#futurerestore-help
1 messages · Page 189 of 1
oh thats funny
rn I'm adding hashed serial to embed of FRGUI logs
so we can search easier but also not leave sensitive data at surface
ok yeah this is a liop
loop
tried booting with checkra1n and it goes to the recovery screen instead of the apple logo
ripbozo
what are you trying to do
@valid adder i think 13.7 is basically impossible with 14.6 SEP
Might leave FDR to find it’s message overnight
lol
why do only some FutureRestore logs have
INFO: device serial number is [Serial]
this is right at the beginning
oh only the ones where it detects a device maybe
ok now just waiting for the first log to come in with serial
woah fr
what version
weren;t you testing on A9
yes
the only difference was that you went to an iOS 13 version?
yes
or was 14.7 the difference
I think it might be target version then
yeah that was me lmao, i tried multiple times and even after it said restore succeeded it recovery looped so ig that shits broken
that's why I thought SEP was incompatible
It’s something else, there’s no way 13.4 SEP is fully compatible with 14.6 on A10-
you mean the other way
Ok added this so we can more easily search by a specific device
What’s the hashed serial composed of
sha-256 of the serial string turned into bytes
oh ok
what's the point of hashing isn't it already plaintext in the log
makes my screenshots have to censor one less thing
planning on censoring the ECID in the embed as well
Futurerestore work on iphone xs ?
yes
I want downgrade from 13.5 to lower
still wont work
he wants to go lower than 13.5
no
No way?
How ?
using FutureRestore
Any tutorial?
14.2 i can you sure?
50/50 chance
I will try lower
we should make !t 142fr
lower won’t work at all
14.3+ will work, 14.2 50/50, anything below that is not gonna work right now
With blobs not work on lower?
they won't work to go any lower
And newer will work?
yes
of course
Can you tell me why we need save blobs id futurerestor not work ?
nope we back
because otherwise the ios version is not trusted by apple
and the devices will reject it
@zealous bridge @celest basalt merged, fixing CI rn
seems like azure github actions no longer comes with zstd installed via brew
wack
ah i see

at least you got it
huh didnt it work
now im seeing if zstd exists
Ez free VM on GitHub actions:
- Install and enable SSH
- Sleep 999999999999
True

you also need to forward ports using ngrok or tunnelto
Wow are you someone who’s actually done that lol
yes
very useful actually
i used it for testing things on windows
it lasts up to 6 hours
@zealous bridge OwO
yay my school finally ended
congrats!!
rip lol
im so scared wth... it only used to bootloop once after userspace reboot now it just looped 3 times before booting
Im the sorta paranoid to do this, cuz I know itunes doesn't grab EVERYTHING, even on a stock phone.
Ive also seen lots of talk about 14.0.2 or (something before 14.3). Is there any reason to go to one of them over 14.3?
Not particularly
yes mostly
thank you
OTA you can only use with A11 or lower devices right now
iPSW (regular) blobs are better
thank you
Ota blob, tsssaver saves 2 versions
better to use the regular one
welp, i wish im where u are
i have 5 tests and 4 projects
due in 2 weeks
i believe in you
LOL
AHHHH
thank you both
oh im doing ab first
yeah
and i only know 2/3 of BC 
my school requires me to take ab first then bc
ah
lol change to ab exam
my school doesnt have ap, so im taking the exam under a different school
oh what no ap
canada
do you understand the definition of tmp and rewriting
isnt tmp just temporary files? it gets deleted at the end by the OS
oh with what
same with var, you can delete that to free up a lot of space
rewriting is just editing a file or rewriting over a deleted file
oh haha thanks
rewriting is kinda harder to explain
@green onyx temp commit so I can rewrite ci
meaing its in progress
that sounds silly
why not just make a github milestone or something
or github project
temporary commit
in the first place
I have literally no idea

