Alright, this edible's gonna be kicking in soon. Let's write this real quick. Untethering 10.3.4 currently, with publicly available tools, would go roughly like this: - modify sockH3lix (haven't heard that name in years lol) to run the kexp as soon as the bin is launched [note 1] - sign it, install it on a 10.3.4 device - use spv.sh/work/untether_bugs / the p0laris untether bugs to bypass launchd's platform bin requirement and run the binary using the mount trick or dhcpd - sync, reboot, have fun - remember to resign every 7 days, or get a $99/yr dev cert and sign for a full year note 1: i have code on some drive, around here somewhere, to do exactly this. remind me tomorrow to look for it lol :) also, i actually did this in the past (https://www.youtube.com/watch?v=gNPzmvApm3g, https://www.youtube.com/watch?v=jdQmg5qFKus) it just wasn't at all code that i'd release as a proper untethered jailbreak, due to the signing inconveniences and general jankery also sidenote those 2 demo's iirc used a different platform bypass that i'm not sure i ever publicized, so i won't name it. it would be very easy to find, people have lol sidenote 3 it was brctl, idfc anymore lol -- no point in keeping it secret because these bugs are essentially dead anyway with 15.x+ cya! <3 ~ spv