#tvos-jailbreaks
1 messages · Page 23 of 1
!t whyjbtv
Hey @frank tide, have a look at this!
Why jailbreak an Apple TV?
Tweaks and features such as:
AirMagic - Control your Apple TV via any web browser.
DalesDeadBug - Spoof your firmware version.
AppStore++ - Downgrade Apple TV apps from the AppStore.
nControl - Use other controllers for your Apple TV.
TVControlCenter - Install control center tweaks for ease of access. (13+ only)
Breezy - AirDrop files to and from your Apple TV from any device.
SnowBoardTV - Decorate your Apple TV homescreen with awesome themes!
Doom & Quake - Play the classics from your childhood right on the big screen!
emulators, multimedia, code execution, custom respring animations/wallpapers/ screensavers and so much more!
hey @ionic copper I saw your guide on downgrading the atv 4k 1st gen but unfortunately, saving blobs is like dead now I think? I haven't been able to do it at all (blobsaver or tss saver), any tips?
I was able to get blobsaver loaded up - I have 2 atv 4k's, one is on 18.2 and the other is on 18.4.1. They are attached to an organization - spectrum. It only asks to sign in when i erase all content but I can skip it.
Blobs aren’t dead. You can save them for the 4K first gen and they’ll work
blobsaver just hangs for A LONG time and then says success but no blobs are saved.
Hm, I wonder what I am doing wrong then.
I have the ECID, I'm using blobsaver - not sure what the issue is.
Can someone else save a blob for me if I gave them my ECID?
ergrd
Sure
Blobsaver is outdated
i tried via the command prompt as well using tsschecker
and following the exact commands with my ECID, I got the error that says the device was not found like wtf
lol
I used this command: ./tsschecker -d AppleTV6,2 -e [MY ECID] -o -i 18.4.1 -s --save-path ./ --boardconfig J105aAP --no-baseband
Razzlefras
Where’d you get this command from?
from the guide you linked in your reddit post
Reddit post: https://old.reddit.com/r/jailbreak/comments/1f8of4b/how_to_restore_an_apple_tv_4k_first_generation/
guide: https://www.idownloadblog.com/2019/05/19/save-blobs-apple-tv-4k/
and I used the tsschecker that was linked in the guide: https://github.com/s0uthwest/tsschecker/releases
In this guide, we show you how to save .shsh2 blobs for the Apple TV 4K. On the off-chance a futurerestore-type tool for the device is developed in future, having saved blobs will be essential to use it.
You have it incorrect
ah, I see
Also, use the tsschecker from blobsaver as directed in the guide as well
this was the error I was getting
[Error] [TSSC] device 'Appletv6,2' could not be found in devicelist
[Error] [TSSC] ERROR: could not get URL for device Appletv6,2 on iOS 18.4.1
ok let me try the tsssaver from the blobsaver
All will go right if you have the right files
aaah
Also, if you’re planning on updating to 18.4.1 then you don’t need blobs
i need the tsschecker from the linux version, gotta reboot to live boot linux
im planning on going to 18.3
but I thought I would need the blobs from the latest signed version?
You can only get that if you already have the blobs
Later blobs don’t work for older versions
Only the blobs saved for that version do
In other words, no way to go to 18.3 now without having blobs?
You can get there if you want to downgrade to 13.4.8, then delayOTA
DelayOTA will get you to 18.3
While it’s still signed
Ok lets do that then, how can I get to 13.4.8?
it's like still signed? lol
it was weird to see on appledb.dev
It is but you need to download the ipsw
also, I was able to get the profile on my 18.2 atv 4k but it did not work
Which isn’t available on any other website
and then shift + restore?
Why are you going to 18.3?
I’m just worried about you bricking
I appreciate that!
Because jumping between firmwares tends to heat the device to the point where it causes hardware damage and can make the Apple TV inoperable
Could you help me understand how I can get to 13.4.8? I tried to restore there as well by renaming the zip file of the OTA I downloaded from ipsw.me and that did not work.
honestly, im not concerned since I have two
these two have been collecting dust
so I want to put em to good use
lol
You can’t make the ipsw. I have it
I’m currently updating the script though
slide that over playboy 👀
interesting! will it only work with your script?
in other words, I cant just take your ipsw and shift + restore it on my pc?
Not quite
Got it! So I will wait for your script update patiently then!
Thank you so much for your help and contribution to this!
there's no way this is real lol
Yeah idk what all thats about lol 
Unfortunately it has happened
source?
The fact that the Apple TV bootloops after updating to 18 and downgrading (even to a signed firmware) errors because the nand is broken
hence why online markets have as-is A1842 devices
ok but like how do you put two and two together
gm mike and zenzeq
Well, it's the first modern-ish Apple TV that has a fan back in 2017 which signifies that the processor gets hot based on its performance. With this in mind; updating does tend to raise the temperature (even on iOS devices)
ok but then how are iOS devices perfectly fine
turdus dev work, so many restores and my phone never exploded
Also, the nand was poorly made, hence why Apple changed manufacturers for the 4K second and third gen devices (switching from hynix to another brand.. i forget the name)
hynix also sucks on the wii u yeah so I guess
So high temps and a poorly-made nand is a terrible combo
I love the wii u
especially when the nands can't be replaced because they don't make them anymore
nor can you transplant from a newer 4K device...
rendering you with a true forever brick
iOS devices are fine because they're not built the same. I'm sure many other devices brick from updating and high temps too from hardware damage
it's a rare occurance but it happens
as for the 4K's.. this is a common issue
I've had more than a dozen folks wanting to downgrade (myself included) from a bootlooped 4K and it ran in to nand issues
which are unrecoverable
solder a new nand 
this was of couse AFTER the update was snuck in by Apple (thanks tim) and it just bootlooped half-way
or folks would wake up to a blinking light
Find one 
also, gm
thanks for your work on turdus.. still trying to figure out a way to boot tethered with checkra1n seeing as a lot of jailbreak tools are unreliable with exploitation
@ionic copper do you plan to socialize your updated script via reddit or just here?
you jailbreak it first
Probably here
This may be too much to ask but do you mind tagging? 🙏
It'll be on the github
No, it'll be in mine
Can you please share the link so I can track?
