#nathanlr

1 messages · Page 49 of 1

cunning shoal
#

But you're saying a kernel exploit is childs play compared to the TrollStore bug

#

Which is not true at all

#

Also at this point it will probably be a kernel exploit that does give us an install method

stone wraith
#

iboot exploit childs play compared to kernel exploit troll

cunning shoal
#

But then again, what would I know about CoreTrust exploits

stone wraith
#

if youre interested

cunning shoal
#

Sure

stone wraith
#

but in order to do that

#

we first need to understand metric rooms

cursive mortar
#

is this the fugu19 exploit

stone wraith
#

and in what relation they are to the banach rooms

#

and how we can then use that information in order to determine if a function is continuous in that metric room

proven sage
atomic bane
#

anyone ever had a pairing problem with jitterbug?

proven sage
#

Now that there's no way to get to 17.0, I'm waiting to see. Maybe with a bit of luck there'll be a new TS bug on 17.2 or 3 or 4

cunning shoal
#

True, but I wouldn’t count on it

tame pawn
cunning shoal
tame pawn
#

Oops. Nvm

cunning shoal
#

Not much more likely either

tame pawn
cunning shoal
#

Although probably more likely than TrollStore tbh

tame pawn
#

I’ll just wait and enjoy the new iPads coming out soon 👍🏻

tame pawn
tame pawn
cunning shoal
#

Not really

#

SideStore I guess

tame pawn
cunning shoal
#

There isn’t really another way

tame pawn
#

There might be a setup using esign and Xcode I’ll look into

glossy coyote
#

Google never released kexploit

#

Danm

abstract pelican
#

It's joever

devout stratus
wild belfry
#

Did they still not patch CT bug number 2 on 15.8.2

near osprey
#

no

cunning shoal
wild belfry
abstract pelican
steep kraken
#

i love emnity

cunning shoal
turbid portal
brisk dragon
#

<@&355174844205367317>

proud onyx
#

Mods don’t like this one move (they prefer that you only ping 1 of them)

turbid ridge
#

We don't like mod pings for situations that don't really need them like simple annoying comments or users

#

In that case, ping an online mod

stray flume
#

NO

#

NO PINGS

buoyant ore
#

if palera1n works in 17.4 does trollstore work too?

terse dune
#

Ipad Air 2 on 15.8.1. Trying to get kopen to work with TrollMisaka and when I click the kopen button couple seconds go by, screen flashes, and returns me to same screen (where I can click kopen again). I've tried clicking in 100 times, but the install trollstore is still greyed out

polar crystal
eager cape
cunning pond
#

i can install bootstrap with a sideloadly? bc i don’t have trollstore but i’m in ios 17 b4

ancient minnow
#

No

rocky bluff
proud onyx
#

@turbid ridge

#

Icraze for mod eta wen ??

#

Brah another one ?

buoyant ore
stone wraith
#

if you're not jailbroken, no

cyan wadi
#

Why discord made a feature that helps scammers

proud onyx
#

Bc they benefit from that fr nah actually idk they’re just dumb

cyan wadi
#

Also wen 17 install meth

#

eta tomorrow

proud onyx
#

And the one above too

cyan wadi
#

Bro upvoted in discord

rocky bluff
turbid ridge
#

Wait why was I in there? I went to sleep like 6hrs before

proud onyx
#

@sullen sail

oak grail
#

17.0 final installer ?

#

What’s latest

cunning shoal
#

Doesn’t exist

oak grail
#

lol well how long til it does

near osprey
#

it will be made at some point

glossy coyote
#

Is troll store able to be used on iphone 14 pro max ios 17.2.1?

cunning shoal
cunning shoal
nocturne parcel
#

16.7RC, 17.0RC, and 17.0b5 - 17.0 doesn’t have a install method yet

deft lichen
#

The only sad thing is that TrollStore supports version 17.0 but so far there is no way to install it. Are there any good news regarding a new exploit that can help us in installing TrollStore on an iPhone 15 Pro running on system 17.0?

deft lichen
# queen atlas nothing

I heard that exploiting CVE-2024-23208 cannot be used to install TrollStore on version 17.0 system, is this true?

young orchid
#

is trollstore working on iphone 12 pro max, ios 16.1 ?

#

also cant find the guide for it

queen atlas
young orchid
#

W

#

i checked the guide on pins but website was broken

queen atlas
young orchid
#

ty

queen atlas
#

np

tired kindle
#

there’s no way to use a device that has trollstore already to get it on a 17.0 device right? I have trollstore on my iphone 12 mini running 15.1.1 and my iphone 15 is running 17.0 just curious if that’s at all possible

abstract pelican
#

Man folks here are getting desperate

worn wren
#

i already have it but yall are lucky

#

also TS installation method means some form of a KRW, possibly serotonin support for 17.0

proud onyx
#

Or your var getting deleted fr

worn wren
#

💀

nocturne parcel
#

Let bomberfish cook

worn wren
#

hoping but not putting too much into it

stone wraith
#

catstore aaah behavior

cursive mortar
#

people believing that shit was funny as fuck

hard sparrow
worn wren
#

what happened with catstore?

#

also i'm not putting much stock into bomberfish rn since we don't have any details or description of a vulnerability being used

stone wraith
hard sparrow
#

they just made it up

worn wren
#

oh lmfao

hard sparrow
#

yeah for many it was clear from the start

worn wren
#

was CatStore before or after the CoreTrust vulnerability?

