Hacking RELEASE biskeydump and HacDiskMount - Switch eMMC decryption/real-time mounting tools

SocraticBliss

Well-Known Member
Member
Joined
Jun 3, 2017
Messages
130
Trophies
0
Age
36
XP
273
Country
United States
it doesn't ask for a bis key. Notice that the BIS KEY group box doesn't have a number next to it. These partitions arent encrypted (leave the 2 key boxes blank), see: http://switchbrew.org/index.php?title=Flash_Filesystem

Do you think it would be better to hide those 2 boxes if they select those partitions? Might prevent people from making a mistake, as it's true that it isn't very clear.

Also, would be nice to save the previous keys used, that way we don't have to re-enter them each time we re-open a partition.
 

aut0mat3d

Well-Known Member
Member
Joined
Mar 15, 2017
Messages
212
Trophies
0
XP
568
Country
Australia
Do you think it would be better to hide those 2 boxes if they select those partitions? Might prevent people from making a mistake, as it's true that it isn't very clear.

Also, would be nice to save the previous keys used, that way we don't have to re-enter them each time we re-open a partition.

Hiding those boxes would be fine to avoid misunderstandings ;)

A Save Option is already included - the button "check keys" (or so) changes to save if the check was OK
 

riyyi

Well-Known Member
Member
Joined
Sep 13, 2009
Messages
100
Trophies
0
XP
621
Country
Netherlands
Using Hekate ipl (this commit https://github.com/nwert/hekate/commit/e7373548fa3dd51508b34ae9c673885f849f653e)
I get the 3 errors when dumping the eMMC, but it should be fine, according to this:
No. if they were unreadable the dump would have failed. They were able to be read on the 2nd try which is why you only see their address once. The eMMC probably just gets tired and fails sometimes :shrug:

However, my dump is 27.9 GB (29,979,344,896 bytes), which is to small I think.
HacDiskMount says: [08:53:35:222535]
Not enough bytes reading secondary GPT header from offset 31268535808
What could I to fix this? I'm on 3.0.1

BcJb0gP.png

Edit: Dump is correct using the newest commit (https://github.com/nwert/hekate/commit/5ca3bbcaf18daabed20a168cb6ee63d9d51a1161)
 
Last edited by riyyi,

SocraticBliss

Well-Known Member
Member
Joined
Jun 3, 2017
Messages
130
Trophies
0
Age
36
XP
273
Country
United States
Hiding those boxes would be fine to avoid misunderstandings ;)

A Save Option is already included - the button "check keys" (or so) changes to save if the check was OK

Either hiding it, or ignoring the inputs would probably work...

Thanks for the save clarification :) my bad!
 

d4mation

Well-Known Member
Member
Joined
Aug 3, 2013
Messages
189
Trophies
0
XP
1,711
Country
United States
HacDiskMount - use your BIS keys and your RawNand.bin (or the physical eMMC attached via microSD reader or using a mass storage gadget mode in u-boot/linux) to dump, restore or REAL-TIME MOUNT AND EXPLORE/MODIFY partitions from the dump file or attached physical device !

Could this be used to remove the "Super Nag" flag? This could be great for people who are on lower system firmwares who were effected by this.

https://gbatemp.net/threads/importa...ges-to-block-web-applets-from-working.502431/
 

rajkosto

Well-Known Member
OP
Member
Joined
Apr 6, 2017
Messages
819
Trophies
1
XP
2,775
Country
It doesn't go there. HacDiskMount does not do anything with regards to boot0/boot1. If you want to readout keyblobs from your boot0 check out hactool with --infile=keygen
 

Imancol

Otak Productions
Member
Joined
Jun 29, 2017
Messages
1,376
Trophies
0
XP
2,773
Country
Colombia
It doesn't go there. HacDiskMount does not do anything with regards to boot0/boot1. If you want to readout keyblobs from your boot0 check out hactool with --infile=keygen
Try your latest version of BiskeyDump and I could not not know if it should be executed first with TegraRMCSmash 1101 and then in CMD write the argument or just write the argument in CMD. Could you please guide me?
 

