r/jailbreak Mar 29 '25

Release turdus merula - blackbird downgrades for A9 and A10 devices

283 Upvotes

turdus merula is a tool capable of performing restores (tethered and untethered) while retaining SEP functionality. This means that passcode, Touch ID, WiFi and anything else involving SEP will work as intended.

The tool supports all A9(X) and A10(X) devices with the following restore options:

* Tethered - iOS 9.0 - 18.3.2

* Untethered - iOS 9.0 - 18.4 with SHSH2 blobs (iOS 16.0+ requires a valid Cryptex1 ticket)

A guide to saving Cryptex1 blobs can be found at the following link (the guide is in Japanese):

https://ichitaso.com/ios/shsh/how-to-save-shsh-for-cryptex1/

If there is a better guide posted, I will update this post accordingly.

Notes:

  1. There have been a few issues with certain beta builds (especially .0 betas). Please report this and any other issues, providing as much information as you can, to https://github.com/turdus-m3rula/bugTracker.
  2. iOS 10 restores on devices with the MDM9645 baseband (iPhone 7, iPad Pro 2017) will not be able to activate, due to the baseband firmware not working correctly on these versions. This issue may not affect all iPhone 7s and iPad Pro 2017 models, but it is actively being looked into.
  3. Restoring to factory firmware with factory blobs may require a tethered restore beforehand.

Future plans include:

* Support for tethered restores on iOS 18.4+

* Support for using checkra1n/palera1n with tethered downgrades

* Support for A7 and A8 devices

* Fix for MDM9645 baseband devices

turdus medula will always be free - if you’ve paid for this software, you’ve been scammed. Download this tool for free at https://sep.lol.

Guide to usage: Untethered: https://ios.cfw.guide/turdusmerula Tethered: https://ios.cfw.guide/turdusmerula-tethered


r/jailbreak Nov 19 '21

r/jailbreak FAQ [Meta] Frequently Asked Questions and Important Information - Check Here Before Posting

772 Upvotes

r/jailbreak 7h ago

Question What should I do with this(i think it is a iPod 1)

Thumbnail
gallery
18 Upvotes

Give me ideas what I should do with it, for example jailbreak it or sell it idk


r/jailbreak 6h ago

Question Where to start with jailed tweaks and jailbreak development?

0 Upvotes

Hey everyone,

I’m interested in getting into both jailed development (stuff like TrollStore/AltStore apps) and traditional jailbreak tweak development. I have quite a lot of programming background— including low level c, assembly, etc.—but I’m completely new to the iOS side of things and I’m not sure where to find good resources or communities that focus on this.

I’ve heard about tools like Theos, Logos, and Frida, but I don’t really know the best way to start learning them. I’d love some advice on: • Beginner-friendly guides or tutorials • Good repos to study (simple tweaks or jailed apps) • Books, writeups, or blogs that helped you when you started • Discords/forums/communities that are actually active for learning and sharing

Basically, I want to start by building some simple tweaks/apps and work my way deeper (maybe even toward security research later). Any pointers, resources, or even example projects you recommend would mean a lot.

Thanks!


r/jailbreak 1d ago

Release [Release] dirtyZero v1.1 out now!

Post image
290 Upvotes

dirtyZero v1.1 is out now! dirtyZero is a simple customization toolbox that utilizes CVE-2025-24203. Supports iOS 16.0 - iOS 18.3.2.

GitHub Release: https://github.com/jailbreakdotparty/dirtyZero/releases/tag/v1.1

This update brings a redesigned UI, new tweaks (especially for the control center), improved tweak application and logging, and more! Brought to you by jailbreak.party.


r/jailbreak 5h ago

Question so what the hell happened over the past 2 years

0 Upvotes

me forgot about jelbrek


r/jailbreak 3h ago

Discussion CVE-2025-43300 / iOS 18.6.1, Any hope for a new jailbreak ?