there is nothing breaking it
it just is broken
so I blame brew
being shit
so am switching to procursus finally
gn!
gn
:(
because its not complete and the lines are done differently through procursus patch files
@green onyx damn its actually building rn
mfw
Now we’re are experiencing the classic Procursus errors
the ones where you update one tweak and it conflicts with its deps?
no
procursus is broken out of the box
you have to build deps twice for them to succeed
not surprised
@valid adder #842219114180247573 message this is why you don’t try to explain stuff to people
That’s only for A10 and below anyway
And with 14.2 SEP
reply
who the hell did you tag
OH
I thought it was the same guy
no it wasn't
two clowns in one github issue… what happens next
hopefully caching works this time
then I don't have to wait 30 minutes in between each test
@zealous bridge
a better thing to make a writeup for would be a fully 100% detailed writeup for delay OTA
delayed ota can be done externally every 3 days
but you need a device to generate bcert
SEP handles that process
bcert expires after 3 days
if you're downgrading SEP too
like if you're on 14.4 but with 14.5 SEP you can't delay OTA to 14.5
you can’t? How is that downgrading
SEP handling bcert has nothing to do with allowing downgrades...
bruh that's why people were failing to delay OTA to 14.3 remember
I’m pretty sure you could delay OTA to 14.3 with 14.3 SEP no?
they futurerestored to 14.2 or some shit with 14.4.x SEP
so it didn't work for them
oh true maybe that would work idk
Cause we said futurerestores after Jan 26
You still could use 14.3 SEP before that
I only successfully did 14.3->14.3 with 14.3 SEP
albert doesn’t give back the OIK for SEP to generate the bcert
Or do anything
Yeah that happens too ig, but albert happens before that in OTA
I never really looked other than bcert
I think because the OTA is actually signed we might not have sks skgs
there isn't any SEP panic at all there
because how would A11+ OTA to 14.3 work
for delayed OTA
cool
and IPSW doesn’t work
that was only because my blobs are OTA blobs, not because of 14.3
to 14.2 for example
it fails with every version in pwndfu
we need a11 seprom codeexec
not that

oh
i’m talking about FDR
to 14.2
it’s strange
the only difference apart from OTA and IPSW i can think of is that the former was actually signed
let me see if I can decode the panic using a12
I want to get Face ID working in my tweak but I have a lot to study ugh
5 exams left and I have 5 weeks to do them all
My exams are still in 4 weeks
It should?
All I remember is you have to fuck up the LLB and send it with an iTunes restore
Yes
DFU restore
When you delete iBoot?
what DFU loop
The only solution is to restore a working firmware.
You decoded it?
have to decode another sepos then
I know how to decode it but it requires a11 sepos keys
so 00 sep proto or seprom codeexec
funny thing we have both of those for a12
not a11
but I need the keys for the exact sepos being booted
@zealous bridge caching works so major W
Im not decoding sepos
pog
@valid adder this was the log on a wifi only iPad to 13.7, latest sep and no baseband
Result was a recovery loop iirc, Barry can you confirm
But yeah restore succeeded
I think they were already on 13.5 or something
We need barry to confirm
Wdym sigh
This might prove that SEP is incompatible
Isn’t the “mitigation” he’s talking about the FDR error
yo
YAY
Barry could you tell us what version you were on when you went to 13.7 and got restore succeeded
uh alright so
i believe i was on 13.6 and tried to go to 13.7 or i fr to 14.3 and then tried to go to 13.7
i believe 1st tho
A10 iPad
idk it just doesnt work
Ooh that's interesting
nop
Actually even thought they're A10 I think they got FDR error to 13.7 from 14.3
it used 14.4.2 sep not latest btw
oh and my other attempts of trying to go to 13.7 just end in fdr errors or just „device cant be restored“ or sum
well i got it to succeed once
but this damn recovery loop
If you verbose boot with checkra1n does it tell you anything different
Or youre not in recovery loop anymore right lol
lmao yeah not i aint
idk if i should retry
i tried booting with checkra1n once but after i placed it in dfu mode it just booted back to recovery when i got to the „Booting“ stage
Oh hm I don't think you need to retry
yeah ios 13 restores just dont work
and i think when ios 15 comes out all chances are getting terminated anyways
nop i didnt

