不完美越狱重启后越狱失效,需要重新越狱。
安装的必要软件也和iOS10不一样,记录一下。
1.越狱设备安装“AFC2”补丁: 雷锋源https://apt.abcydia.com/ "AFC2 iOS11~13 系统路径"
2.安装防越狱检测插件: 雷锋源 ”Shadow 屏蔽越狱检测“
3.openssh : cydia主页点击 OpenSSH访问教程
ssh root@192.168.199.110
默认密码 alpine
su root
passwd 密码修改
4.usb ssh连接:
iproxy 2222 22
waiting for connection 后需要新开一个窗口 ssh -p 2222 root@127.0.0.1
报这个错
报错处理
yyy@YYY ~ % ssh -p 2222 root@127.0.0.1
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@ WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED! @
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
IT IS POSSIBLE THAT SOMEONE IS DOING SOMETHING NASTY!
Someone could be eavesdropping on you right now (man-in-the-middle attack)!
It is also possible that a host key has just been changed.
The fingerprint for the RSA key sent by the remote host is
SHA256:39NQ2rA5YarBAfmcIXXXXXXXXXXTv/Xc5yrrFaKEN0.
Please contact your system administrator.
Add correct host key in /Users/yyy/.ssh/known_hosts to get rid of this message.
Offending RSA key in /Users/yyy/.ssh/known_hosts:7
RSA host key for [127.0.0.1]:2222 has changed and you have requested strict checking.
Host key verification failed.
yyy@YYY ~ %
或这个错
yyy@YYY ~ % ssh -p 2222 root@127.0.0.1
kex_exchange_identification: read: Connection reset by peer
yyy@YYY ~ %
后来查看资料 https://www.jianshu.com/p/a5b2836fbca7
数据线翻过来插一下就好了
5.把别人的应用变成越狱应用frida-ios-dump:参考https://www.jianshu.com/p/2d38f036990d
(1)cd 到./dump.py路径: cd /Users/yyy/Downloads/frida-ios-dump-master/
(2)添加源https://build.frida.re
源,安装Frida
插件.
(3)新建窗口iproxy 2222 22 (不需要密码 因为py文件里配置了)
(4)刚才窗口 ./dump.py 应用名字
(5)应用出现在./dump.py路径