Hacking [WIP] KARL3DS - Kernel access on N3DS via Ninjhax + Loadcode

Status
Not open for further replies.

codychaosx

Well-Known Member
Member
Joined
Mar 15, 2009
Messages
589
Trophies
0
Location
Wisconsin
XP
778
Country
United States
sweet. so gateway could potentially figure out/hijack the ds profile hack you guys found on 9.2 for n3ds? all n all this is pretty nifty. gettin tired of switching between cn n gw :P
 
  • Like
Reactions: Margen67

ShadowOne333

QVID PRO QVO
Editorial Team
Joined
Jan 17, 2013
Messages
12,237
Trophies
2
XP
34,772
Country
Mexico
sweet. so gateway could potentially figure out/hijack the ds profile hack you guys found on 9.2 for n3ds? all n all this is pretty nifty. gettin tired of switching between cn n gw :P
I do hope so!
The DS Exploit was kinda comfortable.
All I want is to whitelist the GW Blue Card (and use it too), install the DS Exploit and enjoy with my N3DS. XD

I don't care if I have to install the DS Exploit every time I play DS games, that's ok.
But that would certainly come in handy.

I hate the CN/OoT limitations by a BUNCH!
It's not only a hardware limitation, but a monetary one too.
Those fucking games are harder to find than the Holy Grail, for fuck's sake. XD
 
  • Like
Reactions: Margen67

Alkéryn

Moon Dweller ~
Member
Joined
Mar 15, 2015
Messages
1,665
Trophies
1
Age
25
Location
Albategnius, Moon
XP
2,392
Country
France
I do hope so!
The DS Exploit was kinda comfortable.
All I want is to whitelist the GW Blue Card (and use it too), install the DS Exploit and enjoy with my N3DS. XD

I don't care if I have to install the DS Exploit every time I play DS games, that's ok.
But that would certainly come in handy.

I hate the CN/OoT limitations by a BUNCH!
It's not only a hardware limitation, but a monetary one too.
Those fucking games are harder to find than the Holy Grail, for fuck's sake. XD

Found cubic ninja on a local exchange store with a 12 year kid that sell it to me for 5$ cause it was a bad game but he didn't even know the flaws in ^^
 

Zidapi

Well-Known Member
Member
Joined
Dec 1, 2002
Messages
3,112
Trophies
3
Age
42
Website
Visit site
XP
2,681
Country
Here's me getting ARM11 from mset on sysnand. ROP hell. We'll be porting our launcher stuff to this entrypoint soon.

I'm tired as fuck (it's like 7AM here right now) so it didn't occur to me that you can't actually tell this is sysnand since i don't show cold boot, but w/e. You'll see it later probably.
To be clear, using a reactivated MSET as an entry point will be entirely optional, yeah?

I don't want to sacrifice DS game compatibility for the convenience of the DS profile exploit.
 

Zidapi

Well-Known Member
Member
Joined
Dec 1, 2002
Messages
3,112
Trophies
3
Age
42
Website
Visit site
XP
2,681
Country
Not very childish when it's true. The guy has been on every CFW thread that pops up asking other devs to open source their stuff. It's quite pathetic.

No, it's not govanify.
It was a little unnecessary, she comes across as a little arrogant at times.

But it's not entirely unwarranted though. I've seen "numbers" requesting the devs of rxTools, NTR, and of course KARL provide him with their source.
 

WulfyStylez

SALT/Bemani Princess
Member
Joined
Nov 3, 2013
Messages
1,149
Trophies
0
XP
2,877
Country
United States
To be clear, using a reactivated MSET as an entry point will be entirely optional, yeah?
Yep. A big push in us developing it is so we can iterate a lot faster.
It was a little unnecessary, she comes across as a little arrogant at times.

I apologize for when I do that, you wouldn't believe how hard it is to not slip into the whole 'asshole dev' mentality. That's a small part of why I'm posting a lot less, too.

Also progress update: mset hax are now working 100% of the time! We were getting like 10% or less initially. Time to actually start writing code.
 

Psi-hate

GBATemp's Official Psi-Hater
Member
Joined
Dec 14, 2014
Messages
1,750
Trophies
1
XP
3,439
Country
United States
Yep. A big push in us developing it is so we can iterate a lot faster.


I apologize for when I do that, you wouldn't believe how hard it is to not slip into the whole 'asshole dev' mentality. That's a small part of why I'm posting a lot less, too.

Also progress update: mset hax are now working 100% of the time! We were getting like 10% or less initially. Time to actually start writing code.

Wulfy, mind explaining how we get msethax on 9.2? I don't know how without bricking as far as I can see with normal standards. :wacko:
 

WulfyStylez

SALT/Bemani Princess
Member
Joined
Nov 3, 2013
Messages
1,149
Trophies
0
XP
2,877
Country
United States
Wulfy, mind explaining how we get msethax on 9.2? I don't know how without bricking as far as I can see with normal standards. :wacko:

I guess there's not much we really need to protect since it's obvious how we're pulling it off.
1) install old MSET. Not going into how to do this atm since it was actually more work than I had thought when I started. There's no risk of bricking by doing this, though.
2) Install a ROP chain into your DS profile which matches the version of your mset.

Beyond that is all the code (ROP) I had to port to actually get code execution. You can't use this for 4.5 launcher.dats or anything, either. Those use exploits which have been patched to gain more control over the system.
 
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    SylverReZ @ SylverReZ: Murica