Nathan

3.1K posts

Nathan banner
Nathan

Nathan

@dedbeddedbed

minecraft and jailbreaking/messing with iOS Discord: pvpnathan My Jailbreak Repo/Site: https://t.co/18TzxHa8ag

Cincinnati, OH Katılım Kasım 2021
415 Takip Edilen8.3K Takipçiler
Sabitlenmiş Tweet
Nathan
Nathan@dedbeddedbed·
If you would like to support me for the work I do, please remember I have a donation page at buymeacoffee.com/dedbeddedb0
English
18
12
99
86.1K
Nathan
Nathan@dedbeddedbed·
should i do another minecraft server but this time run on like a iphone or something
English
5
0
20
6.1K
Nathan
Nathan@dedbeddedbed·
@DennisTheArtist if those exploits are reversed engineered and put into dopamine nathanlr won’t have a reason to exist anymore
English
0
0
1
37
Dennis
Dennis@DennisTheArtist·
@dedbeddedbed Could a more robust version of NathanLR be made with these exploits?
Michael@MasterMike88

So, let's talk about that Coruna exploit kit stuff now, shall we? Let's first establish a few basic grounding points, though, before people over-hype this too much: 1. There is zero guarantees that anything comes from this. Everything here requires stuff to be deobfuscated before it could ever be beneficial for anything. This process inherently requires effort, and it's the type of thing that isn't guaranteed to go anywhere. Additionally, while everything in this post is as accurate as current information tells us, there are things here that are subject to change or subject to validation. 2. Even if anything of note comes from the Coruna exploit kit, this is not a major major advancement. The bugs that this chain kit uses were all patched by 16.7.6/17.5. Additionally though, the last kernel exploit was patched in 16.7.5/17.2.1, which means that the highest possible advancement for jailbreaking is: - EoL (16.x): iOS/iPadOS 16.7.5 - 17.x: iOS 17.2.1/iPadOS 17.2 Which, to be clear, is not nothing - it would allow for the first proper jailbreak for arm64e 16.6-17.2.1, and it would also end the 2+ year streak of no arm64e advance or no jailbreak-relevant exploits. But it isn't going to take us to 18.x or even late-17.x. Now that we've gotten that all out of the way, let's lay some groundwork here. The Coruna exploit kit is a Chinese/Russian spyware kit, involving 23 different bugs designed to target devices running iOS versions 13.0 - 17.2.1. You can read more about this spyware kit as spyware at the following two links: Google Cloud Article: cloud.google.com/blog/topics/th… iVerify Article: iverify.io/blog/coruna-in… Now, Google and iVerify didn't directly publish any samples themselves about this (whether this will change in the future or not, I wouldn't know). But, some of the links that it was mentioned that the spyware was on are still operating and are still actively able to infect devices. This is how various individuals have been able to get samples and begin to look into them. Now, again, there are still a lot of things that need to be figured out before anything truly comes from this, but for now, let's focus on a few of the interesting things about this exploit kit: 1. The "PPL Bypass" bugs (for 17.x) appear to also work on SPTM devices. Some additional context: iOS/iPadOS 17 replaced PPL with SPTM and TXM on some devices. On the relevant versions here (M4 was introduced in 17.4 and iOS/iPadOS 18 shift M2 to SPTM), this encompasses out to: - PPL Devices: A12-A14/M2 - SPTM Devices: A15-A17 This change doesn't affect necessarily the flow of bugs (they usually will require PAC Bypasses) but it can potentially break certain bugs that would work for a PPL Bypass. Based on what we have seen, however, it appears these bugs do work on SPTM devices, which does mean - if anything comes from this - this will likely work on all devices for 17.0-17.2.1. 2. There's enough bugs here for a WebKit jailbreak (and TrollStore installation method for relevant versions). The entire goal of every chain that can be exploited with this kit is that it is designed to be a one-click exploit - you go to a malicious website and immediately have your crypto logins, location, camera roll, and other stuff siphoned off to China or Russia (depending on which type you get exploited by). Now, as we've established, this is a full kit of exploits for a variety of versions starting with 13.0, and the kit is ultimately able to accomplish a one-click up to/including 16.7.4 (EoL) and 17.2.1 for all devices. Because of that, all the bugs that would be needed for a WebKit-based jailbreak for 13.0-16.7.4/17.0-17.2.1 are present. Now, of course, that would require someone to put in the effort to exploit all of these bugs in a WebKit environment, but the option for someone to do that still exists. Additionally, for those on TrollStore versions (14.0b2-16.6.1/16.7 RC (20H18)/17.0): As it would be possible to achieve a WebKit-based jailbreak, that also inherently means a WebKit-based TrollStore installer would also be viable. (Note: If one did happen, it would obsolete almost every other method except for TrollHelperOTA (as that doesn't exploit a WebKit bug or kernel bug at all)).

English
1
0
0
56
Nathan
Nathan@dedbeddedbed·
2.1.1-4 fixes issues with (some) app store user injected apps on ios 17.0 A15+ devices crashing
English
25
4
73
14K
Nathan
Nathan@dedbeddedbed·
Anyone have a good place to get a m3 pro macbook pro with 36gb ram 1tb storage for a decent price? can’t find any good ones
English
3
1
28
10.7K
Billy Ellis
Billy Ellis@bellis1000·
Very curious about the 'Coruna' iOS exploit chain. Does anyone who worked on the analysis have access to samples they can share? I would be very interested in doing a breakdown video on the implant, in the style of: youtu.be/0JFcDCW3Sis?si…
YouTube video
YouTube
English
7
16
131
13.5K
adult swim
adult swim@adultswim·
Smiling Friends: S3 Coming This Fall + Seasons 4 & 5 on the way
adult swim tweet media
English
1.9K
14.3K
140.7K
19M
Nathan
Nathan@dedbeddedbed·
Ill start mc server soon
English
3
0
14
2.3K
Nathan
Nathan@dedbeddedbed·
would you guys join if i post an ip to a minecraft server later today in like 6 hours just because
English
4
0
28
4K
Nathan
Nathan@dedbeddedbed·
@giohrz1 did you update the app as well? I suggest doing that and rejailbreaking if you already have the latest systemfiles
English
1
0
1
64
giohrz
giohrz@giohrz1·
@dedbeddedbed I updated to the new version. Before, I didn’t want to update, but I decided to do it and it works wonderfully. The battery lasts a long time, the settings are perfect, and I truly recommend it!! Thk !!!!
giohrz tweet media
English
2
0
0
63
Nathan
Nathan@dedbeddedbed·
@foxfortmobile He deleted all of his socials and archived/deleted everything on his github. Hope he's okay
English
1
0
44
1.8K
Foxfort Mobile
Foxfort Mobile@foxfortmobile·
What happened to p2kdev repo? It's permanently offline or has it been moved to another url? I was trying to update twitternoads tweak in sileo but keep hitting error 404.
Foxfort Mobile tweet media
English
1
0
41
5.7K
Nathan
Nathan@dedbeddedbed·
@iPhShqip yes it is if you read the photos
English
0
0
1
941