NEW YORK, 2:10 AM, TUE MAY 13 | 48 POSTS IN THE LAST 24 HOURS | tips@gizmodo.com | SUBMIT A TIP | RSS
UK | FR | NL | IT | DE | SP | JP | AU

iPhone Firmware 1.1.3 Video and Confirmation by iPhone Hacker

Here's a video of the iPhone Firmware 1.1.3, with confirmation that the leak is real from Natetrue, famed iPhone hacker. Like before, the update breaks unlocks and third-party apps, patching previous vulnerabilities at the same time. The video shows how to move icons around in the Springboard, wobbling to indicate they can be dragged and dropped around, which is kind of an Apple-meets-Nintendo touch:

We had some doubts, but now we can tell you we are sure: the new firmware 1.1.3 is real. Or as Nate puts it: "if it is a hoax, they did a buttload of work." The fact is that it installs normally and it works perfectly. For those not familiar, Natetrue is one of the most respected and veteran iPhone hackers and the author of the popular app iBrickr.

Nate goes on to say that "it installs on the phone no-questions-asked and for that you need to have Apple's private key, which i can confirm that the iphone hacker community does not have—as much as we would love to have it." Indeed, Apple's private encrypted key, used to authenticate all accesses to the iPhone most-private guts, hasn't been uncovered yet by anyone in the world.

In other words, no firmware upgrades can be installed without the knowledge of this key. Furthermore, the idea that someone would have access to this key and spend months to create a fully functional firmware update, with key new features and without any documentation whatsoever seems just absolutely silly.

Effects on unlocks and Third-party applications
The update breaks AnySim's unlocks. Logically, you can't unlock this update using AnySim and there's no alternative to iTunes for activation. If you want to activate, it will only work using iTunes and a standard AT&T account. Nate says, "that is the only way we have been able to activate so far." Nate tried to upgrade an AnySim 1.2u iPhone and it failed. Even while he was able to force it to boot, the phone refused to activate even with a normal AT&T SIM card. "I suspect it's due to the fact that the baseband could not be upgraded to the 1.1.3 'required' version", he says.

Other updates remain untested, like iPhone Sim Free or any of the hardware-based ones, like TurboSIM. In theory, these should work just fine, but jailbreak and activation would be absolutely impossible for the time being. We would have to wait until the update gets released in the open to try new alternative activation methods.

Your favorite third-party apps will be gone too, with no possibility of return for now. The update fixes the bugs which allowed "the jailbreak method we were using for 1.1.2, locking us out again, as expected."

Other effects
Like previous firmware upgrades, whatever is in the user partition remains unchanged. Only the Apple-owned part is affected by 1.1.3. So for those of you who claim that this is a fake because it says "Nate" in the network instead of "AT&T," that's the reason. He changed the network name in 1.1.2 using a program by Erica Sadun, of TUAW, called Make It Mine.

New features and future releases
The list of new features are confirmed too: all are correct, but he couldn't confirm if they are the only ones or not.

Many of you would be wondering how this could have happened, knowing the extremely tight security around the iPhone firmware updates. We don't know, but apparently the leak has occurred because "someone wanted to help the unlock effort." The source of the leak is completely anonymous, even to the people who have had access to the upgrade.

Why the update hasn't hit Torrent yet? The code could be watermarked to catch any leaks "so for now it's screenshots and videos." Also, distributing it won't make much sense at this point: according to Nate the iPhone 1.1.3 Firmware update could hit as soon as next week.

Stay tuned for more updates. [Cre.ations.net - Thanks Nate for your insight and Markus for the tip]

7:05 PM on Sat Dec 29 2007
By Jesus Diaz
256,617 views
109 comments

Comments

  • this looks more than a hack than anything because of it was a real firmware update the iPhone wouldn't have his name as a status indicator, and the phone looks clearly jailbreaked sithout Installer.app showing.

  • Yeah, I agree with Mdcol,

    If this was real, Apple would have him take it down.

  • Agreed, Mdcol.

    And you'd think he'd show off some of the more interesting features, like Locate Me.

  • @MadColombian:

    My carrier name change stayed after a full restore to 1.1.2.

