Unlock iPhone Baseband 05.12.01: GeoHot Found an Exploit

GeoHot Has an Exploit to Unlock iPhone Baseband 05.12.01

A few days earlier, we reported that Shref_Hashim found an exploit to unlock iPhone Baseband 05.12.01 and handed it over to the Dev-Team. Later Musclenerd confirmed it as a promising exploit.

Update: UltraSn0w 0.93 is Out Now! It can unlock all basebands for iPhone 3GS and 3G. (Check the Updates at the bottom)

Here’s an exiting news for all those who lost their unlock due to updating their iPhone firmware to OS 3.1.3. GeoHot, the first unlocker of iPhone 2G and father of jailbreak and unlock tools like BlackRa1n and BlackSn0w has revealed that he has an exploit to unlock iPhone Baseband 05.12.11.

In an IRC conversation with @visnet_, @Par4doX, @Evan, @MuscleNerd, @He, GeoHot has revealed that he has an exploit to unlock iPhone Baseband 05.12.01. Actually GeoHot had two exploits to unlock baseband  05.11.07. But he used xemn in BlackSn0w since it was already public. The second exploit is still there and carries over from 05.11.07 to 05.12.01.

Now the question is, do the both Dev-Team and GeoHot have the same exploit? Musclenerd, the member of the Dev-Team has suggested GeoHot to figure out a way to check if they both have the same exploit or different otherwise they may release 2 different ones at the same time which would not be favorable to the jailbreak and unlock community.

Lets hope GeoHot listen to Musclenerd and then develop an unlock solution accordingly. Checkout the conversation:

<visnet_> What does geohot tweet mean?
<%geohot> its my bb exploit for safekeeping
<%Par4doX> geohot: did you turn that over to the dev team or are you doing something with it?
<%geohot> my days of turning things over are done
<%geohot> i hope its different from the one they have
<%geohot> but they prob already have it
<%geohot> its the one i orig wanted to release blacksn0w with
<%Par4doX> it’s still there in the new bb
<%geohot> yep, just checked
<%geohot> but then opted to use xemn since it was public
<Evan> Oo, it carries over from 05.11 to 05.12?
<%geohot> why wouldn’t it, apple doesn’t fix things proactivly
<@MuscleNerd> geohot we prob should figure out a way to know if we have same exploit double blind, otherwise we may release 2 different ones at same time
<%geohot> any suggestions?
<@MuscleNerd> not sure how to do that without making it easy to brute force tho
<%geohot> yea, i salted the hash
<@MuscleNerd> yeah
<@MuscleNerd> hmm maybe if we both hash the stack dump
<@Confucious> Can you two take this out of public sight?
<@MuscleNerd> the stack itself, not the header before it or the registers after it
<Her> muscle: any notice about the exploits are the same ?
<%geohot> we are working on it
<%geohot> cryptography, perfect for people who don’t trust each other

You can follow us to Twitter, Join our Facebook Fan Page, and also Subscribed to RSS Feed to receive latest updates on unlocking iPhone Baseband 05.12.01

You can unlock iPhone Baseband 05.11.07 using BlackSn0w and Baseband 04.26.08 can be unlocked using UltraSn0w.


MuscleNerd confirms Baseband 05.12.01 unlock:

Unlock iPhone Baseband 05.12.01 [Coming Soon]


Jailbreak iOS 4.0

Unlock iOS 4.0

Update 1: Jailbreak iOS 4 with PwnageTool

Update 2: Jailbreak iPhone 3GS iOS 4 with PwnageTool

Update 3: Jailbreak iPhone 3G iOS 4 with PwnageTool

Update 4: UltraSn0w 0.93: Unlock iPhone 3GS, 3G (All Baseband)

Update 5: Unlock iPhone 3G iOS 4 with UltraSn0w 0.93

Update 6: Unlock iPhone Baseband 05.13.04 with UltraSn0w 0.93

Update 7: Unlock iPhone Baseband 05.12.01 with UltraSn0w

Update 8:

UltraSn0w 1.0-1 is OUT now.

How to: Unlock iPhone 4 iOs 4.0.1 with UltraSn0w 1.0-1 Baseband 01.59.00

24 comments… add one
Johnn_Lewis February 21, 2010, 5:46 pm

Will this be able to jailbreak before it then? And on my f0recast report my iPhone 3GS has old bootrom and is an MC model and has stock firmware 3.1.3 on it and it says next to tethered : no. So if it says that I can jailbreak without a tethered jailbreak? If so, how can I jailbreak it!
Please please pleaaseee help me.
thank you.