#

the second one that made 16-17 possible

hard sparrow
#

after

worn wren
#

so they had coretrust, and a mostly featured KRW

#

did an actual developer say they were working on it

hard sparrow
#

not a krw

worn wren
#

oh kfd wasn't out by then?

hard sparrow
#

landa was not

#

Again catstore wasn't real

worn wren
#

well ik that lol

hard sparrow
#

They just made it up so they could get attention and then shut it down early

#

and be as vague as possible

worn wren
#

oh okay

#

bomberfish actually has previous projects tho

#

and is pretty knowledgable

#

so we will see what happens

hard sparrow
#

Yeah bomberfish is an actual dev

#

Not a troll

#

They also work with MercuryWorkshop

hard sparrow
cursive mortar
deft lichen
proud onyx
#

Nah

deft lichen
# cunning shoal It's not true

What about exploiting CVE-2023-42942 is it useful for installing TrollStore on version 17.0 system?

https://jhftss.github.io/CVE-2023-42942-xpcroleaccountd-Root-Privilege-Escalation/

glossy coyote
cunning shoal
#

No

glossy coyote
#

Then?

cunning shoal
#

He just doesn't know what he's talking about

glossy coyote
#

So what he is trying to do isnt possible?

cunning shoal
#

Probably not

#

I highly doubt it will work

glossy coyote
#

Guess we’ll have to wait and see

deft lichen
rain pasture
#

Did iDB blindly trust him then?

hard sparrow
#

I mean it's not like bomberfish is a fake like whoever ran catstore

#

i don't think it's more that they're lying or scamming, probably actually that they don't know if this will work

cunning shoal
#

Now it’s gonna get out of hand

#

It’s highly likely that exploit doesn’t work on iOS

hard sparrow
cunning shoal
#

It was in all of them

hard sparrow
#

oh ok

cunning shoal
#

It’s now confirmed that it won’t work

#

Don’t get your hopes up lol

worn wren
glossy coyote
cursive mortar
#

100%

#

and youtubers

eager cape
#

“You have a feeling”?

hot pewter
#

No

cunning shoal
#

?

eager cape
cyan wadi
#

Can’t we use unix exploits for ios ?

cursive mortar
hot pewter
#

Why is this chat so dead

#

Ever since Rick gave away 10 dynamic stage license’s

near osprey
proud onyx
glossy coyote
#

Unix exploit?

hot pewter
#

Still a dead chat

#

Oh somehow I ended up in TrollStore what the fuck

queen atlas
#

<@&355174844205367317>

cyan wadi
#

I am sure we can

glossy coyote
#

wtf are people sending

dry crypt
#

The ones that say ‘50 dollar giveaway + phishing steam link’

glossy coyote
#

imagine getting ratted ;

#

smh

cyan wadi
#

Bro just disable links

#

Automod

tired narwhal
#

I'm trying to get the iPone calculator to work on my iPad. I tried repackaging Calculator.app from iOS 14 into an IPA and it installed through TrollStore, but it doesn't launch. Is the issue that it's not installed as a system app in the original directory (my Dopmaine JB is rootless) or is the old version the problem? (my iPad is on iOS 16.6)

cunning shoal
#

The Info.plist probably says iPhone-only

#

But check and see

tired narwhal
#

One second

#

What is the entry for that called?

#

"DTPlatformName" is set to "iphoneos"

nocturne parcel
#

But idk

cunning shoal
#

It’s called UIDevice soemthing

tired narwhal
#

i did that, remade the ipa, but it still doesn't launch

#

and i of course reinstalled the app

cunning shoal
#

Crash logs?

tired narwhal
hallow capeBOT
#
crashlogs
  • Upload a crashlog:
    Go to Settings -> Privacy -> Analytics and Improvements -> Analytics Data

Bottom-most log is the latest log for each app or panic

tired narwhal
queen atlas
#

that's about it

manic igloo
#

Anyone know how to use AppStore++ to download older versions of a new app?

#

via the TrollStore version. I’m on Dopamine 2.

flat quarry
#

download the app and then use AppStore++ to downgrade it

manic igloo
#

I can’t download the app, that’s the thing

#

Requires 16.7, I’m on 16.1.2

flat quarry
#

did it ever support 16.1.2?

manic igloo
#

But I have Taurine on my other iPhone (rootful) and using AppStore++ I can see that there’s a 15.8 version of that app

flat quarry
#

get the app onto your other device and then on your 16.1.2 device go to your purchases and download the app through there

manic igloo
#

The other device is 14.3, haha

#

That’s good advice, though

#

But even then, I don’t think it would let me download the older version of the app

#

Any working iOS spoofers for rootless? Maybe that would work…

flat quarry
#

try [[Checkmate, Store]]

#

hold on

#

try this

#

it should let you download the last compatible version without owning the app

manic igloo
#

Whoa, how old is this? Haha

#

iOS 2?

flat quarry
#

old. but it might work

manic igloo
#

For rootless?

flat quarry
#

you might have to use Derootifier to derootify the deb though

manic igloo
#

Yeah let’s try it

flat quarry
exotic ibex
manic igloo
#

Tried it - no cigar!

#

It’s the Webex app that I need. We use it for work, but it requires 16.7

#

I know there’s a 15.8 version - my rootful phone with 14.3 can see it using AppStore++

#

No way to have AppStore++ on rootless download apps that aren’t already installed?

flat quarry
#

do you have another device that supports the latest version of the app?

manic igloo
#

I may

#

How would I get it on the 16.1 though?

flat quarry
#

if you get the app on another device, it'll be linked to your Apple ID purchases, and it'll let you download the latest compatible version of the app on other devices

manic igloo
#

I’m going to give that a shot

#

Hopefully it’ll work! That doesn’t work if you’ve never downloaded the app before?

flat quarry
#

yeah - the tweak that I sent above was to make the app store download the latest compatible version without having to own the app but I guess it doesn't work on modern iOS

manic igloo
#

It worked!

