Pico 2 Development Board with RP2350A microcontroller chip is a hardware programming tool (Pwned DFU Mode Adapter), when used with the dedicated software (A12 A13 DFU password erasure tool, exploits the usbliter8 BootROM vulnerability to gain privileged code execution on A12/A13 iPhones and iPads. This allows technicians to erase passcodes, perform factory reset, DFU mold, or boot unsigned images for forensic research — an essential tool for professional phone repair shops working with A12/A13 CPU devices.
Please note that this is only for professionals. This tool is for research and testing purposes only and must not be used for illegal purposes; otherwise, you will be responsible for the consequences.
Option:
1. Pico 2 RP2350 Development Board soldered with the Engineering cable.
2. Pico 2 RP2350 Development Board only (black)
3. Raspberry Pi Pico 2 RP2350 Development board.
The phonefix team does not provide any user manuals for this product. For professional use only.
Features:
1. Pi Pico 2 – RP2350 dual-core Arm/RISC-V board with 520KB SRAM, 4MB flash, 26 GPIO, and 12 PIO – designed for professional embedded development and security applications.
2. Rapid Exploit Execution – Completes in under 2 seconds from DFU mode, faster than previous checkm8 implementation. By sending a malformed USB packet, the exploit triggers code execution inside SecureROM in under two seconds, placing the device into PWND DFU mode.
3. Unlocks PWN DFU Mode – Device enters PWNED DFU state (PWND:[usbliter8] appears in USB serial string) — enables unsigned image boot and additional tooling.
4. Supports A12 & A13 Devices – Compatible with iPhone XS/XS Max/XR, iPhone 11/11 Pro/11 Pro Max, iPhone SE 2nd gen, iPad Air 3, iPad mini 5, and iPad 8th gen
5. Passcode Erase & Factory Wipe – Use with usbobliter8 or Bobik Eraser to trigger iOS built-in obliteration on passcode-locked devices in PWNDFU mode
6. Open-Source Ecosystem – Works with community tools for SSH ramdisks, Magic CFG, and advanced forensic workflows
7. usbliter8 BootROM Exploit – Achieves arbitrary code execution inside Apple SecureROM on A12 and A13 devices — exploit is unpatchable and permanent for affected hardware
More details: https://www.arieffservicecenter.com/2026/07/a12-a13-dfu-passcode-erase-tool-v100.html
https://www.youtube.com/watch?v=AZep755QMDs
https://www.youtube.com/watch?v=zDk02diqiNw
Supported Devices:
A12 CPU:
for iPhone XS
for iPhone XS Max
for iPhone XR
for iPad Mini 5
for iPad Air 3
for iPad 8th Generation
A13 CPU:
for iPhone 11
for iPhone 11 Pro
for iPhone 11 Pro Max
for iPhone SE (2nd Generation)
A DFU adapter is required. This tool will only function correctly when connected to a supported device via a compatible DFU adapter/cable. The erasure process will not be possible without the adapter.