GSM Shop GSM Shop
GSM-Forum  

Welcome to the GSM-Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features.
Only registered members may post questions, contact other members or search our database of over 8 million posts.

Registration is fast, simple and absolutely free so please - Click to REGISTER!

If you have any problems with the registration process or your account login, please contact contact us .

Go Back   GSM-Forum > GSM & CDMA Phones / Tablets Software & Hardware Area > iPhone ,iPod & iPad (Apple Inc. Products) > iPhone 4 / iPhone 4S


iPhone 4 / iPhone 4S iPhone 4 / 4S

Reply
 
LinkBack Thread Tools Display Modes
Old 04-02-2011, 12:52   #1 (permalink)
No Life Poster
 
Gecko_UK's Avatar
 
Join Date: Feb 2009
Posts: 851
Member: 961957
Status: Offline
Sonork: Jabber: [email protected]
Thanks Meter: 641
iPhone WildCard unlock?


Just stumbled across this:

Quote:
Wildcard Ticket Unlock Guide
IF YOU PAYED FOR THIS TYPE OF UNLOCK DEMAND A REFUND!!! THIS IS FREE TO THE MASSES!!!

This guide might become obsolete soon, I will try to implement this into a GUI so that it will become faster and less risky.
FOR THE SAKE OF SANITY, MY UNLOCK USES A MINOR EDIT, NONE OF THE EXPLOITS USED ARE NEW. YOU NEED TO BE JAILBROKEN, ALL THIS DOES IS CREATE A TEMPORARY TOKEN TO UNLOCK. NOT A TRUE NCK BRUTEFORCE UNLOCK, BUT STILL MORE ADVANCED THAN ULTRASN0W.
Jailbreak for READ/WRITE ACCESS
SecZone- patch lockdown.
Baseband- deactivate.
Direct to:
0x010-0x090 Public Key (RSA Key 3)
0x80 byte
0x0 Total length of the policy table in bytes
<Policy Item>
0x0-0x2 ID
0x2-0x4 type?
0x4-0xC IMSI mask

Activate Seczone lock down patch to allow IMSI Wildcard.plist EDIT
Go to: /var/root/Library/Lockdown/activation_records/wildcard_record.plist at this point the patch should allow you to find the IMSI Mask. You need to find these values.
YOU SHOULD SEE EITHER OF THE FIRST (2) VALUES [If you have the third value (aka the unlocked value) I have one question. Why the hell are you reading this guide?]
==>AT&T USA
IMSI Mask
310150?????????
310170?????????
310410?????????
311180?????????
310980?????????
==>T-Mobile Germany
IMSI Mask
26201??????????
26201??????????
26201??????????
All restrictions should be off at this point and the SecZone should have full read/write access via Modem. Copy and Paste from plisteditor will work as long as the baseband is deactivated. So change the values to that of a factory unlocked iPhone. The NCK BruteForce method can attain the actual key to create a pseudo Factory Unlocked Device that can stay unlocked via updates, this edit method makes your iPhone think that it is unlocked via a fake sig checked activation token (NOTE: RESTORES AND SYNC RESTORES WILL DEFAULT BACK TO THE ORIGINAL CARRIER SETTINGS! YOU WILL LOSE YOUR UNLOCK!)
At this point you change the values of the IMSI Mask to that of a Factory Unlocked Device.
==> Unlocked Device
IMSI Mask
???????????????

Reactivate Baseband. Signature token will activate phone via baseband and your phone will be unlocked
OK now this makes some sense upon 1st reading , but I though you would jailbreak and need baseband exploit in order to use modified wildcard ticket (so you could already run ultrasn0w afaik) ticket is sigchecked by baseband not application processor, would be refused upon modification, obviously this text doesn't include the additional required details , just wondered if anyone can shed some more light on this whether it sounds like the real deal or just someones notes..

it does mention 'seczone lock down patch' but doesn't go into specific details,.
  Reply With Quote
The Following User Says Thank You to Gecko_UK For This Useful Post:
Old 04-03-2011, 15:34   #2 (permalink)
No Life Poster
 
Gecko_UK's Avatar
 
Join Date: Feb 2009
Posts: 851
Member: 961957
Status: Offline
Sonork: Jabber: [email protected]
Thanks Meter: 641
Anyone have some ideas about this?
  Reply With Quote
Old 02-24-2012, 23:12   #3 (permalink)
Junior Member
 
Join Date: Dec 2002
Location: Russia
Age: 48
Posts: 17
Member: 18579
Status: Offline
Thanks Meter: 0
See Wiki

I think we can try take this file from never locked device and put it in locked.
But we will change all keys & ticket for locked imei and etc.

read this WildcardTicket - The iPhone Wiki
  Reply With Quote
Reply

Bookmarks


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Unlocking 5190 Ryu Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 23 01-07-2018 17:14
$50 Reward for unlocking my 6150!!! TheDon Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 5 03-23-2015 14:21
FAQ about unlock n0kia man0n Nokia Legacy Phones ( DCT-1 ,2 ,3 ,L ) 6 11-29-2010 19:06


All times are GMT +1. The time now is 18:21.



Powered by Searchlight © 2024 Axivo Inc.
vBulletin Optimisation provided by vB Optimise (Pro) - vBulletin Mods & Addons Copyright © 2024 DragonByte Technologies Ltd.
- GSM Hosting Ltd. - 1999-2023 -
Page generated in 0.30827 seconds with 9 queries

SEO by vBSEO