Register Guidelines E-Books Today's Posts Search

Go Back   MobileRead Forums > E-Book Readers > Amazon Kindle > Kindle Developer's Corner

Notices

Reply
 
Thread Tools Search this Thread
Old 02-06-2016, 10:22 AM   #481
knc1
Going Viral
knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.
 
knc1's Avatar
 
Posts: 17,212
Karma: 18210809
Join Date: Feb 2012
Location: Central Texas
Device: No K1, PW2, KV, KOA
Quote:
Originally Posted by ikeboy View Post
That's exactly what I said. You need to download an executable and copy it to the device.

My point was that it didn't seem to be a lucrative target for a botnet operator. It takes more steps to socially engineer, and has less power.

Something can both be a hazard and yet not cost effective to deploy a botnet with. Still should be fixed, obviously.

(It might work better as a targeted attack stealing browser cookies or something.)
The Kindle is the only computer you need.
The browser is very able to download files.

You only need a single file on the Kindle +
Visit one of the public jb servers
(+ currently follow directions, but the 'trick' is in the java script, not the directions)
knc1 is offline   Reply With Quote
Old 02-06-2016, 10:28 AM   #482
AirRaven
Member
AirRaven began at the beginning.
 
AirRaven's Avatar
 
Posts: 12
Karma: 10
Join Date: Aug 2015
Device: Kindle Paperwhite (1st gen), Kindle 3 (3G)
For what it's worth, setting up a DNS redirect is an unnecessary step for this.

All that's necessary is that you change the server's hostname to "a".

Here's a pretty straightforward guide. Trivial process.

Just verified as working.

Last edited by AirRaven; 02-06-2016 at 10:35 AM.
AirRaven is offline   Reply With Quote
Old 02-06-2016, 10:37 AM   #483
ikeboy
Junior Member
ikeboy began at the beginning.
 
Posts: 9
Karma: 10
Join Date: Dec 2014
Device: kt2
Quote:
Originally Posted by knc1 View Post
The Kindle is the only computer you need.
The browser is very able to download files.

You only need a single file on the Kindle +
Visit one of the public jb servers
(+ currently follow directions, but the 'trick' is in the java script, not the directions)
I thought the kindle can only download ebook files? Is it possible to craft an ebook that has the script? (I think txt files are allowed, which should be able to script.) Also, is the name deterministic? I seem to remember the file name for a downloaded book would have an unpredictable name.

If yes to both, I'd have to agree with you, the ease of exploitation goes up significantly.

Also, does the file need to be on the root of the device?
ikeboy is offline   Reply With Quote
Old 02-06-2016, 10:37 AM   #484
NiLuJe
BLAM!
NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.
 
NiLuJe's Avatar
 
Posts: 13,506
Karma: 26047202
Join Date: Jun 2010
Location: Paris, France
Device: Kindle 2i, 3g, 4, 5w, PW, PW2, PW5; Kobo H2O, Forma, Elipsa, Sage, C2E
@AirRaven: That would imply that your network actually propagates local hostnames on the network, which might not always be the case, but good to know .

And, BTW, isn't the full reboot a bit overkill? Shouldn't cycling the network interface be enough?

Last edited by NiLuJe; 02-06-2016 at 10:40 AM.
NiLuJe is offline   Reply With Quote
Old 02-06-2016, 10:57 AM   #485
Mike_73
Guru
Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.
 
Posts: 750
Karma: 1323
Join Date: Dec 2009
Device: PRS-505, PRS-600, iPad 16GB Wifi, Kindle Voyage, Nexus 6, Razr HD
Quote:
Originally Posted by Stiehler View Post
@knc1
how will I know that Jailbreqak was really successful

kindlefere.com/jb/ Method worked for me (pw2 Brazilian portuguese )


It appeared that the jailbreak fou a hit in the top of the kindle bar , however, as I really know it was a success? I did it without doing a reset before , that I need to do one now?
Just try adding KUAL to your kindle and see if the launcher pops up as a "book". If so, your kindle is jailbroken.
Mike_73 is offline   Reply With Quote
Old 02-06-2016, 11:11 AM   #486
Noexpert
As Above
Noexpert began at the beginning.
 
