PwnageTool 2.2.5 and QuickPwn 2.2.5 for iPhone Firmware 2.2.1 Released for Mac

The iPhone Dev team has released updated versions of their PwnageTool and QuickPwn Tools to jailbreak and unlock the 1st Gen iPhone and jailbreak iPhone 3G running iPhone firmware 2.2.1  that was released by Apple on Tuesday.

The updated PwnageTool will allow iPhone 3G users to create custom firmware (.ipsw) which will preserve the baseband so that it can be unlocked and also bring new features of iPhone firmware 2.2.1.

The latest versions of their iPhone hacking tools are PwnageTool 2.2.5 and QuickPwn 2.2.5. They are currently available only for Mac users. Dev Team will releasing QuickPwn 2.2.5 for Windows users shortly. Dev Team has also released QuickPwn 2.2.5-2 for Windows users.

The Dev team has published the following on their blog which you should read very carefully before using their updated tools:

This is the low down on our tools for use with the 2.2.1 firmare from Apple, read the whole post in full before attempting anything.

1. GOLDEN RULE: If you have a 3G iPhone running 2.2 firmware and you want to keep your ability to use yellowns0w (or the option to use it in the future) do NOT use QuickPwn, and do not use the official ipsw or the iTunes update process without using PwnageTool.
2. Yellowsn0w will NOT work with the baseband version (02.30.03) that is present in the recent 2.2.1 update. If you want to use Yellownsn0w you will need to create and restore using a custom .ipsw that will allow you to update safely to 2.2.1 without applying the 02.30.03 baseband update. You’ll then have a 3G iPhone running 2.2.1 with an older baseband version that is still vulnerable to yellowsn0w, following these steps ensures that yellowsn0w will still operate.
3. Please read all parts of this post before downloading and using these tools.
4. Read items 1, 2 and 3 again and again.
5. At the bottom of this post are the bittorrent files for the latest versions of PwnageTool and QuickPwn.
6. These apps are suitable for the recent 2.2.1 release.
7. The Yellowsn0w version has been updated to 0.9.7. Yellowsn0w is available from Cydia or Installer – this version allows compatibility with pwned 2.2.1 system (not baseband). Again„ remember 0.9.7 yellowsn0w DOES NOT WORK WITH 2.2.1 (02.30.03) directly – you need to be running a ‘pwned’ version of 2.2.1 which didn’t upgrade the baseband during the restore/upgrade.
8. Users of OS X 10.5.6 will be unable to use DFU mode correctly, please see the note towards the end of this post to easily fix this issue.

Baseband 101

The ‘baseband’ is the generic name given to the internal components of the iPhone that handle the phone calls and Internet access. This ‘baseband’ is a tiny and unique independent computer system that runs inside your iPhone, it is separate to the main system that handles the applications (such as email and google maps) and it talks to the main part of the phone over an internal communications network. Think of it like a cable modem or other peripheral that is attached to your home PC that needs occasional updates. When a software update is released and presented to you within iTunes the baseband is sometimes updated (to fix bugs or add new features). The 2.2.1 update for the iPhone 3G contains such an update, so running the vanilla updater straight away with iTunes will reprogram and update the baseband. This could be bad for certain people, depending on your ultimate aim.

SIM Free/SP Unlocked/Factory Unlocked iPhone 3G

This applies if you bought your iPhone 3G for $$$$$$$. This model of iPhone 3G doesn’t have an Service Provider lock (aka factory unlocked) and you are able to put any SIM card into the phone and get service. Your phone is already unlocked so you do not need to worry about baseband updates, simply upgrade to 2.2.1 using iTunes and then use QuickPwn to Pwn and Jailbreak. This will add Cydia and Installer too.

Locked iPhone 3G – Preserve Baseband

This applies if you have a locked iPhone 3G and you wish to update to 2.2.1 but preserve the iPhone’s current baseband software. Preserving the baseband will ensure that you can still use “yellowsn0w” the iPhone 3G unlock application. To upgrade your phone to 2.2.1 and preserve the state of the baseband you need to create a custom .ipsw with PwnageTool. This custom .ipsw will not contain the baseband update but of course will still give you any new stuff from 2.2.1

There are plenty of tutorials about this process on the web, but PwnageTool contains intuitive graphics and easy to follow prompts that should have you up and running in no time at all. Please note: PwnageTool is only available for Mac OS X.

Locked iPhone 3G

If you are using your iPhone with one carrier and have no interest in the possibility of an iPhone 3G unlock in the near future then just restore or upgrade to 2.2.1 using iTunes and use QuickPwn to Jailbreak and add Cydia and Installer.

iPhone 2G (1st Generation)

Update or Restore your iPhone 2G with iTunes then run QuickPwn to do the magic, ‘nuff said, you don’t need to worry about anything.

iPod Touch 1G (Original iPod Touch)

Update to 2.2.1 with iTunes and run QuickPwn.

iPod Touch 2G (New iPod Touch)

Sorry, no support at this time, but Redsn0w is being actively researched and developed.

Fixing DFU mode on 10.5.6

As noted previously OS X 10.5.6 introduced a bug that affected the use of DFU mode. with some Macs. There have been previously published hacks and techniques to fix this, but here is another method that can be used to temporarily restore DFU functionality in order to use QuickPwn or PwnageTool.

1. You will need an account with ADC (Apple Developer Connection) this is free and takes a few minutes to sign up, you should read the terms and conditions carefully and you should only sign up if you are thinking of developing applications in the future –
2. Download the disk image “IOUSBFamily-315.4-log.dmg”  for Mac OS X 10.5.5 Build 9F33” (yes, that is a “5” in 10.5.5 – this is a developer debug package of the USB kernel extension).
3. Unplug non-vital USB equipment, such as external DVD writers, USB scanners, USB mass storage devices, at the most leave a Keyboard and Mouse connected.
4. Install IOUSBFamily-315.4.1.pkg from within the disk image
5. Reboot your system!
6. Perform necessary DFU activity with QuickPwn or PwnageTool.
7. Download the disk image “IOUSBFamily-327.4.0-log.dmg” for Mac OS X 10.5.6 Build 9G55”
8. Intall IOUSBFamily-327.4.0.pkg from within the disk image
9. Reboot your system!
10. Reattach your USB peripherals.

As for Windows users, we will keep you posted as soon as the QuickPwn 2.2.5 is available, so stay tuned here at iPhone Hacks. Dev Team has also released QuickPwn 2.2.5-2 for Windows users.

If you have an unlocked iPhone 3G or want to keep the option of unlocking it then the only way you (applies to Mac as well as Windows users) can update to iPhone firmware 2.2.1 is to use the Pwnage Tool for Mac as it creates the custom firmware which preserves the baseband so that you can unlock it using yellowsn0w, the only software method to unlock iPhone 3G. There is no Windows version of this tool, so Windows users will need to borrow their friends Mac.

As always, please remember that hacking your iPhone could void its warranty, so proceed with caution and at your own risk.

The download links are mentioned below:

Mac PwnageTool

Mac QuickPwn

As always, please let us know how it goes in the comments.

[via Dev Team’s blog]

Like this post? Share it!

  • Dr Puttingham

    Windows QuickPWN released minutes ago, for those of us that care 🙂

    THANK YOU Dev-Team!

  • Derek

    Where have Windows QuickPWN 2.2.5 download? Dr Puttingham.

  • Dr Puttingham
  • JD

    Will uploading a .ipsw from iPhone with 2.2 to another phone already updated to 2.2.1 revert the baseband? I am new to iphone hacking, so forgive me if the question is silly or ignorant.

  • chris

    Quickpawn 2.2.5-2 is avaliable at Dev-Team page.

  • Hey JD,

    If you have upgraded to firmware 2.2.1 then restoring your iPhone with firmware 2.2 will only downgrade the firmware but not the baseband.

