How to Bypass iPhone or iPad Activation Lock in iCloud (Activation Lock) via Checkra1n. How to unlock Icloud - all effective ways Iron icloud ipad 4 bypass


This post is dedicated primarily to iPhone and iPad owners who are tied to an iCloud account and thus blocked for full use.
As statistics show, the owners of such devices, having lost hope of their full-fledged unlocking, and it is still possible, are looking on the Internet for all possible options for their activation by roundabout ways.
In particular, many are looking for DNS servers to unlock or activate iCloud on such devices.

Full unlocking of such devices is possible in two ways - the first is through the official Apple Support, a lot has been written about this in this blog, and the second option is to replace three microcircuits taken from a similar donor, this is NAND Flash + Baseband Proc + Baseband Mem, while the fact that the versions of the donor and patient boards must match is important!



Difficulties also arise when dismantling NAND, right under it, on the other side of the board there is a processor, and it is for this reason that the board cannot be heated to remove NAND! You can remove the NAND chip only by carefully grinding it off completely, this is a very time-consuming, delicate and painstaking work. However, there is another, simpler, way to remove NAND, for this, a heatsink is installed on the processor on the other side of the board, after that you can warm up and remove NAND, BUT you only have to understand the essence of the process and have the appropriate experience and skill to do this!
Even with a heatsink, uncontrolled heating will likely kill both the NAND and the processor even before you remove it.

Baseband Proc + Baseband Mem can be gently heated and removed, the place for a new NAND chip can be carefully cleaned, the entire board is washed, all contact pads can be prepared, and only then can the microcircuit from the donor be installed on the board. This procedure is very time consuming, but financially beneficial if there is a donor without iCloud blocking, whose board is damaged, but at the same time NAND Flash + Baseband Proc + Baseband Mem chips are suitable for further use. If you have a donor with a whole board or with minor, easily eliminated breakdowns on the board, it will be much easier and faster to rearrange the entire board.


More detailed information is enough on the Internet both in Russian and in English - use the search!

For iPad and iPad, there is an easier "iron" way to unlock iCloud, it is suitable for devices with 3G, but the modem is disabled and the device works as WiFi (no 3G). We will write about this method in more detail separately.


Read about unlocking iCloud via DNS servers in the next article.

We wish you good mood and successful repairs!

In this article, I will share with you the "iron" way to remove iCloud lock from iPad 3G.

A note for foreigners who come here from search engines so that they do not torture translators and me on Skype:

What is Apple iCloud

iCloud- an Internet service created by Apple, which serves for remote storage of data and the exchange of this data between connected devices of the user.

The program works together with iCloud Find My Iphone... Wikipedia:



The Find iPhone / iPad / Mac application allows you to find any iOS or Mac OS device, lock it or erase all data remotely. To detect, you need to activate this function on the device itself by entering the username and password from account iCloud. You cannot disable the function without entering a password, so this can serve as protection against theft. To work, you need an Internet connection.


Blocking

When the device disappears, the owner can go to the iCloud service and block the device. You can even send a message to the lock screen of your device for whoever turns on that device.

The stupidest thing is when the owner locks the device, but does not indicate his contact information in the message on the lock screen. Not to myself, not to people.

Reasons for blocking devices

Let's start with the most “I'm not to blame. It is itself ”and let us get to the most vicious ones.


  • You bought an iPad, created an Apple ID for yourself, entered it on the device, but did not save your username and password. Some time later, you decide to reset your device or update it to iOS 7-8. And then iCloud will send you hello in the form of a request for an Apple ID and a password that you have already forgotten.

  • Someone bought an iPad, but he was too lazy to customize the tablet himself. Someone "Nutyzhkompyutershchik" set him up and did not give him the password and login. Someone is resetting or updating their device - Hi from iCloud.

  • You buy the device hand-held or online. You haven't checked whether the old owner's Apple ID was deleted from the device, the seller forgot to delete it, or did not specifically want to. Reset or update - hello. And some sellers sell it on purpose, then block the device remotely and demand money.

  • You walked, walked and found an iPad. His owner has already noticed the loss and sent you greetings through the iCloud lock screen. If found, it is better to return it to the owner for a reward. :) Especially the Wi-Fi model. There is no sense from it yet.

