#development

1 messages · Page 30 of 1

wind ravine
#

wait should it be the same exact size?

#

maybe add blank characters if the user inputs less

#

it is

#

but when its less it gets corrupted

primal perch
hasty ruin
#

also doesn't the exploit only let you write a certain number of bits until one gets cut off?

wind ravine
#

not the one im using

#

it just doesnt write if its too big

ocean raptor
#

Oh lol, I forgot about this, I'll push soon™️

timid furnace
wind ravine
#

the file itself?

timid furnace
#

yea, before you edit it and after you edit it

wind ravine
#

enmity wont let me use share menu ae

#

that is weird

#

i cant grab the file

#

it just reverts back to the backup right as i export it

#

well i have another similar corrupted file that had the same thing happen

tepid olive
#

since untethered downgrades are possible with blackbird, would we still need blobs?

#

dumb question

#

idfk anything about the bootloader

faint timber
hasty ruin
#

RGH 3?

#

if so, very based

faint stag
faint timber
tepid olive
faint timber
#

Untethered downgrade with blackbird literally implies valid blobs, ap still checks blobs

#

The untethered part is just downgrading sepos which isn’t even possible on all socs

#

Hasn’t even been done yet publicly

faint stag
#

even if you have the sep exploit itself, how does one expect to use it without access to SEP
this means running code before boot when SEP initializes

tepid olive
#

sig told me blackbird was patched in like A14 or A15 or A16

#

i see though

faint stag
#

yes, but the 2nd point still stands

#

there's no way to use it

faint timber
#

the worst soldering known to humankind

brazen timber
#

is that a pico

primal perch
#

it says pico so probablynfr

brazen timber
#

oh

#

im blind

faint timber
#

nand dump success

lime pivot
#

oh nand dump I see

hasty ruin
#

rgh3 is so inconsistent with that

#

can be instaboot or could cycle for 10 minutes fr

faint timber
hasty ruin
#

Luck

#

Can’t really tweak it like you can with rgh2

#

bc no glitch chip

faint timber
#

Can the pico be used as a glitch chip

hasty ruin
#

The whole point of rgh3 is to get the console to glitch itself

#

So I’m not sure

grim sparrow
#

@lime pivot did you have any success in contacting Xina about changing his patch to rpath trolling?

#

I got left on delivered

grim sparrow
restive ether
#

what's rpath he says

grim sparrow
#

Wouldn’t surprise me in the slightest

pearl sail
#

I think we should collective do meth when a Xina issue arises. I know we all most likely OD within the hour, but it would be fun

hasty ruin
pearl sail
hasty ruin
restive ether
#

true...

pearl sail
#

very based and true

gusty wagon
#

How do I pass the opened URL into my ContentView?

unkempt raft
vivid dew
unkempt raft
primal perch
unkempt raft
turbid fjord
#

Now he has no excuse to hate on us troll

unkempt raft
zenith hatch
#

@unkempt raft

unkempt raft
zenith hatch
#

oh

#

anyways the only good thing about objc is the objc runtime and private headers

tepid olive
#

It’s slow

zenith hatch
#

i agree but nsclassfromstring

#

and other stuff from objc too

primal perch
#

objc dynamic dispatch is awesome makes RE easy

timid furnace
hasty ruin
primal perch
blazing vault
hasty ruin
indigo peak
#

@native dune 1 binary down 💀 10 to go

#

wtf discord changed which side the favorite button is on

#

why

hasty ruin
#

Trolled

#

only the underaged ones*

indigo peak
#

why is it on the right now

indigo peak
#

go fuck yourself clyde

cloud yacht
#

@zenith moth moment

indigo peak
#

it was the easy one too

primal perch
#

@tepid olive

#

joe

#

rare capt W

pearl sail
#

true very rare

zenith hatch
#

true

gentle grove
noble zodiac
#

If anyone there wants a full tutorial about how to convert a mp3 file to an Apple charging sound for MacDirtyCow here is a full tutorial that I wrote in a pull request. I don’t know if it’s helpful for anyone :
https://github.com/leminlimez/Cowabunga/pull/19

zenith hatch
#

@spice egret stop being everywhere

spice egret
#

Don’t need caf

#

iOS isn’t stupid and won’t try playing it as a caf

#

It’ll detect it’s an m4a and happily play it

#

File magic

faint stag
#

whar

spice egret
#

It won’t try playing the m4a as a caf

faint stag
#

ohh

noble zodiac
spice egret
indigo peak
tepid olive
#

very dumb question but

#

we definitely need a bootROM exploit to utilize a SEP exploit right

pearl sail
#

yeah

lime pivot
ocean raptor
#

Cock. balls even

primal perch
#

Cock. balls even

indigo peak
faint stag
#

Cause dev role

lime pivot
#

oh because of the weird home thing

#

that consistently never shows me anything useful

restive ether
#

that no one has ever used

#

or ever will use

lime pivot
#

I'm forced to use it because it occasionally decides to ignore my last selected channel and open that instead

gusty wagon
#

discord make a good chat platform (impossible)

#

(xmpp WINS!)

tepid olive
#

use accord

gusty wagon
#

The data couldn't be read because it is missing.

tepid olive
gusty wagon
#

no not at all

gusty wagon
indigo peak
#

@native dune besides checkm8, what's preventing palera1n from running on windows

tepid olive
#

use King, the windows checkm8 in C

blazing vault
#

why do you need to specify that the dev is a furry

gusty wagon
#

i am using accord now though

indigo peak
#

if youre joking ok

tepid olive
#

i am

#

google it

gusty wagon
#

acting up a bit, but otherwise nice

tepid olive
#

King checkm8 github

tepid olive
#

so

gusty wagon
#

my messages are not appearing when i send them

#

sometimes

tepid olive
#

true

gusty wagon
#

hmm

#

if i can make something that's not a virus with swiftui, maybe i can make this even better?

