iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide] – iPad and iPod Touch Support Coming…

by Jawwad in Guides, iPad, iPhone, Mobile | 6 comments


Earlier in the day we reported the release of the iOS 4.3.1 – and here comes the great news for iphone4 owners, iOS 4.3.1 has been jailbroken already in a matter of hours!! However, every time you will start your iPhone you will need to reboot it into jailbreak mode using tethered boot utility (re-jailbreak it every time you restart your phone) because custom iOS 4.3.1 jailbreak is available in tethered mode only for now. You can jailbreak iOS 4.3.1 yourself using Pwnage Tool (version 4.2), Tethered Boot Utility and Universal Ramdisk Fixer. *Note that support for the iPhone 3G/3GS and iPod Touch should follow soon so stay tuned…

Follow the following instructions.

Programs required:

Step 1: Download PwnageTool bundle for iOS 4.3.1 and extract the content into a folder.

Step 2: Because this guide is geared towards iPhone 4 we will be using iphone 4 bundle file named “iPhone3,1_4.3.1_8G4.bundle”. Copy this file to your desktop.

Step 3: Next you need to download the PwnageTool 4.2.

Step 4: Copy PwnageTool 4.2 in Application folder. Right click on the PwnageTool icon and click on “show Package Contents”.

image thumb | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

Step 5: Now you need to browse to Contents/Resources/FirmwareBundles/ and paste the iPhone3,1_4.3.1_8G4.bundle file at this location which we copied on the desktop in step 2.

image13 | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

Step 6: Because of the lack of support in PwnageTool 4.2 to patch the iOS 4.3.1 we need to use Ramdisk Fixer to create custom Ramdisk for iOS 4.3.1. You can download Universal Ramdisk Fixer using the above given links and install it.

image14 | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

Step 7: Next step is to build iOS 4.3.1 custom firmware for which you need to download iOS 4.3.1 firmware (from the link mentioned in the start).

Step 8: Place iOS 4.3.1 firmware on your desktop.

Step 9: Launch PwnageTool in “expert mode” and select your device which in our case is iPhone 4.

image15 | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

Step 10: Locate iOS 4.3.1 which we copied on the desktop in step 8.

image16 | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

Step 11: After selecting iOS 4.3.1 click on “Build” button to produce jailbroken custom iOS 4.3.1 ipsw file.

image17 | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

Step 12: Once the custom firmware has been produced you need to go into DFU mode by clicking on DFU button on the Pwnage Tool.

    image18 | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

    Step 13: Launch iTunes application and select iPhone iOS device from the sidebar.

    Step 14: For Windows users press and hold left shift button and for Mac users press and hold “Alt” button on the key while clicking on “restore” button and select Custom iOS 4.3.1 jpsw file which we created in step 11.

    image19 | iPhone 4 Jailbroken on iOS 4.3.1 Using PwnageTool [How to Guide]   iPad and iPod Touch Support Coming…

    Step 15: Final step!, just wait till iTunes finish installing custom firmware on your iPhone.

    Tethered Boot Guide:


    So far jailbroken iOS4.3.1 device is available only in tethered mode and to boot in to that mode after rebooting you device follow the following steps.

  1. You will need tetheredboot.zip utility which you can download using following link and Unzip the content of the file in folder named tetheredboot.
  2. Copy tetheredboot folder in downloads folder.
  3. Change the extension of  the custom iOS 4.3.1 FW from .jpsw to .zip, and extract the content into a folder.
  4. Find and copy kernelcache.release.n90 and iBSS.n90ap.RELEASE.dfu files which will be located at /Firmware/dfu/.
  5. Paste kernelcache.release.n90 and iBSS.n90ap.RELEASE.dfu into tetheredboot (created after extracting the content of tetheredboot.zip).
  6. Now turn off your iphone and run terminal on OS X and type following commands

sudo -s

After entering admin password, run following commands

/Users/inspiredgeek/Downloads/tetheredboot/tetheredboot
/Users/inspiredgeek/Downloads/tetheredboot/iBSS.n90ap.RELEASE.dfu
/Users/inspiredgeek/Downloads/tetheredboot/kernelcache.release.n90

Use your user name in place of inspiredgeek.

7. At this point you will notice some processing in the terminal window and you will be asked to Enter into DFU (Device Firmware Upgrade) mode on your iPhone. To do so hold home and power buttons together for 10 seconds after which release power button while keep holding home button for another 10 seconds after which you will enter DFU mode.

8. After a while “Exiting libpois0n” message on Mac OS X terminal window will appear and your device will boot tethered jailbroken iOS 4.3.1!

You Might Like:




Get Free Email Updates


Inspired Geek is your primary source for latest tech news, guides and articles on Windows software, games, Apple and Android devices.


  • Get extensive coverage on latest tech news.
  • Exclusive guides on rooting, jailbreaking and unlocking mobile devices.
  • Useful apps and tips&tricks for your iOS and Android devices.
  • Exlclusive Top Countdowns for the best software.

This post was written by...

for Inspired Geek.

Hi! We are trying our best to make this spot most interesting and useful for discovering news, articles, tips & tricks and bringing you the latest in Computer, Mobile and Internet technology areas. Please support our efforts by giving your feedback, subscribing to Inspired Geek RSS (Link on top & bottom of the page), by promoting us on social websites (Facebook, Digg, Twitter, StumbleUpon etc.) or any other way you might feel convenient. Thanks for your support!

Previous post:

Next post:

wordpress counter