Hacking [WIP] KARL3DS - Kernel access on N3DS via Ninjhax + Loadcode

Status
Not open for further replies.

Hashtastrophe

Wizard
Member
Joined
Jan 12, 2015
Messages
442
Trophies
0
Location
Yes that kind of wizard.
XP
435
Country
Canada
Are you sure? Check Nintendo's update history.
Okay, I'll admit that I laughed at this.
Stability is not a feature ._.
Would you rather A) homebrew right away that crashes often, with a system that likes to freeze randomly (or bricks at random), or B) homebrew later without the freezing/crashing (and bricks)?
 
  • Like
Reactions: Margen67

Idaho

Well-Known Member
Member
Joined
Oct 3, 2013
Messages
884
Trophies
1
Age
29
XP
1,405
Country
France
Okay, I'll admit that I laughed at this.

Would you rather A) homebrew right away that crashes often, with a system that likes to freeze randomly (or bricks at random), or B) homebrew later without the freezing/crashing (and bricks)?

You didn't get my point...

You shouldn't have talked about stability in the first place because it's not a feature, it should be here by design, I was specifically talking about the features...
 

Hashtastrophe

Wizard
Member
Joined
Jan 12, 2015
Messages
442
Trophies
0
Location
Yes that kind of wizard.
XP
435
Country
Canada
That's entirely possible. I assumed that you were joking but posted what I did just in case you weren't. (it was also for the other people thinking of posting "ugh stability is gaaaay. just give me the karls now" and actually meaning it.)

A wild EDIT appeared: Well, you just had that first line when I posted so it seemed kind of ambiguous. And it turns out you were arguing?
But the point was this: stability is more important than any of the features. You can have all the region changing, homebrew launching magic in the world but if it doesn't work, or causes bricks/crashes, why bother using it? And if stability is supposed to be there "by design" doesn't that make it a feature?
 

samiam144

Régulier
Member
Joined
Aug 19, 2007
Messages
2,875
Trophies
0
XP
1,742
Country
Canada
You didn't get my point...

You shouldn't have talked about stability in the first place because it's not a feature, it should be here by design, I was specifically talking about the features...

In terms of features, sure, homebrew launching is pretty important to some. But before the features can be worked on, the devs want to experiment and sort out any bugs they have. What feature is most important is subjective anyways lol
 
  • Like
Reactions: Margen67

Artemis-kun

Well-Known Member
Newcomer
Joined
Mar 1, 2015
Messages
73
Trophies
0
Age
39
Location
Toronto, ON
XP
217
Country
Canada
You didn't get my point...

You shouldn't have talked about stability in the first place because it's not a feature, it should be here by design, I was specifically talking about the features...
Sure, stability is expected to be there by design for, say, something one originally developed from the ground up (coincidentally enough, like homebrew), however what's being worked on here is a CFW based around an exploited entrypoint into a completely foreign firmware. So, in an application such as this, stability actually becomes a feature, because this whole thing is hinging on flaws from Nintendo's code, of which we're not able to see the source.
 
  • Like
Reactions: TriigerHappy

Jmes1991

Member
Newcomer
Joined
Mar 25, 2011
Messages
21
Trophies
0
XP
92
Country
United States
Found a crazy vuln. Allow me to take this moment to remind people: IF YOU'RE ON SYSNAND 9.5 OR LOWER (9.6 or lower on old3ds maybe, don't chance it though) MAKE A NAND BACKUP. DO IT RIGHT NOW. You will regret not doing it in the future, otherwise.

That is all I'll say for now.


Hi WulfyStylez, this has shed some light for me since I am on firmware 9.4 on my New 3Ds XL, since it came with it. You mentioned to back up the NAND, but there is no current way for me to backup my NAND. From my understanding, the only way to back up a NAND is a hardmod O3DS or O3DSXL or through gateway (system firmwares 9.2 and below). Is it totally a requirement for me to back up my NAND for your discovered vuln to work? Backing up my NAND isn't possible because of my firmware. What are my choices?
 