If I use futurerestore to update to 14.5.1 then do I need to have iOS OTA Updates enabled in odyssey?
Also, is it the folder at the top I need for futurerestore? and then the ipsw I will get from ipsw.me
wait lol odyssey not even available for 14.5.1
whats available for 14.5.1? is it possible to go from A12 13.3 odyssey to 14.5.1 checkra1n with blobs using futurerestore? 👀
checkra1n doesn't support A12 and never will, but unc0ver/Taurine will likely be updated for 14.5.1 and below in a month or two, so you will be able to futurerestore with blobs then
I mean you can technically update now if you're ok with living without a jailbreak for 1-2 months, but I don't recommend it, unless SEP becomes incompatible (which will be announced) there is no rush to update
yeah i prefer to wait then i can’t live without jailbreak 😂
probably in the reddit
which am i supposed to download
thanks bro
that's outdated
thanks bro
does this work for 32 bit pc ??
uh, probably not, let me check
futurerestore-v194.exe: PE32+ executable (console) x86-64, for MS Windows
yeah it's 64-bit
compiling for Windows sounds like a pain (maybe ask @vocal sundial) but I can probably make a 32-bit Linux build for you if you don't mind booting a live USB
no thanks
i'll borrow my friend's computer
compiling for 32 bit windows shouldn't be that hard, pretty sure the only thing needed would be to replace x86-64 with i686 in this script https://github.com/opa334/futurerestore-compile-windows/blob/main/build.sh
oh can you run this without actually booting Windows
but idk I haven't tried cause that's not really worth my time anyways
unfortunately no
oh
I mean I have Windows just lazy
bc my main OS is Ubuntu now
anyway they're gonna use their friend's computer so I guess it's fine
idk maybe it could even be possible to compile from linux but I never tried
yeah there's barely any 32 bit only machines still out there
i586 i think
that's required for some 32 bit windows 7 machines
Pentium II
@zinc moon remember that guy you told to come here because he got to 14.1 on an iP12 mini
did you see his reply
ikr who would’ve thought
interesting how he saved blobs tho
lets you use OTA blobs on A11 and lower but you need a special FutureRestore binary as well
FR > Succession imo
makes you ignore sep incompatibility tho
ok what options i use for normal restore
wait and debug its ok ?
ok thanks
because when they release FR 205 or whatever im not going to update the GUI again
LOL
its amazing how many otions are there after 3 months of update
wait
didnt idevicemobile have stuff to get generator and apnonce?
of A12+
without jb
ah
gm
gm
gm
lol
And didn’t even tell anyone!
Might wanna check your forks
I’ll do that rn lol
Yeah don’t see anything
Maybe he just cloned and did it locally without pushing
But I’m suspicious now
Could be making it up
Did he provide any proof that what he did actually worked?
no
he’s a “dev that has 2 iphone 12 minis”
why would he need to show any proof

Lol yeah
If he did save blobs then he also knew about nonce freeze
otherwise he couldn’t’ve used the blobs
or just lucked out
nonce freeze is not new, it's known since 2018
love how his flair is his first gen SE when he has “two iPhone 12 minis”
ah
explains a lot
14.3
signed?
no lol
Modern’s exploit wasn’t a 0day
I’m guessing nonce freeze
nonce freeze is likely but based on his other "stories" on reddit, it's definitely bs
btw if i wanna go to 14.3 from 14.5.1 can i tick -u to save data or do i have to erase
oh
so i have to erase
did 14.5 broke -u?
break
or 14.5.1
rip
these recovery loops suck fuck
why don’t y’all have blur NSFW on by default
i do
Oh lol what was the warning then
@lilac wren what's "community questions"? 👀
they still might have nsfw titles
those aren't censored i dont think
Fair
oh something for school lol
supposed to be like reddit for students in a class
cool
!t odysseyn1x
Odysseyn1x allows you to use checkra1n and Odysseyra1n on Windows computers via live-booting. You will need a USB flash drive for this.
Tutorial
Download
[BalenaEtcher Video](#taurine message)
[Rufus Video](#jailbreak message)
ew don't use etcher
i find etcher to have a higher success rate than rufus
I use Ventoy
never heard of that, ill check it out
i use rufus
oh they don't have a compiled macos version :(
etcher never worked for me
i like usbimager cause literally the entire app is under 500 KB and extremely simple native interface
props to the guy that told me tho
this is a springboard

