2023-05-02 12:39:11 +00:00
|
|
|
from ids import *
|
|
|
|
import ids
|
|
|
|
import getpass
|
|
|
|
import json
|
|
|
|
|
|
|
|
# Open config
|
|
|
|
try:
|
|
|
|
with open("config.json", "r") as f:
|
2023-05-02 17:40:06 +00:00
|
|
|
CONFIG = json.load(f)
|
2023-05-02 12:39:11 +00:00
|
|
|
except FileNotFoundError:
|
2023-05-02 17:40:06 +00:00
|
|
|
CONFIG = {}
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 18:10:13 +00:00
|
|
|
def input_multiline(prompt):
|
|
|
|
print(prompt)
|
|
|
|
lines = []
|
|
|
|
while True:
|
|
|
|
line = input()
|
|
|
|
if line == "":
|
|
|
|
break
|
|
|
|
lines.append(line)
|
|
|
|
return "\n".join(lines)
|
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
def refresh_token():
|
|
|
|
# If no username is set, prompt for it
|
|
|
|
if "username" not in CONFIG:
|
|
|
|
CONFIG["username"] = input("Enter iCloud username: ")
|
|
|
|
# If no password is set, prompt for it
|
|
|
|
if "password" not in CONFIG:
|
|
|
|
CONFIG["password"] = getpass.getpass("Enter iCloud password: ")
|
|
|
|
# If grandslam authentication is not set, prompt for it
|
|
|
|
if "use_gsa" not in CONFIG:
|
|
|
|
CONFIG["use_gsa"] = input("Use grandslam authentication? [y/N] ").lower() == "y"
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
def factor_gen():
|
|
|
|
return input("Enter iCloud 2FA code: ")
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
CONFIG["user_id"], CONFIG["token"] = ids._get_auth_token(
|
|
|
|
CONFIG["username"], CONFIG["password"], CONFIG["use_gsa"], factor_gen=factor_gen
|
|
|
|
)
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
def refresh_cert():
|
|
|
|
CONFIG["key"], CONFIG["auth_cert"] = ids._get_auth_cert(
|
|
|
|
CONFIG["user_id"], CONFIG["token"]
|
|
|
|
)
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
def create_connection():
|
|
|
|
conn = apns.APNSConnection()
|
|
|
|
token = conn.connect()
|
2023-05-02 20:36:50 +00:00
|
|
|
#conn.filter(['com.apple.madrid'])
|
2023-05-02 17:40:06 +00:00
|
|
|
CONFIG['push'] = {
|
|
|
|
'token': b64encode(token).decode(),
|
|
|
|
'cert': conn.cert,
|
|
|
|
'key': conn.private_key
|
|
|
|
}
|
|
|
|
return conn
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
def restore_connection():
|
|
|
|
conn = apns.APNSConnection(CONFIG['push']['key'], CONFIG['push']['cert'])
|
|
|
|
conn.connect(True, b64decode(CONFIG['push']['token']))
|
2023-05-02 20:36:50 +00:00
|
|
|
#conn.filter(['com.apple.madrid', 'com.apple.private.alloy.facetime.multi'])
|
2023-05-02 17:40:06 +00:00
|
|
|
return conn
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 20:36:50 +00:00
|
|
|
def refresh_ids_cert():
|
2023-05-02 17:40:06 +00:00
|
|
|
info = {
|
|
|
|
"uri": "mailto:" + CONFIG["username"],
|
|
|
|
"user_id": CONFIG['user_id'],
|
|
|
|
}
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
resp = None
|
|
|
|
try:
|
|
|
|
if "validation_data" in CONFIG:
|
|
|
|
resp = ids._register_request(
|
|
|
|
CONFIG['push']['token'],
|
|
|
|
info,
|
|
|
|
CONFIG['auth_cert'],
|
|
|
|
CONFIG['key'],
|
|
|
|
CONFIG['push']['cert'],
|
|
|
|
CONFIG['push']['key'],
|
|
|
|
CONFIG["validation_data"],
|
|
|
|
)
|
|
|
|
except Exception as e:
|
|
|
|
print(e)
|
|
|
|
resp = None
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 17:40:06 +00:00
|
|
|
if resp is None:
|
|
|
|
print(
|
|
|
|
"Note: Validation data can be obtained from @JJTech, or intercepted using a HTTP proxy."