tepid olive
#

ellekit is easier to work on than accord and ellekit literally runs in launchd

gusty wagon
#

is launchd not nice to work with? oh you mean in launchd

hasty ruin
elder scaffold
#

palera1n will use pongoOS, so to run it on windows we will need to use the tools prohibited here troll

indigo peak
#

@tepid olive i cant build on windows using its format

gusty wagon
#

step 1

#

@tepid olive since the reply didn't work for some reason

indigo peak
#

@tepid olive do yk if king works w amd on windows

gusty wagon
#

wow ok more things are broken than i thought

timid furnace
#

although idk if that works on amd either

indigo peak
#

it doesnt

timid furnace
#

rip

#

king also uses libusb

#

so it probably doesn't work either

#

idk

faint stag
#

though yes, swapping drivers is no fun

timid furnace
indigo peak
#

hmmmm

timid furnace
#

are libusb and libusbK actually different

#

bruh

faint stag
#

yes

indigo peak
#

i can use ubuntu

timid furnace
#

top 10 naming

indigo peak
#

its just i dont have an intel cpu

faint stag
timid furnace
indigo peak
#

wdym by that

timid furnace
#

usb controllers

indigo peak
timid furnace
#

great

#

try both

indigo peak
#

im assuming one host is the back and the other is the front

timid furnace
#

not exactly

faint stag
# timid furnace top 10 naming

libusbK is a Windows only project which provides a new set of API for Windows (supporting WinUSB, libusb0)
libusbK is a superset of libusb

hmm

timid furnace
#

alright time to shill my own project

#

download windows.exe

#

open it

#

go to discover ports

#

you can figure out which ports are on which controller from there

hasty ruin
#

ratted my computer do not use

indigo peak
#
  #######################################################
 #                  Port Discovery                     #
#######################################################

AMD USB 3.10 eXtensible Host Controller - 1.10 (Microsoft) | USB 3.0 (XHCI) | 14 ports
  Port 1 | USB 3.0 | Type C - with switch (guessed)
  Port 2 | USB 3.0 | Type C - with switch (guessed)
  Port 3 | USB 3.0 | USB 3 Type A (guessed)
  Port 4 | USB 3.0 | USB 3 Type A (guessed)
  Port 5 | USB 2.0 | Type C - with switch (guessed)
  Port 6 | USB 2.0 | Type C - with switch (guessed)
  Port 7 | USB 2.0 | USB 3 Type A (guessed)
  Port 8 | USB 2.0 | USB 3 Type A (guessed)
  Port 9 | USB 2.0 | Type A (guessed)
  Port 10 | USB 2.0 | Type A (guessed)
    - CORSAIR Lighting Node CORE - operating at USB 1.1
  Port 11 | USB 2.0 | Type A (guessed)
  Port 12 | USB 2.0 | Type A (guessed)
  Port 13 | USB 2.0 | Type A (guessed)
    - ITE Device - operating at USB 1.1
  Port 14 | USB 2.0 | Internal (guessed)
    - USB2.0 Hub - operating at USB 2.0
      - Wired Gaming Mouse - operating at USB 1.1
      - SteelSeries Apex 5 - operating at USB 1.1
AMD USB 3.10 eXtensible Host Controller - 1.10 (Microsoft) | USB 3.0 (XHCI) | 8 ports
  Port 1 | USB 2.0 | USB 3 Type A (guessed)
  Port 2 | USB 2.0 | USB 3 Type A (guessed)
    - USB3.0 Hub - operating at USB 2.0
      - USB Audio Device - operating at USB 1.1
      - HD Web Camera - operating at USB 2.0
  Port 3 | USB 2.0 | USB 3 Type A (guessed)
  Port 4 | USB 2.0 | USB 3 Type A (guessed)
    - AT2020USB+ - operating at USB 1.1
  Port 5 | USB 3.0 | USB 3 Type A (guessed)
  Port 6 | USB 3.0 | USB 3 Type A (guessed)
  Port 7 | USB 3.0 | USB 3 Type A (guessed)
    - A7000 - operating at USB 3.0
  Port 8 | USB 3.0 | USB 3 Type A (guessed)
faint stag
#

wen eta devmgmt actually be a tree

timid furnace
#

633 computers ratted ✅

hasty ruin
timid furnace
timid furnace
faint stag
#

yeah that does sound easier than looking at traces on a motherboard troll

timid furnace
#

also what cpu and motherboard do you have

indigo peak
timid furnace
#

hmmmmmmmm

#

not the exact same cpu as mine so i can't guarantee whether it'll work or not

#

but the CPU ports work for me, which should be the 8-port controller

indigo peak
timid furnace
#

i have no computers that

  • can run windows
  • are bearable to use
  • not my desktop
  • have enough space

to run linux on

#

so linux support gets worked on one day of the month

indigo peak
timid furnace
#

but probably

indigo peak
#

i think i tried that already

faint stag
timid furnace
#

but for just the tree view part? you can use lsusb -t (kinda mid) or that one GUI usb viewer that parses sysfs

indigo peak
#

doesnt actually make any progress

timid furnace
#

palera1n? have you tried just solely running gaster

indigo peak
#

how do i do that

timid furnace
#

run find . -name gaster in the palera1n dir

#

find the path that has linux in it

#

then run ./path/to/gaster pwn

indigo peak
#
./binaries/Linux/gaster
./ramdisk/Linux/gaster
timid furnace
#

yea both are the same

indigo peak
#

does the device need to be in dfu mode

#

or recovery

#

or normal

timid furnace
#

dfu

faint stag
#

Dfu

indigo peak
#
usb_timeout: 5
[libusb] Waiting for the USB handle with VID: 0x5AC, PID: 0x1227
timid furnace
#

both controllers do that?

