需求:
使用 frida-ps -U 命令后,越狱机立马崩溃重启。
日志:
|默认|20:12:22.909693 +0800|amfid|MacOS error: -67062|
|---|---|---|---|
|默认|20:12:22.928019 +0800|amfid|MacOS error: -67062|
|默认|20:12:22.964464 +0800|amfid|MacOS error: -67062|
|默认|20:12:22.978784 +0800|amfid|MacOS error: -67062|
|默认|20:12:22.995348 +0800|symptomsd|L2 Metrics on ifname en0: rssi: -60 (txFrames/txReTx/txFail) 4/0/0 -> (was/is) 0/0|
|默认|20:12:23.061722 +0800|amfid|MacOS error: -67062|
|默认|20:12:23.072554 +0800|amfid|MacOS error: -67062|
|错误|20:12:23.573514 +0800|SpringBoard|Unable to obtain a task name port right for pid 845: (os/kern) failure (0x5)|
|默认|20:12:23.573687 +0800|SpringBoard|[FBProcessManager] Adding: <FBProcess: 0x1c430aef0; frida-server; pid: 845>|
|默认|20:12:23.688649 +0800|amfid|UNIX error exception: 2|
|默认|20:12:23.696104 +0800|amfid|MacOS error: -67068|
|默认|20:12:23.703181 +0800|amfid|Failure creating static code: -67068|
|错误|20:12:23.705459 +0800|amfid|unrecognized status -67068 from codesigning library|
|默认|20:12:23.705655 +0800|amfid|Could not copy code signature (error 0xe8008001).|
|默认|20:12:23.721980 +0800|kernel|int _validateCodeDirectoryHashInDaemon(const char *, struct cs_blob *, unsigned int *, unsigned int *, int, bool, bool, char *): verify_code_directory server is dead|
|默认|20:12:23.722132 +0800|kernel|AMFI: code signature validation failed.|
|错误|20:12:23.742255 +0800|kernel|Library Validation failed: Rejecting '/usr/lib/substrate/SubstrateBootstrap.dylib' (Team ID: none, platform: no) for process 'ReportCrash(856)' (Team ID: none, platform: yes), reason: mapped file has no Team ID and is not a platform binary (signed with custom identity or adhoc?)|
|错误|20:12:23.743108 +0800|kernel|Library Validation failed: Rejecting '/usr/lib/substrate/SubstrateBootstrap.dylib' (Team ID: none, platform: no) for process 'ReportCrash(856)' (Team ID: none, platform: yes), reason: mapped file has no Team ID and is not a platform binary (signed with custom identity or adhoc?)|
操作步骤:
运行了 frida-ps -U 命令,iPad崩溃重启。
另外在frida的issue上面,https://github.com/frida/frida/issues/582
使用了以下命令的尝试也是一样崩溃:
// server side:
/usr/sbin/frida-server -l 192.168.1.4
// client side:
frida-ps -H 192.168.1.4
结果
➜ ~ frida-ps -U
Failed to enumerate processes: unable to connect to remote frida-server: Unable to connect (connection refused)
任何其他描述:
目前机子可以正常的ssh。
ssh root@192.168.1.4
网上有人说可能是版本问题,我的Mac上的frida版本是12.3.1, 在Cydia安装的版本也是12.3.1
环境:
device: iPadAir
system: iOS 11.0.3
jailbreak: unc0ver
安装过的组件:
AFC2 for iOS11(来源于Cydiaba)
AppList
AppSync Unified
Frida (源:build.frida.re)
OpenSSH
主要目的是为了使用AloneMonkey的 frida-ios-dump 来进行砸壳。结果在frida这一步好像卡住了,请大佬们不吝提点一下解决问题的思路,或者是我哪个步骤错误了,非常感谢!