• Your favorite

    Apple

    ,

    iPhone

    ,

    iPad

    ,

    iOS

    ,
    Jailbreak
    , and
    Cydia
    site.
  • HowTo: Jailbreak iDevices Untethered (and preserve iPhone Baseband) with PwnageTool 4.2


    Step 1: Download PwnageTool 4.2 here. Also Download the appropriate 4.2.1 firmware bundle (available from Apple). For the walkthrough I used an AT&T iPhone 4.

    Step 2: Open PwnageTool and click 'Expert Mode' at the top, then click the device you'd like to jailbreak.



    Step 3: Click "Browse for IPSW and browse for the firmware bundle you downloaded (should be firmware 4.2.1)



    Step 4: Click 'General' and select functions as needed.
    • 'Activate the phone' - Hacktivates the phone if previously unlocked
    • 'Enable baseband update' - Performs the baseband update (DO NOT CHECK THIS IF YOU RELY ON A ULTRASNOW UNLOCK)
    • There are options to re-enable functionality, which are specifically for the iPhone 3G. If you need them, check them off.



    Step 5: Click the arrow to apply the changes.

    Step 6: Install custom packages and cydia sources as needed, then click build to save your custom IPSW file, you may be asked to enter your Mac OS user password.



    Step 7: When prompted, connect your device via USB and follow the instructions for entering DFU mode.

    Step 8: Open iTunes. iTunes will tell you it has detected a device in recovery mode. IMPORTANT: PRESS OPTION AND CLICK RESTORE. Do not simply press restore, this will upgrade your device to stock 4.2.1, and WILL upgrade your baseband (which is irreversible). A dialog box will open and allow you to choose the firmware bundle to restore with. Choose the custom created bundle.

    Step 9: Wait for the restore to complete, and enjoy your untethered jailbreak! Unlockers on an unlockable baseband can simply install ultrasn0w and unlock. Enjoy!
    This article was originally published in forum thread: HowTo: Jailbreak iDevices Untethered (and preserve iPhone Baseband) with PwnageTool 4.2 started by Matt Savoca View original post
    Comments 154 Comments
    1. Simon's Avatar
      Simon -
      Quote Originally Posted by d_animality View Post
      Can i have my phone unlocked(without updating my baseband)with this method??

      Iphone 3gs runnin 3.1.3 bb 5.12.01.. Please help..and im on windows..
      You can make a custom firmware using this to preserve your baseband so that you can still unlock after. If you dont have a Mac then you can use the newly released snowbreeze 2.2 to do the same thing as pwnage tool.
    1. vietboi90's Avatar
      vietboi90 -
      I keep on getting error 29 when i restore back to the custom firmware.....any idea?
    1. GrandMstrBud's Avatar
      GrandMstrBud -
      I have tried to update from 3.1.3 to this and I keep getting an error. I tried this on a MAC and PC neither work. I get the 1600 error most of the time and a few times I got an error 21 in iTunes.
    1. Simon's Avatar
      Simon -
      Are you entering pwned dfu with the help of pwnage tool before restoring to the custom firmware?
    1. EskimoRuler's Avatar
      EskimoRuler -
      This doesn't fix the iBooks problem right, that's coming in an update soon?
    1. Simon's Avatar
      Simon -
      This does fix the ibooks problem. There is also a hotfix .deb that you can install manually to fix it if you are already jailbroken.
    1. GrandMstrBud's Avatar
      GrandMstrBud -
      Yeah I'm in DFU mode and still get the same error. Since it was on 3.1.3 do I need to go to 4.0.1 or something first?
    1. Simon's Avatar
      Simon -
      Ya, but are you in pwned DFU?
    1. GrandMstrBud's Avatar
      GrandMstrBud -
      Quote Originally Posted by x98car View Post
      Ya, but are you in pwned DFU?
      Yep, same thing on a MAC. I'll try again later on but yeah I know I am because the screen is completely black.
    1. Simon's Avatar
      Simon -
      The screen is black in dfu and pwned dfu. But you need to use the special dfu at the end of the custom firmware process or you will receive errors. You can also use redsnow 0.9.6rc8 to enter pwned dfu.
    1. thazsar's Avatar
      thazsar -
      Quote Originally Posted by x98car View Post
      The screen is black in dfu and pwned dfu. But you need to use the special dfu at the end of the custom firmware process or you will receive errors. You can also use redsnow 0.9.6rc8 to enter pwned dfu.
      I never knew that there were two DFU modes. What's the difference between them? Thanx!
    1. Simon's Avatar
      Simon -
      They are basically the same, just one allows you to restore to custom firmware. Pwned dfu is just an exploit being used on the phone to convince to accept non-stock firmware.
    1. luvmytj's Avatar
      luvmytj -
      Quote Originally Posted by billchase2 View Post
      Greenpois0n FTL? Why? I used Greenpois0n on my iPhone 4 and preserved my baseband. I'm running 4.2.1 with the 01.59.00 baseband. This is simply a different technique. They will both do it.
      GP is clunky and seems thrown together. Pwnage Tool seems tighter and cleaner.
      Look how many revisions there were with GP in the first few days the 4.2.1 version was out.
      Overall, there seems to be more problems with GP releases over Pwnage Tool.


      Quote Originally Posted by GrandMstrBud View Post
      Yeah I'm in DFU mode and still get the same error. Since it was on 3.1.3 do I need to go to 4.0.1 or something first?
      Now that PwnageTool is out, I went from Spirit jailbroken 3.2.1 to PwnageTool custom firmware 4.2.1. in one jump with my iPad.
      So far so good.
    1. thazsar's Avatar
      thazsar -
      Quote Originally Posted by x98car View Post
      They are basically the same, just one allows you to restore to custom firmware. Pwned dfu is just an exploit being used on the phone to convince to accept non-stock firmware.
      I gotcha. R there different steps to get into pwned DFU mode ( I assume there are)?
    1. Simon's Avatar
      Simon -
      Quote Originally Posted by thazsar View Post
      I gotcha. R there different steps to get into pwned DFU mode ( I assume there are)?
      The steps are the same, you just need to be using a tool like pwnage tool or redsnow to inject the exploit.
    1. thazsar's Avatar
      thazsar -
      Quote Originally Posted by x98car View Post
      The steps are the same, you just need to be using a tool like pwnage tool or redsnow to inject the exploit.
      Nice! Glad I learned something new today! Thanx again!
    1. Simon's Avatar
      Simon -
      no prob
    1. Primpilampa's Avatar
      Primpilampa -
      Hello guys,

      I just jailbreaked my iPad and now it won't rotate, I used the "double click home button" to lock it and unlock it and nothing, I made a restore and JB again and nothing.


      Is anyone having the same problem??
    1. GrandMstrBud's Avatar
      GrandMstrBud -
      Tried it again and this time it worked. Weird, oh well good job as always Dev-Team and modmyi members
    1. thazsar's Avatar
      thazsar -
      Quote Originally Posted by Primpilampa View Post
      Hello guys,

      I just jailbreaked my iPad and now it won't rotate, I used the "double click home button" to lock it and unlock it and nothing, I made a restore and JB again and nothing.


      Is anyone having the same problem??
      Kinda confused by what ur saying. When ur unlocked and u hit the Home button twice, the Task Switcher should pop up. If you go to the 2nd to the last LEFT Switcher window, you'll see iPod controls and the Rotation lock/unlock. Did u try that Rotation lock/unlock button? If it's locked, you'll see a locked icon at the top right of the Status Bar. Let us know...