haha I love this
lol "spare"
I'm so happy finally got Java to become an HttpsServer
now maybe I can migrate log sending to https
Lol why are they so mad
Question, does the Windows store version of iTunes affect using futurerestore? Trying to go from 14.6 down to 14.3
Ok. Thank you! I futurerestored before, but reset my laptop and got the Windows store version.
make sure to completely uninstall the Windows store version before you do it
i actually complained about this a long long time ago

oh shit
same bro

@zinc moon @zealous bridge I at least know what changed to break a11
Not sure if it’s even bypassable
was it sep storage?
alright
are you sure you can’t even change recfg with checkm8
or the checks
or do you need seprom codeexec for that too - cause theres drivers for it in pongo
bruh I used cellular this whole day because I thought WiFi was down
I had enabled proxyman proxy enabled :|

bruh
shshd update
changelog?
nothing
just make sure that TSS Saver is actually working before sending the request
thats the only commit
I’m still so curious… factory-made iPhones aren’t IPSW restored or OTA updated… the iOS version just exists
trying to save onboards they aren’t IPSW, and they aren’t OTA either
It’s probably not even recfg
woah fr
thats super cool
what's in the blob then
is there a nonce
there has to be right
there is
It's probably ipsw erase but different
Like for beta it's called "Research iPSW erase" or something vs normal
So this one is probably called "Initial iPSW erase"
Or something
Doubt it's anything drastically different
someone should break into the apple factory and preload checkm8 onto all the devices
@soft turtle
Sorry guys if this is a noob question
but any way to determine whether iPhone is a GSM or Global
any MAc OS command
because ipsw.me shows that i have a iphone 7 olus global
where as its a GSm model
model # A1784
please
when i veruify my shshs2 blob in https://verify.shsh.host/
it shows gsm
yes
see these two
A1784 is listed as gsm
whre to get that
ar8x repo
then
ok
one moment
its a 9,4
then its a gsm
rght
ipsw.me is fucked
ok'
any other website
reliable 1 to check these
yeah lol
Learn how to identify your iPhone model by its model number and other details.
official apple support website, if you click on your device's tech specs it'll give you more details like gsm
9,3 is GSM
bruh we need one of those guys to get a fucking serial output
What is a serial output
Lol imagine this is boolean10
this
iPhone11,2 is not iP12 mini
Yes ofc
I don't think they do
Hold on
so it does work
i remember when people said "it 100% wont work, but 50/50 for 14.2"
or "14.1 will bootloop your device"
if its 50/50 for 14.2
its 50/50 for 14.1
No more like 1/99 for 14.1
it’s 14.2 —> 14.1
wtf
Oh fr?
judging by previous restores hes done
Same serial?
@lilac wren search for his pc username
same ECID
he went to 14.2 first then 14.1
idek anymore
It’s A12 as well
to?
Spanish
Found his blobs
He has them for 12.4.1 - 14.6
All saved with the weirdest generator
0x0afd3e2ee87078e1
Oh and ofc he doesn’t have 14.3 blobs
Only blob he doesn’t have
They’re all non-standard
Its not unc0ver or taurine
it’s always random
weird
not unless they manually provide details
What'd you expect lol
Isn’t that like
An invasion of privacy
@lilac wren lol he went to 14.2 today
Then he went to 14.1
12 hours apart
next update: FRGUI now gets location data so we can send mail to contact you
no
sounds like Facebook
Lol
dabezt knows java????? /s
oh i used nstask
i thought process was macos only
yeah that's why i used nstask
Lol you managed to do checkm8?

