Hacking Post your ideas regarding how to hack the 3DS, here

Rydian

Resident Furvert™
Member
Joined
Feb 4, 2010
Messages
27,880
Trophies
0
Age
36
Location
Cave Entrance, Watching Cyan Write Letters
Website
rydian.net
XP
9,111
Country
United States
sorry to bother you, but there is something i feel strange.
i had found 2 files has exactly 0x00004200 length long, while both of them is a part of the 3ds update file.
So..Rydian i beg you take a look at that >>Can it be any clue? .. If not please let me apologize for my impatient.
I don't know much about the 3DS's security or how it manages files specifically.
 
  • Like
Reactions: Syphurith

Syphurith

Beginner
Member
Joined
Mar 8, 2013
Messages
641
Trophies
0
Location
Xi'an, Shaanxi Province
XP
364
Country
Switzerland
Question: Does 3ds's Browser support gziped image? Can this be a portal to overflow it?
Tip: If a browser can support gziped image, it will appear with notices in its header. Gziped image can be rather small sometimes, even the original image is enough big to flow the memory.. When recieved an image from server, the browser will try to unzip the image first then display it to the screen. So it is possible to overflow your PC browser to make your PC out of service.
So you can use a image of size 1024px*(1024*128)px all blank (that means 0xffffff, white) then segment of data to flow into in HEX.
Bitmap type will be your friend. Someone can even use .bmp file to script 'Hello World' in C. Oh..I like TIFF exploit..
But i'm also wondering where will the left data go when its previous part overflew the memory.
 

Janthran

Solarian
Member
Joined
Sep 17, 2011
Messages
3,777
Trophies
2
Location
The Pacific Northwet
XP
1,167
Country
United States
Question: Does 3ds's Browser support gziped image? Can this be a portal to overflow it?
Tip: If a browser can support gziped image, it will appear with notices in its header. Gziped image can be rather small sometimes, even the original image is enough big to flow the memory.. When recieved an image from server, the browser will try to unzip the image first then display it to the screen. So it is possible to overflow your PC browser to make your PC out of service.
So you can use a image of size 1024px*(1024*128)px all blank (that means 0xffffff, white) then segment of data to flow into in HEX.
Bitmap type will be your friend. Someone can even use .bmp file to script 'Hello World' in C. Oh..I like TIFF exploit..
But i'm also wondering where will the left data go when its previous part overflew the memory.
Pretty sure the 3DS browser would just say "Cannot load this image"
 
  • Like
Reactions: Syphurith

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
I was thinking of downloading an app from the store playing it a little
then putting the Sd card in my computer editing the files for that game by using a hex editor or even just opening them up in notepad then taking out random chunks of the text then play the app to see if it crashes and what happens and see if the game crashing unexpectedly like this might cause in certain games could lead to an exploit :3
 

pyromaniac123

ส็็็็็็็็็็็็็็็็็็็(ಠ益ಠส็็็็็็็็็็็็็็็็็็็
Member
Joined
Sep 24, 2011
Messages
2,006
Trophies
2
XP
1,770
Country
I was thinking of downloading an app from the store playing it a little
then putting the Sd card in my computer editing the files for that game by using a hex editor or even just opening them up in notepad then taking out random chunks of the text then play the app to see if it crashes and what happens and see if the game crashing unexpectedly like this might cause in certain games could lead to an exploit :3

If it were that easy it would of been hacked ages ago.
 

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
If it were that easy it would of been hacked ages ago.
Of course that wouldn't be all of it but i don't think it has been suggested here and it could actually work
it could really depend on the game where it crashes if it even fully crashes or just starts glitching weirdly
and of course because the files are encrypted we wouldn't know exactly what to edit on another 3Ds
but if no one has tried it it could be something worth trying it who knows what it could lead to
 

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
People have been trying to crash the 3Ds various ways to get an exploit and i think this might be the easiest way to crash it hundreds of different ways
 

Rydian

Resident Furvert™
Member
Joined
Feb 4, 2010
Messages
27,880
Trophies
0
Age
36
Location
Cave Entrance, Watching Cyan Write Letters
Website
rydian.net
XP
9,111
Country
United States
I was thinking of downloading an app from the store playing it a little
then putting the Sd card in my computer editing the files for that game by using a hex editor or even just opening them up in notepad then taking out random chunks of the text then play the app to see if it crashes and what happens and see if the game crashing unexpectedly like this might cause in certain games could lead to an exploit :3
If you edit the files, the signatures will become invalid and the 3DS will not run whatever it is anymore.
 

