Year In Review of Jailbreaking (2024):
Just like last year, it’s month by month. Before we begin though, here is the one major thing that happened right at the tail end of 2023.
December 31st, 2023: kfd was updated to now have puaf_landa, which would be enough to enable TrollStore installation and a (semi-)jailbreak (depending on device/iOS) for 16.5.1-16.6.1
Now, onto the actual Year In Review:
January:
January 5th, 2024: meowbrek2 1.1.4-beta is released, adding support for A11 and earlier devices on 15.7.7-15.8
January 6th, 2024: Legacy iOS Kit receives an update to enable (semi-)tethered jailbreaking iPad 2’s on 4.3.x, which set the record for the longest it took for a release combination to get a jailbreak (4,685 days), and giving every device on release iPhone OS/iOS/iPadOS versions 1.0-15.4.1
January 7th, 2024: Serotonin is released, enabling A12 and later devices on 16.0-16.6.1 to get their first experience with springboard tweak injection
January 21st, 2024: meowbrek2 1.1.7-beta is released, adding support for A11 and earlier devices on 15.8.1 (and later 15.x versions)
January 25th, 2024: TrollStore for tvOS is released, with an installation method available for tvOS 14.0-16.6, as well as the Apple TV HD and Apple TV 4K (1st Generation) on 17.0
January 27th, 2024: Def1nit3lyN0tAJa1lbr3akTool 1.0.0 is released, giving A11 and earlier devices on 16.5.1-16.6.1 their first semi-untethered jailbreak
February:
February 16th, 2024: Dopamine 2.0 is released, which was a complete rewrite to Dopamine and added support for A15-A16/M2 devices on 15.5-16.5, A12-A14/M1 devices on 15.5-16.5.1, and A9(X)-A11 devices on 15.0-16.6.1
March:
March 2nd, 2024: palera1n 2.0.0 beta 9 is released, automatically applying a boot-arg to enable most App Store apps to open on 17.2 and later (2.0.0 beta 9.1 would later need to be released a few days later due to the original beta 9 not applying this on 17.2-17.3.1)
March 22nd, 2024: Apple randomly starts signing 17.3.1 again, after having previously unsigned it on March 12th (a continuing trend of 17.x having a bunch of signing mistakes that will appear one more time in August)
April:
April 4th, 2024: TrollInstallerX is released, providing a universal TrollStore installer for almost all devices on 14.0-16.6.1 (only exclusion was A8(X) 15.2+)
April 30th, 2024: Dopamine 2.1 is released, adding support for A8(X) iPads on 15.0 and later
May:
May 6th, 2024: CoolStar, the developer of Chimera, Taurine, ClassicFolders 3, and a lot more, is hired by Apple
June:
June 10th, 2024: Apple announces iOS/iPadOS 18, which killed the iPad 6th Generation, iPad Pro 10.5″, and iPad Pro 12.9″ 2nd Generation, and leaving the iPad 7th Generation as the only remaining checkm8 iOS/iPadOS device
June 11th, 2024: It is learned that in 18.0 beta 1, Apple introduced a check in which a non-root process can no longer spawn a root process, which breaks TrollStore (even if a third CoreTrust bug ever happened) as-is, and would break all TrollStore apps that relied on a root helper
June 14th, 2024: The first ever iOS/iPadOS 16.7 RC/17.0 non-jailbroken TrollStore installation method (which would later become TrollRestore) is confirmed, after having been found privately the day prior
June 17th, 2024: 17.6 beta 1 is released, backporting the same root helper change which first appeared in 18.0 beta 1
July:
