Hacking Would it be possible to modify the Nand Dump to downgrade the firmware and restore it?

Spazturtle

Active Member
Newcomer
Joined
Jun 25, 2016
Messages
30
Trophies
0
Age
29
XP
174
Country
Do you really think they would exclude that from the signature check?

If the e-fuse check is done after the signature check then you just have to apply the patch after the signature check is done. If the e-fuse check is done before then you just do the patch, then undo the patch before the signature check.
 

Jayro

MediCat USB Dev
Developer
Joined
Jul 23, 2012
Messages
13,040
Trophies
4
Location
WA State
Website
ko-fi.com
XP
17,222
Country
United States
What would downgrading get you?

There is no point in downgrading. A fully working Emunand or CFW with signature patches is the best case scenario.

As has previously been stated the FW checks that the number of burnt efuses match the hardcoded figure in the firmware. If not a kernel panic and ensues and your switch is effectively dead.

Efuses are impossible to revert back to their unburnt state once tripped. There would be no benefit from running a downgraded OS anyway as you lose the ability to play game that require a newer FW.

Once Scires finishes Atmosphere we will see what benefits we get and where others can expand on the work.
That's what Luma3DS uses, right?
 

sweatbox

Well-Known Member
Member
Joined
Sep 14, 2009
Messages
109
Trophies
0
XP
213
Country
Germany
Well if I remember back to 3DS a9lh times, it was necessary to downgrade to 2.1 for otp dump. After getting this keys you had to go back installing the a9lh and could use cfw.

When i get it right the idea is, if cfw needs 1.0.0 for getting permanent/cold boot function it would be nice to downgrade.

It maybe will be possible to boot cfw in RCM mode, downgrade,install there a permanent cfw and update after that.
But thats all speculations. Just let us wait for what will come.
 

TerraPhantm

Well-Known Member
Member
Joined
Jul 27, 2007
Messages
498
Trophies
0
XP
680
Country
United States
Well if I remember back to 3DS a9lh times, it was necessary to downgrade to 2.1 for otp dump. After getting this keys you had to go back installing the a9lh and could use cfw.

When i get it right the idea is, if cfw needs 1.0.0 for getting permanent/cold boot function it would be nice to downgrade.

It maybe will be possible to boot cfw in RCM mode, downgrade,install there a permanent cfw and update after that.
But thats all speculations. Just let us wait for what will come.

RCM mode allows us low level access to pretty much everything. So it'll never be necessary to downgrade for the sake of dumping data (and even if it was, RCM will allow us to temporarily boot into any firmware version). It will never be possible to cold boot into a firmware version that requires fewer burned fuses, unless a low level signature flaw is discovered (in which case you can change the number of fuses expected).
 
Last edited by TerraPhantm,

reminon

Well-Known Member
Member
Joined
Feb 7, 2016
Messages
430
Trophies
0
Age
33
XP
815
Country
United States
I don't see 1.0.0 holding anything of value over other firmware in the future. Right now it has a full software exploit chain to boot cfw, but something will come that will untether cfw on all firmware for non-Mariko hardware. None the less, I'll still stay on 3.0.0 in the meantime for hbmenu, untill booting patched firmware becomes more readily available.
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    RedColoredStars @ RedColoredStars: Also this song https://youtu.be/27RWx9Q6LcQ?si=c7C8YuRoIPHadiQ0