|
|
|
|
)
|
|
|
|
validation_data = (
|
|
|
|
input_multiline("Enter validation data: ")
|
|
|
|
.replace("\n", "")
|
|
|
|
.replace(" ", "")
|
|
|
|
)
|
2023-05-02 12:39:11 +00:00
|
|
|
resp = ids._register_request(
|
2023-05-02 17:40:06 +00:00
|
|
|
CONFIG['push']['token'],
|
2023-05-02 12:39:11 +00:00
|
|
|
info,
|
2023-05-02 17:40:06 +00:00
|
|
|
CONFIG['auth_cert'],
|
|
|
|
CONFIG['key'],
|
|
|
|
CONFIG['push']['cert'],
|
|
|
|
CONFIG['push']['key'],
|
|
|
|
validation_data,
|
2023-05-02 12:39:11 +00:00
|
|
|
)
|
2023-05-02 17:40:06 +00:00
|
|
|
CONFIG["validation_data"] = validation_data
|
2023-05-02 12:39:11 +00:00
|
|
|
|
2023-05-02 20:36:50 +00:00
|
|
|
ids_cert = x509.load_der_x509_certificate(
|
2023-05-02 17:40:06 +00:00
|
|
|
resp["services"][0]["users"][0]["cert"]
|
2023-05-02 12:39:11 +00:00
|
|
|
)
|
2023-05-02 20:36:50 +00:00
|
|
|
ids_cert = (
|
|
|
|
ids_cert.public_bytes(serialization.Encoding.PEM).decode("utf-8").strip()
|
2023-05-02 12:39:11 +00:00
|
|
|
)
|
|
|
|
|
2023-05-02 20:36:50 +00:00
|
|
|
CONFIG["ids_cert"] = ids_cert
|
2023-05-02 17:40:06 +00:00
|
|
|
|
|
|
|
|
2023-05-02 18:10:13 +00:00
|
|
|
if not 'push' in CONFIG:
|
2023-05-02 20:36:50 +00:00
|
|
|
print("No existing APNs credentials, creating new ones...")
|
|
|
|
#print("No push conn")
|
2023-05-02 18:10:13 +00:00
|
|
|
conn = create_connection()
|
|
|
|
else:
|
2023-05-02 20:36:50 +00:00
|
|
|
print("Restoring APNs credentials...")
|
2023-05-02 18:10:13 +00:00
|
|
|
conn = restore_connection()
|
2023-05-02 20:36:50 +00:00
|
|
|
print("Connected to APNs!")
|
2023-05-02 18:10:13 +00:00
|
|
|
|
2023-05-02 20:36:50 +00:00
|
|
|
if not 'ids_cert' in CONFIG:
|
|
|
|
print("No existing IDS certificate, creating new one...")
|
2023-05-02 17:40:06 +00:00
|
|
|
if not 'key' in CONFIG:
|
2023-05-02 20:36:50 +00:00
|
|
|
print("No existing authentication certificate, creating new one...")
|
2023-05-02 17:40:06 +00:00
|
|
|
if not 'token' in CONFIG:
|
2023-05-02 20:36:50 +00:00
|
|
|
print("No existing authentication token, creating new one...")
|
2023-05-02 17:40:06 +00:00
|
|
|
refresh_token()
|
2023-05-02 20:36:50 +00:00
|
|
|
print("Got authentication token!")
|
2023-05-02 17:40:06 +00:00
|
|
|
refresh_cert()
|
2023-05-02 20:36:50 +00:00
|
|
|
print("Got authentication certificate!")
|
|
|
|
refresh_ids_cert()
|
|
|
|
print("Got IDS certificate!")
|
|
|
|
|
|
|
|
# This is the actual lookup!
|
|
|
|
print("Looking up user...")
|
|
|
|
ids_keypair = ids.KeyPair(CONFIG['key'], CONFIG['ids_cert'])
|
2023-05-02 21:37:46 +00:00
|
|
|
resp = ids.lookup(conn, CONFIG['username'], ids_keypair, 'com.apple.madrid', ['mailto:user_test2@icloud.com'])
|
2023-05-02 20:36:50 +00:00
|
|
|
print("Got response!")
|
2023-05-02 21:37:46 +00:00
|
|
|
#print(resp)
|
|
|
|
|
|
|
|
r = list(resp['results'].values())[0]
|
|
|
|
i = r['identities']
|
|
|
|
print(f"IDENTITIES: {len(i)}")
|
|
|
|
for iden in i:
|
|
|
|
print("IDENTITY", end=" ")
|
|
|
|
#print("========")
|
|
|
|
print(f"Push Token: {b64encode(iden['push-token']).decode()}", end=" ")
|
|
|
|
if 'client-data' in iden:
|
|
|
|
print(f"Client Data: {len(iden['client-data'])}")
|
|
|
|
# cl = iden['client-data']
|
|
|
|
# for key, value in cl.items():
|
|
|
|
# print(f"{key}: {value}")
|
|
|
|
else:
|
|
|
|
print("No client data")
|
|
|
|
#print("\n\n\n")
|
|
|
|
#print("\n\n\n")
|
|
|
|
#print(iden)
|
|
|
|
#
|
|
|
|
# for key, value in iden.items():
|
|
|
|
# print(f"{key}: {value}")
|
|
|
|
#for key, value in r.items():
|
|
|
|
# print(f"{key}: {value}")
|
|
|
|
#print(r)
|
|
|
|
#print(len(str(resp)))
|
|
|
|
|
|
|
|
#print("\n\n\n\n")
|
|
|
|
|
|
|
|
#for key, value in resp['results']['mailto:user_test2@icloud.com'].items():
|
|
|
|
# print(f"{key}: {value}")
|
2023-05-02 12:39:11 +00:00
|
|
|
|
|
|
|
# Save config
|
|
|
|
with open("config.json", "w") as f:
|
2023-05-02 17:40:06 +00:00
|
|
|
json.dump(CONFIG, f, indent=4)
|