讓人們苦等的iPod Touch 2G破解終於出現了,Dev Team還是沒有讓我們失望,據說這次的方法可以讓我們手中的Touch 2實現越獄,雖然還是非正式版的紅雪redsn0w,而且操作有系統限制步驟也頗為煩瑣,但是至少讓我們看到希望。
期待小組們能開發出更簡單實用的整合破解軟件。感興趣的朋友可以試試下一頁的教程和軟件。
以下為Mac系統破解方法(軟件下載),也有網友放出未測試的Windows破解方法:這裡
非整合限制版iPod Touch 2G 越獄(非正式版)
_____________________________________________
-->給iPod越獄很可能會使你失去保修權利<--風險自擔。
我們不會承擔任何因這個軟件引起的任何形式的對你的設備的損傷。
-->風險自擔<--
_____________________________________________
我們絕對不會支持這種行為!!!!!
如果你在我們的博客上發佈尋求支持的留言,我們保留禁止你的博客用戶ID的權利。你真的不需要做這個除非你清楚的明白這個不需要支持。
_____________________________________________
這是一個受限制版的越獄
如果你不知道受限制的含義,不要使用它!
做這個的方法很多。下面的方法可能會對你起作用。如果沒作用,請不要來尋求支持,我們正在製作一個不受限制的版本。
此版本僅適用於Mac系統。但是你應該可以找到方法(或者自己做一個)讓他在Windows和Linux上運行。
__________________________________________
rslite
____________________________________________
這個是通向設備DFU和恢復模式的界面。他要求你的mac上安裝了librickrb。
由於bug在librickrb和蘋果的設備之間的干擾,何較長的輸出都會被破壞。但是如果你只用「!」和「#」符號,你將可以繞開這些限制。我們不僅僅是使用這個工具,但是他要比我們使用的GUI更容易分配和編譯。
「!」(感嘆號,使用時沒有引號)送出一個文件。
「#」(警號,使用時沒有引號)送出一個文本。
在兩種情況下,你要緊接著在符號後命名文件。
________________________________________
基礎教程
___________________________________________
注意:這些僅僅是基本指導。請別來找我們尋求細節指導。
準備
1)把目錄FirmwareBundles和CustomPackages複製到你的 PwnageTool.app/Contents/Resources 目錄下
2)使用PwnageTool在Advanced模式下製作一個自制固件 2.2.1ipsw。不要把logos設為自定義啟動。
3)從你的2.2.1ipsw裡解壓出這些(打了包的)文件:
iBSS.n72ap.RELEASE.dfu (命名為 iBSS221pwn.dfu)
iBoot.n72ap.RELEASE.img3 (命名為 iBoot221pwn.img3)
4)從官方2.1.1ipsw裡解壓出這個(沒打包的)文件:
iBSS.n72ap.RELEASE.dfu (命名為 iBSS211.dfu)
安裝越獄自制固件ipsw
5)把你的iPod Touch 2G用按鍵調成DFU模式,別讓iTunes啟動!
6)開始rslite。 把官方的iBSS從2.1.1送出:!iBSS211.dfu
7)再次開始rslite。 把redsn0w-lite包送出:#pwn211ibss.txt
8)從2.2.1送出打了包的iBSS:!iBSS221pwn.dfu
9)用你的自制固件2.2.1ipsw使用iTunes做一個完全恢復
受限制的啟動
在安裝完畢後,你的ipt2g得在一部相應的電腦的輔助下才能啟動。在這個readme.txt裡提到的方法要求你進入DFU模式,但是你應該能找到(或者自己做出)別的更方便的方法。
10)重複步驟5-8
11)從2.2.1送出打了包的iBoot:!iBoot221pwn.img3
你的壁紙將會很快顯現。 然後你就可以打開iTunes了。
原文:
redsn0w lite
by the iPhone Dev Team
http://blog.iphone-dev.org
A no frills tethered jailbreak for iPod Touch 2G
-----------------------------------------------------------------------------
--> YOU WILL VERY LIKELY VOID YOUR WARRANTY BY USING THIS <--
This is to be used only at your own risk.
We do not accept any responsibility for any damage that this tool may help
you cause to any of your equipment.
--> USE AT YOUR OWN RISK!!!!! <--
-----------------------------------------------------------------------------
WE WILL BE PROVIDING ABSOLUTELY NO SUPPORT FOR THIS!!!!!
If you post comments on our blog looking for support, we reserve the
right to ban your user ID from the blog. You really shouldn't be doing
this unless you understand it all enough to not need support!
-----------------------------------------------------------------------------
THIS IS A ***** TETHERED ***** JAILBREAK
IF YOU DON'T KNOW EXACTLY WHAT THAT MEANS, DON'T USE THIS!
There are many ways to do this. Here's one way that will probably
work for you. If it doesn't, please don't come to use for support.
We're working on an untethered version.
This is for Mac only. But you should be able to find (or work out
on your own) how to do it on Windows or Linux too.
-----------------------------------------------------------------------------
rslite
-----------------------------------------------------------------------------
This is an interface to the DFU and Recovery modes of the device. It
requires you to have librickrb installed on your Mac.
Due to buggy interaction between librickrb and the Apple device, any output
that is long gets all chewed up. But if you stick to just the "!" and
the "#" commands, you won't notice. We don't normally use this tool
but it's a lot easier to distribute and compile than the GUI we use.
The "!" (exclamation point, no quotes when you use it) sends a file.
The "#" (pound sign, no quotes when you use it) sends a script.
In both cases, you name the file right after the symbol.
-----------------------------------------------------------------------------
Basic instructions
-----------------------------------------------------------------------------
Note: these are the bare bones instructions. Please don't come to us
looking for more detailed instructions.
Preparation
1) Copy the FirmwareBundles and CustomPackages directories into
your PwnageTool.app/Contents/Resources directory
2) Create a custom 2.2.1 ipsw with PwnageTool in Advanced mode. Don't
enable custom boot logos.
3) From your custom 2.2.1 ipsw, extract these (patched) files:
iBSS.n72ap.RELEASE.dfu (name it iBSS221pwn.dfu)
iBoot.n72ap.RELEASE.img3 (name it iBoot221pwn.img3)
4) From the official 2.1.1 ipsw, extract this (unpatched) file:
iBSS.n72ap.RELEASE.dfu (name it iBSS211.dfu)
Installing the jailbroken custom ipsw
5) Put your ipt2g into DFU mode using keypresses. Don't have iTunes running!
6) Start rslite. Send the official iBSS from 2.1.1: !iBSS211.dfu
7) Start rslite again. Send the redsn0w-lite patch: #pwn211ibss.txt
8) Send the patched iBSS from 2.2.1: !iBSS221pwn.dfu
9) Use iTunes to do a full restore using your custom 2.2.1 ipsw
Tethered boot
After the install, your ipt2g will not be bootable without assistance
from a tethered computer. The method in this README.txt requires you
to go into DFU mode, but you should be able to find (or work out on
your own) other more convenient ways.
10) Repeat steps 5-8
11) Send the patched iBoot from 2.2.1: !iBoot221pwn.img3
Your homescreen should soon show up. You can then start iTunes.
http://apple.tgbus.com/news/hack/200902/20090201093709_2.shtml
留言列表