864817

>>864848

good luck getting it to boot after changing it. Secure enclave initiates iboot.


 No.865022

>>864977

Literally the 2nd post has a backup you dumb nigger


 No.865025


iBoot-master$ grep -ir slave|wc
77 602 8195

This is highly problematic


 No.865030>>865481

Nice looking C code, tho.


 No.865100>>865108

>>864953

>>864953

you could make jailbreaks for days with this shit.

Those fags won't even let you post it because

>i-i-i-it's p-p-piracy

like goddamn.


 No.865108>>865216 >>865242 >>865247 >>865252 >>865292

File (hide): 4104dc3baf7ea4d⋯.png (240.39 KB, 757x3030, 757:3030, xkcd-freedom-3.png) (h) (u)

>>864947

>>864953

>>865100

Isn't it ironical that internet chans are famous for hating jews, blacks, women, latinX, trannies and anyone who isn't a fucking white male*, yet is more egalitarian with regards to whom is posting the content than reddit, faceberg, twatter and tumblr. In fact, we don't care who you are, as long as what you say is somewhat relevant. That is unlike reddit, where a revelation can (as it has happened in this incident) go unnoticed for several months because OP was not a karma whore. This should act as a reminder that chan hatred of reddit is well-founded and not just some retarded internet turf war.

*Just like South Africa once made a bunch of Japanese emissaries honorary whites for a stay, SJWs consider asian men honorary whites.

(pic related: freedom of speech is more than not being thrown in the slammer for speaking your mind)


 No.865216


 No.865220

>>864813

The fact that it's a bootloading and not the OS means you could use it to port other OSs to the iPhone.


 No.865242>>865258 >>865338

>>865108

> as long as what you say is somewhat relevant.

Then /pol/cancers come and and shit up the threads because they can't stand other people getting along.


 No.865247>>865341

File (hide): defc8cabbe859cf⋯.png (14.71 KB, 215x199, 215:199, 1414849480625.png) (h) (u)

>>865108

>I think it's still 2005 and I'm on 4chan

Seriously, 8chan has done its best to get rid of that old idea like Shii wrote about. Most people here are fucking SomethingAwful-level teenage shitheads.


 No.865252>>865292

File (hide): 3e1161ab43af6c8⋯.jpg (272.39 KB, 1271x1305, 1271:1305, 7caad8d7d193598db863e48af5….jpg) (h) (u)

>>865108

It's also ironic that forums where people can post anonymously and get an equal voice without filter always leans right-wing with the aforementioned qualities in your post. Whereas a left-wing forum requires arbitrary moral regulation of discussion lest you get labeled for wrongthink.


 No.865258>>865262 >>865289

>>865242

>muh /pol/

Damn I thought this was cuckchan for a second


 No.865262

>>865258

Ignore him. He's the same poster that brings up the /pol/ boogeyman in every thread for no reason or proper context


 No.865269>>865481

>>864807

> https://my.mixtape.moe/fytdmd.zip

Backup here: https://web.archive.org/web/20180208023033/https://my.mixtape.moe/fytdmd.zip

And magnet link here: magnet:?xt=urn:btih:b750642359d6330ef9e26ea78b503f7110a081b5&dn=iBoot.zip&tr=udp%3A%2F%2Ftracker.leechers-paradise.org%3A6969&tr=udp%3A%2F%2Fzer0day.ch%3A1337&tr=udp%3A%2F%2Fopen.demonii.com%3A1337&tr=udp%3A%2F%2Ftracker.coppersurfer.tk%3A6969&tr=udp%3A%2F%2Fexodus.desync.com%3A6969


 No.865289

>>865258

I rarely check archives of cuckchan for a certain thread that never came here, and it's fucking cancer

Any vaguely right wing comment has people whining about muh /pol/


 No.865292>>865375

let's duplicate the future of forums thread

>>865108

>>865252

I blame lack of class awareness

We need more manarchists and less discord trannies on the hard left imageboards, otherwise Nazbol is doomed

same with ancaps compared to brownshirts


 No.865338

>>865242

Is "Shlomo" your first or second name?

>>>/auschwitz/


 No.865341

>>865247

>Seriously, 8chan has done its best to get rid of that old idea like Shii wrote about

Explain? I've read a bunch of Shii's stuff, but I'm not sure what you're referring to.


 No.865375

>>865292

Hey /leftypol/, what if I told you nobody here actually cares about your politics and we all collectively cringe whenever you reveal your power level through posts like this?


 No.865379>>865383 >>865407

>>864802 (OP)

DMCA'd.

Does anyone have the sauce?


 No.865383>>865402 >>865636


 No.865402>>865494

>>865383

Shit, it's been years since I got Rickrolled.


 No.865407

>>865379

alternative download here:

>>864807


 No.865481

>>864807

>>865269

Here's another mirror just for good measure

https://0xacab.org/sizeofcat/iBoot

>>864817

>>864980

>good luck getting it to boot after changing it. Secure enclave initiates iboot.

What does that mean? I always thought "secure enclave" is just a marketing buzzword, whats preventing you from modifying this? In what way would you go about it?