#

I actually installed that Checkmate tweak on my iOS 14.3 device, and then retried a bunch of older versions of the app. That didn’t work before - but with the tweak, it worked

#

Downloaded it - then was able to download it on the 16.1 phone

#

Thank you @flat quarry !!

flat quarry
#

awesome!! glad it worked

violet kindle
#

any half decent locsims? been using trollbox but it sucks and i cba editing the code anymore shits hard

split laurel
#

how do I make my duplicated app show up in the settings?

steel jackal
violet kindle
#

are there any sims that let u simulate constant movement?

abstract pelican
violet kindle
abstract pelican
#

Just go take a walk for the love of god

#

View nature, and shit

#

Touch grass

violet kindle
#

i cant take a walk in new york city when im in england

abstract pelican
#

Then take a walk in England

violet kindle
#

why would i spoof in england

#

do u know a simulator that does movement or not man

glossy coyote
#

trollstore

abstract pelican
#

Why would you spoof?

glossy coyote
#

Oh i miss you so much

#

The fun times we had

violet kindle
#

(if anyone also knows if theres a way to compile ipas on windows without github lmk plz :[ )

glossy coyote
#

trollstar is trolling

#

i'll just sideload it using sideloadly

tribal badger
#

ew

smoky imp
mint aurora
#

Hello everyone, everything good?
Could anyone tell me an IPA of a taskiller for iOS 16.3.1?

cunning shoal
#

CocoaTop

mint aurora
# cunning shoal CocoaTop

Is there any way to kill several applications by pressing a button inside CocoTop or just manually?

#

just one at a time

glossy coyote
#

New update

tropic mantle
#

vnodebypass safe?

fleet verge
#

I'm going to lose trollstore im sure

stone wraith
fleet verge
#

I'm trying to find some kind of way to just restore the backup without erasing because I could've sworn I was able to do it before

stone wraith
#

restore from icloud

fleet verge
#

thats $10 a month that I don't have

#

also

#

apple started doing the thing where even system apps have to be redownloaded when you use "erase content and settings"

manic cave
#

oh wait are you on 17.0?

fleet verge
#

Yes

#

So much for doing a delayota

manic cave
#

hmm

#

@cunning shoal is there any apps that can be used as a persistence helper that won't be wiped on an erase all content and settings?

cunning shoal
#

Nothing for certain on all versions

#

I doubt most of them would be wiped?

fiery patio
#

Oh wow alfie is a mod now

#

Nice!

cunning shoal
#

Genius*

fiery patio
#

It gives mod perms so I mentioned mod lol

#

Yea genius role

glossy coyote
#

No news about 17.0?

fickle linden
#

Hey guys I have Trollstore and Bootstrap iPhone 14PM ios17. While I have tweaks injected into an app i can not update with the appstore, so in order to update I have to disable tweak injection on the app. The problem is I have quite a few apps I have injected now and dont want to have to toggle them all one at a time off -> update them -> toggle back on. Is there some way to mass disable bootstrap to update, then reenable all of them?

flat quarry
#

no

swift panther
#

hey guys dumb question is it possible to update trollstore in ios 17?

flat quarry
#

update TrollStore?

#

go to settings in TrollStore and there should be a button to update TrollStore

swift panther
#

i got trollstore on ios17 through the ios 16 and update to ios 17 keeping trollstore

#

but not sure updating trollstore will make me loose it in ios 17

stone wraith
#

it won't

obsidian mist
#

Do you need trollstore to use bootstrap?

glossy coyote
#

Yes

obsidian mist
#

:/

obsidian mist
near osprey
flat quarry
lapis sonnet
#

whats the new Trollstore update guys? Can I install it on my iPad Air 4 17.2 now?

manic cave
#

you've asked about this or a jailbreak like 500 times both here and in my X/Twitter replies

lapis sonnet
#

Oh Im so sr..

manic cave
#

there's basically nothing for a jailbreak at the moment on your version

#

and that probably won't change for a long time

unkempt sleet
#

Can't seem to download either trollstar or dopamine ipa because its blocked by defender, even with defender turned off, and when allowed through the notification, it disappears from the downloads folder. any ideas on how to get past this?

manic cave
#

you can toggle off Real Time Protection in the Windows Security app

neat imp
#

a12 when peepoCry

manic cave
fiery patio
timber veldt
#

<@&355174844205367317>

hoary frigate
#

Guys i need help. I want transfer WhatsApp chats from android to iphone (watusi3) which is install from trollstore.

visual star
#

Doesn’t WhatsApp have a built in thing for that

#

Yh

#

It’s

#

Settings>chats>move to android

crystal vessel
#

Is anyone know if I can install a ipk file compiled by myself via AltStore and using the exploits directly like trollstore can.

#

just an idea, because I am in ios17 and can not install trollstore for now.

stone wraith
#

idk what ur tryna do

#

but it doesn't make sense

hoary frigate
visual star
visual star
#

Like you couldn’t install cowabunga via altstore for instance

stone wraith
nocturne parcel
#

Just not use its features

#

Except maybe the respring button

stone wraith
#

but... you could

#

if you're on a compatible versiontrol

glossy coyote
#

Anyone know how to fix

hollow harbor
#

Hi all! Is there a TrollStore install method for iOS 17.0 yet? I’ve been out of the loop

proud onyx
#

Nope

#

Not yet

hollow harbor
#

Welp. Back to the shadows I go. See you in a month or something lol

misty moss
#

Trollstore skachat

#

Cartube

buoyant ore
proud onyx
#

Think so yeah

#

You have to find an exploit that lets you do that tho which hasn’t been found yet

buoyant ore
#

Found by google but thats it right?