@lilac wren the log says that they are two different ECIDs but the filename is the same ECID
yeah
i think it was dabez
that said the log always shows some wack ecid number
that didn't correlate at all
the UUID is different too

weren't you the one who said barry isn't sus bc ecid was scrambled
ay yo quick question, I have a iphone 11, I have the apnonce and the gen, I have the blobs, how do I restore?
yes
the blobs are for 14.6 weirdly enough
!t fr
futurerestore
allows you to upgrade/downgrade/restore to unsigned iOS versions if you meet certain requirements.
use this guide
poggers thanks buds
it's literally linked in the guide
oh did they remove !t futurerestore
better bc the old tutorial was outdated
false```

Speak notification tweak crashes on my device
I'm trying to figure out this logic...
almost thought the coaster was a wireless charging pad and you were powering up a self-stirring mug
I don't own a macbook
but I have one in my room I borrow
I haven't used it once since i've talked to u tho lol
@zinc moon
@vivid nova its a shitty paper coaster that came with my mobo, the cups always stick to it
thanks asus
@zinc moon yep I haven't used it tho

yes
I've been a genius for 2-3 years
I've had a lot of that shit
I especially love it when they ping geniuses for "I need help"
@vivid nova I need help
Yes you do, mentally bish
o_O
I helped out your mom
or this
I've had pings of folks just saying gm

like this dumbass
tell 'em to point their complaints at me before i point my remote at their mom
blocked
discrise
Froggy uses lightmode and simps devs
I love cryptic
simp = suck
lol
!jumbo 
apparently not
🤮
Write a romantic piece about him just like you did here https://discord.com/channels/@me/846076962270347264/848806980469784586
Just like chocolate
*dark chocolate

very important my ass
No I work the next 3 days
Day 2 billion
To prove you have at least one friend
Or your sexy frog legs
No
hey guys. bit confused. is ios 14.7 compatible with ios 14.5?
yes
gm
is there an alternative to conan tsschecker
trying to use it for futurerestore but it seems to be down?
Do you mean tss saver
hockey also said it’s down
Down for me as well
hmm
told conan ab it
It’s back up
@zinc moon dabezt
@lilac wren @zinc moon @zealous bridge not sure if y’all heard but 14.5.1 delay OTA A14 was successful
Nice apple fixed it
Good apple finally got their shit together
up next: apple breaks M1

imo no
What about dumbasses who lack blobs
Or got their devices after the window closed
set generator without jb?
Probably use unc0ver then and will bootloop
Yes
/s
WAIT HOW
ez
WTF
ideviceinfo -k ApNonce
It sets generator to random just make sure it doesn't change
in "apnonce", u put ur generator right? not ur actual apnonce
Sets random generator that persists through everything except another generator set
oh shit
no you put the word “ApNonce”
ah
wait
does it change through reboots
untested on A12+
nah
pog
Isn’t A12+ where it is uh needed
Mobilegestalt?
It works fine on A12+

i don’t see why it wouldnt work
@lilac wren i thought you would test
Oh yeah
tbh, i thought u could set a specific generator lol
you said you would if i did something
on A12+
forgot whay
Well
without jb
I forgot too
just test 14.3 to 14.3 kekw
not without JB no
you can only tell the device to set a random generator and then query it
what if u pair that with -w
@green onyx oh did you see this
yes
idk hows hes going to put it in stock
like an app?
on the appstore?
idk