Noexpert's Avatar
 
Posts: 10
Karma: 10
Join Date: Mar 2014
Location: Britannia
Device: PW2 & PW3
Running smoothly but then . . .

Goal = Install Screensaver Hack

Step by Step:

1. PW3 = running 5.6.5.
2. For Jailbreak = JB in Root Folder ->Experimental Browser-> kindlefere.com/jb/ -> ;fc-cache = JAILBROKEN!!
3. Hotfix = 1.14.N-FW-5.x-hotfix.zip -> Unzip ->Update_jailbreak_bridge_1.14.N_install.bin to Root Folder = SUCCESSFULL!

AND THEN

4. Update_python_0.14.N_install_pw2_kt2_kv_pw3.bin to Root Folder -> Restart = NO Python Folder?????


Additional: Folders in Root:

.active_content_sandbox
documents
mkk
rp
driveinfo.calibre
jb
metadata.calibre


Noexpert is offline   Reply With Quote
Old 02-06-2016, 11:16 AM   #487
NiLuJe
BLAM!
NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.
 
NiLuJe's Avatar
 
Posts: 13,506
Karma: 26047202
Join Date: Jun 2010
Location: Paris, France
Device: Kindle 2i, 3g, 4, 5w, PW, PW2, PW5; Kobo H2O, Forma, Elipsa, Sage, C2E
@Noexpert: You need to use MRPI to install the ScreenSavers hack and its eventual dependencies.

Also, *never* reboot your device with a custom package in the root of the userstore.
NiLuJe is offline   Reply With Quote
Old 02-06-2016, 11:19 AM   #488
Branch Delay
Connoisseur
Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.Branch Delay ought to be getting tired of karma fortunes by now.
 
Posts: 95
Karma: 1699999
Join Date: Aug 2015
Device: Voyage
If you're worried about your device being vulnerable, upgrade to 5.7.2. Lots of incorrect info and speculation going around the thread. If/when anyone figures out how this works with a bit more certainty, please re-evaluate.

Nevertheless, I recommend hosting it yourself and not running untrusted code from random webservers. That is how bad things happen.

I'll throw up a signed version today.

(of course, you're still trusting me in this situation.)

Last edited by Branch Delay; 02-06-2016 at 11:23 AM.
Branch Delay is offline   Reply With Quote
Old 02-06-2016, 11:22 AM   #489
Noexpert
As Above
Noexpert began at the beginning.
 
Noexpert's Avatar
 
Posts: 10
Karma: 10
Join Date: Mar 2014
Location: Britannia
Device: PW2 & PW3
NiLUJe

Quote:
Originally Posted by NiLuJe View Post
@Noexpert: You need to use MRPI to install the ScreenSavers hack and its eventual dependencies.

Also, *never* reboot your device with a custom package in the root of the userstore.


NiLUJe MANY THANKS!

Not forgetting Branch Delay!
Noexpert is offline   Reply With Quote
Old 02-06-2016, 11:28 AM   #490
Mike_73
Guru
Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.
 
Posts: 750
Karma: 1323
Join Date: Dec 2009
Device: PRS-505, PRS-600, iPad 16GB Wifi, Kindle Voyage, Nexus 6, Razr HD
Just wanted to post that after reading that someone had posted he updated to 5.7.2 after JB, I tried too.

JB without factory reset and update to 5.7.2 and JB still working.
Mike_73 is offline   Reply With Quote
Old 02-06-2016, 11:31 AM   #491
dhdurgee
Guru
dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.dhdurgee ought to be getting tired of karma fortunes by now.
 
Posts: 910
Karma: 3000002
Join Date: Jun 2010
Device: K3W, PW4
Sucessfully used jb on my KT2 S/N: 90C6 0606 xxxx xxxx here and installed SS.

Will need to disable special offers to be able to use the SS hack. What is the easiest way to do so?

Per B_D sounds like it makes sense to upgrade to 5.7.2 to close the security hole. what is the easiest way to do so and keep the jb and hacks alive?