There.. fixed a few things
Link?
This will allow me to go to 13.4.8 first and then go to 18.3 with delayota?
No, that has to be done manually
But this script will help me create the 13.4.8 ipsw and then I will restore to that via itunes, correct?
@ionic copper is 18.4.1 supported yet asking for a friend haven’t been keeping up-to-date with everything
Last time I seen it was not
incorrect.
no
Thought so
I think jailbreaking is the least of our concerns
Dude, this is a jailbreak server. What you talking about?
did I miss something, you working on a project or something
a jailbreak server indeed but there's more important things
My bad bro I knew better than update so I’m not Trippin.
granted though, with blobs (and 18.3 delayota) you can always jailbreak FTTB
Does anyone know if there's a way to force iTunes to download Apple TV versions of apps instead of iOS versions? I think I might have just accidentally discovered something big that might help in that regard.
I just purchased two games that aren't compatible with any of my iOS devices, so when iTunes downloaded them, it chose to download the Apple TV IPAs instead of the iOS ones
I have the encrypted IPAs for proof btw
@ionic copper pleaseeee give me a high level of the steps I need to take to get my ATV 4k 1st gen 18.2 to 18.3
Or an 18.4.1 to 18.3
I'm trying my best to understand and not clear based on your answers whether this is possible because you have successfully downgraded one based on your post but maybe I'm asking the wrong questions here and don't know the right questions to ask. So please help.
why do you want to get to 18.3 in the first place?
I want to jailbreak
The two versions 18.2 and 18.4.1 cant jailbreak atm
ok and you can jailbreak on 18.2 as i remember
doesn’t show it on ios.cfw.guide yet but it’s in the latest palera1n update
yes
This it?
Last update in sept 2024 - is there another branch I should use?
@clear kayak i would wait for @ionic copper to make sure i’m right before trying anything but if you select the rootful version of this guide for “using palen1x” after following the first part of the guide for setting it up it should work https://docs.palera.in/docs/get-started/installing-palen1x-windows/
@clear kayak but like i said wait for zenzeq to make sure i’m right about this because i don’t want you accidentally messing up your apple tv
btw one last thing do you have a goldeneye adapter and dcsd cable? because you will need it to jailbreak
This isn't new. Some apps have both iOS and tvOS compatibility. Getting iTunes to force install them won't work and having them encrypted won't work either.
Yes
I actually had it on 13.4.8 a while back but updated to latest to then simply get retroarch directly from the app store
But I want to jailbreak again and trying to figure out next steps
Thats why I had it jailbroken for retroarch and stuff
But now I want Kodi
And explore some other things on the higher firmware because I think I get better controller support vs 13.4.8
yeah controller support is just built into tvos 18 and up now
Jailbreaking tvOS is much worse than downgrading
is it?
since when i thought downgrading/upgrading is the thing that can cause problems
You have to cancel mid-way just to make it work, then wait 10 minutes to build another filesystem
is this just for 18.2?
For some it does since their devices are built with bad nand chips
So @ionic copper is it possible for me to go to 18.3?
It's possible to go to 18.3 but the real struggle is jailbreaking it
Because since 18.3 has SSV, you'll need to create another filesystem which takes up space
I'm willing to give it a shot. Can you help me understand how to get to 18.3?
i mean for me at least on mac it’s been simple to re-jailbreak whenever i decide to restart it for whatever reason, i see how it can be finicky though like once mine went through the exploit then just didn’t boot the os for some reason so i had to retry, probably more finicky on palen1x i assume but i’ve never used it
Depends on the processor AMD machines suck
good i have intel then
im struggling so hard everytime re-jailbreaking my atv4k 14.7 with checkra1n, is there a fool-proof way to get it working without a dozen tries?
--cli is the best way
Or -c
the cable reconnect is the thing that fucks me up
Then it's just straight DFU
So place it in DFU first
its the goldeneye what's there to switch lmao
Lightning
From DCSD to regular lightning
Np
@ionic copper ? Sorry I don't want to keep bugging so let me know if you want me to back off
I do have an idea for that
But is there a way to consistently force download the tvOS version of an app? I'm mainly asking because I was hoping I could find a way to download tvOS versions of every app I own via iTunes for datamining purposes
Not really. If it doesn't have an iOS counterpart then no
this is because tvOS apps can't be used via itunes
hence why there's an AppStore
Let's hear it. How can I help if needed? What are the next steps?
Do you have a mac? and if so, what kind?
Okay, the reason I was asking is because I'm trying to find a way to download older versions of an app I own using the Charles Web proxy method, but in order for it to work I need to find a way to force iTunes to download the tvOS version instead of the iOS version (I have already downloaded every iOS version via ipatool, but ipatool doesn't work with tvOS apps)
you can download older ones with AppStore++
depending what apple tv you have, you can get to 10.2.2
Macbook air m1
I can also whip up a quick hackintosh machine if need be
this won't work.
what cpu is the hackintosh on
10700k
that supports downloading older versions of apps? I'll have to check that out
that could work
Intel - i had this specifically to hackintosh but since then moved away from it for a while
Great, I'll get that back up and running sometime tomorrow, does that work?
This IS for downloading older versions and installing them. What Apple TV do you have?
I just simply need to download them, I'm not actually trying to install them on my Apple TV
currently impossible
Help! My Apple TV 4K 2 has a problem and I need to reinstall the system. Where can I find its firmware?
You don't.
Your only solution: take it back to Apple
@ionic copper I would really appreciate it if you could hook me up with that class-dump tool that supports swift, if you could hook me up that would be dope if not it’s all good 😊
Meh, I have to fix it still.. I need a better setup
It sucks that everything is updated for Sequoia minimum.
