Homebrew Taking a risk: Hardmodding my 3DS manually. What do I need to know?

mehmeh11

Well-Known Member
Member
Joined
Jul 14, 2016
Messages
205
Trophies
0
Age
22
XP
268
Country
Peru
An exploit (my team is developing)
let me guess, NSMB2 or play coins?

--------------------- MERGED ---------------------------

Have you considered dsiwarehax downgrade?
Oh! Also, get steel diver: sub wars. It's free, and @Nba_Yoh just announced an exploit for it. Ironhax 2.0! ^_^
Is it any different from browser/menuhax?
 

vb_encryption_vb

That hardmod guy....
Member
Joined
Nov 21, 2015
Messages
1,995
Trophies
2
Age
41
Location
Acworth, GA
XP
1,933
Country
United States
Actually, the vulnerability he intends to use is real, and documented on 3dbrew, but the timing is so absurdly sensitive that the public hasn't exploited it. (Though it's unknown if the handful of devs that have it got it this way)


Isn't it still similar to memchnk2 but as you stated the timing has to be literally perfect which is impossible?? I read about it long ago and don't remember too much about it.
 

Swiftloke

Hwaaaa!
Member
Joined
Jan 26, 2015
Messages
1,770
Trophies
1
Location
Nowhere
XP
1,467
Country
United States
Isn't it still similar to memchnk2 but as you stated the timing has to be literally perfect which is impossible?? I read about it long ago and don't remember too much about it.
No, it's the bootrom exception vulnerability. By getting into arm9 RAM at the hardcoded bootrom exception pointer and triggering an exception via hardware with perfect timing, arm9 will jump to your code located at that pointer before the bootrom locks itself, thus allowing a dump.
 

I_AM_L_FORCE

Unban me from Discord
Member
Joined
Feb 19, 2015
Messages
1,064
Trophies
0
Age
23
Location
London
XP
1,537
Country
United Kingdom
No, it's the bootrom exception vulnerability. By getting into arm9 RAM at the hardcoded bootrom exception pointer and triggering an exception via hardware with perfect timing, arm9 will jump to your code located at that pointer before the bootrom locks itself, thus allowing a dump.
So dumping the bootrom, basically
 
  • Like
Reactions: olec04

LuxerWap

The Green Husky with a Broken Tail
OP
Member
Joined
Sep 6, 2015
Messages
499
Trophies
0
Age
27
Location
Roswell, Georgia
XP
711
Country
United States
This thread needs to be revived!

Alright, same process, downgrading my Red 2DS v11.0, this time, I purchased a Blue 2DS v6.0.

@CeeDee did mention an easy process to install arm9loaderhax to my R2DS with the help of B2DS.
 
  • Like
Reactions: CeeDee

Quantumcat

Dead and alive
Member
Joined
Nov 23, 2014
Messages
15,144
Trophies
0
Location
Canberra, Australia
Website
boot9strap.com
XP
11,094
Country
Australia
This thread needs to be revived!

Alright, same process, downgrading my Red 2DS v11.0, this time, I purchased a Blue 2DS v6.0.

@CeeDee did mention an easy process to install arm9loaderhax to my R2DS with the help of B2DS.
What is R2DS and B2DS? Just follow the guide: https://github.com/Plailect/Guide/wiki/

Edit: Oh, I get it. Red and Blue. Just follow this first: https://github.com/Plailect/Guide/wiki/DSiWare-Downgrade then the above guide. It doesn't really have anything to do with the topic you posted it in though :-p
 
Last edited by Quantumcat,

CeeDee

fuckin dork
Member
Joined
May 4, 2014
Messages
5,357
Trophies
2
XP
9,870
Country
United States
This thread needs to be revived!

Alright, same process, downgrading my Red 2DS v11.0, this time, I purchased a Blue 2DS v6.0.

@CeeDee did mention an easy process to install arm9loaderhax to my R2DS with the help of B2DS.
Not necessarily easy but doable, yeah. Look up "DSiWare downgrade"
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    Xdqwerty @ Xdqwerty: