Closed imrobbyrc closed 5 months ago
A fallback option was added to init with iOS 16.3 structure offsets. e051ea7811540295b53fbb3d6877cbec8ed9d5e2
A fallback option was added to init with iOS 16.3 structure offsets. e051ea7811540295b53fbb3d6877cbec8ed9d5e2
Hi thanks for build 0.999.4, but still not working for me, it just reboot my phone. I use trollstore2 to install it.
Could you please attach the panic log?
Could you please attach the panic log?
sure, here you go panic-full-2023-12-26-094859.0002.ips.zip
Please try the latest version.
Thanks, I already try it, but apps just crash after I pressed start
Cant find crashlog, did you change apps name? Dont see escape on my crashlog
My escape apps doenst show any logs like people on other issue, i tried v.6 and v.5 too
try many times and got some logs showing on apps like "KFD xxxx" and just restart my phone here's panic logs : panic-full-2024-01-07-105341.000.ips.zip
New version is available: https://github.com/KpwnZ/Def1nit3lyN0tAJa1lbr3akTool/releases/tag/v0.999.7.
panic-full-2024-01-07-115104.000.ips.zip
still panic after some KPF text in logs
Please try again.
There might be some problem when initialization kcall primitive stage 1 but it's easy to fixed.
panic-full-2024-01-07-120151.000.ips.zip latest one panic, i got screenshot the apps but it dissapear after booting
I can help you to debug this bug 🙏
Any update bro? @KpwnZ
v0.999.8 is released.
v0.999.8 is released.
just crash again for latest build
https://x.com/wh1te4ever/status/1745268601542873595?s=46&t=IXt5t1UrD1nzICs27nvDDg maybe you can use this patch finder? I try this with mikasa and it working
There is nothing to do with the patch finder. Might because of the new exploitation method. Any crash log?
There is nothing to do with the patch finder. Might because of the new exploitation method. Any crash log?
Here’s panic logs, tried 5-10 times still no success just panic after press start
There is nothing to do with the patch finder. Might because of the new exploitation method. Any crash log?
Here’s panic logs, tried 5-10 times still no success just panic after press start
Reboot, wait a few minutes then try again.
Please try https://github.com/KpwnZ/Def1nit3lyN0tAJa1lbr3akTool/releases/tag/v0.999.9.
Alrrady tried for 5 times and it only instant reboot after i press start button, different for v8 is when i press start button need some seconds before it reboot
here’s crash logs, i attach 2 different crash log using v9 Archive.zip
About PUAF did you use settings puaf pages? For me with mikasa or pureKFD, i need to make it 512 to work and i use Landa method
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
<plist version="1.0">
<dict>
<key>kern_version</key>
<string>Darwin Kernel Version 22.1.0: Thu Oct 6 19:34:18 PDT 2022; root:xnu-8792.42.7~1/RELEASE_ARM64_T8015</string>
<key>off_cdevsw</key>
<integer>18446744005116579912</integer>
<key>off_gPhysBase</key>
<integer>18446744005108905872</integer>
<key>off_gPhysSize</key>
<integer>18446744005108905880</integer>
<key>off_gVirtBase</key>
<integer>18446744005108898232</integer>
<key>off_perfmon_dev_open</key>
<integer>18446744005110876100</integer>
<key>off_perfmon_devices</key>
<integer>18446744005116824592</integer>
<key>off_proc_object_size</key>
<integer>1328</integer>
<key>off_ptov_table</key>
<integer>18446744005108593000</integer>
<key>off_vn_kqfilter</key>
<integer>18446744005111196012</integer>
</dict>
</plist>
here’s my workin offset with misaka or purekfd
<?xml version="1.0" encoding="UTF-8"?> <!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd"> <plist version="1.0"> <dict> <key>kern_version</key> <string>Darwin Kernel Version 22.1.0: Thu Oct 6 19:34:18 PDT 2022; root:xnu-8792.42.7~1/RELEASE_ARM64_T8015</string> <key>off_cdevsw</key> <integer>18446744005116579912</integer> <key>off_gPhysBase</key> <integer>18446744005108905872</integer> <key>off_gPhysSize</key> <integer>18446744005108905880</integer> <key>off_gVirtBase</key> <integer>18446744005108898232</integer> <key>off_perfmon_dev_open</key> <integer>18446744005110876100</integer> <key>off_perfmon_devices</key> <integer>18446744005116824592</integer> <key>off_proc_object_size</key> <integer>1328</integer> <key>off_ptov_table</key> <integer>18446744005108593000</integer> <key>off_vn_kqfilter</key> <integer>18446744005111196012</integer> </dict> </plist>
here’s my workin offset with misaka or purekfd
We don't use these offsets actually (if you take a look at the code) I am looking into this problem.
BTW could you please provide some device logs? For example, screen shot before panicking?
BTW could you please provide some device logs? For example, screen shot before panicking?
No device log in apps, it instantly reboot after pressing start
BTW could you please provide some device logs? For example, screen shot before panicking?
No device log in apps, it instantly reboot after pressing start
What about waiting for a few minutes then start to jailbreak?
BTW could you please provide some device logs? For example, screen shot before panicking?
No device log in apps, it instantly reboot after pressing start
What about waiting for a few minutes then start to jailbreak?
Already do that, after first panics and reboot i wait for 5 minutes and start again, and try to disable low power mode, try airplane mode, but still panics instantly
I pushed a new update https://github.com/KpwnZ/Def1nit3lyN0tAJa1lbr3akTool/releases/tag/v0.999.11.
I pushed a new update https://github.com/KpwnZ/Def1nit3lyN0tAJa1lbr3akTool/releases/tag/v0.999.11.
Still panicking, but now have to wait around 10seconds to restart. Btw i just notice this today, did this apps sandboxing and have rights capabilities?
Crashlogs for latest build Crashlog.zip
Crashlogs for latest build
What about retry a few times?
Crashlogs for latest build
What about retry a few times?
I did, sometimes it panicked or the escape app crashing ( no crashlog for apps crash )
can you guide me to make i able to run this project? currently if i use escape.xcodeproj
it will break like Could not build module 'Darwin'
, i need to make a new project and copy all depedencies, but still error, did i miss something?
![]()
can you guide me to make i able to run this project? currently if i use
escape.xcodeproj
it will break likeCould not build module 'Darwin'
, i need to make a new project and copy all depedencies, but still error, did i miss something?
Yes, you can create another empty project, set its target iOS version to the same as DNAJT. And then build it. Then you can build DNAJT. It seems like it's an Apple's bug.
![]()
can you guide me to make i able to run this project? currently if i use
escape.xcodeproj
it will break likeCould not build module 'Darwin'
, i need to make a new project and copy all depedencies, but still error, did i miss something?Yes, you can create another empty project, set its target iOS version to the same as DNAJT. And then build it. Then you can build DNAJT. It seems like it's an Apple's bug.
yeah i already to that step, but got error like screenshot above
do i need to run this?
TRUSTCACHEVERSION=2 make for ios 16.1.2
, i got some error on running that , could you list full step to build?
do i need to run this?
TRUSTCACHEVERSION=2 make for ios 16.1.2
, i got some error on running that , could you list full step to build?
We got a support server now. https://discord.gg/23PqE4Jd
Joined
Now it should support iOS 16.1.X.
Now it should support iOS 16.1.X.
Working perfectly, thank you
Here my crash log escape-2023-12-25-181836.ips.zip