Presenting, Lockra1n!
This a free software for bypassing the iCloud Lock on A9 to A11 (cellular) devices.
This includes the iPhone 6s to X. You can see the full list in the Supported Devices section.
UPDATE! Lockra1n is now up and running again!
I have found a new method for an untethered iCloud bypass with no SN change.
Be sure to update your Lockra1n app to the latest version!
Supported devices
iPhone 6s
iPhone 6s Plus
iPhone SE (1st generation)
iPhone 7
iPhone 7 Plus
iPhone 8
iPhone 8 Plus
iPhone X (If the device is running iOS 16, IT MAY HAVE ISSUES!)
iPad Pro 12.9-inch 2015, 1st generation (Cellular Model ONLY!)
iPad Pro 12.9-inch 2017, 2nd generation (Cellular Model ONLY!)
iPad Pro 10.5-inch 1st generation (Cellular Model ONLY!)
iPad Air 1st generation (Cellular Model ONLY!)
iPad Air 2nd generation (Cellular Model ONLY!)
iPad 5th generation (Cellular Model ONLY!)
iPad 6th generation (Cellular Model ONLY!)
iPad 7th generation (Cellular Model ONLY!)
iPad Mini 4th generation (Cellular Model ONLY!)
IMPORTANT: iPhone X has been determined to sometimes have an issue while jailbreaking.
If you encounter an issue where after entering DFU mode, the device boots straight up to the
Hello screen without the verbose text, then the jailbreak failed. Quit Lockra1n and try again.
The other A11 devices like iPhone 8/8 Plus don't have these issues.
Supported iOS Versions
iOS 15.0 - 15.X.X (latest version)
iOS 16.0 - 16.X.X (latest version)
iOS 17.0 - 17.X.X (latest version)
iOS 18.0 - 18.1.1 (currently nothing higher)
Keep in mind:
If the device you're trying to bypass is running iOS 12.0 - 14.8.1 (aka below 15.0), the just use my tool Passra1n!
It provides the same untethered bypass functionality as Lockra1n, but works specifically for iOS 12.0 - 14.8.1.
Get Passra1n!
NOTE: The tool does not support any devices that aren't checkm8-compatible.
The method that is used in this software does not support any non-checkm8 devices.
How to download Lockra1n
Click the link below to download the latest version.
The tool will start downloading. Make sure you click "Allow" in Safari if it's your first time downloading!
Changes Made:
Fixed activation tickets generation issue! This issue arose due to a patch by Apple.
Updated UI
Added automatic device detection - no need to hit "Search for Device" anymore!
Temporarily removed Ramdisk mode bypass (the new method doesn't currently support it).
Changes Made:
Updated UI
Added FIX for iPhone X iOS 16 Mounting issue! Please test and let me know if it works!
Added Normal Mode Bypass option! Currently in beta. Please test this as well and get back to me!.
Download Lockra1n v2.0 Beta 3 (NON-FUNCTIONAL!)
Changes Made:
Initial public release.
Contains iPhone X iOS 16 mounting issue!
Ramdisk mode bypass only.
NOTE: If you see the message that the app cannot be opened because it's
from an unidentified developer, then just Right-click on the app file and select open.
This will allow you to open the bypass the unidentified developer message and open the app.
If the app still won't open, then follow these steps:
Open up a blank Terminal window. You can find the Terminal app in the Other folder in your Launchpad.
Type, all lowercase, 'xattr -cr', without the quotes, then Drag and drop the Lockra1n
application you downloaded into the Terminal window.
Finally, press Enter to run the command.
Now, these steps will allow the app to open.
Any further launching issues you should contact me about.
ALSO NOTE: This app is very much still in the early stages.
Please don't expect zero bugs.
The software has been debugged lots, but it doesn't mean there will be no bugs at all.
Kindly report any bugs to me as I want to make the software the best it can possibly be.
Thank you for your participation in this new software!
How to use Lockra1n
[1] Open up the app that you downloaded from here.
If you encounter the "Untrusted Developer" message, then follow the steps above to fix that issue.
Any further launching issues you should contact me about.
[2] Click the "Prepare Lockra1n" button. This will make sure everything is installed and ready to go for using Lockra1n.
[3] Plug your device into your Mac via USB. The tool should display your device details.
If you don't see your device, hit the "Don't see your device?" button.
This will manually pair your device with the computer, using the original detection method. Make sure to hit Trust on the device if prompted!
[4] Click on the "Bypass Device! (Normal mode)" button. It will start by checking if the device is registered, and then prompt you to jailbreak your device.
If you are not registered, the tool will prompt you to do so.
Next, you need to enter DFU Mode on your device. There are various ways of doing this, depending on your device.
I would recommend looking up "How to Enter DFU Mode on " and then your device model.
Example might be "How to Enter DFU Mode on iPhone 8".
Once in DFU Mode, hit the "I've Entered DFU Mode" button in the tool. Your device will turn on, and the jailbreaking process will start.
If you have already jailbroken your device, just press "Already Done Jailbreak" in the tool. You can then go straight to bypassing.
ONLY use this if you are sure your device is jailbroken.
Once your device is back on the Hello screen and is connected, press the OK button on the next 2 pop-ups and the tool will start the bypass process.
The tool will copy the some files to the Mac, modify them as needed, inject the new patched files, apply some filesystem modifications, and reboot your device.
After your device turns back on, you will need to set up your device. You can now run through the setup assistant like normal and get to the Home Screen!
Once everything is done, your device is bypassed untethered!
A quick explanation of how Lockra1n works:
Lockra1n is based off the well-known checkm8 exploit, which is utilized when entering PwnDFU mode.
Most libraries used in this tool are from the libimobiledevice collection, a very handy set of tools for interacting with iOS Devices.
They include ideviceinfo, which is used for retrieving the device serial number and iOS version,
idevicepair, which is used for pairing the device with the Mac,
futurerestore, to exit Recovery mode,
sshpass (which is not part of libimobiledevice), to inject the tickets and apply filesystem modifications,
and finally, iproxy (part of libusbmuxd) to start listening for SSH commands.
Big thanks to all the devs who made these libraries, Lockra1n would not be possible without them!
The registration page was designed purely by me.
The files are patched via the server on my website.
The new method used to bypass the iCloud lock untethered with no SN change is very clever and supports a variety of iOS versions.
Although, it's not as complicated as the original bypass method, requiring less SSH commands and filesystem modifications.
If the device does anything different such as not activating after the first reboot, not staying bypassed after a reboot
or you encounter any other strange bugs or issues, then there was an error while bypassing the device.
Please contact me with your issue and I will try to help you to my best ability.
Hope you enjoy using my software!
Need help?
I'm here to help if you need it.
I try my best to make Lockra1n user-friendly and fix any bugs
but feel free to report any problems to me.
Contact Always Apple FTD
Disclaimer
Lockra1n was developed by Always Apple FTD in 2024 and updated in January 2025 for the Apple patch.
Please do not copy any part of Lockra1n.
Plenty of other developers have contributed to Lockra1n, but any scripts I made and the tool's UI belong to me only.
Lockra1n is not for sale. This software is free for anyone to use.
I am not liable for any kind of misuse or abuse of Lockra1n.
Lockra1n IS NOT for unlocking stolen devices. I am not promoting any type unethical hacking and/or unlocking of stolen devices.
By using this software, you are agreeing to these terms.
I am not responsible for any violations taken.
Website made by Always Apple FTD. Please do not copy any part of this website.