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
If you edit the files, the signatures will become invalid and the 3DS will not run whatever it is anymore.
I was hoping that wasn't the case
I wonder if they are any files they don't do a complete check on
I will check it out myself later
 

Syphurith

Beginner
Member
Joined
Mar 8, 2013
Messages
641
Trophies
0
Location
Xi'an, Shaanxi Province
XP
364
Country
Switzerland
Oh yeah. The CDN Scanner does help me collecting the TMD files.
But it is not pausable.. Can anyone familiar with win32 take a look at it? WHERE I GOT IT.
I want to have pause & continue feather. The job can not be archived in a day..
i think pause it before sleep then continue it tomorrow will be a good idea..
Remember change the CDNScan.bat as the attachment below otherwise it will just delete the files.

Em... Does this thing really helps? I mean if that file really useful to a developer to be analyzed?
I'm wondering about that "Root-CA00000003CP0000000b"..That string seems always appear..
Elisherer it broke the structure you defined to analyse those TMDs!

Also attach some that generated.. named as 0000-00.zip.. Lots of TMD yeah.
 

Attachments

  • CDNScan.zip
    1.1 KB · Views: 89
  • 0000-00.zip
    797.2 KB · Views: 109

KittyPaws

New Member
Newbie
Joined
Mar 22, 2013
Messages
1
Trophies
0
Age
35
XP
51
Country
Hi, I haven't really read through this thread, but I was wondering. Since the nintendo eshop downloads demos and games onto the SD card, why can't we just take one of those downloaded demos and repackage a rom into it? Or patch a rom so it that the eshop thinks it was downloaded from the eshop?
 

medoli900

Open the Benzenes;Gate
Member
Joined
Jan 7, 2013
Messages
1,116
Trophies
0
Location
Lavender Town
XP
1,326
Country
Antarctica
Now i really want that signature leaked...
Hey,big N! You want $. Leak it. PS3 code is on the loose and they aren't ruined. Better,the 3DS sell would go upward with all the hack n00bie that will brick their 3DS!
/Is hopeless...
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • BigOnYa @ BigOnYa:
    @Xdqwerty I don't have a ROG ally
  • Xdqwerty @ Xdqwerty:
    @BigOnYa, i don't have one either
    +1
  • SylverReZ @ SylverReZ:
    @AcuteBulbasaurappears, A cute bulbasaur appears. :D
    +2
  • SylverReZ @ SylverReZ:
    @Psionic Roshambo, The Wii U gamepads are tied to the console's region, so its impossible to find a cheap gamepad that supports your model.
  • SylverReZ @ SylverReZ:
    Unless you modify your system, of course, and remove the region check.
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, im now by episode 8 of lain
  • S @ salazarcosplay:
    @Xdqwerty can we discuss chrono trigger
  • S @ salazarcosplay:
    @Xdqwerty I like how the game had the middle ages 1000AD, the dark ages 600AD.It was great seeing the post robot apocalypse 2300 like Terminator and enter the matrix. some of mad max and fallout. 2300ad though it could had used more elements instead of just a generic ai uprising. It was a great idea for their judgement day to be 1999 Y2K.

    -great additions if they would have made an expansion or dlc in my opinion would be finding out humans trapped in a matrix -

    a follower having a cyborg character living tissue over metal endoskelleton like terminator, and the synths from fallout
  • S @ salazarcosplay:
    4After Zeal fell it would have been good to see more ancient eras. Perhaps Sumeria based in one area, then Egypt based in another area, Greek based in another area, then roman based in another area before the middle ages.---------

    ----between 1000ad and 1999 is a big gap they should have had the age of revolution like the american and French Revolution

    then the cowboyy era in one area of map and the Industrial revolution/age of enlightmentthen a ww1 and ww2 and a cold war era
  • S @ salazarcosplay:
    they could have added 75,000 bc like assassins creed. zeal was already establish in 12, 000 bc , soething before the kindom rose
  • S @ salazarcosplay:
    @Xdqwerty they could also add age of dscover, colonialism ect
    +1
  • S @ salazarcosplay:
    renaissance
  • S @ salazarcosplay:
    @Xdqwerty what did you think
  • S @ salazarcosplay:
    @Xdqwerty I think glenn (the frog) after becomming human had an affair with the queen
  • S @ salazarcosplay:
    so he is the great great great great grandfather of marle @Xdqwerty
  • S @ salazarcosplay:
    they made it like Lancelot from king arthur legends
  • BakerMan @ BakerMan:
    just found out i'm now taller than my dad
  • Xdqwerty @ Xdqwerty:
    @salazarcosplay, sorry i was busy
  • S @ salazarcosplay:
    @Xdqwerty thats completely fine
    +1
  • Xdqwerty @ Xdqwerty:
    @salazarcosplay,
    the ds version added a secret boss reference to chrono cross
  • S @ salazarcosplay:
    @Xdqwerty did you finish watching naruto shippuden and Boruto
  • Xdqwerty @ Xdqwerty:
    @salazarcosplay, i havent even started lol
    Xdqwerty @ Xdqwerty: @salazarcosplay, i havent even started lol