  • cleary hacked b/c apple would never, ever, have the carrier icon switched neither would at&t

  • Could be a video. similar to the iBEER "magic trick"

    [www.hottrix.com]

  • bulls***. he just hid customize, installer, and smbprefs. the main reason u can tell is because the white dot are there right above the dock that tell u how many pages of apps u have. this was a hack, so i doubt apple would use the same design. i just can't figure out how he managed to get the icons to wiggle. most likey a modification to customize

  • i tink fake, and i agree, it might well be like the iBeer trick

  • If it is fake, nice waste of time on something trivial.

  • el jobso might be looking at this and laughing his ass off, first sign that this is fake!!! theres no picture of the screen displaying the new firmware like in the past, also most of these features wont make it to the iphone, like cell triangulation, although i do think the second gen will come with GPS

  • Image of Jesus Diaz Jesus Diaz at 08:17 PM on 12/29/07 *

    It installs in iTunes with Apple's private key. This is VERY real according to the evidence that natetrue has shown us. He's a serious guy with a proven record in the iPhone hacking community. The update will probably be out next week for everyone.

  • @jesusdiaz: So how do you explain the "Nate" where the ATT should be if it is not faked?

  • @mmix60: That can easily be changed with any jailbroken phone.

  • @dagamer34: Sure, but the article above states:"the jailbreak method we were using for 1.1.2, locking us out again, as expected." So I assume its a clean phone with no holdover from the last hack, no?

  • I have a 1.1.1 phone (originally bricked with anysim then unbricked with IPSF) I am using a legit att sim and have activated within itunes. At this point, I don't really care about having the phone unlocked, but would like to update to future versions with out worrying if my phone will become a brick. Am I ok updating with IPSF or is there a way to virginize my phone and update normally?

  • where can we get this apple god key?
    Moving icons to new screens on springboard makes sence if the app dev kit has been seeded to selected developers and apple will be approving apps like widgets come the end of mac world - we'll see an update, in about 2 weeks, closer to the 14th - why let a new set of features with out the magisty of the free press they will get at MW.

    Back to this god key - is it the ultimate unlock? if so, what has no one hacked the heel out of natetrue's systems and got it out there!

  • It is weird looking at the screen shots that were put out earlier also are blurred where the service name should be...i hope this update is real, but if not, then it's a bummer.

  • Im branding this with the AOTS SHENANIGANS label because If I remember correctly with a little mod you can double tap to hide an icon and If you look at the little summerboard dots there are three there no doubt hiding his other apps but I will never doubt Nate he already made that as a beta app because if you think about it it would be a simple app right like RSBT only in GUI form? Plus what about the iTunes icon being all the way to the left other than all the way to the right. One more thought he never showed the system preferences where it would say 1.1.3. Oops forgot one more thing what about the Nate in place of AT&T or other carrier logo can you say Erica Sudan?!!

  • i still think its fake i want to see the 1.1.3 on the about section

  • yeah this video is b.s.

    this is just a jailbroken 1.1.2 phone. There's an app that lets you change the carrier image. My phone says my name too.

    The app thats running looks pretty creative though.

    I think there will be an update sometime 1st quarter that will add new features for the touch/iphone to keep up sales before the new models come out later in the year.

  • It's pretty strange for AAPL to release (or prerelease) an update that cna be jailbroken so easily imo! Something fishy here... how'd they get it (thought Cupertino were notorious for their lockdown)? Not to mention this being a serious security breach...just seems to easy to me, esp with that Nate icon! OTOH it looks like a good app for installer if fake!

  • @jesusdiaz: Clearly, these guys have given you inside info to "prove" their claims...but this is a bit too much to swallow all in one shot... A leaked copy of iPhone firmware smuggled out of Apple... discovery of a "god key" that is a master unlock... yet with features of old style hacks ( carrier name change) even though its stated hacks don't work... and no video of firmware settings screen... Jesus, usually your posts are great (Cintiq anyone?) but either 1. you're being duped or 2. your holding back on your readers with details that support your case... (or maybe the dreaded 3. you're scamming us for short term reader growth?) ... C'mon....

  • Image of strider_mt2k strider_mt2k at 09:06 PM on 12/29/07 *

    Resistance is futile when less than 1 OHM.

  • i would virginize the phone first just to make sure, then it should update just fine.

    well great news that it bricks ur phone, just means the baseband is updated and an unlock will come very soon for both 1.1.2 and 1.1.3 (we needed 1.1.3 to update the baseband, to allow for us to unlock both 1.1.2 and 1.1.3). like the features, perhaps i'll actually update this time. cuz 1.1.2 is a worthless update

  • What the heck am I doing watching a video of a bird taking a bath?

