Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The JTAG angle is unnecessary, and difficult to do in practice with this LGA70 chip face-down soldered onto the logic board.

It really means there is a Cortex-A (so lots of brunt) with a firmware update mechanism that has 1) direct access to the application processor RAM and 2) direct access to the plentiful permanent storage.



He made a board so that he can do JTAG in-line. Not sure how else he could tell the processor to do something.


By flashing custom unverified firmware, of course.


Flashing custom unverified but somehow-signed-with-Apple's-secret-key firmware?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: