kpwn / yalu102

incomplete iOS 10.2 jailbreak for 64 bit devices by qwertyoruiopz and marcograssi
Do What The F*ck You Want To Public License
1.77k stars 554 forks source link

SHA1 collisions, so use SHA256 in README.md? #470

Open mwoolweaver opened 7 years ago

mwoolweaver commented 7 years ago

https://security.googleblog.com/2017/02/announcing-first-sha1-collision.html

https://github.com/blog/2338-sha-1-collision-detection-on-github-com

P0siti0n45 commented 7 years ago

The chance that someone will take advantage of that is so low

tangalbert919 commented 7 years ago

Quite a few of us know about this (I've only known that for a week). Why does Yalu need to make the switch now?

P0siti0n45 commented 7 years ago

Why would someone go through the hassle to find a collision just to be able to upload a random yalu ipa and say it is the real deal.. just why. Not to mention the computer power you would need to make that even remotely possible

ghost commented 7 years ago

iOS 10.2.1

sysname: Darwin nodename: iPad release: 16.3.0 version: Darwin Kernel Version 16.3.0: Thu Dec 15 22:41:46 PST 2016; root:xnu-3789.42.2~1/RELEASE_ARM64_S5L8960X machine: iPad4,1 2017-03-31 10:47:37.921405 yalu102[336:34498] [Common] _BSMachError: port 38803; (os/kern) invalid capability (0x14) "Unable to insert COPY_SEND" 2017-03-31 10:47:37.924482 yalu102[336:34498] [Common] _BSMachError: port 38803; (os/kern) invalid capability (0x14) "Unable to insert COPY_SEND"

P0siti0n45 commented 7 years ago

@MDallak omg .. 10.2.1 is not supported The exploits are fixed on 10.2.1

P0siti0n45 commented 7 years ago

@MDallak and why do you have do hijack a thread

jogolden commented 7 years ago

This is the most retarded shit I have ever heard