Is it possible to jailbreak Apple TV HD on 18.4.1 ? I’m having issues with Palera1n
is palera1n/checkra1n better than just trollstore and if so what can i do thats different
no
between 14 - 18.2
any jailbreak is better than trollstore
<@&355174844205367317> anyone care to do slam the hammer on this spammer?
14 has a jailbreak ?
@ionic copper so uhh how about that tvos 18.5 blob huh? 😅
i think i need to just learn how to make it instead of asking you every time but last time i tried to save one i got confused and did it wrong
You know how to get them
Grab tss saver, get the plist then type in the command
what's good about the jailbreak vs troll store
@ionic copper
having root access > allowing apps to launch
yeah i get that but
what functionality does that add
for actual
user experience
like are some tweaks really useful or something?
Having the ability to tweak everything > tweaking apps and not signing them
the main problem is there's not much interest in the Apple TV seeing as you can only do so much with it
yes
i saw that
there's no ideal tvos version to
jailbreak with palera1n though
i would assume newer is better since u have all the new features + jailbreak
not really
especially when updating on older devices just makes it slower and in some cases; hotter
I see
if I turn off the Apple TV or unplug it, I have to start it with my computer, correct
Yes
if yor have the right setup, you can use a jailbroken device to jailbreak it again
😭😭
a jailbroken iphone can do that?
yes, or ipad or ps4
oh that's crazy
could u send me the resources about doing that on iphone
or just where to look
There's a package called ra1npoc
I don't know if that'll work for the latest versions.. but it might
latest versions of tvos?
iOS/tvOS, yes
seeing as they use different methods of exploitation
It works in tandem, it's specifically supposed to run on iOS to jailbreak others
it has a10x though i guess
One could make it for tvOS, but if it reboots.. good luck
could make it?
yes, compile it to run on tvOS.. it would be counter productive imho
yeah
i still need those
weird cables for gen 1 4k
@ionic copper
even using the phone?
the 4k is pretty specific. I wouldn't use an iphone to jailbreak it
but the HD is viable
yeah thought so
still would definitely recommend a gen 1 4k jailbroken over troll store just cause of all the tweak options yeah? @ionic copper
Absolutely not
If you want a good jailbreakable device, get the HD
oh i see
it's slower but much less complicated and it won't brick
Because the device gets too hot which causes internal damage in some cases
💔
Also, you have to buy 2 cables for the price of a used unit
cost ineffective when the HD is one usb-c
You can play it on the HD
yeah i'm seeing that
I wish Apple would just give us a fun device
nothing too serious, weed out the privacy.. just something we can use to hack and play with
like an Apple TVe...
yes
@ionic copper i tried looking at videos of the tweaks on apple tv
and found nothing
There's some tweaks out there. Most of which are incompatible
probably because.. less interest
also with Apple adding security, it makes research and development difficult
if i was using it as a media device
the 4k one would do a lot better
like
no jailbreak
just as media device
sure but you're stripping away its potential
If I Jailbreak my phone will I have the risk of it getting bricked
Depends what phone
Okay my cables came today but idk how to use them. I assume an adapter won’t work?
I assume if my Apple TV isn’t entering dfu it’s because I’m using an adapter?
to enter DFU on the 4k first gen, insert the goldeneye first
then connect DCSD (make sure the lightning end of the cable that says "top side" is facing down)
reboot the apple tv, and this'll trigger DFU
I tried but its not going. My Mac only has usb c so I’m using an adapter
it doesn't need to be connected to a mac, just any power source via USB. This can be a wall charger too
Ill try again
if DFU still doesn't trigger, it could be 1 of 2 things:
Defective Goldeneye - you can connect the USB portion to the mac via regular lightning and see if your Apple TV picks up in Apple Configurator
Bad DCSD - best wat to diagnose if this cable works is trying serial port connectivity. You could install an app called CoolTerm and run the baudrate at 11500, then reboot the Apple TV and it should show some kind of output
18.2.1
Okay, so yes, reboot and retry
terminal will automatically go again once it picks up
Do I need to let it fully boot or just unplug and replug power cable?
so you plug in the cables prior to connecting the power cable
once the cables are plugged in, then plug in power
within 2 seconds, the Apple TV will rapidly flash
If Apple logo pops up, it didn't work
what should happen; is Apple logo, then rainbow logo with code on the TV
I meant since the cables are already plugged in can I just pull the power cable and replug?
Yes
you can also use reset via menu and tv button on siri remote
(if you're too lazy to pull the cord)
Adapters should work if there's correct power distribution
It looks like the adapters getting in the way
Sanity checks are usually conducted if there's a connectivity issue.. usually with incorrect device states and/or power
try this: place the device in DFU mode via DCSD cable
then replace DCSD with regular lightning
Also, don't do it while it's booted up, always run palera1n in DFU mode
recovery mode tends to mess up
Can I use UBC C to lightning?
Same thing
If you let your Apple TV boot normally, does it stay in recovery mode?
You mean without the cables?
yes
No boots normally
Odd, Do you have another machine?
Just my steam deck
Could it be due to 18.2.1, @subtle swan and @untold sedge if I’m not mistaken said that might not work here
Oh wait.. you'll need to do -cf --cli because of SSV
using -f won't work unless you create a fake filesystem first
which is where -c comes from
Going to try now
hopefully no sanity checks
Same thing this time
Interesting how you would not when that's the oldest cable since 2012 😛
I have a bunch of lightning to USB C and USB C to USB C, still searching for an older one
I guess ill have to buy another cable and try this another day. I don’t have lighting to USB A
RIP
Thank you, ill let you know when I get another
np
Oi
Io
Whats the latest tvOS that palera1n supports?
is it 18.3.1? Not that its signed anyways
Yes but still plausible to get to with blobs
I’m on 17.4, I reverted my jb to start fresh then I reset my Apple TV but now I can’t sign into my Apple ID 🤦♂️
Had to reset it again and that fixed it
Wath the tag BTK ?