  • Unbeknownst to the owner, someone borrowed his iPad. He noticed, he blocked it.

  • Someone, visibly and with malicious hooliganism, borrowed an iPad from the owner. The owner came to his senses and blocked the iPad.

Remember that stealing and buying stolen goods is an illegal activity.

Where do these instructions come from?

History

To read color books, I decided to buy a tablet for my ebook. I almost bought a locked iPad mini 3G. I read about iCloud and asked the repairmen on the internet. In different places, prices were quoted at $ 80-160. (O_O)

Googled. It turned out that a limited group of people have solutions who do not share with anyone and “withdraw” good money from people. And also, taking advantage of the ignorance of the masses, they sell unlocked devices with the description: “Almost new. All perfectly. Only 3G does not work in our country. "


There were no solutions on w3bsit3-dns.com either. Only the crying theme is 280 pages long.


I decided how Robin Hood would help people and started to google hard. 99.5% of Russian-speaking people did not suggest anything at all or they have to pay a lot. I found pieces of information in Vietnam and China using GSM versions. I bought some of the information. The most expensive and rare scheme was sent by Russian Alexander Khokhlenko.


Now I put everything online so that these devices do not lie on the shelves and people do not pay a hundred dollars to remove 1 part.


At this point, most of the repairmen "Unlock for $ 100":



Method essence

I am engaged in design, I am retraining myself as a programmer - I don’t understand circuitry. If something is wrong - do not be angry and correct me, please.

Wi-Fi-only iPad versions are linked to an Apple ID by serial number which is stored in NAND memory. Versions with 3G / 4G / LTE are bound by IMEI, which is stored in the modem module.


The process for all iPad 3G consists of the following steps:


  1. We disassemble and take out the main board of the iPad 3G

  2. We find on the board the part of the Board ID, which is responsible for identifying the device.

  3. Disable the modem part there. You will need to unsolder and (possibly) solder the resistor.

  4. The device goes into DFU mode because the Board ID does not match the firmware. There will hardly be anything on the iPad 3G screen (maximum bull's-eye).

  5. We connect to iTunes. It will not immediately detect your device. Then he will find it as an unknown iPad. We restore the firmware from the WiFi version and you're done. GPS will work too (bonus).

I have not tested it myself. Enough for Android. There are good reviews with details about unlocking in the comments on my website. Also there are instructions in 2 languages ​​in the form of large pictures.

AHTUNG! There are no such instructions and will NEVER, NEVER be for versions with Wi-Fi. You shouldn't ask me about this on Skype for the 1001st time. There are only software methods that basically do not work or are available to units in the world.


Resistors are removed in different ways. Depends on professionalism and hardcord:


  • ground

  • drink

  • "Remove" with tweezers

  • scratching with a needle :)

The procedure for closing the circuit is also done in different ways:


  • solder the resistor to an empty spot

  • solder the jumper

  • draw a line with a pencil (many did this in the tube era of overclocking with AMD Athlon and Duron)

Unblock

If you are not sure that you can disassemble the device yourself, take it to the professionals. Apple displays are quite expensive. You do everything at your own peril and risk!

Unlock iPad 2 3G




On the iPad Model A1396 (GSM), remove the r1205 resistor (10 kOhm).

On Model A1397 (CDMA) move resistor r1205 to r1204.


GSM has been doing for so long, but only 1 person confirmed CDMA in personal correspondence.

Unlock iPad 3 3G




On iPad Model A1430 (GSM), remove the r1204 (10kΩ) resistor.

On Model A1403 (CDMA), perhaps move r1204 to r1205. CDMA not verified.


Diagram for iPad Model A1430 (GSM) checked by Ricardo Melquisedec (Brazil).

Unlock iPad 4 3G




On iPad Model Model A1459 (GSM), remove r1204 (10kΩ) resistor.

On Model A1460 (CDMA) remove r1204 (10kΩ) resistor.


A1459 checked by Corsario (Brazil), A1460 checked by Karim (Morocco).

Unlock iPad mini 3G




On iPad Model A1454 (GSM) remove resistor r1204 and jumper in place of r1205.