Leeuwtje February 21, 2010, 10:12 pm

doesnt f0recast also says which method to use to jailbreak ?
it did so for me anyways

Solidet February 21, 2010, 6:23 pm

i just want to know that is there the hope to jailbreak ipod touch 3g unteather in the future because now there is no news about jailbreak this devices!!

iPhoneHeat February 21, 2010, 11:39 pm

All depends on the Dev-Team or GeoHot.. stay tuned for updates

ydnreddy February 22, 2010, 9:13 am

Eagerly waiting for the unlock for the 5.12.01. My iphone 3G is not getting unlocked with Blacksn0w, after updating with the custom firmware(3.1.3 with BB-05.11.07).

Does Anybody have similar situation??


david February 22, 2010, 9:15 pm

hahaha…!! people say this two people/groups Dev-Team and GeoHot don’t want to waste their time on researcher how to unlock and jailbreak iPhone 3gs 3.1.3 now bootrom!!!! come on think clearly they don’t want to do or they don’t have enough ability to it! they just can unlock 2g & 3g 3.1.2! but when face the big deal like 3gs 3.1.3 new bootrom they are just dummies!!!

belkaboy February 23, 2010, 7:59 pm

you just don<t get it bro we all want to crush bb 5.12.07 but they found the exploit… let them work for a week and see what is gonna happen… remember that everything thas has been done CAN be undone…

rahul_23er April 26, 2010, 12:53 am

yep dude,they are definitely solve the proble

sureshdahal March 2, 2010, 7:58 am

If both of them have found two different exploit then why they don’t keep one as “secret” and other to use jailbreak and unlock baseband 5.12. I mean they should help the people out there who are in trouble due to F**K*ng apple. We can buy though if they’d make it commercial.

faye35 March 5, 2010, 12:11 am

hi dose anyone know when firmware 3.1.3 and modem 05.12.01
is going to be unlockable as apple now send iphone 3g touch
out with this sofeware thanks

Mike esty April 17, 2010, 1:49 am

Haven’t seen any comment in a long so is there updates 4 the iPhone 3.1.3 5.12.1 yet sorry if I’m late jus haven’t seen any thanks and reply wit a answer…..

Mike esty April 18, 2010, 2:39 am

Keep ur eye on this blog this mite be only peopl moving quick on the problem suck geohot and dev team ain’t doing much I trust them more but I do it wit any team that work http://iphone-thunderst0rm.blogspot.com/ here u go hope it gives same u guys simle.

Iphone User April 23, 2010, 5:43 pm

where is this fuckin lock
my 3G iphone is locked for more than 2 month
and there is nothing just words we will and we will
we didnt see anything
just tom or after i will sell it and through this boring phone
thanks heohot thanks dev team for talking alot
no need for any unlockers again

lex April 27, 2010, 7:02 am

5.12.01 is impossible to unlock.

Stop giving the public false hopes.

@m0eb@ May 11, 2010, 6:39 pm

I doubt whether we really have the exploit. Here’s why …

1. First we mention that we have an exploit – but are waiting indefinitely for Apple to release version 4.0. We do not want Apple to find out what we found out.

2. By the same breath, we discuss that we have 3 different exploits – and we discuss these in open forum.

3. I doubt that Apple recruits all the duds and the good ones are left outside … after all, the main software is from Apple – isn’t it?

4. Either Apple already knows of these exploits under discussion – or we are bluffing everyone !! (Remember the release of Bootloader 5.09 !!! We failed to get around that, didn’t we??)

So – till I see an actual exploit/unlock – I take everything with a pinch of salt and wait!!

the__laser May 16, 2010, 6:37 pm


i use geohotz exploit on my iphone 3g 5.12.1 baseband and it’s unlock now! i will send the video on youtube sone as i came back home. you will see it!

apple sucks!

@m0eb@ May 29, 2010, 2:38 am

… so where’s the video?? Is it about software unlocking of iPhone 3G with baseband 5.12.01 and bootloader >5.09??

(sincerely hope you’re not bottling some old wine into a new package… AFAIK – there is no working unlock today. People are trying and talking big … but I’ll believe it when I see one.)

I think apple did a great job this time. except for the unlocking woes forcing me to go back to the original provider … all’s fine. Battery life has tripled.

@m0eb@ June 19, 2010, 7:45 pm

Three unlocks, we claim.
Let’s wait for release of 4G, we say.

Well. June 24th is near and truth will be there for all to see. Will the experts take 24 hours, 24 days or 24 weeks now? I think 24 hours since the unlock is ready.

I sincerely hope the situation is not a dead end (like bootloader 5.09).

Leave a Comment