Just recently, Apple has released the new iOS 4.3.5 and you might be wondering that what jailbreak tool you should follow to jailbreak it. Well, the new PwnageTool bundle has been released to allow users who rely on carrier unlock to jailbreak iOS 4.3.5 on iPhone 4. The main advantage of using PwnageTool over Redsn0w 0.9.8 is that you’ll be able to preserve your old iPhone baseband that’s useful if you are looking to unlock your iOS device using Ultrasn0w in future.
But, remember one thing that this PwnageTool jailbreaking is a tethered jailbreaking method, i.e. you have to plug in your iOS device whenever your iOS device is powered on.
System Pre-Requisites :
- iOS 4.3.5
- iTunes 10.4
- PwnageTool 4.3.3
- PwnageTool Bundle
- tetheredboot utility
How To Jailbreak iOS 4.3.5 On iPhone 4 Using PwnageTool
NOTE : Currently, there is no unlock for 4.10.01 baseband of iOS 4.3.5. However, if you rely on the carrier unlock, do NOT update to stock 4.3.5 from iTunes.
NOTE : You can get all the necessary download links for this guideline at the end of the article.
1. Changing PwnageTool For Custom Bundle
Step – 1 : First of all, extract the custom bundle from the link below, and drag it to your desktop.
Step – 2 : Now, drag the PwnageTool app to the /Applications folder, but don’t launch it yet. Just right-click it and select Show Package Contents, in order to insert the bundle. (As shown in the screenshot below)
Step – 3 : Then, you should see a Mac OS X Finder window as shown below. After that, navigate to Contents/Resources/FirmwareBundles/, and place the .bundle file you have selected earlier to this location, after that, close the window.
2. Building Custom 4.3.5 Firmware
Step – 4 : Now, launch PwnageTool in Expert Mode, as shown in the screenshot below. Just choose your iOS device, and after that, click on the blue arrow on the bottom-right corner to proceed.
Step – 5 : After requested, point PwnageTool to the iOS 4.3.5 IPSW file you downloaded earlier, as shown in the screenshot below.
Step – 6 : Now, on this next screen, just click on “Build” as shown below. Then, PwnageTool will build a jailbroken firmware. It may take some time.
Step – 7 : Then, enter your iOS device into DFU mode by following the instructions below;
- First of all, hold down both “Home” and “Power” buttons simultaneously for 10 seconds.
- Now, release the “Power” button, but continue holding “Home” button for 10 more seconds till your iPhone hasn’t entered into DFU mode.
Restoring Custom 43.5 Firmware On iPhone
Step – 8 : Now, open iTunes and then, click on the name of your iPhone in iTunes and in the “Summary” tab, just hold down the “ALT” key and click on “Restore”, which will open a new window from which you select the custom firmware with PwnageTool just built.
Step – 9 : Then, confirm the process and wait till the process is getting completed. Well, on average, it will take between 10 to 15 minutes. Finally, at the end of the installation, your iPhone will be rebooted and will be updated to the new iOS 4.3.5 firmware and unlocked.
Booting iPhone In Tethered Mode
Step – 10 : First, download the Tetheredboot utility and then, extract the .zip file on the desktop of your Mac.
Step – 11 : Now, just change the extension of custom IPSW file you have just created to .zip by renaming the file, and after that extract that ZIP file. Now, navigate to /Firmware/dfu and copy two files : kernelcache.release.n90 and iBSS.n90ap.RELEASE.dfu from that directory to the folder you have pasted tetheredboot utility to, as shown in the screenshot below.
Step – 12 : After that, turn off your iPhone, and start Terminal on your Mac and type in the following commands:
sudo –s
Then, enter your administrator password, and type the following;
/Users/atifmasood/Desktop/tetheredboot/tetheredboot
/Users/atifmasood/Desktop/tetheredboot/iBSS.n90ap.RELEASE.dfu
/Users/atifmasood/Desktop/tetheredboot/kernelcache.release.n90
NOTE : You have to change the name from the above codes.
After that, you’ll see the Terminal in operation. At some stages, you’ll be asked to enter DFU mode, follow the above mentioned instructions.
Now, your iPhone will be in DFU mode. hence, just wait so that the device will reboot and that the terminal displays the message “Exiting libpois0n”.
That’s it! After a few moments and your iPhone will turn on you so run the jailbreak and reboot tethered mode on iPhone OS 4.3.5.
Well, if you’ll have any difficulty while going through the above steps, then, don’t hesitate, just write to us in our comment section below. Also, if you are successful in performing the above, then, just don’t forget to share your views and comments on this with us.