July 22nd, 2024: palera1n 2.0 is released, adding support for iPadOS 17.6 and later, as well as support tvOS 15 and later
August:
August 13th, 2024: Apple randomly unsigns iOS/iPadOS 17.6.1 and visionOS 1.3, which later leads to a mini signing party (which is technically still ongoing) for updating to 17.4 beta 4 on the iPhone SE 3rd Generation and Cellular iPad Pro 12.9″ 2nd Generation, as well as restoring to 17.4 beta 4 on the Cellular iPad 7th Generation
August 26th, 2024: kok3shi9 5.0 is released, adding support for 64-bit devices on 9.2.x, as well as being the first public untethered jailbreak for 64-bit devices on 9.2-9.3.4
September:
September 2nd, 2024: TrollRestore is released, being the first/only non-jailbroken installation method for iOS/iPadOS 16.7 RC/17.0, and giving every iOS/iPadOS device/version combination that supports TrollStore an installation method
September 23rd, 2024: palera1n 2.0.2 is released, adding support for checkm8 devices on 18.1 and later
September 23rd, 2024: iOS/iPadOS 18.1 beta 5 is released, patching sparserestore (the bug utilized by TrollRestore and later utilized by other tools such as Nugget)
October:
October 21st, 2024: iOS/iPadOS 17.7.1 RC is released, also patching sparserestore
October 28th, 2024: iOS/iPadOS 17.7.1 and 18.1 are released, being the first release versions which patched sparserestore, and also giving sparserestore a CVE (CVE-2024-44252)
November:
November 4th, 2024: tvOS 18.2 beta 1 is released, breaking palera1n with the Apple TV HD and implementing SSV (the thing that resulted in rootless becoming relevant for iOS/iPadOS) into tvOS
November 29th, 2024: A Proof of Concept (PoC) for an IOSurface use-after-free that affects 18.0.x (and just 18.0.x) is released, which – while being a PoC that has not been exploited – is currently the “most promising” PoC that could be exploited (doesn’t immediately die to any mitigation, doesn’t have any insane strings attached, and so on)
December:
December 19th, 2024: EverPwnage 1.0 is released, being a jailbreak for 32-bit devices on 8.0-8.4.1 and A6(X) devices on 9.0.x, as well as being an untethered jailbreak for 32-bit devices on 8.3-8.4.1 and A6(X) devices on 8.0-8.2
December 23rd, 2024: palera1n 2.1 beta 1 is released, adding support for tvOS 18.2 and later on the Apple TV HD, as well as iPadOS 17.7.3
December 23rd, 2024: Nick Chan (lead palera1n developer) successfully achieves running iPadOS 18 on the iPad 6th Generation
December 29th, 2024: EverPwnage 1.1 is released, adding support for A5(X) devices on 9.0.x, as well as expanding untether support to encompass all 32-bit devices on 8.0-9.0.2
December 31st, 2024: One year passes since the last new kernel exploit (puaf_landa), or any jailbreak-relevant exploit for that matter
Overall:
– If you are interested in Apple TVs or are interested in Legacy iOS stuff, this year was very good.
– If you are only interested in modern iOS stuff, this year was not great.
Hopefully 2025 will continue the improving with Apple TVs and legacy/older iOS versions/devices.
Additionally, I hope modern iOS will have a small rebound in terms of something happening in 2025, but of course, we’ll have to see how things turn out in 2025.
Happy New Year.
最后附上中文直译,仅供参考。
越狱年度回顾(2024 年):
和去年一样,今年也是月复一月。不过,在开始之前,我们先来看看 2023 年末发生的一件大事。
2023 年 12 月 31 日:kfd 已更新,现在具有 puaf_landa,这足以启用 TrollStore 安装和 16.5.1-16.6.1 的(半)越狱(取决于设备/iOS)
现在,进入实际的年度回顾:
一月:
