BlackRa1n is a Tethered iCloud Bypass Tool for iOS 15.X (checkm8 devices only)
It's really late and I have school tomorrow. I wanted to push this out as soon as I could so here it is for iOS 15.X. Not iOS 16 just yet...
Install tkinter, python3, sshpass, and whatever dependencies come with Sliver from appletech752.com
Instructions:
- Connect iDevice
- Open BlackRa1n folder and terminal on mac.
- In terminal enter the following command:
cd DRAG AND DROP BLACKRA1N FOLDER HERE
- In terminal enter the following command:
python3 blackra1n.py
- Pair iDevice in normal mode
- Jailbreak iOS 15.X (Watch the terminal for information if anything fails or what happens. Follow DFU steps that will pop up.)
- After your device is jailbroken and boots iOS you can continue to next step.
- Put device into DFU mode.
- Build Custom IPSW
- Boot Custom IPSW (You did this step right if you see SSHRD, verbose mode, text on the screen)
- Finally, Start BlackRa1n.
- Device will reboot and you're done!
If you get to recovery mode, just run Jailbreak step again and thats it device will boot bypassing iCloud Lock Activation.
I will update this asap. I have finals this week. @ios_euphoria <3
Original palera1n credits:
- Nathan
- The ramdisk that dumps blobs, installs pogo to tips app, and duplicates rootfs is a slimmed down version of SSHRD_Script
- For modified restored_external
- Also helped Mineek getting the kernel up and running and with the patches
- Helping with adding multiple device support
- Fixing issues relating to camera.. etc by switching to fsboot
- iBoot64Patcher fork
- Mineek
- For the patching and booting commands
- Adding tweak support
- For patchfinders for RELEASE kernels
- Kernel15Patcher
- Kernel64Patcher
- Amy for the Pogo app
- checkra1n for the base of the kpf
- nyuszika7h for the script to help get into DFU
- the Procursus Team for the amazing bootstrap
- F121 for helping test
- m1sta for pyimg4
- tihmstar for pzb/original iBoot64Patcher/original liboffsetfinder64/img4tool
- xerub for img4lib and restored_external in the ramdisk
- Cryptic for iBoot64Patcher fork, and liboffsetfinder64 fork
- libimobiledevice for several tools used in this project (irecovery, ideviceenterrecovery etc), and nikias for keeping it up to date
- Nick Chan general help with patches.
- Sam Bingner for Substitute
- Serena for helping with boot ramdisk.
Mod credits:
- @MatthewPierson: Patched mobileactivationd
- @edwin170: Some code inspired from dualboot-ios-15-with-14-script's repo
- @kitty915: Modified palera1n script to automate bypass and added instructions in the readme.
- @ios_euphoria: GUI Design
- @dedbeddedbed: SSHRD tool. Super handy ssh ramdisking.