@ionic copper I’ve used this a few times for extracting artifacts from checkra1n
I have compiled that but kind of unaware of what to type in
the cli args would be ./binary <path to checkra1n> <segment name of thing to extract> <section name of thing to extract> output_file.dmg
to extract ramdisk.dmg, which (as seen in mach-o view) is embedded in checkra1n as __CONST,__rdsk:
./compiled_binary /Applications/checkra1n.app/Contents/MacOS/checkra1n __CONST __rdsk ramdisk_output.dmg
__CONST == segment name, __rdsk == section name. other segments are __TEXT, __RSRC, etc
machoview formats them like Section64 (segname, sectname)
Inb4 a GUI is made
lol
binwalk looks like it can identify the stuff that's embedded in checkra1n, and there is a GUI for binwalk... https://github.com/gcarmix/HexWalk
Binwalk is nice.. I was also using a Mach-o explorer but no way to extract on that
After I wiped my ATV (HD) I forgot to turn off auto update and it auto updated from 17.4 > 18.5, does PaleRa1n support 18.5 yet?
No
If you have blobs...
Unfortunately I don’t :/
how do i save my blobs anyway
i completely forgot
Blobsaver can for the HD
4K has to be done manually
I have left instructions here
Just get the Buildmanifest from the firmware you wish to save, then follow my guide for the command via tss
For newer devices yes
Older, no
Might be a silly question. I plan on buying an apple tv. Not sure which one but I do want to jb it. I wanted to ask if the 2nd gen support newest apps? Thanks.
second gen apple tv or second gen 4k?
Not 4k
second gen is beyond outdated.
But that doesn't mean I won't buy the latest that can be jb off ebay
What would you recommend i purchase to jb and still be able to install the latest apps?
You can jailbreak them but there's no AppStore
The HD
It's just called apple tv hd?
Yes
Ty so much!!
the apple tv hd is literally ewaste save ur money
What should I get that I can jb?
nothing
buy an android tv box or some shit
But I already have fire tvs🙃 I just wanted to try Apple TV but I understand what you’re saying
Ty!
Right now the AppleTV JB side isn’t that big and neither are the apps for it. If you want a better experience an android tv is most likely a better option. However things are definitely happening in the background so don’t give up on your AppleTV’s yet
issue with android boxes: you can't update them
I got a firestick to try out... it takes 3 reboots to boot
if you're in the US the onn boxes get updates
but it's not as bad as tvos you can still use modern apps on old android tv versions
truth be told; it never was that big in the scene.. primarily because it isn't portable
nor has the capability of doing what the user wants
you're spending at minimum like $60-$70 for a 4k 1st gen + ethernet cable thingy
usually 60 bucks just for the cables iirc
assuming $40 for a 1st gen 4k it's not worth it
if you want emulation you might as well get a 3rd gen and sideload stuff or a cheap mini ryzen pc
Tis why I mention getting the HD
HD is unuseable though
how so?
I have one it stutters doing literally anything
Open an app, it stutters
switch accounts, 20 second delay and it stutters
If you update it, yes, it tends to lag, but luckily you can downgrade them
sure video playback is fine once you deal with all that, but for $30 you can get an onn 4k plus that plays 4k and doesn't stutter nearly as bad
I still question why Apple brought tvOS 18 to the HD
and has ad free youtube
HD does too, if you sideload an app
yattee? or is there another one
I believe there's a few of them
I also found that jailbreaking eliminates most stutters
only issue with that is: jailbreak detection
Lol tvos apps have jb detection?
Yes, unfortunately some folks who love to pirate take advantage of checkra1n/palera1n just to rip the DRM off some apps in which, has made the devs update them to detect it
Especially Netflix, Disney, Hulu, Peacock and more
I believe Prime Video has DRM protection now from rooted devices
Would this trigger however if... say someone sideloaded an app?
I'm assuming you're speaking in terms of decrypting said app, patching it and re-sideloading it?
Oh no just other apps
If the sideloaded apps had said protections in place, yes
@civic venture is there a reason that the rdsk and overlay are mainly empty?
They don’t contain much. what are you expecting to find?
Well I did notice that checkra1n runs pongoOS which then, upon detecting what device on what firmware states "found old-style ramdisk!" which I'm wondering if this is within the included ramdisk and a command is sent or if checkra1n has different ramdisks.. and if so, where is it?
Tried on Linux. Could it just be TVOS version?
This issue isn't because of the version of your apple tv
What does kind of work is when you unplug and replug really fast in some cases
I did see one issue.. It looks like you're running on AMD
Yeah I was trying on my steam deck since it worked to jailbreak my iPad 7 in the past
I bought a USB a cable and it made no difference
Even tried another usb c to USB a adapter
Good luck with AMD especially with palera1n. They don't play nice
If you have a jailbroken console like a ps4, that could work too under Linux
I may just try my work computer but idk if it’s bootloader is locked or not
Fuuuuuuck
Now it’s just looping lol
Yes, this is what happens when power management from the processor to the I/O ports is insufficient.
Thanks a lot AMD for cutting corners
Fucking A
And my work computer is locked from booting external devices
What an epic waste of money this all was lol I give up
Can't you access the bios?
Turn off secure boot
If you have the USB camera adapter, you can set up the Apple TV to jailbreak on a jailbroken iOS device
@ionic copper can’t you jailbreak the Apple TV with your iPhone? I’m pretty sure you can do this with an adapter. For the HD models, however you would probably need to be jailbroken or have trollstore installed for it to work, I will probably give this a shot and see how well it works
the top one might if you have some type of usb splitter for a power brick
You're asking me this when I..
If you have the USB camera adapter, you can set up the Apple TV to jailbreak on a jailbroken iOS device
Correct because palera1n does have a iPhone arm64 version which should possibly work in theory
And yes, you can jailbreak an Apple TV with any portable jailbroken device
even gaming consols too
One would just need to install the dependancies that futurerestore uses which are on procursus
Yeah, I’ve done switch, but I can’t jailbreak my PS4 with 11.00 with it :/
Because it requires lan I looked into it
yes you can
there is a jailbreak for it
I know but executing the vulnerability on iPhone without a computer. That’s what I’m talking about. That can’t be done. Well that’s what I’ve heard so I just use my computer.