Dave
dhdurgee is offline   Reply With Quote
Old 02-06-2016, 11:35 AM   #492
NiLuJe
BLAM!
NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.NiLuJe ought to be getting tired of karma fortunes by now.
 
NiLuJe's Avatar
 
Posts: 13,506
Karma: 26047202
Join Date: Jun 2010
Location: Paris, France
Device: Kindle 2i, 3g, 4, 5w, PW, PW2, PW5; Kobo H2O, Forma, Elipsa, Sage, C2E
@dhdurgee: By clicking on the 'send us $20' link in your Manage My Devices (or whatever it's now called) page on your Amazon account to unsubscribe to Special Offers .

Since a FW update wipes mostly everything, you'll want to do the update *before* installing other stuff. That said, if this is your first foray into custom Kindle stuff, I'd still recommend familiarizing yourself with everything on FW 5.6.5 before moving on to a less friendly FW version.
NiLuJe is offline   Reply With Quote
Old 02-06-2016, 11:39 AM   #493
knc1
Going Viral
knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.knc1 ought to be getting tired of karma fortunes by now.
 
knc1's Avatar
 
Posts: 17,212
Karma: 18210809
Join Date: Feb 2012
Location: Central Texas
Device: No K1, PW2, KV, KOA
Quote:
Originally Posted by dhdurgee View Post
Sucessfully used jb on my KT2 S/N: 90C6 0606 xxxx xxxx here and installed SS.

Will need to disable special offers to be able to use the SS hack. What is the easiest way to do so?

Per B_D sounds like it makes sense to upgrade to 5.7.2 to close the security hole. what is the easiest way to do so and keep the jb and hacks alive?

Dave
Send Amazon money.

Translation:
Go to your Amazon account page -
In the manage devices you should find a selection to disable special offers.

Install 5.7.2 OR NEVER use the Kindle's experiamental browser - its build of webkit is dangerous to use.

In this order:

Jailbreak
The jb 'hotfix'
restart the Kindle
Install 5.7.2
install KUAL+MrPI (the only way our packages can be installed)
Have Amazon disable special offers for you.
'sync and check'
Install other stuff as desired

Last edited by knc1; 02-06-2016 at 11:45 AM.
knc1 is offline   Reply With Quote
Old 02-06-2016, 12:01 PM   #494
Mike_73
Guru
Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.Mike_73 is no ebook tyro.
 
Posts: 750
Karma: 1323
Join Date: Dec 2009
Device: PRS-505, PRS-600, iPad 16GB Wifi, Kindle Voyage, Nexus 6, Razr HD
Quote:
Originally Posted by dhdurgee View Post
Sucessfully used jb on my KT2 S/N: 90C6 0606 xxxx xxxx here and installed SS.

Will need to disable special offers to be able to use the SS hack. What is the easiest way to do so?

Per B_D sounds like it makes sense to upgrade to 5.7.2 to close the security hole. what is the easiest way to do so and keep the jb and hacks alive?

Dave
I have applied the JB and then downloaded the update on PC, transferred to kindle and went from there. Launcher and Koreader were still on the device after the update. But then again, I usually try pushing my luck. For my phone and custom roms, I only do wipes if my updates didn't work out and I get stuck. If it works, I was lazy going through all the right steps and got lucky without setting everything up again.
Mike_73 is offline   Reply With Quote
Old 02-06-2016, 12:03 PM   #495
jscris
Addict
jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.jscris is an accomplished Snipe hunter.
 
Posts: 399
Karma: 123456
Join Date: Feb 2009
Location: Central US
Device: k1 - KAO2, IPads
Success with jb on KV US English B0130907... KUAL and Mr. Pi installed, updated to 5.7.2 Thanks to everyone!
jscris is offline   Reply With Quote
Reply

Tags
jailbreak, jailbreaking


Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
KINDLE DEAL: Released: A Story of God’s Power Released in Pro Baseball ($ gospelebooks Deals and Resources (No Self-Promotion or Affiliate Links) 0 07-14-2011 09:12 PM
iPad iPad jailbreak released scottjl Apple Devices 25 05-08-2010 02:20 PM


All times are GMT -4. The time now is 06:41 AM.


MobileRead.com is a privately owned, operated and funded community.