OS 4.0 Beta 4 Jailbroken on 3GS
This is a work in progress but I thought I would share the results so far. Cydia still has some issues, many applications install but crash, some examples include mobileterminal, sbsettings, five icon dock. I did this only to hopefully motivate the developers to get their applications ready for 4.0 as it is coming very soon and the last thing we need in the community is to have repos full of broken apps! I accomplished this by patching asr, lockdownd, LLB, iBEC, IBSS, iBoot, kernelcache, MobileSafari, Services.plist, and fstab. The binaries were patched with IDA Pro and OxED and were then diffed against the original pwned files with bsdiff to create patch files. I then took the diff files and built a firmware bundle that I dropped into Pwnagetool and updated the cydia tree within Pwnagetool as well. Once this was done, I created a custom ipsw with Pwnagetool, unzipped it, applied a pwned LLB from a pwnagetool generated 3.1.3 ipsw, zipped it back up and restored to my device. At this time I am unable to get my T-Mobile NL sim to work so I downgraded back to 3.1.3 after playing around with 4.0 for a while. I look forward to the release and the official unlock from the Dev-Team. Many thanks to @p0sixninja for many hours patiently showing me the tricks and tips of jailbreaking 4.0b3 and then setting me out on my own to do beta 4. Without his tutelage, this would not have been possible
Related posts:


27. May, 2010 






NL,bbuds<coffeshops smartshops
hackers NL rulez!
netjes gedaan, ik had 4.0 beta op mijn 3gs maar ik miste toch de JB. dus toch maar weer terug naar 3.1.3 gedaan:( maar echt netjes gedaan:D
where is the download link??,
Hi,
can some please answer the following questios I am very new to the iphone world.
1. I used the idetector to find out that are my iphone new bootrom or old which it showed new, but when use the other method; the one that you see if yours is MB or MC, mine is MB or it is MC and has a 4th and 5th digit under 40, so I still don’t know what is the answer of my bootrom status.
2.Is there any software that well let you JB & unlock 3GS OS 4.0 new & old bootrom?
if so please provide the instructions.
Keep up the great work. We need more women like yourself in the cat and mouse game.
Yayy!! You are one hell of a hacker hehe.. SHARING IS CARING.. Plz share the bundle
But Do You Think An Unlock And HackActivation after updating the baseband with 3.1.3 is possible?
Oops sorry didn’t see the previous comments…
Hey Kaatje!
Would you be able to zip up the patch files and post them somewhere or send them to me? Or even if you made a tutorial on how to do it? I have tried to get os4 beta 4 on my 3gs jailbroken, but to no avail…
Thanks!
I made a commitment not to release anything. This was pretty much for my learning experience and felt the need to share with everyone to have faith! A JB is coming soon!
Its cool that you have accomplished that, i wish somebody showed me too what hex addresses to patch in all those files. I don’t mind long process and i don’t care about automated tools, this way i would make myself custom firmwares every next release. I was able to decrypt all the FW files.
You know that it is not allowed to have the name apple in your URL…
(http://www.apple.com/legal/trademark/guidelinesfor3rdparties.html)
@Peter: Wow you’re retarded.
Don’t think it’s possible to copyright the word “Apple,” considering fruits are sold with the same name. Not to mention, it’s kinda funny to think about the fact that people who care about copyright actually exist. Move over, because most people don’t. =P
Way to go!!!!! Willl the devs(MuscleNerd) Release this in RedSn0w is this exploit usable or willl he have to mod pwnage tool any word?
how to install os4 beta4 no update bassband look here http://www.iPhone4g-pro.com
Wow, this is so awesome, you guys ROCK … I been waiting so long for this. I hope this become avaliable for public .
Congrats, and keep up with this awesome work !!!
When do you think they will release the unlock for the 3GS on 05.12.01
I honestly do not believe that an exploit will be wasted to unlock baseband 05.12.01. I believe that the next unlock will be for the version that releases with 4.0.
Care to share the bundle? Also can the baseband update be stripped from the update, either by manually removing it from the ipsw or through pwnage tool?
I am unable to share the bundle at this time. The ipsw that I generated stripped the baseband update by use of pwnagetool.
will you relese it??
I am unable to release it due to prior agreement with the teams.
Awesome Kaatje!