faint stag
#

That's the DFU wait
Not detected L

timid furnace
#

is that the entire output

indigo peak
#

yes

lime pivot
timid furnace
#

is it actually in dfu

indigo peak
#

yes

lime pivot
#

all of them

#

well I lied

hasty ruin
#

mommyboard

faint stag
lime pivot
#

for some reason my server ITX board doesn't despite that it's only a year older than my main ATX board

#

and both are Gigabyte AM4

timid furnace
#

idk i have never heard of motherboard vendors doing that

indigo peak
timid furnace
#

mine don't

indigo peak
#

it does

faint stag
#

bro what

lime pivot
#

who is your motherboard vendor

timid furnace
#

asrock

#

probably why

lime pivot
#

there's your problem

timid furnace
faint stag
#

Not a bad idea considering linux

indigo peak
#

tried w and without

timid furnace
#

i hate computers

lime pivot
timid furnace
lime pivot
#

ok I thought it indicated which exact ports they went to but oh well. it mostly gives you an idea of it all

faint stag
#

It helps a lot tho

indigo peak
#

YOOO

#

I GOT SOMETHIGN

#
Found the USB handle.
Stage: SPRAY```
faint stag
#

I think the controllers are just slow as we established already

indigo peak
#

@faint stag it needs to be on Bus 3 according to lsusb

faint stag
#

Bus 3 probably isn't a hub then

indigo peak
#

is it safe to ctrl c the gaster

faint stag
#

Yeah, doesn't hurt

indigo peak
#

alr i restarted it

#

stuck on Stage: SPRAY

faint stag
#

Expected

#

Other times it loops

indigo peak
#

so should i just keep trying ?

faint stag
#

You can

#

Just note that it's basically RNG cause of latency

#

That version of gaster should also take reset as an argument

#

Removed in a later version but idk why. Maybe the reset/cleanup is done automatically then

indigo peak
#

this is so weird

#

oh well, I’m throwing in the towel for tonight

#

I’ll take a crack at it tm

indigo peak
#

Bro I’m dumb

#

Next to my pc has been a pc with a intel cpu this whole time

brazen timber
lime pivot
woeful badge
ocean raptor
#

Yes?

#

Oh

ocean raptor
#

checkmate

ocean raptor
#

When I get home

gusty wagon
#

Procursus for Mac? That's a thing?

faint stag
#

There's a dist

#

Ofc, there's no official install method but i have a script

gusty wagon
#

i will make my own to improve my understanding of such things

faint stag
ocean raptor
#

Mac Procursus Install Instructions

curl -LO https://cameronkatri.com/zstd
Intel: curl -L https://apt.procurs.us/bootstraps/big_sur/bootstrap-darwin-amd64.tar.zst -o bootstrap.tar.zst
M1: curl -L https://apt.procurs.us/bootstraps/big_sur/bootstrap-darwin-arm64.tar.zst -o bootstrap.tar.zst
chmod +x zstd
./zstd -d bootstrap.tar.zst
sudo tar -xpkf bootstrap.tar -C /
printf 'export PATH="/opt/procursus/bin:/opt/procursus/sbin:/opt/procursus/games:$PATH"\nexport CPATH="$CPATH:/opt/procursus/include"\nexport LIBRARY_PATH="$LIBRARY_PATH:/opt/procursus/lib"\n' | sudo tee -a /etc/zshenv /etc/profile
export PATH="/opt/procursus/bin:/opt/procursus/sbin:/opt/procursus/games:$PATH"
export CPATH="$CPATH:/opt/procursus/include"
export LIBRARY_PATH="$LIBRARY_PATH:/opt/procursus/lib"
sudo apt update
sudo apt full-upgrade

Note: This is not a shell script but a set of commands to be run manually

#

THE BOOTSTRAP URLS ARE WRONG

gusty wagon
#

ok

faint stag
#

L

gusty wagon
faint stag
faint stag
blazing vault
#

If I were to make a shortcuts cli tool for iOS similar to the shortcuts cli tool on macOS (literally just a wrapper for a couple methods in WorkflowKit which also exist in iOS) would it be legal to try and copy the same args n stuff so any stuff dealing with the macOS cli tool would be the identical command for iOS

#

or would i need to have different args

cloud yacht
#

The arguments can be the same, just copying code is where things get legally wrong

wind ravine
#

what is causing the rdar?

#

is it only on ios 16?

faint stag
#

He doesn't want people installing it androidtroll

warped thicket
#

Anyone looked at MPAVRoutingController on >iOS15?

From everything I've found online this should work

guard let routingController = MPAVRoutingController() else {
            return
        }
        
        routingController.discoveryMode = 3
        
        self.timer = Timer.scheduledTimer(withTimeInterval: 1, repeats: true, block: { _ in
            routingController.updateAvailableRoutes()
            routingController.fetchAvailableRoutes { routes in
                for route in routes! {
                    NSLog("route: \(route.routeName!)")
                }
            }
        })```

For some reason only the iPhone's speaker shows up as an available route. When I then manually go connect to AirPlay it shows up in the list alongside the normal speaker until I disconnect. Doesn't seem to be the intended behaviour according to:

https://github.com/JustinYangJing/AirPlayTest/blob/ef719b2f5533f863e36aca7284842336c2cec041/AirPlayTest/AirPlayDeviceAutoSelect.m
https://stackoverflow.com/questions/38152763/passing-closures-to-private-apis
https://github.com/ginsudev/RouteConfigurator/blob/main/Tweak.x

Any ideas?
vale magnet
#

Can we use dirtycow to enable facetime audio on Chinese iphones ?