  • Image of Jesus Diaz Jesus Diaz at 09:40 PM on 12/29/07 *

    @mmix60: "God key" discovery? The Apple private key for authentication is public knowledge since forever. It's the BASE for all security in iPhone communications. If the hackers had this key, they will be unlocking the iPhone with no problem no matter the updates apple put out.

    The article has all the information. It seems to me like you don't understand what it says.

    Again: Apple iTunes and the iPhone WON'T UPDATE the firmware of your iPhone if the downloaded software package doesn't have the Apple private key to authenticate. NOBODY has this key.

  • @jesusdiaz: The above article doesn't explain how this phone has a replaced carrier icon (Nate instead of ATT). Yes, I know the carrier icon replacement, is an easy, well known hack, but the article mentions that 1.1.3 resists the current jailbreak method. So, Jesus, why does the video have a replaced carrier icon?

  • Oh, and the big tell too... Apple hasn't requested a takedown, have they? Isn't that the usual confirmation of anything and everything Apple? Especially with something this significant?

  • If I'm the mentioned tipster, then the name is misspelled ;o)

    I'm very interested in hearing more about the "Nate"-carrier as well, I failed to notice it the first time I saw the vid. Jesusdiaz, we're counting on your excellent digging skills!

  • Image of Jesus Diaz Jesus Diaz at 09:58 PM on 12/29/07 *

    Can you read or you are just trying to be annoying?

  • Seems the word is the firmware doesn't change alterations like the customize icon switch... interesting. Might be a route into a new jailbreak *leaves it for the hackers*

  • @jesusdiaz: I am not trying to be annoying and if I am missing something, by all means, fill me in, but the above article mentions: activation only works if you do it through iTunes using a regular AT&T account, as he pointed out: "that is the only way we have been able to activate so far." Then it goes on to say: "the jailbreak method we were using for 1.1.2, locking us out again, as expected." Isn't Jailbreaking a pre-req for changing the carrier icon? For the sake of argument, indulge me, if this is a leaked copy of Apple's new iPhone firmware, and said firmware can't be hacked, why does it appear to have a hacked carrier icon. Really, Jesus, not trying to give you a hard time. But it doesn't add up. But more specifically, why do you believe it to be real? What "evidence" mentioned in articles title convinced you? Sorry if this post seems annoying, but this is just a Gizmodo reader asking a question.

  • @mmfy: Indeed, it looks like you might be right. Isn't this sort of how 1.1.2 was jailbroken anyway, where Oktoprep was installed before upgrading since a regular upgrade does just that whereas a restore actually wipes things clean and starts over. My guess is that this is the way most (if not all) jailbreak methods will work in the future.

  • Image of frigg frigg at 10:11 PM on 12/29/07 *

    @mcg1969: "What the heck am I doing watching a video of a bird taking a bath?"
    .

    That is Natetrue. He is an animagus. Clever bird, eh?

  • I'm not worried... It'll be busted open soon

  • Ok wait. Does it matter that the iphone in the video is jailbroken? Since it says Nate at the top left. I thought 1.1.3 didn't let you do that.

    Or am I just missing something...

  • so the new firmware is goin to let us change the carriers name?? i don't think so. but i will come back and laugh my ass off if the if this is a fake, remember the threat reads (iPhone Firmware 1.1.3 Video and Evidence Confirms Update Is Real, Breaks Unlock, Third-Party Apps) am pretty sure its a fake but am just having trouble knowing Gizmodo is buying it

  • Evidences of fake are real...

    But tricky, this thing not come from anyone but a guy who has proven his trustworthy...

    c'mon, why in the world a guy who had developed iBrickr - among other things - would come up with such a 'farsa'?

  • @mcg1969:
    That was the funniest comment ever... you shild do a Costanza and go home.

  • @mmix60:

    I have iphone on 1.1.2 and it was jailbroken and I changed the carrier name to Anubis.

    Something happened with my phone so I did a complete restore which wiped out my jail break, after reactivating my phone through itunes(Yes im with the empire) and restore was complete THE CARRIER NAME STILL READ ANUBIS. So I am assuming jailbroken or not if u change the carrier name before it sticks even if the firmware is changed or replaced.

  • Ok listen.

    About the carrier name, I guess none of you ever had a jailbroken 1.1.1 phone and updated to 1.1.2 while your carrier was changed with Make It Mine from Erica Sadun.