2024 年 1 月 5 日:meowbrek2 1.1.4-beta 发布,在 15.7.7-15.8 版本上增加了对 A11 及更早设备的支持
2024 年 1 月 6 日:旧版 iOS Kit 收到更新,以启用 4.3.x 上的(半)绑定越狱 iPad 2,这创下了发布组合越狱所用时间最长的记录(4,685 天),并为发布的所有设备提供 iPhone OS/iOS/iPadOS 版本 1.0-15.4.1
2024 年 1 月 7 日:Serotonin 发布,使运行 16.0-16.6.1 的 A12 及更高版本的设备首次体验 Springboard tweak 注入
2024 年 1 月 21 日:meowbrek2 1.1.7-beta 发布,在 15.8.1(以及更高版本的 15.x)上增加了对 A11 及更早设备的支持
2024 年 1 月 25 日:tvOS 版 TrollStore 发布,提供适用于 tvOS 14.0-16.6 以及 17.0 版 Apple TV HD 和 Apple TV 4K(第一代)的安装方法
2024 年 1 月 27 日:Def1nit3lyN0tAJa1lbr3akTool 1.0.0 发布,为运行 16.5.1-16.6.1 的 A11 及更早版本的设备提供首次半不受限制的越狱
二月:
2024 年 2 月 16 日:Dopamine 2.0 发布,这是对 Dopamine 的完全重写,并增加了对 15.5-16.5 上的 A15-A16/M2 设备、15.5-16.5.1 上的 A12-A14/M1 设备以及 15.0-16.6.1 上的 A9 (X) -A11 设备的支持
行进:
2024 年 3 月 2 日:palera1n 2.0.0 beta 9 发布,自动应用启动参数以使大多数 App Store 应用能够在 17.2 及更高版本上打开(2.0.0 beta 9.1 稍后需要在几天后发布,因为原始 beta 9 没有在 17.2-17.3.1 上应用此功能)
2024 年 3 月 22 日:Apple 随机再次开始对 17.3.1 进行签名,此前他已于 3 月 12 日取消签名(17.x 中出现大量签名错误的趋势仍在持续,这些错误将在 8 月份再次出现)
四月:
2024 年 4 月 4 日:TrollInstallerX 发布,为 14.0-16.6.1 上的几乎所有设备提供通用的 TrollStore 安装程序(唯一排除的是 A8 (X) 15.2+)
2024 年 4 月 30 日:Dopamine 2.1 发布,在 15.0 及更高版本上增加了对 A8 (X) iPad 的支持
可能:
2024 年 5 月 6 日:Chimera、Taurine、ClassicFolders 3 等软件的开发商 CoolStar 被苹果聘用
六月:
2024 年 6 月 10 日:苹果发布 iOS/iPadOS 18,iPad 6 代、iPad Pro 10.5 英寸和 iPad Pro 12.9 英寸第 2 代将被淘汰,iPad 7 代将成为唯一剩下的 checkm8 iOS/iPadOS 设备
2024 年 6 月 11 日:据悉,在 18.0 beta 1 中,Apple 引入了一项检查,其中非 root 进程无法再生成 root 进程,这会破坏 TrollStore(即使发生了第三个 CoreTrust 错误),并且会破坏所有依赖 root 助手的 TrollStore 应用程序
2024 年 6 月 14 日:首个无需越狱的 iOS/iPadOS 16.7 RC/17.0 TrollStore 安装方法(后来成为 TrollRestore)得到确认,该方法在前一天被私下发现
2024 年 6 月 17 日:17.6 beta 1 发布,反向移植了 18.0 beta 1 中首次出现的相同根帮助程序更改
七月:
2024年7月22日:palera1n 2.0发布,增加对iPadOS 17.6及更高版本的支持,以及对tvOS 15及更高版本的支持
八月:
2024 年 8 月 13 日:Apple 随机取消对 iOS/iPadOS 17.6.1 和 visionOS 1.3 的签名,随后引发了一场小型签名派对(技术上仍在进行中),用于将 iPhone SE 第三代和蜂窝式 iPad Pro 12.9 英寸第二代更新至 17.4 beta 4,以及将蜂窝式 iPad 第七代恢复至 17.4 beta 4
2024 年 8 月 26 日:kok3shi9 5.0 发布,增加了对 9.2.x 上 64 位设备的支持,同时也是 9.2-9.3.4 上第一个公开的非受限 64 位设备越狱
九月:
2024 年 9 月 2 日:TrollRestore 发布,这是 iOS/iPadOS 16.7 RC/17.0 的第一个/唯一的非越狱安装方法,并为每个支持 TrollStore 的 iOS/iPadOS 设备/版本组合提供了一种安装方法
2024 年 9 月 23 日:palera1n 2.0.2 发布,在 18.1 及更高版本上增加了对 checkm8 设备的支持
2024 年 9 月 23 日:iOS/iPadOS 18.1 beta 5 发布,修补 sparserestore(TrollRestore 利用的漏洞,后来被 Nugget 等其他工具利用)
十月:
2024 年 10 月 21 日:iOS/iPadOS 17.7.1 RC 发布,同时修补了 sparserestore
2024 年 10 月 28 日:iOS/iPadOS 17.7.1 和 18.1 发布,这是第一个修补 sparserestore 的发布版本,同时也为 sparserestore 提供了一个 CVE(CVE-2024-44252)
十一月:
2024 年 11 月 4 日:tvOS 18.2 beta 1 发布,打破了 Palera1n 与 Apple TV HD 的界限,并在 tvOS 中实现了 SSV(这使得 rootless 与 iOS/iPadOS 变得相关)
2024 年 11 月 29 日:影响 18.0.x(仅限 18.0.x)的 IOSurface 释放后使用的概念验证 (PoC) 发布,虽然它是尚未被利用的 PoC,但目前是“最有希望”的可能被利用的 PoC(不会因任何缓解措施而立即消失,没有任何疯狂的附加条件,等等)
十二月:
2024 年 12 月 19 日:EverPwnage 1.0 发布,可越狱 8.0-8.4.1 上的 32 位设备和 9.0.x 上的 A6 (X)设备,也可不受限制地越狱 8.3-8.4.1 上的 32 位设备和 8.0-8.2 上的 A6 (X)设备
2024 年 12 月 23 日:palera1n 2.1 beta 1 发布,增加了对 Apple TV HD 上的 tvOS 18.2 及更高版本以及 iPadOS 17.7.3 的支持
2024 年 12 月 23 日:Nick Chan(palera1n 首席开发人员)成功在第六代 iPad 上运行 iPadOS 18
2024 年 12 月 29 日:EverPwnage 1.1 发布,增加了对 9.0.x 上 A5 (X)设备的支持,并扩展了 8.0-9.0.2 上所有 32 位设备的解绑支持
2024 年 12 月 31 日:距离上一次新的内核漏洞(puaf_landa)或任何与越狱相关的漏洞已经过去一年
全面的:
– 如果您对 Apple TV 感兴趣或者对 Legacy iOS 产品感兴趣,那么今年是非常好的。
– 如果您只对现代 iOS 产品感兴趣,那么今年的表现并不算出色。
希望 2025 年 Apple TV 和旧版 iOS 版本/设备能够继续改进。
此外,我希望现代 iOS 能够在 2025 年出现小幅反弹,但当然,我们必须看看 2025 年的情况如何。
新年快乐
本文来自 Netskao,如若转载,请注明出处:https://www.dnqc.com/news/1173.html