Post image
0 Upvotes

Hello folks, yesterday someone made a brief info on iOS 18.6.1 RCE bug CVE-2025-43300, and someone else asked Grok if it is useful for IOS jailbreak, which Grok answered by yes as you can see in the picture. So, u/opa334 any hope to see a near jailbreak ?


r/jailbreak 9h ago

Discussion Battery healt restore

0 Upvotes

Is there a tweak to restore battery healt to 100% after replacing the battery but maintaining the original bms? I tried to search but i only get to posts where people tell what to do to keep the health as high as possible. Thanks


r/jailbreak 15h ago

Question [Help] Getting error 0xe8008019 (The application does not have a valid signature) with AppSync Unified tweak installed

0 Upvotes

Device model: iPad Air (1st gen), iOS Version 12.5.7, Jailbreak: Chimera (specifically ChimeraPatch which was recommended for my iOS version and chip by ios.cfw.guide).

I'm trying to install the ipa of an old free app via Filza, and I'm getting error 0xe8008019 (The application does not have a valid signature). I get the error the first time I try to install it, then on subsequent tries it does install, but crashes after about a second on the publisher's loading screen whenever I try to open it. I have confirmed that the ipa file works when sideloaded.

I have the AppSync Unified tweak installed via Sileo, and have made sure I'm in jailbroken mode whenever I try it. I am a total Apple noob though, and may be missing something obvious.


r/jailbreak 18h ago

Question iPad OS 15.3.1 with Trollstore - no Filza url-schemes - DRM not working

0 Upvotes

All my purchased videos on TV app are black screen with audio - indicating that DRM is broken. I am certain it has to do with one of the Trollstore apps - but how to determine if this is the case and which one? No Filza installed.

BIG thank you for any guidance


r/jailbreak 7h ago

Update cybersecurity professional

Post image
0 Upvotes

r/jailbreak 15h ago

Discussion Where should I start?

0 Upvotes

I have an iPhone 13 sadly it’s in 18.6, problem is it kept resetting by itself and the WiFi&Bluetooth can’t be turned on, as well I can’t hotspot to my iPad. I jailbreak my iPhone 6 years back but I don’t really remember anything useful, where should I start and what should I do?


r/jailbreak 15h ago

Discussion Buying a new iPhone with nugget.

0 Upvotes

My jailbroken iphone 13 promax is on it’s last leg on ios 15. I want a nwer iphone that can still be customized with videowallpapers and custom icons. Can nugget do that? Where do you buy phones with nugget? I cant find any on ebay.


r/jailbreak 9h ago

Question who knows how to downgrade ios 18 to 16?

0 Upvotes

im trying to jailbreak my phone just i need help trying to downgrade 18 to 16 cuz i got a iphone 14


r/jailbreak 15h ago

Question How do I open tweaks I installed? Aren’t they supposed to appear as icons?

Thumbnail
gallery
0 Upvotes

Neptune for example… sorry I’m very new to this


r/jailbreak 1d ago

Discussion How do I downgrade a 2016 iPhone SE?

Thumbnail
gallery
27 Upvotes

I have this 128gb iPhone SE 2016 on iOS 15, the battery isn't lasting long (health is at 84%) I wanted to go back to an old version of iOS. How to do it? Does a downgrade that can boot the cell phone without a computer, without complications already exist?


r/jailbreak 16h ago

Question [Question] How to use Socket jailbreak to be able to use my iPad normally, not as an "outdated" device?

0 Upvotes

I got socket installed on my old iPad 4th gen, I want to download a browser like brave and youtube app and adobe acrobat on versions that would work now, is it possible?

if not, is there alternatives?

all I want from this iPad is simple internet browsing, youtube watching, PDF reading and drawing (more like writing with my finger) on it.


r/jailbreak 11h ago

Discussion Need iOS 16.5 currently iOS 18.6.1

0 Upvotes

Some idiot (parents) were fucking around with my phone turned on auto updates my iOS was 16.3.1 as well I turned off updates awhile back was glad of it when the ability to connect to fucking elons starlink was announced. Anyway just learned due to the sudden desire (my expensive ass laptop I usually access tor through broke) I cannot jail break my phone unless I have iOS 16.5 or younger which fucking sucks because I want tor which is only available through google play as of now. I’ve seen many people say it’s not possible to backtrack past iOS 17 is that really true theoretically if I were to have older model phones (to slow so don’t bother) and some soldering skills could I use pieces to make a compatible Franken phone. If not I’ll just switch to android when my paycheck comes through (as it’s cheaper than a new computer) and be done with this bs. (Ps my tor use is for some anonymous digging on certain unsavory characters)


r/jailbreak 5h ago

Upcoming 什么是爱情💓这就是爱💕恨情仇….