#

Someone can see globalize or facetimeenabler tweaks thats open sourced on github to know what they modify and then use santander on ios 16 🌝

rain falcon
#

@grave sparrow listen fucker

indigo peak
#

@grim sparrow so i tried reading the dave and busters card on aemulo

grim sparrow
#

what type is it

indigo peak
grim sparrow
#

oooooooooo

#

thats workable

#

with a bit of tom foolery I can emualte that

#

new aemulo should be able to

#

and dump the data

indigo peak
#

so there’s nothing I can do for it now

#

Just gotta wait?

grim sparrow
#

mhm

#

if you keep the card handy I can make a dump of it later

indigo peak
#

yeah sure

#

I’ll leave it on my desk

#

I don’t remember how many chips/tickets were on it tho

#

if that would make it easier to read the dump

#

But whenever you need me to test anything just lmk

#

Finally got a modern phone jailbroken

grim sparrow
#

it depends if they encrypt the tag or not I guess

#

with any luck it will just be a raw number in block 3 or something

indigo peak
#

prob is

#

well the chips are a float

#

Tickets are an int

#

if that helps at all

rain falcon
rain falcon
#

TRUE

ocean raptor
primal perch
#

legos

ocean raptor
primal perch
sour ruin
#

how do i commit code to my repo from MS VS 2022

gentle grove
#

git commit

#

git push

lime pivot
timid furnace
#

Anyone know how sandbox.kext checks entitlements

zenith hatch
#

throwback

oak wharf
#

btw is there any way to make an ios app on windows

undone nest
#

in a macos vm

#

otherwise no

oak wharf
#

is that too old

undone nest
#

idk tbh

hexed knot
#

And you have to be jailbroken

oak wharf
hexed knot
#

Yes

oak wharf
#

tell me the software i need to use

hexed knot
indigo peak
hexed knot
#

Is that one thing finally out

#

From kabir

indigo peak
#

@oak wharf
you can use a macos vm which is takes more setting up, but when it comes to the actual app development is probably the easiest one because you'll have access to xcode and the interface builder
you can also use WSL (what i use) to run theos, but it's a pain in the ass when it comes to the actual development because you have to create every piece of the app programmatically, but you get used to it after a while, and then just install using something like sideloadly

indigo peak
hexed knot
#

Fire

#

Still not getting back into ios dev though

indigo peak
#

understandable

#

@wind ravine in case you were still wondering, CircleSettings doesn't edit any system files, it uses hooks

wind ravine
#

then maybe im thinking of a different circle settings tweak

indigo peak
#
id __fastcall sub_7E08(void *a1)
{
  id v2; // x19
  double v3; // d2
  double v4; // d8
  id v5; // x0
  id v6; // x0
  double v7; // d0
  id v8; // x21
  double v9; // d2

  qword_8068();
  v2 = objc_msgSend(a1, "iconImageView");
  objc_msgSend(v2, "frame");
  v4 = v3;
  v5 = objc_msgSend(v2, "layer");
  if ( v4 <= 100.0 )
  {
    objc_msgSend(v5, "setMasksToBounds:", 1LL);
    v8 = objc_msgSend(v2, "layer");
    objc_msgSend(v2, "frame");
    v7 = v9 * 0.5;
    v6 = v8;
  }
  else
  {
    objc_msgSend(v5, "setMasksToBounds:", 0LL);
    v6 = objc_msgSend(v2, "layer");
    v7 = 0.0;
  }
  return objc_msgSend(v6, "setCornerRadius:", v7);
}
#

disassembled if you wanted ^

#

CircleSettings: [PSTableCell layoutSubviews]
CircleIcons: [PSTableCell _imageView]

wind ravine
#

so maybe not possible with dirtycow then

indigo peak
#

i have an idea

#

nvm

#

idea didnt work

glacial matrix
indigo peak
#

i used to write tweaks on my iPhone 8

#

i wrote this on my phone in my school's cafeteria

#

10 million iq

nimble parcel
tepid olive
#

💯

indigo peak
#

another 10/10 capt development spam guide

restive ether
#

dawg didn't even try this becuase plistbuddy does not exist

indigo peak
#

?

#

worked for me

ocean raptor
#

palera1n repo androidskull

restive ether
#

skull emoji

indigo peak
glacial matrix
#

Any chance of having this saved online publicly, without being “hidden” inside discord, like on a gist?

#

This and any guides here, that is

hasty ruin
#

no need, this server never loses all its channels or anything

grim sparrow
restive ether
#

didn't ask

hexed knot
glacial matrix
hexed knot
#

use my github website

#

fuck you too

wicked summit
#

git more like you should git some bitches

glacial matrix
wicked summit
#

--force

unkempt raft
indigo peak
glacial matrix
#

zip it

hasty ruin
#

rm -rf yourself

tepid olive
warped thicket
hasty ruin
#

git commit, right??

warped thicket
#

For some reason its just not working on a standalone ios app

tepid olive
#

i’ll send the code soon

warped thicket
#

thank you

tepid olive
#

haven’t used MPAVRoutingController tho

warped thicket
#

interesting do you remember what you used?

