»
首页
|
手机数码
|
汽车资讯
|
游戏硬件
|
评测专题
|
手机壁纸
|
海淘值得买
|
度假
|
求职招聘
|
广告联系
» 您尚未登录:请
登录
|
注册
|
标签
|
帮助
|
小黑屋
|
TGFC Lifestyle
»
Apple 专区
» shsh将来没戏了
发新话题
发布投票
发布商品
发布悬赏
发布活动
发布辩论
发布视频
打印
shsh将来没戏了
eva3d
毛熊爸
魔神至尊
苹果神教
帖子
28578
精华
1
积分
54584
激骚
1363 度
爱车
EZ
主机
全都有
相机
黑卡5
手机
X
注册时间
2004-2-23
发短消息
加为好友
当前在线
1
#
大
中
小
发表于 2011-6-27 09:54
显示全部帖子
posted by wap, platform: Firefox
转自 dev blog
It looks like Apple is about to aggressively combat the “replay attacks” that have until now allowed users to use iTunes to restore to previous firmware versions using saved SHSH blobs.
Those of you who have been jailbreaking for a while have probably heard us periodically warn you to “save your blobs” for each firmware using either Cydia or TinyUmbrella (or even the “copy from /tmp during restore” method for advanced users). Saving your blobs for a given firmware on your specific device allows you to restore *that* device to *that* firmware even after Apple has stopped signing it. That’s all about to change.
Starting with the iOS5 beta, the role of the “APTicket” is changing — it’s being used much like the “BBTicket” has always been used. The LLB and iBoot stages of the boot sequence are being refined to depend on the authenticity of the APTicket, which is uniquely generated at each and every restore (in other words, it doesn’t depend merely on your ECID and firmware version…it changes every time you restore, based partly on a random number). This APTicket authentication will happen at every boot, not just at restore time. Because only Apple has the crypto keys to properly sign the per-restore APTicket, replayed APTickets are useless.
This will only affect restores starting at iOS5 and onward, and Apple will be able to flip that switch off and on at will (by opening or closing the APTicket signing window for that firmware, like they do for the BBTicket). geohot’s limera1n exploit occurs before any of this new checking is done, so tethered jailbreaks will still always be possible for devices where limera1n applies. Also, restoring to pre-5.0 firmwares with saved blobs will still be possible (but you’ll soon start to need to use older iTunes versions for that). Note that iTunes ultimately is *not* the component that matters here..it’s the boot sequence on the device starting with the LLB.
Although it’s always been just “a matter of time” before Apple started doing this (they’ve always done this with the BBTicket), it’s still a significant move on Apple’s part (and it also dovetails with certain technical requirements of their upcoming OTA “delta” updates).
大意是,自打iOS 5.0起,苹果在恢复固件时的校验里面多了一些随机的东西,单纯的备份shsh已经没意义了... blah blah..
UID
20670
帖子
28578
精华
1
积分
54584
交易积分
0
阅读权限
50
在线时间
18546 小时
注册时间
2004-2-23
最后登录
2024-11-15
查看详细资料
TOP
eva3d
毛熊爸
魔神至尊
苹果神教
帖子
28578
精华
1
积分
54584
激骚
1363 度
爱车
EZ
主机
全都有
相机
黑卡5
手机
X
注册时间
2004-2-23
发短消息
加为好友
当前在线
2
#
大
中
小
发表于 2011-6-27 14:18
显示全部帖子
posted by wap, platform: Firefox
shsh和有锁无锁没关系,只是降级用的,降级也不降基带,不过这个新闻说的问题也好解决,保留一个老版本的itunes就可以,例如10.2
UID
20670
帖子
28578
精华
1
积分
54584
交易积分
0
阅读权限
50
在线时间
18546 小时
注册时间
2004-2-23
最后登录
2024-11-15
查看详细资料
TOP
控制面板首页
密码修改
积分交易
积分记录
公众用户组
基本概况
版块排行
主题排行
发帖排行
积分排行
交易排行
在线时间
管理团队
管理统计