  • Thanks Dr Puttingham and Chris,

    We have updated this post and also published a post regarding QuickPwn 2.2.5-2 for Windows users: with relevant information which iPhone 3G users should very carefully read before using QuickPwn 2.2.5-2.

    Thanks again for the tip!

  • bayz

    This update broke my iPhone! It updates fine, but afterwords my phone gets no cell phone signal from at&t. Now I can only get a signal if I'm using the newest (un-jailbroken) firmware. I downgraded back to 2.2 both jailbroken and stock, but they no longer had a signal either.

  • Julien


    I got my hand on a G1 Iphone(at&t) already unlock but its version 1.1.1. How should I proceed in order to upgrade it to the recent version?

    Do I just Update? which will I think relock it .
    Then use the devteam software??

  • Hey Julien,

    You can update your 1st gen iPhone with firmware 2.2.1 with iTunes.

    If it has already been unlocked using Dev team lower-level ("hard") unlock then chances are it will not get locked.

    But if it gets locked then you can always use QuickPwn 2.2.5 to jailbreak and unlock it.

    As the Dev team has mentioned above if you have the 1st gen iPhone then you don’t need to worry about anything.

    Its the iPhone 3G users who have to avoid updating to firmware 2.2.1 with iTunes or using QuickPwn.

  • ahmad

    hi Guys

    I have a iphoe 2G which was running fine unlocked on firmware 2.2 theni upgraded to firmware 2.2.1. What happened then was i could recive signal but i could not do anything else with the phone as in get into the phone and only make emergency calls. Even when connecting to iphone it says diffrent sim card detected and i cant do anything else, any ideas? will the nw quickpwn 2.2.5-2 fix this?

    I had an old custom ispw 2.0 stored in my comp which i am using at themoment and it works fine but would like to go back to 2.2 or even 2.2.1?

    help please

  • ok, i feel retarted, i managed to borrow a friends mac and jailbreak my phone, now i relize that all my contacts, pics and what not is gone (i was so hyped about jailbreaking it that i didnt think ahead of time) luckly i did back up my phone on my PC. So how would i go about getting all that info back on?

  • ok i figured it out, i just hooked it up to my PC right clicked my iphone under devices and selected restore from backup, everything is back, thank god!!!

  • José

    Hello. I followed the steps provided but when supposedly in DFU mode iTunes pops up an error (1600) message and won't let me install the .ipsw file with the pwgned 2.2.1 firmware upgrade. I have fixed DFU mode as described, I am running OS 10.5.6 on a MacBook Pro. Any ideas how to fix this?

  • Has anyone had issues with Itunes not syncing apps after Quickpawn 2.2.5 for Mac?

    I cna install apps directly using Installous, however the old "double click the ipa" install on my Mac shows the apps, but they do not install on the iphone

    The sync also takes off any 3rd party apps from the iphone….

    Any help would be greatly appreciated..

    I had no erros suring the rstore backup and quickpawn process – just syncing..

  • steve

    Jailbreaks, yes. Unlocks, no. My 1G iphone is now an itouch. Thanks guys.

  • Sachin

    i have already updated my iphone 3g to firmware 2.2.1 with iTunes and usd QuickPwn to jailbreak.but cant un lock. now please help me wht should i do now.

  • Rob C

    I used my friends Mac to jailbreak the iphone 3G with the expert mode and everything, got yell0wsnow n it still says no service, my provider is restricted or sumthing??

  • steve

    And it's two weeks later so I think I can say, they officially don't give a rat's ass.

    Good job, iPhone Dev team, I'm a little poorer for having known you.

  • Rory

    ah pls help – Where do I get the custom .ipsw file from, or how do i create it?

    PwanageTool is giving me the option to select one of these 3 files:

    Thanx in advance! =)


    hello where is the download button I got it about the step by step but where is thw download button in this web page..thanks saby

  • i have problem with unlocking iphone 1G
    it has 2.2.1 updated through Itune and i quickpwned the phone. it has been all successful until i faced with activation problem

    i am using latest itune tells me the sim card inserted in this iphone does not appear to be supported.

    please let me know how to activate.