stone wraith
hollow harbor
wild belfry
#

same

#

got it with the app switcher method

nocturne parcel
wild belfry
#

ur right

nocturne parcel
#

puaf_landa was patched in beta 5

molten cobalt
#

ty

proud onyx
#

@sullen sail

#

Tyy

tropic rain
#

Ios 17, had modified facebook app installed with trollstore, now trying to install official app from store and it wont install, always stuck on installing…anyways to fix that?

ashen granite
#

does the modified app have the same bundle ID as the app store one

#

if so then theres your issue

tropic rain
#

Ye but problem is i already deleted that modified and cant install that official…

#

Probably some files remaining somewhere and i need to delete them manualy…but how?

ashen granite
#

filza

tropic rain
#

Maybe u know in which folder i should search for app data?:D

#

Should i try to delete that folder?

subtle burrow
#

Hi. I’m new here. How do I install troll store on a unjailbroken iPad 14.3? Thank you

flat quarry
#

!t trollstore

#

hmm

hallow capeBOT
# flat quarry !t trollstore
trollstore

What is TrollStore?
TrollStore is a tool which abuses a CoreTrust bug in order to make it possible to permanently sign any app with any entitlements (push notifications, root permissions, etc.).

TrollStore supports iOS 14.0 - 16.6.1, as well as iOS 17.0, though some device/iOS combinations may not have a method to install TrollStore at this time.

For a guide on installing TrollStore, refer to https://ios.cfw.guide/installing-trollstore for specific guides based on your device and iOS version.

This is NOT your traditional jailbreak with tweaks and stuff, please bear in mind.

flat quarry
#

there we go

subtle burrow
#

When trying to dl helper there is no file

#

Sorry, when trying to download the helper ota file from the link nothing happens

#

A12 14.3 trollhelperOTA

flat quarry
#

are you using the arm64 or arm64e link?

subtle burrow
#

64e

ashen granite
tame pawn
#

So this update some things but not a whole lot of game changers🙃

noble shard
#

so is anyone working on a 17.0 install method or is it pretty much DOA

#

are there even any bugs to use

#

i'm so mad the fucking delayota app switcher method didn't work

#

people were so confident in the google exploit and then they didn't release anything

#

opa says there's zero vulns on 17.0 and honestly i'm inclined to believe him atp

oak grail
#

I used delay ota and have TrollStore on 17.0

#

Why did it fail I wonder

nocturne parcel
#

And then open TrollStore again from appswitcher after the update

#

Then install TrollHelper into tips

#

But this doesn’t work anymore

#

Because the CoreTrust bug was patched in 17.0.1

noble shard
oak grail
noble shard
#

Yes, it worked for most people but not everyone

#

In my case the update overwrote the Tips app and wiped the app switcher

#

The safer method was to set the Tips app to read only, but it was already too late

worn wren
#

...huh

#

im not sure exactly what this could mean

manic cave
#

gist of it is stay on 17.3.1 and earlier

worn wren
#

you'd need kernel read and write capability which is probably discovered with 41992

#

what would bypassing kernel memory protections mean for anything jailbreak wise?

#

:O

nocturne parcel
nocturne parcel
manic cave
#

something like each of the three bugs in kfd are krw for instances

nocturne parcel
manic cave
#

if the bugs are released and they are one of those Bypasses, they could be a step toward a jailbreak

nocturne parcel
worn wren
manic cave
#

this is 41992

#

41993 is just a WebKit bug

worn wren
#

Oh okay

#

But in order to use the new CVE you’d need kernel read write which we still don’t have

manic cave
#

here’s an example of what a krw bug could look like in Apple notes (these are from 17.0 notes and are of puaf_landa)

worn wren
#

I don’t think there’s too much hope tho

manic cave
#

I mean it’s more likely than a PPL/SPTM Bypass would be

worn wren
#

Well yeah

#

But if that other one is real, at least 17.0 betas will have something

noble shard
#

isn't an SPTM bypass needed to install trollstore too?

queen atlas
#

I don't think so

worn wren
#

Nope, just kernel read write

manic cave
noble shard
#

ah

#

and 17.0 is vulnerable to 41992?

#

i know 16.7 came after it

manic cave
#

yes

noble shard
#

oh 41992 is the one that google didn't release any details on

#

yeah idk if i have a lot of hope for that one

#

oh hmm, ig it depends on whether you view the report as a technical deep dive or not

cunning shoal
#

Lots of people mistook it as that

#

It was a completely different report lol

noble shard
#

is the speculation then that a report is eventually coming

#

ik their disclosure policy says they reserve the right to push back or forwards their timeline

cunning shoal
#

I feel like they’re saving it for a conference or something

noble shard
#

wonder if something happened

#

interesting

cunning shoal
#

Or it’s just taking longer than expected to figure out the chain

glossy coyote
#

CVE-2024-23225 is a ppl?

stone wraith
#

maybe

#

possibly

nocturne parcel
oak grail
#

What you guys talkin about here

#

We getting installer on 17.0?

flat quarry
#

I wish

oak grail
#

Darn

nocturne parcel
oak grail
#

I see

nocturne parcel
#

The second thing is a kernel exploit capable of kernel read and write

oak grail
#

But I don’t need full jb

#

Just TrollStore and im at peace

#

Im@already set but my wife patiently stuck on 17.0 final

#

Without TrollStore

#

I have it on 17.0 and it’s ideal

nocturne parcel
oak grail
#

Nice

nocturne parcel
#

But I updated it from iOS 16 on purpose

#

Because I want to test new exploits and stuff in the future

#

And I never use it anyways

timber veldt
nocturne parcel
timber veldt
#

Yeah I was wondering if that's the only piece that was left for a potential jb, thanks

nocturne parcel
#

@timber veldt

timber veldt
nocturne parcel
#

As it has a kernel exploit

#

(puaf_landa)

#

Nothing else would be required

cyan wadi
#

What can we do on normal 17

flat quarry
#

wait for an install method

dreamy walrus
#

Does trollstore work on 15.8.2?

glossy coyote
stone wraith
#

the ppl bypass might require a pac bypass to work

#

which is super likely

dreamy walrus
glossy coyote
#

yes

hollow pagoda
#

Does anyone know tweak that can put picture next to the clock?

timber veldt
subtle burrow
timber veldt
#

<@&355174844205367317>

molten cobalt
timber veldt
#

Np

chilly spindle
#

I’m using Unc0ver to jb but cannot permanently sign apps. Can I use TrollMicass with Unc0ver or must remove Unc0ver ?