tepid olive
#

I used C apis I think

#

I don’t remember if they’re private

#

But obfuscating is easy so private apis don’t matter

hexed knot
indigo peak
#

5 line tweaks are the best tweaks, change my mind

#

like shit like this 🤌

ocean raptor
#

Literally @grave sparrow's dream

indigo peak
#

a tweak written in xml

restive ether
#

thanks for the nightmare fuel

tepid olive
indigo peak
#
<key>hook</key>
<string>FTDeviceSupport</string>
<key>method</key>
<string>callingSupported</string>
<key>returnType</key>
<string>bool</string>
restive ether
#

wtf

hexed knot
#

instance method

tepid olive
hasty ruin
indigo peak
#

yes

#

😄

hasty ruin
viral shard
#

where do they teach coding

ocean raptor
ocean raptor
hasty ruin
viral shard
#

tweaks/ making hacks and stuff

hexed knot
#

average 14 year old

ocean raptor
#

No way

#

That's gross

ocean raptor
#

@grave sparrow where is launchctl plist

primal perch
#

fr

viral shard
hexed knot
#

Omg really

ocean raptor
#

thats not what I asked

viral shard
#

whole mod menu with broken features

ocean raptor
#

bro that is so cool

#

he must be the king of the playground

hasty ruin
#

frfr

restive ether
#

king of the castle king of the castle

viral shard
hasty ruin
#

which yt tutorial did he copy it from

viral shard
#

he didnt copy

#

he made from scratch

ocean raptor
#

he is so awesome

#

the best

#

amazing

#

can I get his autograph????!!!! 🙏

hasty ruin
#

Cameron has a crush for him already

viral shard
tepid olive
#

skidded nn cheat

pearl sail
#

why should dogs listen trol

ocean raptor
#

why not

tepid olive
viral shard
#

but u gotta pay

tepid olive
#

oh

viral shard
#

and the prices are around $50-$300

tepid olive
#

danghb

viral shard
#

before everyone used to have one hack

tepid olive
#

dangg

viral shard
#

and they payed $700

tepid olive
#

dam

#

pay that shi for me

viral shard
#

the owner of the hack made like 500k

tepid olive
#

theres no free one?

viral shard
tepid olive
#

link

viral shard
#

but its just a editor

viral shard
#

u need scripts

tepid olive
#

oh

viral shard
#

you need scripts to inject

tepid olive
#

how do i get the scripts

viral shard
#

idk

tepid olive
#

😭

viral shard
#

theres none these days

#

and also

#

theres no point

#

cuz all the payed hacks are better

tepid olive
#

why

viral shard
#

and u are 100% gonna die

tepid olive
#

ok but

#

is there any less than 10$

viral shard
#

nope

tepid olive
#

20$

viral shard
#

i told u the lowest is $50

tepid olive
#

oh rightt

viral shard
#

they are high quality and have broken features

tepid olive
#

do u have an ark hack?

viral shard
#

i used to

#

i had fz

#

$120

#

my friend gave me

#

but i stopped playing

#

actually

#

there is one free which is good

#

but u need an app signer to donwload it

tepid olive
#

can i get the free

viral shard
tepid olive
#

ok

viral shard
#

but u need app signer

tepid olive
#

give me the app signer then

viral shard
#

gbox/boarsign or other stuff

viral shard
#

they need certificate

#

or just use sideloadly

tepid olive
#

if i use sideloadly

#

i will need to go on developer mode right

indigo peak
viral shard
#

acutally no

#

it depends

#

if u on ios 16 then u need

#

but if not then u dont

tepid olive
#

i am

viral shard
#

then u need to enebale developer mode

#

the signer which i used costed me $25 and lasted me a whole year without being revoked

tepid olive
#

oh danggg

restive ether
#

L

#

virgin activity

hexed knot
#

Why dont u invest some time into getting good

viral shard
#

or just learn to make hacks

#

and sell

hexed knot
#

i doubt someone who wont take time to play a game will take the time to learn how to code, learn how to reverse engineer, reverse engineer a game, learn to make hacks

viral shard
#

true

hasty ruin
tepid olive
#

is there a way u can get developer mode on ios 16 when u dont see it and without pc?

elder scaffold
#

sideload the application in some way

tepid olive
#

u got a way?

indigo peak
#

@native dune where's the source for

iBoot64Patcher
iBootpatch2
img4
iproxy
jq
sspass

so i can compile them myself

#

i have nothing better to do so im building all the binaries for aarch64

native dune
#

palera1n/iBoot64Patcher
palera1n/iBootpatch2
google img4lib
from libimobiledevice, i think alexia has a build dockerfile
google jq
google sshpass

#

you can ask @tepid olive for all the binaries btw

tepid olive
#

hi

#

i've been summoned

indigo peak
elder scaffold
#

I also want to know where the sshrd binary came from

primal perch
elder scaffold
#

*binaries

primal perch
faint stag
#

pzb is by tihmstar
iproxy is by libimobiledevice
gtar is well gnutar

elder scaffold
#

ah not

#

ssh.tar troll

faint stag
#

oh the bins

elder scaffold
#

bootstrap and binpack are from procursus but i don't know where the sshrd bins came from

restive ether
#

source

primal perch
#

source

cloud yacht
gentle grove
#

to be fair they only asked how to commit

faint stag
cloud yacht
#

to be fair, just running git commit errors with no changes added to commit

faint stag
#

i did tar and spotted binbag

#

so it's just a guess, but why else would binbag be there

native dune
#

I think it's modified ramiel ramdisk

#

early versions still had ramiel text in the motd

#

or something

grim sparrow
#

@native dune why is the python rewrite being cancelled for C

faint stag
tepid olive
restive ether
#

dog thats bash 3 wtf

#

noooo

grim sparrow
grim sparrow
#

for what benefit other than a higher barrier for entry

primal perch
#

RUST 🚀

grim sparrow
#

when all you're doing is just posix_spawning other processes it doesn't matter what you use to run it

