The g2 has finally been rooted. Even though a temporary root exploit was found shortly after the phones release, a NAND lock prevented modifying the non-volatile RAM for a permanent root. Some controversy surrounded the g2 when it was erroneously thought to have a rootkit protecting the OS.  Supposedly the rootkit would watch for changes to the file system and then reset the phone to default settings when any unauthorized changes were made.  On the other hand a NAND lock functions by fooling the operating system into thinking there isn’t any memory available, essentially “locking” the memory in key areas.  Once it was discovered to have the NAND lock it was only a matter of time before the g2 was permanently rooted.  NAND locks have become a popular (and unsuccessful) deterrent employed by device makers to stop the jailbreaking comunity.  While this exploit is nothing groundbreaking it is another notch in the belt for the jailbreaking community and a welcome benefit to g2 users.

Image courtesy of DanyL of psx-scene

The newest member of the PS3 jailbreaking tool crowd is the iPod family. More specifically, iPods running the open source media firmware Rockbox. Even better news, theoretically it should be possible to use this same method on any MP3 player running the Rockbox software. Right now the exploit package only works on select generations of the iPod Nano and iPod Classic line, but if the trend set by the PSX-scene forums continues, it would be worth checking back in the near future if your device is not already supported. Thanks to [shuffle2] for providing the hack, and [DanAdamKOF] for the heads up.

If Apple isn’t your device of choice, you can also check out some of your other jailbreaking options.

[Nicholas Petty] has posted a guide to setting up your iPhone as a penetration tester. You already carry it around with you and, although not too beefy, it does have the hardware you need to get the job done. So if you’re not interested in building a drone or carrying around a boxy access point try this out. The first step is to jailbreak your device and setup OpenSSH so that you can tunnel in for the rest of the setup. From there the rest of the setup is just acquiring build tools and compiling pentesting programs like Aircrack-ng, Ettercap, Nikto2, and the Social Engineering Toolkit. You’ll be up to no good testing your wireless security in no time.

It’s finally here, after being declared completely legal to jailbreak your iPhone, JailbreakMe 2.0 is released.

Now, any and all iDevices can be jailbroken by simply visiting the URL above; however, before you start your devious adventure in the land of apps not approved by big brother Apple, there are a few issues.

The webpage is being slammed at the moment so you’ll have to wait. There is a chance the jailbreak will not work, and you could brick your phone. MMS and Facetime are having complications after jailbreaking. And finally, carrier unlock still needs to be done with ultrasn0w.

But beyond those small stepping stones, jailbreaking is just a touch away.

For those living under a rock, the latest ‘greatest’ news to hit hacking front page is the the Copyright Office granting Six Exemptions Regarding the Circumvention of Access-Control Technologies. Of the six the one of the two regarding iPhones is as follows,

“(2) Computer programs that enable wireless telephone handsets to execute software applications, where circumvention is accomplished for the sole purpose of enabling interoperability of such applications, when they have been lawfully obtained, with computer programs on the telephone handset.”

Which (along with section 3) really just means that you can unlock and crack cellphones and companies can no longer fine you $2,500. Not that many ever have but the threat was there. Apple however, can and still will void your warranty if you jailbreak.

The 4 other areas not involving phones are the ability to circumvent DVDs for portions of video, video games in order to better the security of said game, computer programs that require dongles but dongles are no longer available, and literary works that prevent read-aloud or rendering to a specialized format.

One tidbit I keep hearing about in these exemptions is the ability to now break DRM on music, as much as I wish this were true, I can’t seem to find any sources on it, sorry pirates.

Regardless, now that the world is one step closer to an open framework, whats changed? For me, I’ve been jailbroken for years so sadly nothing. If you agree with the ruling, disagree, or just want to tell about your now legal jailbreaking joys, please leave a comment.

Additional Sources: FOXNews and CNNMoney thanks to [Voyagerfan99], [Ryan Knight], and [Steve S.] respectively.

[Image credit:]

A method to Jailbreak the new 3.1.3 iPhone rom is here and it does away with tethering. Tethering is the problem that arose from the blackra1n exploit requiring a computer to reboot the iPhone. Although we saw a hardware workaround for that, it’s much nicer to do away with the issue completely. The new exploit is called Spirit and we found the site was getting hammered earlier so you should check out the writeup over at Redmond Pie if you can’t get through with the link at the top.

[Thanks Xb0xGuru via iPhone Hacks]

This device can jailbreak an iPhone. It doesn’t require a computer and it can either reboot a phone that was one-time-boot jailbroken using the blackra1n exploit, or jailbreak a factory fresh unit. We wouldn’t say this solves the tethering problem caused by blackra1n (needing to return to a computer to reboot the phone), but it certainly does ease the pain. We saw some info about the board layout but no parts list or firmware. See the demo after the break and leave a comment if you have more information on the parts or code.