#

TrollMisaka

nocturne parcel
#

Since you are already jailbroken

#

The methods on cfw.guide are only for people without a jailbroken device

cunning shoal
#

Or its highly unlikely that it does not

stone wraith
cunning shoal
#

We don't know

#

It's entirely possible

latent parrot
#

The RTKit makes me think it is using a coprocessor for DMA write so it could bypass SPTM as well

timber veldt
#

<@&355174844205367317>

#

These are getting more and more common

cunning shoal
#

And the fact that it was only patched in 17 in RTKit

burnt cloud
wild belfry
#

Would an A15+ jailbreak on 17.0+ also require a TXM bypass to jailbreak it alongside an SPTM one?

stone wraith
#

txm is currently unclear

wild belfry
#

do we know at this point if it's a hardware component that went unused until 17.0 like SPTM is?

#

since TXM isn't present on A14-

stone wraith
#

!t pacppl

hallow capeBOT
# stone wraith !t pacppl
pacppl

PAC/PPL bypasses

Back in iOS 14 and below, you could jailbreak with just a kernel exploit. However, in iOS 15, Apple introduced new mitigations that meant for A12+ devices, you need more than one exploit for a jailbreak.

Kernel exploit
A kernel exploit allows you to read and write to kernel memory. On A11 and below, this is enough to become root, unsandbox yourself, and have a full jailbreak. On A12+ (for reasons mentioned further down) this is only enough to overwrite files

PPL bypass
PPL (page protection layer) is a system that ensures that you can’t write to important data structures with just kernel memory read and write. In iOS 15.2, Apple put the ucred structure behind PPL, which stores information about a process’s privilege level, sandbox and entitlements. Thus, you need a PPL bypass in order to have a jailbreak, as you need to be able to unsandbox yourself and gain root privileges.

PAC bypass
PAC (pointer authentication codes) is a system in which pointers (which are ‘addresses’ to areas of memory) are cryptographically signed, meaning that you can’t manually overwrite pointer values. Its job is to ensure that everything is executed in the order that it was intended to be, and that an attacker can’t arbitrarily call a function in the kernel for their advantage. With a PAC bypass, you can get around this requirement, and can (for example) call an arbitrary kernel function (also known as the ability to kcall). While a PAC bypass is not required, a lot of PPL bypasses require kcall to be exploited, and thus need a PAC bypass.

SPTM/TXM
With the release of iOS 17, PPL was completely replaced on A15+ devices (excluding M1/M2 iPads). SPTM (secure page table monitor) and TXM (trusted execution monitor) are two new components which, together, provide a stronger replacement for PPL. SPTM will most likely require a bypass for jailbreaks, and for TXM it’s currently unclear as to whether this needs a bypass. A12-A14 and M1/M2 devices still have PPL in iOS 17.

It’s important to note that both PAC and PPL were introduced in A12, hence why A11 and below require just a kernel exploit to jailbreak.

wild belfry
#

ooh ty

gaunt sierra
#

How to download ios 17.3.1

oak quail
gaunt sierra
oak quail
gaunt sierra
#

Nah

oak quail
#

yeah click on it

#

mindblowing

#

i knoiw

gaunt sierra
#

no i mean trollstore ios 17.3.1:)

still quarry
#

and never will be

gaunt sierra
#

Real ?

still quarry
#

!t trollstore

hallow capeBOT
# still quarry !t trollstore
trollstore

What is TrollStore?
TrollStore is a tool which abuses a CoreTrust bug in order to make it possible to permanently sign any app with any entitlements (push notifications, root permissions, etc.).

TrollStore supports iOS 14.0 - 16.6.1, as well as iOS 17.0, though some device/iOS combinations may not have a method to install TrollStore at this time.

For a guide on installing TrollStore, refer to https://ios.cfw.guide/installing-trollstore for specific guides based on your device and iOS version.

This is NOT your traditional jailbreak with tweaks and stuff, please bear in mind.

still quarry
#

read

#

and you will know

gaunt sierra
#

So if I jailbreak, can I download it?

proud onyx
#

Which iOS ?

gaunt sierra
#

17.3.1

still quarry
#

You can't even jailbreak

proud onyx
still quarry
#

Unless checkm8 ipad

gaunt sierra
#

._.