Again, yes you can.. there's actually a palera1n app
I’m talking about the PS4 bro 😎 I was responding to the consoles
the only downside is you need to have palera1n at first to install it
Yes, the ps4 can run linux which can be used to jailbreak
I've jailbroken a phone with a ps4 linux
Yeah, I know the jailbreak works on PS4 but you need a way to exploit the PS4 before you can load anything on it. That’s the problem so you either have to use a computer with windows or Linux or use the raspberry pi
The exploit works through ethernet
On 11.00
ehhh, not quite. I've seen people run the exploit via their routers
mind you it's a specific router you need
Yeah, there’s many different ways, but it would be pretty dope if you could run the exploit through the iPhone, but I’m going to just solder a luckfox to my pro so it would be more convenient
thanks gir
Dude, maybe you should try to jailbreak your Apple TV using your jailbroken iPhone just an idea if you have a lightning adapter that has usb and can plug in the adapter to power, I got a really cheap adapter off AliExpress that works perfect
one day we'll have a jailbreak delivered from our ipads to our heads to other devices
I can tell you missed the message..
Yeah, sometimes I misread messages. No need to be rude about it though I’m just trying to help the community, bro
But hey, I guess I’ll leave that to you from now on
those logs come from the kpf pongo module https://github.com/checkra1n/PongoOS/blob/4c9b7541629234147fcc778f0ce4162482aaccef/checkra1n/kpf/main.c#L1877-L1886
there's only 1 ramdisk embedded in checkra1n, but you can make it use whatever you want. idk what the differences are between styles of ramdisk
I've been trying to upload a ramdisk but it seems that /private/var/checkra1n.dmg fails to mount
Is there a possibility to have checkra1n automatically apply kpf whilst a device is already under pongo? much like palera1n detects a device under pongo and proceeding to execute commands?
it might be kind of annoying to do, i think that requires changes to the closed-source tool, but anything is possible
I wouldn't mind like an automation-like sequence to it. Running checkra1n on its own always asks for DFU but I'd like to have it detect pongo, then auto-run the rest without manually sending/loading everything in
this kind of looks interesting.. command_register("autoboot", "checkra1n-kpf autoboot hook", kpf_autoboot);
yeah actually if its already in pongo then checkra1n isn't a necessity. you could script pongoterm up to send kpf and auotboot like https://github.com/checkra1n/PongoOS/issues/72#issuecomment-833177765
where is this cmd.txt?
something you would create - doesn’t normally exist. It’s a way to pipe multiple commands to pongo at once
ah, just echo-ing all the terminal commands
Hi
is it possible to get ps remote play on jailbreaked apple tv. 2nd gen 1469
No
Hello
Has there been a fix for Prime
!t roblox
Hey @smoky dragon, have a look at this!
This Discord server is for iOS jailbreaking, not Roblox. Please keep your discussions on-topic, thank you!
Yes, use HBO /s
You do with a VPN
Airplay
Can we get Disney and prime to work on rooted Appletv 4k?
Also was checkrain updated to latest FW yet ?
No
It's not checkra1n, it would be palera1n
Looks like Apple TV HD and 4K first gen are the last checkm8 devices to support the latest...
anyway you can jailbreak apple tv to run android tv apps?
@hallow forge holy cow
Die
my bad im new to this i just want onstream without stupid android tv
yes if you trade the apple tv for a kodi box
Read above message
Missed that. No way. Not going to trade with stupid Android
Fr
Is anyone gonna try com.apple.SwiftUI.IgnoreSolariumHardwareCheck on tvOS 26
Sure, I'll try
good install android or windows on it
No, I don’t have a vagina.
wtf
I’m just going to use a windows pc. Not that pressed to ruin my iPad

It was a joke mostly but I guess went over heads
took me by surprise that you don't /s
T
this guide mentions an MAX3421E USB host shield, but I can only find MAX3421 on AliExpress. does it matter? https://ios.cfw.guide/using-checkm8-a5/
Guide to using checkm8-a5
For.. Apple TV 3?
Yeah….
It shouldn't matter. Although I wouldn't shop at aliexpress
guys, how do i compile NitoTV
https://github.com/lechium/nitotv this one
ios.cfw links it
I can make a PR to change it, but to where?
You don't. It comes with the jailbreak.
Probably blackb0x github
Unless it's the cfw github
change the link to buy a usb host protector from aliexpress with a link to blackb0x?
Sure but investing in that to jailbreak an ancient apple tv is pointless imho
checkm8-a5 is also used for ipads and iphones
Still a bit redundant when they're so low in memory and nothing really works for them
It's great just to say you did it
i was talking about the atv 2/3 version
As was I.
wdym then
because i jailbroke with blackb0x
and nothing shows up
i had to add @1080.png to the kodi appliance folder for it to show up, but there's not even an appliance for nito
Because you have to keep it plugged in for another 5 minutes or so for the program to run the scripts
do you mean i have to rejailbreak
or can i just run the scripts myself
Either or, easier to rejailbreak
are the scripts just commands sent through ssh or
Theres really no reason to JB any older Apple TV's...
Zenzeq helped me once with BlackBox and tbfr there isnt much to get from it
Yes
There might be in the future but yet, it'll all be obsolete
Until an proper on device app signer releases I highly doubt any bigger innovations will be done
Especially since you need a cable and allat
Hi, new user here I just received my AppleTV 4k (with ethernet, A2843). I purchased a Foxlink GoldenEye and DCSD cable thinking I could use it with this model, but it seems the ethernet port of this particular model is not compatible anymore 😦
So I'm starting from scratch and wondering if it's even possible to jailbreak this particular unit.
Yeahhh you got a Apple TV 4K 3rd gen. You need a 1st gen Apple TV 4K to be able to jailbreak.
You could sell that and get a first gen 4k.. It's a bit of a stretch but you should profit in the end
Forgot to turn off autoupdate and my apple tv is updated to 18.5 . There is no way to downgrade to 18.3?