On Model A1455 (MM) remove resistors r1204 and r1205.


A1454 Ricardo Melquisedec (Brazil), A1455 - alexneoua.

Unlock iPad Air 3G




A1475 - nothing has been tested here yet. On the Russian-language forums, they wrote about the r1505 resistor. But 1 foreigner sent me a photo of the A1475 board on my website, where there are not even contact pads in place of r1505 (in some circuits they are not there either). Then I found a photo on a Vietnamese forum with an outlined r1506, but no explanation. Another 1 foreigner threw off the photo of the A1475 board, where r1506 was not soldered. Maybe he was blocked a second time?


Not tested: on iPad Model A1475 (GSM) remove resistor r1506 (10kΩ?).

Unlock iPad mini with Retina 3G


The rarest. Only the anonymous society of greedy unblockers has schemes for the device itself. I don't have schemes in good quality, but what I had to restore after scribbling by someone in Paint. The resistor signatures on the diagram cannot be read, therefore it is signed as 1, 2, 3, 4. Perhaps 4 is r1204, 1 is r1205.



On Model A1490 (GSM) resistors 1 and 2 (both 2.2K) should remain on the board, remove resistors 3 and 4.


Submitted and tested by Alexander Hohlenko (Russia).

Useful information on other methods to bypass iCloud Lock

On the version with Wi-Fi, you can "transplant" the NAND-microcircuit from an unlocked device. On the version with 3G / 4G, you can also transfer a bundle of NAND + modem. Some, it seems, even put on the iPad a NAND + modem from the iPhone compatible for certain versions of devices.

This is all complicated and expensive.


The resistors are very small, so do it carefully and soberly. Good luck to you!


P.S. My karma is in the red. Therefore, I cannot often write comments and the number of pictures in them is limited. I would be grateful if you tell each other yourself, otherwise I have to wait a long time to answer at least once.



This entry passed through the Full-Text RSS service - if this is your content and you "re reading it on someone else" s site, please read the FAQ at http://ift.tt/jcXqJW.

Scottish readers: Undecided about the referendum? Please read How the media shafted the people of Scotland and Scottish Independence, Power And Propaganda.


A year ago, I told you how to bypass iCloud lock at all iPad tablets Cellular. Now it's time to tell you about the way to bypass iCloud on iPad Air 2 Cellular A1567.

Updated and simplified iCloud bypass methods on previous iPad models are described in How to unlock iCloud locked Apple iPad 2, iPad 3, iPad 4, iPad Air, iPad mini, iPad mini Retina, iPad Air 2, iPad mini 3 with 3G. In an article on Habrhabr How to unlock an iPad 3G locked in iCloud, I talked about the principle of this method.

Apple iPad Air 2 4G and iCloud

The difficulty in finding an iCloud bypass method on the iPad Air 2 A1567 arose due to the lack of device schematics. More precisely, they are only sold in some secret places (about $ 3000). One could collect this amount from donations that users of this method sometimes send. But it would take at least 20 years. :)

I decided to make an iPad Air 2 A1567 from a photo of the motherboard using the scientific method of "typing", comparing it with the iPad Air 2 WiFi only board. The device was not on hand, so others were tested at their own peril and risk.

Success

And yet, we found the place that is responsible for the device ID. You need to make a jumper with a soldering iron or draw a thick line with an ordinary pencil at this place:

The iPad Air 2 WiFi only has a resistor there, the iPad Air 2 A1567 does not.

IPad Air 2 disassembly video ( how to center align?):

How to make a jumper:

And bummer. WiFi and Bluetooth do not work after flashing iPad Air 2 A1567 with firmware from iPad Air 2 WiFi only. Those who made donations (foreigners) immediately demanded the return of donations through a refund with dissatisfaction. :) Although personally I would be happy even with such an iPad. Wacom makes cool bluetooth styluses just for iPad. Can be used for painting

I started looking for the reason for the inoperative WiFi and Bluetooth. All the repairmen I interviewed said in one voice: “Forget it! There is probably a modem, WiFi and Bluetooth in one chip. It turns off when bypassing iCloud. Such a device is useless. "

We waited, waited, and suddenly it happened ...