primal perch
#

true

native dune
grim sparrow
#

for what gain

native dune
#

none

#

the gain is that I don't know C and I become useless to the team troll

primal perch
#

im the biggest c fan here and even i think that was dumb

native dune
#

I'm trying to learn c

grim sparrow
native dune
#

and my hours of work on perfecting the py rewrite are gone

grim sparrow
#

theres just like

#

no reason

#

other than incredible pettiness

faint stag
grim sparrow
#

technically Mineek does

#

I think

#

I think so

#

Honestly its hard to find an owner of a bash script comprised of lots of small excerpts from other scripts that just calls other programs

native dune
#

yes

primal perch
#

100% gonna be some leaks

grim sparrow
primal perch
#

porno

native dune
silver rampart
#

balls

native dune
#

ball

grim sparrow
restive ether
#

the average jailbreaker experience tbh

primal perch
#

balls

indigo peak
#

@steady nest my lawyer would like to inform you that i don't know if im doing this correct

steady nest
#

if it didn't work, he's correct

#

my lawyer says the client of your lawyer doesn't know how to use google

indigo peak
#

me (the client) tried google, but i (the client) couldn't find anything about what your lawyer was talking about

steady nest
#

my lawyer is saying that due to security reasons, he can't help you with such matters

indigo peak
#

but by trc is

steady nest
#

my lawyer says to try the other way to use hookf

indigo peak
#

my lawyer has suggested that me (his client) is dumb

#

i (the client) did the other %hookf, and it still doesn't log

steady nest
#

"_Sec..."

hasty ruin
#

my lawyer said you're all nerds

indigo peak
#

@grave sparrow this doesn't decrypt for me

#

it just generates an ipa w a encrypted binary

#

i think it works now

#

the app just crashes on launch

#

its prob sideload detection

wicked summit
#

captappdecrypt malware

ocean raptor
#

use iOS 16 sdk

#

Xcode 14 works on monterey no?

#

remember: 1:1 compatibility

restive ether
#

dog doesn't use xcodes

ocean raptor
#

no?

#

load the mach-o

#

get a pointer to __TEXT.__info_plist, pass to xpc_create_from_plist

#

then pass that xpc_object_t to launchctl_print_whatever

#

umm it doesn't work on macOS you know...

#

maybe just remove the ldid call from the makefile monkashrug

restive ether
#

my balls are so big

#

untrue, ask your mother

#

she calls me the horse

ocean raptor
#

launchctl_xpc_object_print(plist, NULL, 0)

#

the decl is in launchctl.h, the impl is in xpc_helper.c

#

what's different?

#

Mach-O is bogus

#

you don't have to copy every error message, but any error messages you post should be the same as apple's

pearl sail
#

Who was on drugs when they gave you the dev role? ThonkDifferent

faint stag
pearl sail
#

Makes sense

ocean raptor
#

Cause it's unneeded...

#

launchctl has a very short life time

#

So I don't bother releasing any xpc objects

#

That's literally exactly how it works...

#

Bro

#

That's perfectly valid

#

Yes let me just call free/xpc_release a ton of times right before returning instead of just letting XNU handle it all for me after the prog exits

#

./launchctl plist ./launchctl trolllaugh

#

I think

#

Does ./launchctl plist __TEXT.__config /sbin/launchd work?

#

Also, feel free to turn on arc, you'll probably have to annotate all the launchctl_ functions so that the proper references are tracked

#

The the private xpc function args

#

Don't

#

I'll turn on arc

#

Ask ida, I'm not at my computer trol

tepid olive
#

Binja_KC so nice - the boost dependency is gone

#

also wtf iOS 16 kcache's are semi-symbolicated now?

ocean raptor
#

Sounds good, thank you 🙏

#

There's lots of duplicated code, so I'm gonna clean stuff up into some functions but otherwise it looks good, thank you for doing the heavy lifting for me

spice egret
#

imagine wanting attention so badly you link your telegram and twitter in #development of all places

#

Honestly your "snapshot" tweak has already been made at least 20 times

rigid lava
#

i just wanna know if someone has issues with my tweak so i can dix them asap but ok

rigid lava
tepid olive
#

there have definitely been tweaks that do the exact same thing before

hasty ruin
tepid olive
#

😭😭😭

#

nooooo

#

not the banning tweak “that doesn’t inject into snapchat”

hasty ruin
#
__int64 InitFunc_0() {
  Class Class; // x0
  Class = objc_getClass("NSNotificationCenter");
  return MSHookMessageEx(Class, "addObserver:selector:name:object:", sub_7F20, &qword_8038);
}```
#

one hook

woeful badge
#

account ban moment

tepid olive
#

☠️

#

this is when they realized what was wrong with the tweak and removed the paypal link to avoid backlash

#

i remember now

grim sparrow
#

I simply told them to stop selling something that will ban you

#

why

#

dont worry

#

I have 12 hours to finish my essay

#

and I just spent an hour learning to play the little piano built into the cad software

#

💀

#

not really

#

i havent used storyboard in yonks

#

what you've just described could be done in like

#

10 minutes of code

#

5 maybe

#

how on earth

#

what you've just described would work fine in catalyst

ocean raptor
#

Just use SwiftUI

#

I hear that's the cool new thing

grim sparrow
#

figure.surfing

tepid olive
grim sparrow
#

yes

#

it was $0.99 iirc

#

for yonks

tepid olive
#

99 cents for 4 hooks and a banned snapchat account

restive ether
#

seems like a win

grim sparrow
#

have you seen this?

tepid olive
restive ether
#

🗿

grim sparrow
#

omg omg it was published on my birthday!