What Apple TV is it?
I have atv4k 14.7, is it worth being jailbroken and to get newer apps to run?
Most apps complain about it being old
What 4K is it?
first gen 4k
Newer apps nowadays require 17-18.3
Best streaming apps to sideload to Apple TV?
you can coerce an app to use a newer dyld cache, as a way to work around version issues
Issue with that is, seeing as Apple TV is all server-based, they use their apps to phone home to relay the device info and if it doesn't match, then it prompts for an update
Thx, do we expect a JB soon for that latest FW?
!t eta
Hey @odd stone, have a look at this!
We have no way of knowing. When there is news, it will be in #announcements
@ionic copper is there anything to sideload on appletv with a certificate
4k 1st gen on 18.5 so no jailbreak
Probably TrollStore
Granted though that might not work with a certificate..
It doesn't have support for a cert but I ruled that out because 18.5 doesn't have CT
Well no but I was thinking you can use that to install ipas
I'd say Kodi if anything
But how can one use trollstore to install ipas if trollstore isn't supported?
Given you're jailbroken you still can but it was a shot in the dark thinking the certificate could be signed on to other apps via TrollStore.. If one were to modify it to do so
I'd stick with Kodi and maybe that ad free YouTube app
It really REALLY isn’t that simple to do Zenzeq but I get what your coming from. I’ve been in contact with the main dev working on a Apple TV signer but apparently it’s not an easy feat sadge
it's 1st gen 4k A1842
You can go from 13.4.8 and use DelayOTA
But it's risky
There was Reprovision that worked.. Required a jailbreak to install though
Is there really NO hope to fix prime video on < 18.2
Legit pissed it wont even work on 17.0
Also the background works/plays it just the prompt shows and u cannot use the app at all
There is, just not really worth it when you can update and downgrade whenever
Not on 4kgen2/3
:/
Even youtube got adblock recently
You can thank Apple for that
Was really hoping there was a way
I could modify the app to work, the only issue is the old app has incompatible frameworks
Please try 🙏
I really hate it when a few apps become unusable and everything just gets stuck and asking to updates the firmware.
Wait till all those apps will require tvOS 26 firmware 😡😡😢
i just wonder why its enforced on tvos, and not on ios
Your iPhone is JB?
yeah
WTF
because people pirate
Especially when output is in 4K or higher whereas iOS/iPadOS doesn't have that output
MAX too!
What's max?
Makes sense 👌👍😊
HBO?
Nothing in Canada Watch CBC😂
Don't get offended bro. I am also in Canada
Ha yah should have said hbo
@icy wolf isnt the hbo stuff on Crave
Esp if you know the vpn trick
The content on prime is preferred for me but ye
Also i pay for amazon prime but not crave so ye
Anyone know if safe to delete stuff in mobile/Library/Caches/AppleTV/Video
Guessing yes?
If you can extract that and see what it is.. I think that's screensavers.
Is this not the screensaver location? #tvos-jailbreaks message
This is whats in /AppleTV/Video
It probably depends on the OS version.. Maybe apple changed it?
I would say it's safe to delete. It's just cached info
Although expect different things to happen
So its def not screensavers. One is a movie trailer
…maybe videos that were airplayed?
Yah so far ads and movie trailers
Almost certain its airplayed media
Why that's cached instead of just streamed is beyond me
I do think they get deleted after a reboot
There were files from years ago in there so dont think so. Its definitely power cycled more recent than that
@ionic copper do u mind pm u ?
For what
Got a appltev 4k 1st gen and was little confused on how to proceed to root it. Am i able to bypass APPS being restricted to specific FW?
What tvOS is it on?
15.0
No blobs so not sure how to go to 18.3
Can i do this without blob saved?
Find out what jailbreaks you can use on your Apple TV 4K (1st generation).
Blobs are only needed when you're advancing firmware
In order to jailbreak, you'll need 2 cables
Goldeneye and Alex DCSD
thanks i will search them but if you know good places to order them from, please let me know
and how do i go from 15.0 to 18.3?
advance means downgrade ?
Yes, or to switch in-between
ok so am i able to go from 15 to 18.3 or i cant?
sorry english not my main language so can be not very clear
Not at this time
what is your current rooted fw if i may ask for your 4k atv?
18.0
ok nice thanks
It saying Address is invalid. Cannot download.
Probably because you're not in the EU
I just start my VPN pointing to UK London and its same message. I checked and verify my current IP after starting my VPN.
vpn is not enough
(also the UK isn't in the eu either)
Doesn't it go based on geo location.. like you'd have to have your phone inside that area and not just spoofed?
you have to do a bunch of stuff to spoof it if you can't enable the values manually in mobilegestalt (which would only work on 17.4(.1))
i.e. never using cellular, setting up your router to a different region, effectively putting it in a faraday cage
All-in-all; not worth it imho
absolutely not especially since you would need to do all of that every 30 days if you ever connected to a cell tower or wifi connection that doesn't appear to be from the eu
unless you're Snowden 
Change it to France and still no go
@ionic copper I have a request that i would like to talk to you private about. Do you mind PM you ?
About what?
?
Amazon is banning all third-party apps installed on Firesticks and Fire TV Cubes. This could be due to pressure from the DMCA or a move toward introducing a new operating system aimed at eliminating piracy and blocking third-party app installations. It appears this could signal the end of the line for Amazon Firesticks and Fire TV Cubes as we know them.
Love Troll Store
Any jailbreak for the Apple TV4 tvOS 26 firmware?
