Untethered Downgrade iPhone 4 To iOS 6

Are you still using iPhone 4?

The iPhone 4 has already been discontinued from the iOS update, but surprisingly it's also the last iPhone to be able to untethered jailbreak with the latest version. The checkra1n string jailbreak by checkm8 is very useful now, but until 10 years ago, the iPhone 4 is quite useful as a device that can always perform the string jailbreak by using the powerful Bootroom exploit called "limera1n exploit". did.

This time, I will introduce a tool that can unconditionally complete downgrade or jailbreak iPhone 4 to iOS 6.1.3. There are no prerequisites.

Those who have been jailbroken for a long time seem to have saved SHSH, but this tool still has certain advantages.

I think it will be much easier to operate than the existing tools.
cherryflowerJB
Version: 1.4.2 beta 1-1
Supported operating environment
macOS 10.13 or later
corresponding device
iPhone 4 [iPhone3,1]
JB compatible iOS version
6.1.3 [10B329]
IOS version for Downgrade only
4.3, 4.3.3, 4.3.5, 5.x, 6.x
Download linkDownload

Currently only macOS. Eventually, Jailbreak support for iOS 4 and 5, as well as iPhone 5 (with ios 7 SHSH) will be available

How to use

Download the tool from the download link and unzip the zip.


Also store these two files in the unzipped folder.
After unzipping, open terminal. After typing'cd' as shown in the image below, drag/drop the unzipped folder to the terminal screen.

After pressing Enter to move to "cherryfloverJB", execute the following command.
./cherryJB <in> <out> -memory -derebusantiquis <7.1.2 ipsw>

*If you do not jailbreak, use "cherry" instead of "cherryJB".

In this case, I want to use iOS 6.1.3, so it will be like this.
./cherryJB iPhone3,1_6.1.3_10B329_Restore.ipsw iPhone3,1_6.1.3_10B329_Custom.ipsw -memory -derebusantiquis iPhone3,1_7.1.2_11D257_Restore.ipsw

If all goes well, you will have a CFW called iPhone3,1_6.1.3_10B329_Custom.ipsw.
Connect iPhone 4 to mac in DFU mode, follow the steps below to get SHSH of iOS 7.1.2 and convert the file to xml format. This CFW is device specific. If you want to downgrade another iPhone 4, create a CFW for that device again. 
After creating the CFW Custom IPSW, restore iPhone 4. Please note that all data will be erased.
Connect iPhone 4 in DFU Mode and set it to pnwedDFU mode with the Using command.
./pwnedDFU -p

Next, get SHSH for iOS 7.1.2.
./idevicerestore -t iPhone3,1_7.1.2_11D257_Restore.ipsw

The obtained SHSH is saved under the name'shsh Folder
Remame SHSH 7.1.2 to 6.1.3
Finally, run restore to finish.
./idevicerestore -e -w iPhone3,1_6.1.3_10B329_Custom.ipsw

Release

If you want to release after applying this exploit, there is a work to do before restoring normally.
Go to'remove_for_i4' on the terminal and connect your iPhone 4 in DFU Mode
./disable

Run. It is successful if the device is in recovery mode after rebooting. Let's restore it with iTunes as it is.

How it works
As you may be familiar (?), iBoot exploit that works on iOS 7 is used.
When you start the device, the usual flat design Apple Logo appears. After a few seconds, the exploit will activate and the display will switch to the old Apple Logo, which has a three-dimensional effect. At this point, iOS 6 starts to boot, and iOS will start in the jailbroken state.
By the way, the jailbreak state is Bootloader-based jailbreak as used in iPhone 3GS. p0sixspwn is not used.
verbose boot
Although there are options for redsn0w and checkra1n, this tool can also display the boot log at startup. Info.plist in the bundle
(Location:'FirmwareBundles/CHERRYJB_[device]_[version]_[build].bundle/Info.plist')
By adding "-v" to boot-args, you can boot with verbose boot.
cs_enforcement_disable=1 amfi_get_out_of_my_way=1

cs_enforcement_disable=1 amfi_get_out_of_my_way=1 -v

Video How To Use
Credit To cherryflowerJB

Don't forget subscribe us. 
Thank you for watching our channel.

Post a Comment

0 Comments