>>864960

>>864963

>>865030

The comments are not as sterile and lifeless as i would've thought coming from Apple


 No.865494>>865498

>>865402

While we are on that subject.

I just lost the game


 No.865498

File (hide): 050b8a57a5358be⋯.jpg (22.84 KB, 158x153, 158:153, IMG_5389.JPG) (h) (u)

>>865494

YOU MOTHERFUCKER


 No.865509

>>864846

It means that those scene groups dedicated to reverse engineering this thing to get in to phone just drowned in an aquarium of their of semen.


 No.865523>>865532

everyone ITT is a faggot, no exceptions.


 No.865532>>865538

>>865523

>no exceptions

Not even you


 No.865538

>>865532

especially not even me


 No.865580>>865589 >>865634

>>864802 (OP)

><Someone just posted what experts say is the source code for a core component of the iPhone’s operating system on GitHub, which could pave the way for hackers and security researchers to find vulnerabilities in iOS

But don't open souce cucks claim that open source improves security? They always pretend as if the fact that everyone can find flaws in openly accessible code didn't exist.


 No.865589>>865613

>>865580

And now we have access to flaws that wouldn't exist in open source because they would have been seen and patched :^)


 No.865613>>865742

>>865589

You do realize that it's WAY easier for one person to plant a needle in a haystack than for a thousand other people to find it? And that's just the tip of the iceberg, I'm not even getting into things like obfuscated or underhanded code etc. Saying that open source is inherently secure because everyone can access the source is like saying that nobody can hide anything in a jungle that anyone can enter and search through. If you deploy an army to scrutinize the jungle you'll sure find it eventually. Except there is no army which constantly scrutinizes all of open source code. It might have been a plausible concept twenty years a go but surely not now when the amount of code has grown by many orders of magnitude and is still growing.

<tl;dr

Open source being a guarantee of secure software is a fallacy. Closed source in the hands of a trusted third party is conceptually much more secure, because no attacker can insert malicious code at will, nor can he find flaws for him to exploit at will (problem is that it's really difficult to find an actually trusthworthy third party these days).


 No.865634

File (hide): c336c7704f31710⋯.jpg (2.09 MB, 4784x6943, 4784:6943, Patching in progress.jpg) (h) (u)

>>865580

Easier finding is a two-edged sword but open source also allows much easier fixing of bugs by anyone. Try getting support for your ten-year-old router or operating system, or patching a bug out of a binary blob.


 No.865636>>865665

File (hide): 37a7a2a4b25fb4b⋯.png (51.39 KB, 720x298, 360:149, threadshot-1518175914529.png) (h) (u)


 No.865664

># APPS is a shortcut for APPLICATIONS, combine if you're dumb enough to specify both

lmao, this guy is literally berating everyone in the makefile comments


 No.865665>>865666

File (hide): 45ad70f1a8ba70d⋯.png (35.87 KB, 720x201, 240:67, threadshot-1518180715392.png) (h) (u)

>>865636

Fellow Dashchan user of good taste


 No.865666>>865667

>>865665

>tomorrow


 No.865667

>>865666

>not tomorrow

Keep using Normie, Satan.


 No.865695

RIP in peace the poor bastard who leaked this.

HIS NAME WAS SETH RICH


 No.865742

>>865613

Your argument goes against your own position and relies on untrusted users making changes to a repository without being reviewed. In open source you have control over the repository if you are a part of the team. Untrusted users have to make requests. Everyone can see those requests.

Proprietary software has no way to guarantee it hasn't been back doored. There's no access to the code so you just have to put your trust in someone else who could easily put in hundreds of back doors without you ever knowing. Proprietary software in large companies is worked on by thousands of people typically all code monkeys from India who accidentally or intentionally insert bugs in to the code all the time. This code is rarely reviewed and the important thing is the bottom line if it boots or not.


 No.865813

>>864807

listen here niggers, if you're on a Mac I'd suggest you put it elsewhere - Linux, Windows, idgaf .. but you know those fucking negroes are going to put some shit in an update to search for this code on your machines.


 No.865951>>866030

So would this be good to bypass an iCloud sign in? Found an iPad Mini and getting through the authorization is a bitch.


 No.865996


 No.866017

File (hide): bd3b37249ba2364⋯.webm (1.38 MB, 1280x720, 16:9, R.I.P. Steve Jobs.webm) (h) (u) [play once] [loop]


 No.866030

>>865951

Give it back, Jamal.


 No.871027

>>864802 (OP)

I cast Ressurection

If I wanted to read and understand what this leaked iBoot is, I would learn Swift and Objective-C and research the tech sheets for devices released with iOS 9?


 No.880306

>>cracks your path


 No.880399

>>864945

Apple and NeXT were pretty good prior to 2006 or so.

After they set the standard for mobile, they just kind of gave up and went 100% into the normie market, kinda like Microsoft but years before.




[Return][Go to top][Catalog][Screencap][Nerve Center][Cancer][Update] ( Scroll to new posts) ( Auto) 5
62 replies | 18 images | Page ?
[Post a Reply]
[ / / / / / / / / / / / / / ] [ dir / agatha / bl / builders / imouto / loomis / marx / orbg / ss ][ watchlist ]