My friend has reset his ATV4 and updated with new firmware tvOS 26. I told him do not
There's not even one for 18.5
your friend could only do that if they opt in for the developer version. Tell 'em to go to 13.4.8 and delay OTA to 18
Hello guys
I just bought an apple tv hd A1625
and it is on tvos 15.5.1
can anyone here guide me on how to jailbreak or install trollstore
I tried installing trollstore using a guide on reddit but when i put my apple tv to sleep and open it few hours later trollstore and the apps install is not working
you can jailbreak via palera1n
what guide did you follow?
we dont support this type of tv
yo anyone here
anyways i got a question about the palera1n jailbreak for tvos is it like any different than the guide says cuz its the same one for ios and i don’t know if like you’re supposed to do something different
nope
cuz like can i install dopamine on tvos
No
ah okay
I wrote all the tvOS jailbreak guides except for the palera1n one because the process is identical, yes
okay
Get device in DFU and get USB connection
thanks then
if you have a tv 4k 1st gen
you need like $50-60 of cables not including tariffs and whatever bull shit
also theres a chance it just doesnt work
i recommend jail breaking an HD instead
Wouldn’t the new eu USB C thing also apply to AppleTV’s or can they still fuck around with those cables?
Why would it
They don't charge
and besides
I’d say they qualify for it? The latest google tv streamer has a USB C port Shrug
they could just not hook up data wires to that usbc port
it's that easy
the TV 2 and 3 have microUSB ports but you can't do anything much with those, all the fun stuff is on a 30pin that's not installed from the factory
Stills it’s much easier to jailbreak an HD rather than the 4K. Also there’s really no reason to jailbreak them
I was just talking about like transferring data and stuff
No need to be an ass about it lmao
wifi:
Your not gonna be transferring multiple 4K movies through WiFi without issues 
Shits slow too 
Can i use a windows pc to jailbreak apple tv
depends
what apple tv and tvos
Apple tv gen 3 7.9
Not with windows
where was i told i needed special cables it doesn’t say that anywhere on the site
also i kinda wanted the 4k over the HD
also let’s say i do get a 4k gen 1 tv, if its on tvos 15 or smth, could i update to 18.0.0 somehow
Help jailbroke phone with checkrain but I don’t know how to delete the iCloud lock thingy do u know how to I have a max of that helps
No
Ooh does it not say that on the palera1n guide
Look at the tvOS checkra1n guide
You need:
- DCSD (not a clone)
- GoldenEye
!t icloudbypass and also you are in the wrong channel
Hey @analog elk, have a look at this!
Discussion of iCloud/Activation Lock/passcode/MDM (Mobile Device Management) bypass, asking how to do it, or posting about it is not allowed. No, it doesn't matter if the phone is yours or not. We will not help you with it. If you do own it, it’s recommended to use the links below.
If you forgot your Apple ID - Apple Support
If you forgot your Apple ID password - Apple Support
How to remove Activation Lock - Apple Support
If you forgot the passcode on your iPhone, or your iPhone is disabled - Apple Support
yeah, it also says at the bottom of the guide that you can use dopamine since it’s the same process for tvos and the ios guide, i put a pull request that just added a statement saying that dopamine was not for tvos
nope
i'll write up a separate palera1n tvOS guide later
cool
also the guides are wrong
if you go to apple tv 4k > install Odysseyra1n/checkra1n, it redirects you to the ios one, you have to search up the ones for the apple tvs
@uneven wraith i don’t know if i can ping you, but i’ve got a question
Thats not something I did
Dunno why you wouldnt be able to
oh, anyways
if i jailbroken a 4k 1st gen, would I be able to install a more up to date tvos like 18.0.0 to install the more recent jailbreak
Did you save blobs?
no
Nope
No
dang
guess i got to look for a 4k with 18.0.0
hopefully people didn’t update it
yall got any idea to jailbreak a apple tv 4k 3rd gen
Not possible
is there a way to mitigate using dcsd
i have goldeneye but clone dcsd and yeah it does not go to dfu
i got trollstore setup anyway but i would like tinkering
there's no software based jailbreak if you're on a version that needs a dcsd
~~tell me about it ~~
sad
Hello guys, I bought an Apple TV 4K first generation(A1842) from FB marketplace for trying out JB. Fortunately/unfortunately it runs on tvOS 11.2.6. I was able to JB it with Electra, but cannot install any tweaks or open any apps except photos, settings and computers. Where should I go from here ? Should I upgrade to next JB-abel tvOS version ? Is it even possible ? 11 feels like unsuable. Thanks
You can upgrade to 13.4.8 with goldeneye, but it’s not worth it. Just update to the latest (or delayed ota) and wait for palera1n support
I'd save the blobs first before updating
Then you can get back and experience the nostalgia
You can also try rebooting then rejailbreaking
That seems to work on some cases because electras exploits can be unreliable
Upon jailbreaking, you should be able to SSH in. This'll make saving blobs way more easier
I'll even walk you through what's making things crash by typing in some commands if you'd like
what do you mean delayed ota
what makes it delayed
DelayOTA is what is called when an unsigned firmware is still signed over the air via a time period of delay
Using a profile
For companies that are slow af basically aleinaOk
Not sure why they are needed though 
Why what's needed
The profile?
DelayOTA, I know companies use it I just don’t know why they need it 
Because in the event that the latest version doesn't work with corporate apps, then corporate can easily downgrade within a 90-day window until things get updated.
Along with other feature implementations and protocols
Oh yeah no that makes sense thx for explaining aleinaOk
is there just no way to enter dfu without legit dcsd
i have the goldeneye
Dcsd is required for 4K since apple removed it via remote
My Apple TV is stuck on AirPlay screen
Not connected to internet and can’t do Ethernet
Any ideas? Don’t have a Mac or any way to install iTunes
What Apple TV is it?
I'm guessing the airplay screen looks like..
No second I’ll boot it up
Looks like that but no internet it just says connect to WiFi
why not just restore it
Running arch Linux rn don’t have a MacBook. Ig I can use wine and boot up iTunes but ima have to go get a micro usb cable too😅
Oh well… was trying to avoid but it is what it is
you don't need a mac to restore it
you can use idevicerestore
which works well with linux
brain fart
although.. before restoring it
I'd connect it to your linux machine
and run ideviceinfo
see what OS it's on
Yes, this way you can save the blob and re-restore if it's not on the latest
🫡
that is, if you're a fan of nostalgia
Alright thank you:p
sudo pacman -Syu idevicerestore-git iirc
You might also need: build-essential, libtool-bin libtool-dev, liusbmuxd, lib mobiledevice-dev, libdevice-glue-dev
Been a while since I used arch.. it's an absolute headache
.. You invested in a brand new unit when a USB-C cable would be cheaper
I would need a micro usb
My time is more valuable 🧙
It’s easier for me to go to the store and buy a new one then have to order a micro usb because no one carries them anymore
for the apple tv 3?
amazon prime:
Is palera1n not going to be updated for tvOS 18.5?
