Existing users, log in.  New users, create a free account.  Lost password?

Apple sends iPhone hackers back to the drawing board: 1.1.1 firmware uses different encryption scheme

Posted 27 September 2007 @ 3pm in Uncategorized

“It’s a cat-and-mouse game,” said Steve Jobs. “We try to stay ahead. People will try to break in, and it’s our job to stop them breaking in.”

The cat has caught the mouse, for now.

In a serious setback for the capability to install third-party native applications on the iPhone, as well as activate the device without an AT&T SIM card, Apple has changed the encryption methodology for the iPhone with the 1.1.1 firmware/software update, meaning that old processes for “jailbreaking” the device — putting it into a mode where files can be written to and from the phone — are now defunct.

What this means for unlocked phones is the following: these devices can be upgraded to version 1.1.1 of the iPhone software, and apparently remain unlocked. However, the phones cannot be reactivated — a step that is necessary for normal function — after the update by traditional third-party means (iActivator, etc.), nor jailbroken. In addition, because current software unlock mechanisms change the IMEI number (a special code used to identify the mobile device on a network), they cannot be re-activated using an AT&T SIM card. In other words, these phones are dead in the water with regard to phone calling functionality.

As explained by our friend Lucas Newman who worked to develop the first third-party native game for the iPhone (”Lights Out!”) and put together an informal SDK for the device, finding the encryption key is harder now. “It used to be plaintext in the RAM disk,” said Newman. “But they changed it, and no one knows how to get at it quite yet.”

We previously reported that none of the current tools for jailbreaking the iPhone, including AppTapp, iNdependence, iActivator, iBrickr, etc.

The new encryption method is apparently similar to that used by the iPod touch, which hackers have thus far had little success in jailbreaking.

Apple’s change is also bad news for tools that make modifications without requiring jailbreaks, like Ambrosia Software’s iToner, designed to add ringtones to the device without going through iTunes. Ringtones placed on the iPhone by that application did not survive the update to firmware/software version 1.1, and new ringtones cannot be transferred to devices that have been updated.

While this is certainly a serious curve-ball Apple has thrown, the iPhone hacking community’s ingenuity shouldn’t be underestimated. It was a matter of hours before jailbreak tools were rewritten to properly function with the last firmware update; while the current release appears to be of a different structure entirely, the hacking community is already banging on the door. In the words of one poster to the Hackintosh forums (where iPhone hacking efforts are rampant): “the fun starts again”

[ Digg this  |  Bookmark on del.icio.us ]

Print This Post Print This Post

4 Comments

Posted by climbbike1
27 September 2007 @ 4pm

Instead of wasting time blocking folks from using third party software, why doesn’t Apple spend their time making an official SDK and formalizing the process for third party developement. If Apple would get their heads out of their a#@$#s long enough to realize that they are hurting themselves rather than helping themselves, they might just dominate the PDA world. (add convert a lot of PC users to MAC in the process)

Posted by architect323
28 September 2007 @ 5am

my iToner custom ringtones don’t show up after the update, but I just got a call and my main custom ringtone still played.

Posted by daniel4510_dotmac
28 September 2007 @ 9am

Yes, the iToner ringtones do remain, they just don’t show up on the list of ringtones (but they do show up in iToner and can be removed). This makes sense, since after syncing my phone, ringtones were still set to my custom ringtones.

However, not seeing them in the list, I set them to the default ringtone. Shouldn’t have done that, as I suspect the ringtones would have still worked. So the folks at Ambrosia simply(?) need to figure out a way to have the ringtones appear in the listing again so that they can be selected.

Posted by daniel4510_dotmac
28 September 2007 @ 9am

So anyway, I finally gave up and purchased some ringtones through iTunes. I receive calls from a very limited number of people anyway, and I was curious how the process worked.

However, in addition to the limited number of available ringtones being a disappointment (if you’re in to rap, you’ll be delighted; if you’re into country, don’t even bother looking), the low volume of the tones is exceptionally disappointing and I’m back to missing calls if the phone is in another room.

I was able to work around the low volume with my previous ringtones, since I upped the volume with my sound editor prior to saving.

You must log in or register to post a comment.