ocean raptor
grim sparrow
#

u r not getting boob pics

grim sparrow
#

or you could like

#

not

ocean raptor
#

You know you can look at boobs for free on the internet

hexed knot
#

giggity

primal perch
#

TRUMP

faint stag
#

capt loves asking people for boobs

primal perch
#

fr

sturdy chasm
#

anyone know a working cask for openssl 1.0

faint stag
sturdy chasm
#

Old software

faint stag
#

just compile it with support for 1.1 then

#

smh

sturdy chasm
#

smh no because I’m not compiling xpwn

#

it barely works anyways

faint stag
sturdy chasm
#

true, but I only really need dmg

#

since reimagine exists

faint stag
sturdy chasm
#

so you don’t know a working cask

#

thanks ig

faint timber
sturdy chasm
#

guess someone already made a fork, thanks @faint timber

faint timber
#

Nice rock you live under?

sturdy chasm
#

honestly probably

faint timber
#

Safari is on crack today

sturdy chasm
#

alright, anyone know a working command to compile xpwn

#

i've tried using install.py and cmake, but eventually nothing works

faint stag
#

man

faint stag
sturdy chasm
#

man

#

thank you

faint stag
#

but that's not all ofc

#

you need to pass some stuff to cmake for openssl3 to work

#

as you know it won't be found by default with macOS + brew

#

brew warns you about this too

sturdy chasm
#

yeah i noticed

#

well, turns out I had openssl 1.0 after all

#

and all the tools work properly now

#

thanks

versed wasp
#

If I make something funny on a Swift Playground, to export the IPA, I need to send the swift package to a Mac and export with Xcode right?

wicked summit
#

afaik you can't really create an app with Playgrounds

#

an IPA is really just a zip file

#

with a certain structure

primal perch
#

arm

wicked summit
#

I am going to develop a new computer architecture

#

LEG

indigo peak
#

and then instead of Mach-O, you’ll have LEG-O and get a cease and desist from Lego

wicked summit
#

Leggo my eggo

faint timber
#

Mach-O
FTL-O
KNOT-O

wicked summit
#

New architecture ORE

#

Executable ORE-O

#

New architecture MEXIC

#

Executable MEXIC-O

#

New architecture PED

#

Executable PED-O

faint stag
#

yulky

wicked summit
#

yes

pearl sail
#

what was wrong with your car?

hasty ruin
#

L

pearl sail
#

Ah unfortunate lemme know if you need a Little Boy to come in and fix it

#

Fat man is for nagasaki

wicked summit
#

fukushima

spice egret
hexed knot
#

nagasaki is a good place

karmic dirge
#

question abt reverse Engineering online / server sided games
would it be possible to claim rewards on said games without even opening the game?
or can't the login be replicated => which makes the post req claiming the reward invalid

tepid olive
primal perch
tepid olive
#

@faint timber

#

i forgot to reply

tepid olive
primal perch
#

democrat virus

#

on god

native delta
faint stag
native delta
plain egret
#

I just used palera1n and have been out of the scene for a while. I want to use this phone as a dev machine so would like to do everything over ssh

But when running apt update its complaining about:

W: GPG error: https://strap.palera.in iphoneos-arm64/1900 InRelease: The following signatures couldn't be verified because the public key is not available: NO_PUBKEY 3D1B28A5FACCB53B
E: The repository 'https://strap.palera.in iphoneos-arm64/1900 InRelease' is not signed.
N: Updating from such a repository can't be done securely, and is therefore disabled by default.
N: See apt-secure(8) manpage for repository creation and user configuration details.
#

i can just use -o Acquire::AllowInsecureRepositories=true but I'd rather fix it properly

warped thicket
faint stag
plain egret
#

What do u mean by that?

#

I’d prefer not using insecure channels

undone nest
#

you can just pull it in from somewhere

#

no idea why it isn't doing that automatically

#

gpg --recv-keys 0x3D1B28A5FACCB53B

#

@plain egret

plain egret
#

Will try that tomorrow. Thanks!

undone nest
#

np.

#

if that doesn't work you can also try gpg --keyserver hkps://keyserver.ubuntu.com:443 --recv-keys 0x3D1B28A5FACCB53B

tepid olive
warped thicket
#

thank you!

tepid olive
#

@warped thicket

undone nest
tepid olive
#

the apple picker hardly works

warped thicket
#

Yeah I just need to get the routes probably, I'm trying to auto initiate screen mirroring

warped thicket
#

Hmm @tepid olive still having the same issue

#

So weird because it does show up

#

I set MRMediaRemoteSetRouteDiscoveryMode(3) too

zenith hatch
#

gm

warped thicket
#

In the syslog

Jan 16 12:08:33 SpringBoard(MediaRemote)[59] <Notice>: <MRAVConcreteRoutingDiscoverySession: 0x283aa9d00> (Audio| - Disabled) - Output devices changed
+ <MRAVConcreteOutputDevice:0x105cc17f0  "test" uid="48:5d:60:7c:ee:22" group_id="(null)" bluetooth_id=(null) type=AirPlay subtype=AppleTV AppleTV2,1>
  <MRAVConcreteOutputDevice:0x105cbd290 (local) "Speaker" uid="Speaker" group_id="72E137A4-47FA-4CE9-AF85-7F1C502FB0CD" bluetooth_id=(null) type=BuiltIn subtype=Speaker enc-prog-dl-assets fetch-sender-media-data opt-audio-ui>
#