  • Emmanuel

    I thought I read somewhere that you need to be using a USB hub between the iPhone and any Intel based Mac PC's..

  • paul

    did the trick guys,well done even an oldie like me (57) can do this,brilliant work

  • DJ

    I'm running 2.2.1 on my 2G iPhone and I'm trying to jailbreak using QuickPwn on my Macbook (OS X 10.5.6). I am able to go through the QuickPwn, but it seems to be stuck on "QuickPwn is about to run on your iPhone." How long is this process? I've monitored it for about 15 min before force quiting QuickPwn. Any help please.

  • I hear a lot of talk about the new firmware 3.0 and how the team is working to unlock it. I bought an IPhone that had already been upgrade it to the new baseband (Not the one that Yellowsnow works with) and I was wondering if anything was being done about it to unlock it. If the 3.0 gets figured out and unlocked, will this fix this problem?

  • iCe

    I have the same problem. Where you able to solve this? Thanks.

  • alex

    Help!!?? I recently updated my iPhone 2G to firmware 2.2.1, well it was an accident! I have tried running Quickpwn as i need to unlock it from o2 service provider and use my orange sim card. The jailbreak seems to work fine but it wont let me use my orange sim card. Please can anyone help me!?

    thanks Alex

  • I did the following
    Update or Restore your iPhone 2G with iTunes then run QuickPwn to do the magic, ‘nuff said, you don’t need to worry about anything.

    I'm getting the "No service" message

    Please help.

  • why there is no ****Pwnage Tool*** for windows.
    90% of people all around the world use windows
    please some one tell me is it because of programming issues.

  • Martinmartin

    I was getting this same error message yesterday and could not restore my iphone. However i discovered that it is caused by some USB glitch in osx 10.5.6.
    If you connect your iPhone through a powered USB hub instead of directly into the macbook, it will work as a charm.

  • I upgraded a 3G iphone from version 2.2 to version 2.2.1 through itune then jailbreaik it but when i install any programme the icon will appear but the programme won,t run/start.
    what should i do?

  • ohyeahilovegirlz

    I have an issue iPhone 3G / Yellowsn0w

    I JailBreak my iPhone, and it works well with a Pre-Paid SIM card.
    I recently sold it to my friend, and he wants to use a "contract" SIM in the phone.

    When everything works well with the iPhone, 3G, Wifi, Recieve calls, Send and reciever SMS.

    … But every time he tries to click on the phone buttom (to manualy make a call), the dial pad comes up for 2 seconds, and then it closes on him!

    What can be the issue here?

    Current stat's of the iPhone
    Software version: 2.2 (5G77)
    Modem Firmware: 2.28.00

    Has a few app's installed.

    Poof – Cydelet – Cycorder – Qik – iPref –
    and some other apps, to numerous to mention.

  • mandeep

    i have a iphone 3g with latest firmware..which got updated when i connected to itunes. only the emergency call screen is coming. i need to unlock it.. please help?

  • Rolando

    I am having the same problem with my 1G iPhone with 2.2.1. It have tried several suggested procedures and nothing has worked.

    Did you ever find a solution to your problem?

    If so, what was it?

  • blake

    ok i managed to jailbreak my iTouch and everything went well up untill it rebooted. not its stuck on the boot up screen (the one with the apple) and it wont do anything what so ever. PLEASE HELP

  • Xylo

    My iTouch is still on reset =\

  • Xylo

    like to Blake its still on the apple sign.

  • Andy

    I have the very first iPod Touch that came out that I want to jailbreak. It says to connect my device, which I already have, and it says it isn't connected. I've reconnected it several times and it still hasn't worked. What am I supposed to do?

    I have software version 3.1.3 Has this affected it?

  • Andy

    never mind I fixed it, but now I needs to download an ipsw, which I've now done but whenever I click on the downloaded thing it goes straight to iTunes (which is already opened) and it does nothing! now what

  • ll

    for some reason i am stuck on the "connect device to USB" its connected so why cant i fix this