#

I want to downgrade iOS 😦

proud onyx
#

You can’t

still quarry
proud onyx
#

Just maybeeeeeee

rigid glen
#

Hey, I’m trying to download trollhelper and it says the app cannot be installed because its integrity could not be verified. Anyone know a solution for this? Trying to download dopamine

rigid glen
# hard sparrow ios version?

iPhone 7 15.8.1. I’ve been following the guide to use side loadly and install trollmisaka, then I get stuck on the kopen. It won’t successfully install trollstore.

stone wraith
#

jailbreak with palera1n

hard sparrow
stone wraith
#

or that

rigid glen
#

So I can skip trollmisaka and trollstore and just side load dopamine directly? Why is the guide so complicated then 😂

cunning shoal
#

Dopamine is recommended to be used via TrollStore

#

If you’re on a beta or preinstalled version, it must be installed via TrollStore

#

And installing with TrollStore has extra benefits (e.g. being able to update inside the app)

glossy coyote
#

Kernel write?

cunning shoal
#

It seems so

#

Probably an out of bounds write or something

glossy coyote
#

Hi Alfie

cunning shoal
#

Hello

glossy coyote
#

Is possible to use this to install the trollstore? And would we need a kernel read too?

near osprey
#

probably can’t be used for an install method

cunning shoal
#

Highly unlikely that it will lead to anything

near osprey
#

(like most CVEs listed)

sacred halo
cunning shoal
#

Sure

sacred halo
#

Why is it recommended to use trollstore?

#

For dopamine

sacred halo
#

Other than that

cunning shoal
#

It works offline

glossy coyote
#

Every time an exploit comes out, it’s never useful

#

Danm

cunning shoal
#

No exploits have come out

#

A vulnerability is not an exploit

hard sparrow
#

Maybe I have to be jailbroken first

#

oh ok

cunning shoal
#

It will support beta firmwares soon™️

cursive mortar
#

is this a libgrabkernel2 reference

cunning shoal
fleet basalt
#

troll store is pretty cool. even if it's not a jb

stone wraith
#

<@&355174844205367317>

glossy coyote
cyan wadi
#

wow

#

every day i lose hope getting ts2 in 17 before 2025

cunning shoal
#

e.g. kernel exploit

cunning shoal
cyan wadi
cunning shoal
#

Wdym

cyan wadi
#

i mean what languge do you write code for iphone to run

cunning shoal
#

Swift, C, ObjC

cyan wadi
#

i can write an exploit with swift ?

#

what is that like print hello world

cunning shoal
#

You can write it in either of them

#

C is easiest

proud onyx
#

#include <stdio.h>
int main() {
// printf() displays the string inside quotation
printf("Hello, World!");
return 0;
}

cyan wadi
glossy coyote
#

i cant wait for ios 17.0 trollstore methodd!!!

cunning shoal
glossy coyote
cunning shoal
queen atlas
tiny crow
tame pawn
tiny crow
severe garnet
#

you guys need to stop being so hopeless

#

things take time

#

the more you complain

#

the longer it’ll take

#

be as patient as you can and stop thinking about it until it comes out

abstract pelican
#

Yes, let him cook

cunning shoal
#

Who is ‘him’ hm

glossy coyote
timber veldt
#

<@&355174844205367317>

buoyant ore
#

Is someone actually working on it?

cunning shoal
#

Working on what

#

Oh

#

No

#

No one is

#

Except iCraze

cursive mortar
#

icraze is making dopamine 7.0 to sell more copies of rune

cunning shoal
#

If only it wasn’t so overpriced WTFAHHHHHH

hoary frigate
#

Is there any tweak to clear all notification with one tap?

fiery patio
sour leaf
#

Can anyone help me install troll store?

glossy coyote
manic cave
jolly fjord
#

Nerd

fiery patio
jolly fjord
#

😔

fiery patio
#

Ios doesnt even have notification history like android

#

So they will be gone FOREVER

jolly fjord
hallow capeBOT
#
Senri

Never lose your Notifications again.

Author

Antoine

Version

1.1

Price

$1.49

Repo
Bundle ID

com.antoine.senri

fiery patio
sour leaf
flat grove
nocturne parcel
#

CoreTrust v3 supershocked

#

AppleMobileFileIntegrity manages the Code Signing on the device if you didn’t know

cunning shoal
#

AMFI is separate

nocturne parcel
ashen granite
#

womp womp

stone wraith
#

it would mention bypass signature checks or smt like that

still quarry
#

<@&355174844205367317>

proud onyx
#

Mf got hacked 😭

glossy coyote
fiery patio
stone wraith
cunning shoal
glossy coyote
#

S oAMFI “come before” CoreTrust?

grizzled fractal
#

Where can i get some trollstore ipa’s

abstract pelican
maiden flax
fiery patio
stone wraith
#

(im not counting betas)

fiery patio
stone wraith
#

theres no point in counting betas

#

no one is on 17.0b5

#

or 6 7 8

fiery patio
#

So there are 6 versions with no install method

stone wraith
#

take it as you want

#

they all have the same kernel

#

so its all the same version

near osprey
grizzled fractal
glossy coyote
#

Are AMFI and CT separate paths that lead to the valid signature?

near osprey
#

CT will always verify something however

#

it’s first in the chain

#

if CT returns a valid appstore signature however then amfi validation is skipped

#

CT (success) -> appstore certificate (yes) -> signed

or

CT -> appstore signed (no) -> amfi check -> signed

stone wraith
#

what would a cd hash exploit look like

near osprey
#

this is an incredibly simplified version of the process

near osprey
stone wraith
#

yeah but you could just skip coretrust completely with it

near osprey
#

earlier than that

#

you could (presumably) just directly add to trustcache

glossy coyote
#

So if we got EMFI bypass we need CT yet?

light temple
#

i see in the install guide for trollstar that it might take a couple tries, but ive done the install to tips option like 4 times, rebooting after every time

#

and i still do not see "install trollstore" in the tips app, unless its under a subsection i cant see

#

someone help pls 🙏

hard sparrow
#

is it just the tips app? it should look completely different

light temple
hard sparrow
#

you're on ios 14.4?

light temple
#

trying it again for the 5th time

#

i havent updated my name tag

#

im on A16 16.4

light temple
hard sparrow
#

and you tap respring to apply after installing to tips?

light temple
#

Yes

hard sparrow
hard sparrow
light temple
light temple
near osprey
hard sparrow
cunning shoal
#

Unless you can somehow break the code that literally takes the CDHash, matches it against a KTRR-protected trustcache value, and then approves it

cunning shoal
#

Well it depends which part of AMFI

cunning shoal
#

amfid is also unused on iOS 16 afaik

#

It goes AMFI (trustcache) -> CoreTrust -> back to AMFI iirc

#

Assuming it’s not App Store signed

flat quarry
#

amfi bad

#

how dare apple protect their operating system

stone wraith
#

fr

#

unlock bootloader

flat quarry
#

oem unlock for apple devices

#

openiboot

#

android 15 on iphone

oak grail
#

What we talking about here

near osprey
#

apple trollage

real cedar
#

did anyone find a method for 17.0?

stone wraith
glossy coyote
#

i can’t delete apps for some reason

#

i can’t download any from the App Store either

#

doesn’t work when i respiring, only works when i hard reset my phone

cunning shoal
stone wraith
cunning shoal
#

No

pine isle
#

@cunning shoal jailbreak rutfull on ios 16.6.1 A12?

stone wraith
#

throw your phone with maximum velocity against the wall

#

and it'll rutfull jailbreak

pine isle
stone wraith
#

its already out

#

smash your phone with a hammer

strong venture
#

my ios 14.6 keep rebooting when i tried to install trollstore by misaka. it happen after i press "Kopen". any one know about the issue?

wooden storm
#

where can I find the guide for 16.6 ?

flat quarry
wooden storm
#

Can I turn off developer mode after installation is done ?

flat quarry
#

no

wooden storm
#

So after rebooting 4 times ,
-Install TrollStore Helper to Tips : Done
-Tap Respring to Apply : Done

-Now when I launch tips it crashes , it refuses to open

edit:A Reboot fixed the issue .

#

I can't find "Install Trollstore" Inside the tips app ?

simple carbon
#

Do you fully reboot? If so, you need to run helper again

wooden storm
simple carbon
#

Nothing you can really do, try until it works

#

Unless you have arm64 (A11-) device

wooden storm
#

Sorry , How do I check that ?

simple carbon
#

IPhone X or older

wooden storm
#

its an XSmax

flat quarry
#

XS max is A12

#

arm64e

wooden storm
#

Okay , Ill uninstall Tips, and try again

#

Okay great , the store has been installed . Now how do I get apps (safer way or source)

#

Can I remove this ?

#

Can I ask somthing regarding an app or is it agianst Server's rules ?

#

I installed trollstore just to get an app called RP Hypertrophy , Is it even available through trollstore ?

#

anyhow , thank you all for your assistance today !

cunning shoal
mortal comet
#

trollstore on ios 17.0.2? 😔

flat quarry
#

no

mortal comet
#

i want to jailbreak but i can’t 😭

blissful jolt
#

Why my Trollstore keeps getting unsigned? Happened twice recently. Installed via trollstorehelper. Dopamine and all apps installed won’t launch. Can’t rejailbreak!

#

15.7.8 on iPhone 6S

#

Dopamine

#

It’s grayed out

neat imp
blissful jolt
#

Dafuq?

near osprey
#

or rather, did you install a persistence helper to begin with?

haughty beacon
#

I just downloaded the trollstore on my ipad 6gen ios 17.0.3 jailbroke with palrae1n and i dont understand how it is used . It is all empty can anyone tell .

safe siren
#

Trollstore support ios 16.7.2 iPhone x?

#

+no jaillbreak

flat quarry
#

no

nocturne parcel
#

Just not arm64e iOS/iPadOS 17 currently

mortal comet
#

i don’t have an ipad 😕

glossy coyote
stone wraith
#

then it won't be empty

haughty beacon
#

U mean ipa

#

Installer type

stone wraith
#

yes

#

that's the point of trollstore

strong venture
#

i'm following all the steps in the instructions, but whenever i hit "install trollstore", my device is rebooted.

cunning shoal
#

You just need to keep trying

strong venture
#

i swear i rebooted my phone since it 100% battery until it dead :v

cunning shoal
#

Alternatively you can jailbreak with checkra1n/Taurine, install TrollStore helper and then restore rootfs (TrollStore will be retained)

strong venture
#

i think i gonna try it, due to i dont want to rejailbreak everytime my phone reboot 😦

steel jackal
#

Dafuq?

strong venture
#

is there any full instruction for this? since my iphone 7 ios 14.6 keep rebooting when i tried to install via misaka

stone wraith
strong venture
stone wraith
strong venture
#

i did, now can i retry to restore rootfs?

small turtle
#

TrollStore is a jailbreak?🤣🤣🤣

cunning shoal
#

No

echo nacelle
#

The biggest jailbreak ever

small turtle
#

🤣🤣🤣

snow depot
#

uh im tryna install trollstore on my iphone 6s+ ios 14.7.1 using trollstore ota but the "gta car tracker" keeps crashing

west venture
#

what else can u do with trollstore other than signing ipas

cunning shoal
hallow capeBOT
cunning shoal
#

Considering that’s the whole purpose of TrollStore, not much else

snow depot
cunning shoal
#

Follow the guide

nocturne parcel
#

Also TrollStore can give almost any entitlement if requested

#

This lead to many TrollStore Tweaks

oak grail
#

Installer for 17?

flat quarry
#

no

nocturne parcel
#

But also other apps requires it such as PojavLauncher to run the Java version of Minecraft

#

Or LiveContainer to run unsigned apps (which is only useful if you are on iOS 14 - 16 with SideStore)

blissful jolt
blissful jolt
#

K, I’m in! Jb’ed w palera1n, installed TS helper/persistence helper/TrollStore. Then Dopamine. Refreshed app signing. Hopefully it will stick now. 🙂

violet bane
#

Can i get rid of Home bar on iOS 16.6.1?

blissful jolt
#

So palera1n rootless and dopamine aren't interchangeable? I jb'ed with palera1n and all my dopamine installed tweaks were not there? Bummer. (They returned when I re-jb with dopamine.)

blissful jolt
#

Yeah, no. They both use procursus though? Must install to different directories? 🤷🏻‍♂️

hard sparrow
#

But the bootstrap is the same

#

Either way they weren't meant to be interchangeable

blissful jolt
#

Guess they're not like checkra1n, taurine which are interchangeable.

hard sparrow
#

I don't recall those being interchangeable either?