0 Upvotes

r/jailbreak 22h ago

Discussion Jailbroken iPad 6, what now?

0 Upvotes

Got my iPad 6th 32gb iPadOS 17.7.8 jailbroken with palera1n on my Ryzen laptop, can I now install unlimited ipas without using my laptop? And also enable JIT for emulation? 2 main things I was looking for with a jailbreak, couldn’t find much about it online, thanks in advance for the help!


r/jailbreak 22h ago

Question How do you get out of pwndfu mode , and into normal dfu mode in iphone 7 ?

0 Upvotes

I have an iphone 7 and followed a tutorial to go into pwndfu by using ipwnder tool, i used it but now the phone is heating and lagging i can't even use it properly, I can't switch off or go into recovery mode... sometimes it gets stuck on apple logo , my best i guess is that i might be in pwndfu mode and flashed, so is there way to get out of it and boot into normal dfu, Its my first time doing jailbreak, i knw i m a noob but please help


r/jailbreak 1d ago

Discussion What iOS is this?

Thumbnail
gallery
20 Upvotes

iPhone XS


r/jailbreak 14h ago

Question Forgot Lockcreen

0 Upvotes

I have an old iPad 2 with IOS 9.3.5, but I forgot the lock screen passcode. I’d really like to recover my old photos and videos from it. I tried entering different passcodes, but now the iPad is locked for something like 8,177,600 minutes. I don’t really care about keeping the iPad itself since I plan to give it away, but I’d love to know if there’s any way to bypass the lock screen so I can get my data back first.


r/jailbreak 23h ago

Question Iphone 6s with 15.8.4 ios

0 Upvotes

Hi! I have a iphone6/s with ios 15.8.4. Reasons to do the jailbreak? What I can do with it? Thanks


r/jailbreak 19h ago

Discussion Any music streaming ipa that can also download offline songs?

0 Upvotes

Need a good music streaming ipa that can stream on wifi too and download songs since eevespotify or any Spotify ipa does not allow downloading as it is server side.


r/jailbreak 16h ago

Question Is it worth jailbreaking my iPhone 11 Pro Max on iOS 15.5?

0 Upvotes

I just got this phone and I’m hesitant to jailbreak it in case something goes wrong and it bricks the device and I have to restore to iOS 18 however I want to be able to install troll store etc etc. is it worth the risk?


r/jailbreak 1d ago

Question New to this .. ipad air 2, 11.4.1, no Mac-computer (but win or Linux) - questions

0 Upvotes

Hi all, please I have a few questions, that i do not understand.

I do not have anything of apple (I am using Linux and have a few Win machines, too), so I do not understand that ecosystem, too.

A friend asked me to jailbreak their old iPad air 2, with version 11.4.1. The web suggests unc0ver.

  1. I do not understand the versioning.
  • Version on the iPad is 11.4.1.
  • If I manage to jailbreak it, will it be the same version - but "jailbreaked"? And for how long? (Until I switch off the iPad?)
  • will it "stay jailbreaked"?
  • will there be apps/programs for this version in a store like f-droid? Can I sideload the apps per USB?
  • will the iPad, as soon as it will be connected to the web, try to "upgrade itself"? Can I prevent it?(as I read, a upgraded version does not allow jailbreak any more/makes it more difficult?)
  • how "secure" will it be, say, if I managed to jailbreak and load something like FireFox (does it have)? will it be a reasonable secure version?
  1. I cannot create an apple dev. on FireFox ("not at this time" -message does not go away; even if I disable the VPN and just any privacy addon like ublock)

.. can I do jailbreak without this id? Or do I have to ask someone with an iPhone to create one for me?

Thank you all!! I had a look if I cannot _just install Linux there_ and things just work but, the project that I can find is not that far

Thank you!