Miracle

Several testers recently updated for fun to iOS 9 beta, which Apple released, and Bluetooth is up and running!

I doubted the withdrawal of qualified repairmen.

Users were now able to connect the tablet to mobile phones via bluetooth and use the internet. However, the majority were still dissatisfied (low speed, inconvenient, you can't sell it for a lot). Plus, every day at least 5-7 letters: "Give me a way to fix WiFi!"

Digging deeper

Users who had an unlocked iPad Air 2 A1567 started looking for the cause. And this is what the iPad logs showed (only part of the log is shown):

Jun 10 19:43:29 iPad-mac wifiFirmwareLoader: Going to discover services \ ^ J
Jun 10 19:43:29 iPad-mac wifiFirmwareLoader: Waiting for firmware to load \ ^ J
Jun 10 19:43:29 iPad-mac wifiFirmwareLoader: full path firmwareName is /usr/share/firmware/wifi/C-4350__s-C2/rieslinga.trx\^J
Jun 10 19:43:29 iPad-mac wifiFirmwareLoader: Error: Could not Open file /usr/share/firmware/wifi/C-4350__s-C2/P-rieslinga_M-STEL_V-u__m-3.1.txt (No such file or directory ) \ ^ J
Jun 10 19:43:29 iPad-mac wifiFirmwareLoader: wifiFirmwareLoaderThread exiting with 1 \ ^ J
Jun 10 19:43:29 iPad-mac wifiFirmwareLoader: Shutting down \ ^ J

It turned out that for the first time the firmware lacks some drivers and software for WiFi and Bluetooth. These files needed to be added or changed.

Unfortunately, I have never had Apple devices and I do not understand the structure and operation of iOS and jailbrake. Therefore, I threw the information to everyone I got, and they began to think together on a solution.

The biggest problem was that, without a network, the jailbrake installation process would freeze for most by 30%. The rest could not access file system... But they decided that too.

WiFi and Bluetooth activation procedure

  1. Download modified files
  2. Install iOS 8.4 on iPad Air 2 A1567
  3. Jailbreak with PPjailbreak
  4. Copy the files from the archive to the "Downloads" folder. Use ifunbox, itools.
  5. Using Cydia add offline local repository file: /// var / mobile / Media / Downloads. Respect the case of letters
  6. Install all tweaks from the added repository
  7. Restart iPad Air 2
  8. Launch iFunbox, iTools (you can also use other programs) enable SSH, copy the address 127.0.0.1, login "root", password "alpine".
  9. Download cyberduck. Run. Select a new connection. Server type - sftp. Enter the address, username and password.
  10. Go to the folder "usr / share / firmware / wifi / C-4350__s-C2 /" and delete all files from there. Copy the files there from the archive
  11. Restart iPad Air 2
So far, this only works on iOS 8.4. But if the HabraSociety helps to develop a method for editing driver files, then we will be able to create drivers for any version of iOS.

But what about the iPad mini 3 4G A1600?

There is an untested method (already tested)

The results are as follows:

  • The not-so-skilled Briton killed the board by short-circuiting it by placing the included board on an iron table. Before that, he also burned 2 soldering irons.
  • The American did everything. iTunes showed iPad mini 3 WiFi, but when restoring the firmware, it gave error 14 (problem with USB cable, iTunes installation, etc.). I don't know why, but he started to heat something there and overheated the processor. The Apple Store gave him new iPad mini 3 4G 128Gb
Maybe someone else would like to check the method :). Write to private messages or email.

Have a great weekend and hello to Apple employees.

P.S. I wrote the post, and now I went to botanize Addison-Wesley Professional - PHP and MySQL Web Development 4th Edition for the night.
P.S. There are sophisticated methods for iPad WiFi Only (and it seems even for iPhone with IMEI editing in the modem chip), but my knowledge and skills are not enough for this.

You can finally bypass your iPhone or iPad's Activation Lock with a jailbreak tool. In addition, you can do it absolutely free. Below we will tell you about everything.

This article is especially useful for those owners of iPhone, iPad and other Apple devices who bought a used iPhone or iPad. Many of these devices are locked using iCloud. ICloud Activation Lock is a big problem. More precisely, it was a big problem. Previously it was not possible to bypass activation lock, but now there is a jailbreak tool checkra1n. Let's figure it out in order.