stock procursus
it’s gonna be in the bootstrap
it needs to be manually installed
ah
doesn't work that way
once you request nonce in normal mode, -w will always return the same nonce
oh rip
to fix that you either have to do nvram -d com.apple.System.boot-nonce (checkra1n) or do a restore/update
but then again nonce collision is useless on modern devices
On iOS 7.0-10.2.1 the nonce random number generator wasn’t so random it had collisions
Those collisions still exist in a7 dfu
yeah
I noticed that my generator has not changed yet and I have blobs saved for 14.5-14.6. I’m on 14.4 rn. If a jailbreak were to only come out for 14.5-14.6, would I be able to future restore as my generator has not changed?
Generator will change on reboot unless it’s frozen or manually set
Yeah you're good just stay away from OTA updates or normal mode restores
I think you mean AP Nonce will change in reboot unless generator is set?
Generator is always used
Generator changes too
Generator has to exist
it’s not in nvram but it’s still there
Because you can’t get the hash of thin air
Ok so when the guy says his generator has not changed
Apnonce is just the hash pre a12
Do you think he's reading his internal generator or something
I think he means his nvram generator lol
The one in nvram?
I don’t think he’s talking specifically in that guys case
Just in general if theres not one in nvram then there still is one just somewhere else
Yeah so if no generator is set, AP Nonce will change on reboot
correct
So yes
So I am good to go as long as I don’t let me phone reboot or die?
Did you save blobs with blobsaver 3?
Yeah
Then you can reboot just don't go near updates
Then the generator will only change during an update/restore or if you use it again
You could also use delayed OTA
I thought that was only for jailbroken users
yes as long as you don’t use blobsavers ‘read from device’ feature again
it works for non-jb too, you just need a mac or windows with a subscription
twice?
https://api.m1sta.xyz/betas/18G5023c
I get 404
Oh because reading from device would cause the phone to go in recovery mode right? I just saved my phones settings to blob saver and do it that way
you only erase it the first time
device identifier, not buildid
Oh true
Just don't use unc0ver and bootloop
all versions, not only signed
Oh ok I see now
Am I able to use the saved phone I have to blobsaver and save my blobs that way so it is quick without the Generator changing?
And it just takes it from iphone wiki?
yup
Interesting
it gets updated every 3 hours
But it relies on a human then
don't know of any other better way to handle it
Why are there so many tss live clones before it's even out lol
@soft turtle use this
Blobsaver betas
@zinc moon i made it to implement into autotss for blob saving
wot
Recovery loop
Wen
OTA delay
why does unc0ver fuck with OTA delay
No clue
true
@shy magnet why is each version "bundle" numbered, why not just do like an array
Or is that how ipswme does it
yeah i've made it an array
it'll be that next time it updates
No lol, I sent him a message once
actually ill just start it now
pretty sure froggy is arx8x
should be updated within next 10 minutes
You can MITM
I politely remove myself from this conversation

Everyone DDOS dabezt
alright so i just used system info to save 14.3 onboard blobs and it said that they were saved into my shsh.host folder, but when i look into the 14.3 folder i can only find the onboard blob now and (i alr saved 14.3 regular blobs there before) i cant seem to find the regular blob file anymore
does that mean it got deleted
also why do some version numbers have a blue colour and others have a white one
on the shsh.host site i mean
If you can’t find it it probably got overwritten…
Fix for error code 3, 8, and 10 aka the iBEC error in futurerestore
- Uninstall all apple drivers via device manager.
- Uninstall all apple products including itunes and apple device support stuff via control panel uninstall a program. MAKE SURE TO CHECK UNINSTALL DRIVER WHEN UNINSTALLING
- Unplug and replug device.
- Check device manager for more apple stuff and uninstall if so with same driver checkbox.
- Disconnect device.
- Install itunes64 exe from apple.com itself, no windows store bullshit. This is the best version: https://support.apple.com/kb/DL1816?locale=en_US (It will be labeled windows 7, 8 but install it on windows 10, it works fine)
- Plug in device in recovery.
- iboot (recovery) driver should show up under usb in device manager. Uninstall it and check the with software box.
- Run futurerestore.
- Unplug and replug your device.
- Run futurerestore again
well that kinda sucks from them