#

I'm not sure to be honest

blissful jolt
#

Most deff they are. I use them interchangeably on ios 14.8

hard sparrow
#

Palera1n and meowbrek2 are interchangeable and that's based on Dopamine 1

#

So I'm not sure

blissful jolt
#

Yeah, ckra1n, Taurine are fully rooted so makes more sense.

blissful jolt
glossy coyote
#

i think palera1n and dopamine use different preboot directory prefixes

cunning shoal
#

They do

#

No

#

Don’t do this

glossy coyote
#

why's that

#

same bootstrap?

#

what would go wrong

cunning shoal
#

libroot

glossy coyote
#

bruh

cunning shoal
#

Dopamine-specific packages

#

When i tried it it wouldn’t boot

glossy coyote
odd brook
#

trollstore 17.4 ?

maiden flax
buoyant ore
#

is torrenting possible without jailbreak?

cursive mortar
#

you just need to sideload

cunning shoal
buoyant ore
buoyant ore
#

nvm just tried an older version and got it installed

echo nacelle
cunning shoal
#

Yeah but it won’t happen a third time

flat quarry
#

apple dropping the 3rd coretrust bug:

echo nacelle
#

They did like major changes to ct in 17.4 like the biggest since 14

#

Idk I’m just coping that I accidentally updated

near osprey
#

you’d have to be on 17.4b1

echo nacelle
#

I’m on 17.4

near osprey
#

even if there were potential exploits

#

they would’ve fixed them before pushing 17.4 final

echo nacelle
#

I’ll just like wait 5 years for a jailbreak

echo nacelle
near osprey
#

what if apple forgot to patch checkm8 in A17 trol

cunning shoal
#

Still unlikely to happen

cunning shoal
echo nacelle
#

I’m seriously contemplating just selling my iPhone and buying a refurbished 13 for 70 bucks more and keep sending them back until I find one with iOS 16.5 troll

near osprey
cunning shoal
near osprey
#

i thought A13 did?

#

or is it only in iBoot

cunning shoal
#

Only iBoot on A13

manic cave
glossy coyote
#

Is a fire

#

That bloom

near osprey
cunning shoal
zinc plank
#

@cunning shoal Hi Alfie, tell me, will we ever get TrollStore for versions above 17.0 ?
We're more likely to get a jailbreak than a TrollStore ?

cunning shoal
#

No

#

More likely you’ll get a jailbreak

#

!t trollstorestatus

hallow capeBOT
# cunning shoal !t trollstorestatus
trollstorestatus

TrollStore was recently updated to add support for iOS 15.5 - 16.6.1, as well as iOS 17.0. These will likely be the last versions for which TrollStore will ever gain support.

CoreTrust bugs do not come around often (there have only been two that we know of since iOS 14 - TrollStore isn’t actually possible on iOS 13 and below) and as TrollStore relies on such a bug, it is the only way TrollStore could support newer versions.

Do not expect TrollStore to EVER be updated with newer version support. It is highly unlikely to happen.

Furthermore, there is no active development ongoing with regards to an iOS 17.0 installation method. Please do not ask for a status update or an ETA.

zinc plank
#

Thank's you

stone wraith
#

like !tsstatus

cunning shoal
#

No

stone wraith
cunning shoal
#

Okay

stone wraith
#

thank you

echo nacelle
cunning shoal
#

At least it will actually happen

#

TrollStore 3.0 will NEVER happen

glossy coyote
#

lol

#

But if we got jb we can use TS

#

So

cunning shoal
#

Yeah but it’s pointless

#

Although I heard @frosty eagle is making good progress on a 17.0 install method

narrow valve
narrow valve
glossy coyote
#

is this the only discord hub for trollstore or is there a separate discord server?

echo nacelle
stone wraith
echo nacelle
#

what if they left a third bug in in ios 14

stone wraith
cunning shoal
#

To the discord server?

stone wraith
#

duh

cunning shoal
#

I see

buoyant ore
stone wraith
distant ridge
#

Help how do I fix error already jailbroken

nocturne parcel
stone wraith
#

the error

#

is literally what he said

#

because he uses taurine

glossy coyote
cunning shoal
#

Well yes

cyan wadi
#

There a 17 meth ?

near osprey
#

no

nocturne parcel
#

For arm64 devices you can jailbreak it and install TrollHelper via Sileo

mortal comet
rocky bluff
stone wraith
#

so you dont have to use 5 shitty ones

cunning shoal
hard sparrow
#

thanks Alfie

cunning shoal
#

👍

toxic marsh
#

Would “WDBFontOverwrite” work on kfd devices ios 16.6

cunning shoal
#

No

toxic marsh
#

Anything similar for trollstore 2 or naah ?

cunning shoal
#

Serotonin?

ancient minnow
#

Is there a deb ,like a filza that I can inject into a app?

hollow pagoda
#

Why there is zip file in githubs instead of ipa

near osprey
#

you have to install it using some other tool

hollow pagoda
#

I already have trollstore

near osprey
#

okay