iOS 11.2.x Jailbreak: UnjailMe Demos Sandbox Escape By Zimperium, What This Means For Jailbreak
Developer MTJailed has dropped an IPA named UnjailMe. However, the full project is termed as a “sandbox escape based on the proof-of-concept (CVE-2018-4087) by Rani Idan.” This project is based a bundle of bugs discovered in bluetoothd and reported to Apple for patching it in iOS 11.2.5.
UnjailMe Sandbox Escape
UnjailMe Sandbox Escape is the project that takes its roots from the research taken by Rani Idan of the Zimperium zLabs Team. The said project works involved finding issues with bluetoothd daemons in the iOS 11 that means the communications might be interrupted by someone with the required knowledge to put something together. The developer has also used initial proof-of-concept provided by Idan to display this in action. However, it should be noted that it’s not a jailbreak for iOS 11.2 – iOS 11.2.6 and nor it is one of those big-steps.
This is the very small baby step for someone with the required capability, skills, and interest working to put together the major components to produce a future jailbreak for iOS 11.2 to iOS 11.2.6 running Apple devices. This bug was allegedly patched with the release of iOS 11.2.5 but it is believed that Apple didn’t perform a great job for the bug. The tech giant has only implemented a random number generator to fix it.
MTJailed has put jointly an available IPA, in order to display how comparatively simple it is to get an escalation situation where code could run outside of the sandbox with system-level rights. The developer also said that this app is targeted for developers and researchers in order to establish a little more understanding and make the use of latest Zimperium bug.
It is believed that MTJailed can display this project to display the capabilities of Rani Idan bug within the bluetoothd daemons. It is also said to be the start of a potential iOS 11.2+ jailbreak “if code injection actually works.” If you want to read this project in full detail then you can read by heading to https://github.com/MTJailed/UnjailMe.