Until the devs figure out how to fix it, not for the time being
yo @ionic copper
so like do you think it’s going to take a while for them to update it
Depends
on what?
On how much time the devs have and how much more security Apples put in their OS
ah
What do you need?
they left the chat
I need a way to brick iPhones via software without breaking apple’s TOS
Not sure what you mean
Also, why do you 'need' to?
for what reason?
smash it against the concrete floor
how come palera1n supports up to 18.3.1 on the HD 4th gen but up to 18.3 on the 4K 1st gen
tvOS 18.3.1 is strange because it was only intended for the 4K 3rd Generation
...and then they released an ipsw for the Apple TV HD at the same time for some reason
Do you have any idea on the progress of palera1n for newer firmwares?
you'd have to ask Nick Chan when they want to deal with that
I'm also talking about overall devices too (supported ones)
yo i got a question, would it be worth buying a 4k gen 1 on 18.5 or whatever the latest is rn, and waiting until palerain supports it
No. Get an HD
Granted palera1n supports it, you need 2 other cables to jailbreak it with
why an hd though, i’m fine with getting the two cables and also i get more processing power compared to an hd
Because in the event that you bootloop, it can be easily fixed
what do you mean easily fix
how would i even bootloop, i though ssv stopped access to root and some other stuff
18.2+ correct, on any lower version it doesn't. There are no ipsws to allow restoring a 4k 1st gen - also, sometimes the two cables just won't work
so like do you think an hd would work well like streaming 1440p content?
the HD can only do 1080p
that's why it's called the HD
if you want higher resolution, don't jailbreak
there's basically no reason to anyway
Just get a powerful Chinese android box or sthm
publicly available ipsws, usb-c connection via any computer, Itunes recognition = easy
Issue with those: they can't be updated
There are no ipsws to allow restoring a 4k 1st gen - also, sometimes the two cables just won't work
Incorrect. There is a 13.4.8 IPSW
@ionic copper what’s up buddy long time no talk, i’ve been out of the jailbreaking scene for a while and I was just wanting to know. Has there been any progress? What’s the latest we can jailbreak now on the Apple TVs I know they killed off the iPhones so hopefully we get more support for tvOS
tvOS 18.3
Okay cool thanks
maybe 18.3.1 too?
Hmm okay interesting thanks for the update
Sadly, 4K devices like to update and there's nothing for 18.5 nor 26
Checkm8 still works on the latest tvOS version does it not?
It does, but Apple's patched the kernel patch finders which is one factor that hinders code execution
Now why didn’t Apple just do that with the iPhone X 
They did, but since iOS is so heavily focused, it gets updated more frequently than tvOS
so jailbreaks pop more
Oh right so it’s not impossible just not given the needed attention. 
Hopefully the palera1n team can fix this mess
Certainly not impossible.. it's just a common lingering question of "what's the point of jailbreaking an apple tv?"
To tinker 😂
The benefits are basically nonexistent really 
Side loading however…
99% believe "Hey, free movies!!"
Meh, you can still do a lot of stuff. I know the Dooms on my repo /should/ still work
Wow ppl smh lmao just do a plex server use you legit copies of Blu-ray and you’re good to go no jailbreak needed
so there's some classic entertainment without needing to setup an emulator and download roms from some sketchy source
I just hope a certain signing company decides that making an on device signers for AppleTV’s is worth it and makes it happen 
people don't have legit copies. Digital entertainment runs folks more on hard copy than subscribing and no-one wants to subscribe
especially when X amount of dollars doesn't give you ad-free content
Dude, I have so many Blu-rays. It’s ridiculous. 😂
One of my local pawnshops you can get one Blu-ray disc for a dollar or two they’re super cheap
Issue with that is, Apple can revoke at any time
Not if intended for developer purposes 
I used to rip my bluerays from my jailbroken ps3 to play on Apple TV because the PS3 would emit so much more heat
Hence why Apple wants you to pay for their certificates 😛
That’s dope I just got a lua exploit Japanese dish from my PS4 yesterday it’s pretty dope
Disk
Orrr… you could always buy from a certificate company for like 15$ and get an AppleTV cert 
Which I got (technically)
I love the common misconception that a jailbreak can simply make unsigned apps work including the jailbreak tool installed on-device.. what is little known knowledge of course is: what happens when you reboot after 7 days?
Oh yes… which is why with a certificate you can just… sign the apps and make them work for a year. It’s an unexplored market for now though. 
Theoretically; I've made the new webkit exploit for chimera-installed Apple TV's work..
Ooouuuuhhh
Yeah I don’t got allat
Until Apple revokes then you need to bust out the laptop
Only issue with is: installing the browser app
Which then it's like.. "well, we need to sideload it anyways"
The cert provider I use haven’t been revoked since like 3-4+ years back
Do you still pay them?
Oh yeah that kinda makes it meh lmao
You can check them out yourself
I’ll send their link in DMs
is it possible to jailbreak on 18.5 with the other palera1n branch?
is palera1n stable yet?
No
18.3.1 is the only compatible version so far
Define stable
i honestly can't :D
i wouldn't call checkra1n stable but i guess it's the most stable thing we've got?
any known issues compared to checkra1n?
i use palera1n on my atv4hd and couldn't notice any issues
i use it less than my atv4k but my 4k kind of gets silly after a while and requires a reboot
Well, some would say that placing the device in recovery mode first would leave it in a state where it never gets out of recovery mode on the 4K devices with palera1n