Psi-hate

GBATemp's Official Psi-Hater
Member
Joined
Dec 14, 2014
Messages
1,749
Trophies
1
XP
3,401
Country
United States
Hi WulfyStylez, this has shed some light for me since I am on firmware 9.4 on my New 3Ds XL, since it came with it. You mentioned to back up the NAND, but there is no current way for me to backup my NAND. From my understanding, the only way to back up a NAND is a hardmod O3DS or O3DSXL or through gateway (system firmwares 9.2 and below). Is it totally a requirement for me to back up my NAND for your discovered vuln to work? Backing up my NAND isn't possible because of my firmware. What are my choices?

You can get a NAND mod, which is really the only way to read/write NAND Backups. If she tells you to do it or you'll regret it, then you ought to then. :)
 
  • Like
Reactions: Margen67

VinsCool

Persona Secretiva Felineus
Global Moderator
Joined
Jan 7, 2014
Messages
14,600
Trophies
4
Location
Another World
Website
www.gbatemp.net
XP
25,207
Country
Canada
YAAAAA WAYAWAA GRAAAAAAGRRRRRRRRR
WHEN ARE THEY GONNA RELEASE!!!!!!

They need more tiems. It is around the corner.

Please understand.
 

Jmes1991

Member
Newcomer
Joined
Mar 25, 2011
Messages
21
Trophies
0
XP
92
Country
United States
You can get a NAND mod, which is really the only way to me/write NAND Backups. If she tells you to do it or you'll regret it, then you ought to then. :)


Are there any tutorials that show how to hardmod a N3DS XL console? As far as I know there are only O3DS XL tutorials.
 
  • Like
Reactions: Margen67

Oishikatta

Well-Known Member
Member
Joined
Oct 30, 2014
Messages
971
Trophies
0
XP
603
Country
United States

Zidapi

Well-Known Member
Member
Joined
Dec 1, 2002
Messages
3,112
Trophies
3
Age
42
Website
Visit site
XP
2,681
Country
Hi WulfyStylez, this has shed some light for me since I am on firmware 9.4 on my New 3Ds XL, since it came with it. You mentioned to back up the NAND, but there is no current way for me to backup my NAND. From my understanding, the only way to back up a NAND is a hardmod O3DS or O3DSXL or through gateway (system firmwares 9.2 and below). Is it totally a requirement for me to back up my NAND for your discovered vuln to work? Backing up my NAND isn't possible because of my firmware. What are my choices?
You should lower your expectations considerably, it's highly unlikely that the exploit eluded to will be used for anything useful for you.

If Nintendo fix the vuln in 9.8/9.9 then perhaps. But it's more likely to be saved for use with later firmware revisions like 10.x/11.x

It'd foolish and shortsighted to burn an unpatched exploit on 9.x at this stage.
 
  • Like
Reactions: Hashtastrophe

WulfyStylez

SALT/Bemani Princess
Member
Joined
Nov 3, 2013
Messages
1,149
Trophies
0
XP
2,867
Country
United States
God I hope that there's an exploit in Home Menu. KARL3DS booting at system startup would be the Holy Grail of 3DS hacking.

Well, there is and there isn't. You can get ROP under the news module (it's very specifically described on 3dbrew), but it's not really useful. News only has boss:P, cecd:s, frd:u, fs:USER, ndm:u, nim:u, and ptm:sysm. Thus you can't get code execution from gspwn, and you can't modify the chunk headers to trigger memchunkhax. It does have the SVCs necessary for memchunkhax, but that's not saying much.

It's usable in other scenarios, but those are outside of our interests since they don't cover all hardware.
 
  • Like
Reactions: VinsCool

spinal_cord

Knows his stuff
Member
Joined
Jul 21, 2007
Messages
3,224
Trophies
1
Age
43
Location
somewhere
Website
spinalcode.co.uk
XP
3,365
Country
Well, there is and there isn't. You can get ROP under the news module (it's very specifically described on 3dbrew), but it's not really useful. News only has boss:P, cecd:s, frd:u, fs:USER, ndm:u, nim:u, and ptm:sysm. Thus you can't get code execution from gspwn, and you can't modify the chunk headers to trigger memchunkhax. It does have the SVCs necessary for memchunkhax, but that's not saying much.

It's usable in other scenarios, but those are outside of our interests since they don't cover all hardware.


Which ever method may or may not be used to launch karl, will it be quicker to execute than load game -> enter menu -> create -> qr code -> wait?
 
  • Like
Reactions: Margen67
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    K3Nv2 @ K3Nv2: Look at you holding tiny things