The iPod Touch 2G is now another member of the “pwned for life” family. It has a fatal flaw in its bootrom that means you will always be able to pwn these devices no matter what firmware updates come along. This is the full, untethered jailbreak, something that iPod Touch 2G users have not had before today.
Those of you who hang out on IRC or were able to read between the lines in the various blogs, forums, wikis and twitters may realize that we — and importantly, that’s a that’s a collective, cross-team “we”
— had been hoping to hold onto this full ipt2g jailbreak until the next version of the iPhone came out. That didn’t happen, but maybe it’s too late for Apple to fix the bootrom in the next iPhone.
The raw patch to the firmware that transforms the “tethered” jailbreak into an untethered one was released here but it’s not yet packaged up into the PwnageTool or QuickPwn flows. But other threads there are pulling together tutorials and other tips for those of you anxious to try this out now. For the curious, the hole itself is explained here. There’s also a “pen and paper” analysis that helped the hybrid team venture transform the hole into an exploit. Hopefully that will be up for viewing soon too, if only because of its geeky beauty
Anyway, to all those iPod Touch 2G users out there who waited so patiently through all the various incarnations of the jailbreak for Apple’s latest device — welcome to the family!
Now, the current redsn0w is currently in beta as it relies on the user running it from the command line, but this new redsn0w functionality is being added into our GUI applications.
If you are not fully confident with using the command line, then hold off for those simpler tools that will be released sometime soon.
Credits
implementation 2009 iPhone Dev Team vulnerability: pod2g, MuscleNerd exploit: planetbeing, CPICH, posixninja, chronic, ius
Download the latest version here (0.3)
