Comex has posted the source code for JailbreakMe 3.0 on his GitHub page.
Codenamed 'saffron' the jailbreak uses a PDF that exploits the font system into installing a custom payload, explains Sogeti.
Two exploits are used to jailbreak Apple devices by opening a PDF file in the MobileSafari browser: initial code execution is obtained through a vulnerability in the Freetype Type 1 font parser, allowing subsequent exploitation of a kernel vulnerability to disable code signing enforcement, get root privileges and "install" the jailbreak. The same kernel vulnerability is also exploited at each reboot to provide an untethered jailbreak, using the Incomplete Codesign technique to bootstrap the kernel exploit
You can check out the code at the link below or click here for a more detailed explanation. To learn how to jailbreak your device click here.
This site consistently has the worst comments on any given subject.
The source code isn't going to help Apple block future attempts. They already patched the PDF exploit.
While the source code could allow malicious attacks, it would only affect those who haven't updated or patched their iOS devices. So it's not likely someone will pursue this.
The real meat is in finding the exploit itself.
Apple will never pay some1 to hack their products, they are not stupid.
Although they knew the more you hack their devices the more they sell.
If it was not for the hacking tools available I dont think I would've bought apple products.
The only product thats not jailbroken in my house is my macbook pro and my Imac..
I have 6 Iphones 3gs jailbroken 3 iphone4 ,2 ipad2 and itouch all jailbroken..
So apple still cares about their securities of their customers and they truly care about their products they take pride.
As much as I like the jailbreak concept, and I've done it myself.
I think that it's irresponsible to post the code of the exploit to the entire WWW, as this will give the tools to criminals to create malicious code to attacks to iOS devices and possibly cause HW, SW and financial damages to millions of iOS users.
I agree with you cypher. Hey Comex we know you're a claver fellow!
But can you change your exploitation codes?
I am concerned about my privacy right now.
Dont display all your secret code to other hackers and apple to block them.
Thanks
There is no point stressing over other hackers gaining access because you should be safe if you patched the exploit as mentioned by comex or upgraded to iOS 4.3.4 which plugs the security hole.........I think.......