It's there but the output from MRMediaRemoteCopyPickableRoutes is

[{
    AVAudioRouteName = Speaker;
    PortNumber = 171;
    RouteCurrentlyPicked = 1;
    RouteName = Speaker;
    RouteSupportsAudio = 1;
    RouteType = Default;
    RouteUID = Speaker;
    SupportsSharePlay = 1;
}]
tepid olive
#

make your own

#

it doesn’t work

warped thicket
#

@tepid olive no no

tepid olive
#

Oh i get it

warped thicket
#

I was just showing that on the device it does appear

tepid olive
#

Maybe iOS just requires entitlements

warped thicket
#

Right now I just have the code in the default view controller

tepid olive
#

This code worked on mac

#

Poke around and maybe you’ll get it

indigo peak
#

zsh: killed flexdecrypt

#
iPhone:~ mobile% ldid -e flexdecrypt
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
<plist version="1.0">
<dict>
        <key>com.apple.diagnosticd.diagnostic</key>
        <true/>
        <key>com.apple.frontboard.debugapplications</key>
        <true/>
        <key>com.apple.multitasking.termination</key>
        <true/>
        <key>com.apple.private.cs.debugger</key>
        <true/>
        <key>com.apple.private.security.no-sandbox</key>
        <true/>
        <key>com.apple.private.skip-library-validation</key>
        <true/>
        <key>com.apple.springboard.launchapplications</key>
        <true/>
        <key>dynamic-codesigning</key>
        <true/>
        <key>get-task-allow</key>
        <true/>
        <key>platform-application</key>
        <true/>
        <key>task_for_pid-allow</key>
        <true/>
</dict>
</plist>
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
<plist version="1.0">
<dict>
        <key>com.apple.diagnosticd.diagnostic</key>
        <true/>
        <key>com.apple.frontboard.debugapplications</key>
        <true/>
        <key>com.apple.multitasking.termination</key>
        <true/>
        <key>com.apple.private.cs.debugger</key>
        <true/>
        <key>com.apple.private.security.no-sandbox</key>
        <true/>
        <key>com.apple.private.skip-library-validation</key>
        <true/>
        <key>com.apple.springboard.launchapplications</key>
        <true/>
        <key>dynamic-codesigning</key>
        <true/>
        <key>get-task-allow</key>
        <true/>
        <key>platform-application</key>
        <true/>
        <key>task_for_pid-allow</key>
        <true/>
</dict>
</plist>
#

i think its bc its using entitlements that you cant use in iOS 15

#

im so smart

#
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
<plist version="1.0">
<dict>
        <key>com.apple.diagnosticd.diagnostic</key>
        <true/>
        <key>com.apple.frontboard.debugapplications</key>
        <true/>
        <key>com.apple.multitasking.termination</key>
        <true/>
        <key>com.apple.private.security.no-sandbox</key>
        <true/>
        <key>com.apple.springboard.launchapplications</key>
        <true/>
        <key>get-task-allow</key>
        <true/>
        <key>platform-application</key>
        <true/>
        <key>task_for_pid-allow</key>
        <true/>
</dict>
</plist>
#

idk if it actually runs or not

#

but the usage prints without killing

#

YAYAYYYY

#

it works

#

:)))

#

@grave sparrow your script works, but only if you resign with the entitlements if youre on iOS 15

#

no, it has entitlements

#

but the entitlements it has arent able to run on iOS 15

#

and flexdecrypt is signed with all 3 of them LOL

restive ether
#

I don't see why it needs dynamic codesign

indigo peak
restive ether
#

I'm pretty sure they just threw a ton of entitlements at the wall and hoped it stuck

indigo peak
#

like sideloadly installs it without saying that its an encrypted binary + ida doesnt recognize it as a encrypted binary

restive ether
#

which is not st all uncommon

indigo peak
#

the ipa install also launches

#

so its not encrypted

restive ether
#

don't think you need half of these

vivid dew
#

trolling

warped thicket
#

Will share the knowledge with all once I get my repo tidied up tomorrow

warped thicket
#

static too

indigo peak
#

mremap_encrypted requires krw

warped thicket
#

oh im stupid sorry

#

i didn't realise was just trollstore

indigo peak
#

and when it was made, there was no krw for trollstore

hasty ruin
#

he thought captware would work

indigo peak
#

bro

#

i was callign it

naive kraken
indigo peak
#

without the script

indigo peak
naive kraken
#

I mean you can always work on a project that spawns a jailbreakd daemon with krw access troll, but so far noone has done this (except for me on 15.1.1 but privately)

#

The problem is still if jbd dies for whatever reason, krw is gone

#

That's why I don't plan on releasing it, also it needs a bunch of offsets and shit and would only work on >= 15.1.1

indigo peak
#

so just make a call for krw check if it will error, and if it errors bc jailbreakd isn't launched, just reopen it

#

and if it fails more than x times in a y timeframe, just kill the task entirely

naive kraken
#

when krw is gone once, it's gone

indigo peak
#

ohh

#

got it

naive kraken
#

you'd need to rerun the exploit or whatever

indigo peak
#

yeah

naive kraken
#

which isn't feasible

#

also you need krw to even spawn the daemon

#

so app gets krw, gets CS_PLATFORIMIED, spawns daemon, hands off krw to it

#

tbh you could set it up in a way where you have jailbreakd and jailbreakd_backup

#

then when jbd crashes / restarts it gets back jbd from the backup process

#

and also the other way around

#

but idk if that's feasible

tepid olive
indigo peak
#

@pearl sail

#

yay

#

its like broken

#

kinda

#

but close enough

pearl sail
#

Nice

steady nest
#

What jbds have we got a source to? Meridian’s, electra’s modification of the first one, leaked unc0ver and fugu14?

#

The problem seems to stem from stable rw prims, sigh

tepid olive
ocean raptor
indigo peak
#

uicache: command not found

#

im ret

#

LOL

#

I RAN UICACHE NOT SSHED

gentle grove
faint stag
# indigo peak <@303547048953774090>

sh?

i mean, just find every info.plist in a .app folder or bundle dir and use plutil to get CFBundleIdentifier and the display name
to avoid writing to a file or something you can just send everything into two arrays
then if you want an alphabetical sort, just pipe it through sort with the appropriate delimiter and then print the headers, then the output of sort?

indigo peak
#

that’s what I was doing