    Whatever I set my carrier to with 1.1.1, it was still set to in 1.1.2 that was NOT jailbroken yet. So I'm betting whatever you have your carrier as when you update, it will stay even while not being jailbroken.

    Updates don't restore your phone to factory state. They just update critical files. Apparently the carrier images aren't updated.

  • Image of Jesus Diaz Jesus Diaz at 10:50 PM on 12/29/07 *

    @snitch29: We are buying it because Natetrue is a well-respected, long-standing member of the iphone development community and the technical explanations he has given to us are rock solid. Like his reputation.

    Now, if he has decided to play with his own reputation just to pull a hoax on us and everyone else who has previously reported this, then it will be more of a problem to him than to us.

    The reason it says "Nate" in the network: it is because he had it changed with Erica's Make It Mine program in 1.1.2 BEFORE DOING THE BLOODY 1.1.3 UPDATE. Godalmighty, people. Could you please inform yourselves first before accusing people and shouting "FAKE!"

    FYI, everything that stays in the user partitions remains untouched during upgrades, that's why the custom carrier name remains.

    Again, geezussbloodychrist. Please read, understand and get informed before posting false accusations. My patience has a limit and my banhammer is itching.

    @Intro24:
    Read above.

  • Nevermind. I read the rest of the comments.

  • @x3r0: That's a good explanation. One that probably should have been in this article. But is that not too convenient an argument? Or let me put it this way: What is more likely, that this is all evidence of an internal leak inside Apple, from an iPhone software engineer, no less, that wants to support the iPhone unlock Dev team with a new firmware that doesn't address a strange bug allowing you to change the cell provider icon, which in normal journalism would be evidence of a hoax OR that this is simply a fake?
    But to the author of this article... you seem to have lost sight of what the real story is... the firmware update is great and good and whatever... but if you're right, and I quote the article: "...apparently the leak has occurred because someone wanted to help the unlock effort." someone inside Apple leaked proprietary Apple software just to help out a team of developers?? Really? With no take down order from Apple at all?? Really?

  • He has a very nice bird.

  • @jesusdiaz: Well, I agree his reputation should say alot... But Jesus, the real story here is the leak. Follow that up! "Apple employees so enraged at iPhone lockdown, they aid hackers!!" That story would be GOLD.

  • This looks believable too but it's fake: 3G on iPhone [www.youtube.com] LOL

  • Image of Jesus Diaz Jesus Diaz at 11:14 PM on 12/29/07 *

    @mmix60: We don't have facts that prove that conspiracy theory. As good as it may be to believe. See, that's not how journalism works. Reporting on a proven source information and facts, is how it works.

    We know that someone leaked the information, someone who is anonymous to even the iPhone Dev Team, someone who may or may not be an Apple employee. The upgrade may have been seeded out to selected developers (the reason why it hasn't reached the torrents is because the code may be watermarked).

    With no proof, we can't publish the story you suggest, as beautiful as it may seem. And trust me, I would LOVE to publish a story like that. Sadly, it's just a tinfoil hat conspiracy theory without proof.

    As for Apple telling them to take down the video or the photos, I doubt that will ever happen. It's not only that the upgrade is coming this week with almost 100% certainty. It's that they are not showing any trade secret at all. I'm not a lawyer, but looking at previous cases (like many Leopard leaked images that had been maintained because they didn't show anything important) their case would be too thin.

  • @jesusdiaz: Do you think it would be possible to get a screenshot of the about screen? Or some other confirmation on wether or not this upgrade comes with a new baseband? If this new firmware indeed supplies us with a new baseband (and secpack) then this news is teh awesomest!

  • @jesusdiaz: All good points, though I don't think it's quite so covered in "tin foil hats" as you may think. A more clearly written article would have dispelled much of your "issues" with comments in this thread. Why do you believe the firmware is to be released this week and not on Jan 15? Due to its level of polish?

  • Somebody else pointed it out above, but I'm quite curious why there isn't more attention being paid to the fact that this update allows you to have multiple springboard pages, seeming to imply (to me) the ability to add new applications.

    As far as conspiracy theories/doubt, the only reason this whole thing seems fishy to me is the way the icons not selected shake when moving icons. This isn't consistent with the way items are moved in any of the rest of the OS and just generally seems weird/pointless... not to mention un-Apple-like.