Imancol

Otak Productions
Member
Joined
Jun 29, 2017
Messages
1,376
Trophies
0
XP
2,773
Country
Colombia
Use this command with the version biskeydumpV6 and TegraCMSSmash 1.1.0.1

Code:
TegraRcmSmash.exe -w biskeydump.bin BOOT:0x0
 

Addconsult

Well-Known Member
Newcomer
Joined
Apr 29, 2018
Messages
61
Trophies
0
Age
40
XP
197
Country
Sweden
Tried to get the biskeys with tegrarcm and biskeydump.bin as payload. Nothing happens after "uploading payload". Fusee payload works and hekate payload too. I tried the newest version of tegrarcm and the version before that. Same issue. Launched it with
TegraRcmSmash.exe -w biskeydump.bin BOOT:0x0
AND
Without the "boot" flag. Running Switch FW 4.0.1

Anyone know a solution ? I have reinstalled APX drivers several times and rebooted. Also tried different usb ports (Same computer).
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • Quincy @ Quincy:
    Or even worse; circle pad ball fondlers like on the 3DS
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    I just want a Pokemon Hell Raiser fan game 😭
  • K3Nv2 @ K3Nv2:
    Anyone wanna play with my joydock
  • BigOnYa @ BigOnYa:
    Biomutant looks cool tho, may have to try that
  • Quincy @ Quincy:
    Usually when such a big title leaks the Temp will be the first to report about it (going off of historical reports here, Pokemon SV being the latest one I can recall seeing pop up here)
  • K3Nv2 @ K3Nv2:
    I still like how a freaking mp3 file hacks webos all that security defeated by text yet again
  • BigOnYa @ BigOnYa:
    They have simulators for everything nowdays, cray cray. How about a sim that shows you playing the Switch.
  • K3Nv2 @ K3Nv2:
    That's called yuzu
    +1
  • BigOnYa @ BigOnYa:
    I want a 120hz 4k tv but crazy how more expensive the 120hz over the 60hz are. Or even more crazy is the price of 8k's.
  • K3Nv2 @ K3Nv2:
    No real point since movies are 30fps
  • BigOnYa @ BigOnYa:
    Not a big movie buff, more of a gamer tbh. And Series X is 120hz 8k ready, but yea only 120hz 4k games out right now, but thinking of in the future.
  • K3Nv2 @ K3Nv2:
    Mostly why you never see TV manufacturers going post 60hz
  • BigOnYa @ BigOnYa:
    I only watch tv when i goto bed, it puts me to sleep, and I have a nas drive filled w my fav shows so i can watch them in order, commercial free. I usually watch Married w Children, or South Park
  • K3Nv2 @ K3Nv2:
    Stremio ruined my need for nas
  • BigOnYa @ BigOnYa:
    I stream from Nas to firestick, one on every tv, and use Kodi. I'm happy w it, plays everything. (I pirate/torrent shows/movies on pc, and put on nas)
  • K3Nv2 @ K3Nv2:
    Kodi repost are still pretty popular
  • BigOnYa @ BigOnYa:
    What the hell is Kodi reposts? what do you mean, or "Wut?" -xdqwerty
  • K3Nv2 @ K3Nv2:
    Google them basically web crawlers to movie sites
  • BigOnYa @ BigOnYa:
    oh you mean the 3rd party apps on Kodi, yea i know what you mean, yea there are still a few cool ones, in fact watched the new planet of the apes movie other night w wifey thru one, was good pic surprisingly, not a cam
  • BigOnYa @ BigOnYa:
    Damn, only $2.06 and free shipping. Gotta cost more for them to ship than $2.06
  • BigOnYa @ BigOnYa:
    I got my Dad a firestick for Xmas and showed him those 3rd party sites on Kodi, he loves it, all he watches anymore. He said he has got 3 letters from AT&T already about pirating, but he says f them, let them shut my internet off (He wants out of his AT&T contract anyways)
  • K3Nv2 @ K3Nv2:
    That's where stremio comes to play never got a letter about it
  • BigOnYa @ BigOnYa:
    I just use a VPN, even give him my login and password so can use it also, and he refuses, he's funny.
    BigOnYa @ BigOnYa: I just use a VPN, even give him my login and password so can use it also, and he refuses, he's...