Note: We are not responsible for what you do with your device. This article is written for educational purposes.

What is the iCloud unlocking process?

The bootrom exploit was recently discovered. It can be used for a variety of purposes, even to jailbreak the latest available iOS versions... There is already a jailbreak tool checkra1n for this. It can be used to bypass iCloud using the command line.

What is iCloud?

Let's start with what is it? It's Apple's online service that stores your important data: photos, videos, documents, music, and even app settings. The data stored in iCloud is automatically synced across all your devices. For example, made on iPhone photography will immediately appear on the iPad with the same account, and you don't need to do anything for that. Usually your Apple ID is used for iCloud. With the help of the service, you can even find a lost device, because for this there is a separate function "Find iPhone".

What is iCloud Activation Lock?

This article is aimed at those who have an iCloud locked iPhone or iPad. Most often these are people who bought a used device in online stores. It could also be those who simply forgot their iCloud password.

Apple loves its system very much, because with iCloud lock the device becomes useless. Apple wants you to buy yourself expensive new devices from official stores, not unlock old iPhones.

Don't worry, below we are going to show you how to remove iCloud lock.

Supported Devices

  • iPhone 5s
  • iPhone 6 and iPhone 6 Plus
  • iPhone 7 and iPhone 7 Plus
  • iPhone X

Supported iOS versions

  • iOS 13 and newer (up to the latest iOS version available)

What do you need?

  • ICloud locked device
  • Jailbreak tool Checkra1n
  • Mac computer
  • Patience

Note A lot of people offer their iCloud lock removal service, but instead they just take your money and do nothing. There is even free programs to unlock, but they do not work either.

How to unblock iCloud via Checkra1n

Step 1: First, you need to your device. Then proceed to the next step.

Step 2: When the tool is installed, you will need to install the tool brew... To get started, head over to the brew website. Use this command taken from the site:

/ usr / bin / ruby ​​-e "$ (curl -fsSL https://raw.githubusercontent.com/Homebrew/install/master/install)"

Open a Terminal window and paste the command above. Then press Enter. You will see the result as in the screenshot below:

Step 3: Once the brew tool is installed, open a new Terminal window and use this command:

Brew install usbmux

If everything is correct, you will see the text: brew install libusbmuxd.

To continue the process use the command below:

Iproxy 2022 44

You will see a message Waiting for connection.

Step 4: When the message appears, open a new Terminal window and use another command:

Ssh -p 2022

You will need to enter a password alpine if you haven't changed it. After that, use the following command:

Mount -o rw, union, update /

Now this:

Rm -rf /Applications/Setup.app

Uicache -p / Applications / Setup.app

And now the last one:

Killall backboardd

When you execute the last command, your device will respawn, after which its home screen will be displayed. It means that iCloud lock successfully removed.

How do I fix the problem with the App Store?

Sometimes after unlocking it may not work App Store... Fortunately, this problem can be fixed as well.

Step 1: Open the App Store, select the tab Today, in the upper right corner, select your profile... Here you can log into your Apple ID.

Step 2: After that, go to your profile again and select the section Purchases... From here you can download already purchased applications. The process will be a little slower, but it works.

Note: After you unblock this method and log into your Apple ID, you can download applications only through the section with Purchases that you have already downloaded earlier. To download other apps, you need to link your Apple ID to another device and download apps to it first.

In addition, you should bear in mind that such a blocking bypass carries many restrictions that you must be prepared for.

ICloud Lock Bypass Limitations

  • there is no way to add an operator
  • new iCloud ID cannot be added
  • SIM card cannot be used
  • you can't make calls
  • unable to send and receive messages
  • 4G / 3G Internet does not work
  • FaceTime doesn't work
  • iMessage doesn't work
  • iTunes doesn't work
  • Apple Watch cannot be connected
  • you cannot install new profiles
  • device is not activated
  • Apple services are unavailable
  • no notifications are displayed
  • screenshots don't work

Note: We are not encouraging you to use this bypass blocking method. If you find an Apple device, bought a used device online, or just forgot your password, return the device or contact Apple Support.