Hacking Is a "cloned gamecard" exploit-less Gateway possible?

They have the protocol figured out just because the card even exist, just (if the launcher just actually disables the crypto) the stream of data between gateway and 3ds is clear text and not encrypted.
yeah but i mean for the stuff like extracting the chip ID's which would be different commands(ps im not pretending to really know much about it, but that's just my interpretation of it :) )

If they had it all figured out, they wouldn't disable the crypto - they would use it. They merely found an exploit that disables a hurdle they didn't know how or didn't care how to cross.

There's also another problem, that being that different carts have different kinds of storage built into them, and this goes beyond the CARD-1 and CARD-2 distinction. From what I remember, some games are sensitive to that - you can't put "any game" on "any cartridge". The PSVita is similar to that, some hackers managed to put game X on cartridge Y and it didn't work out or they've experienced some issues, so clearly there's an underlying low-level protection in play.

but yeah its probably more like this, and i would imagine this is exactly why crown3ds never appeared they successfully cloned splinter cell......and that was it
 
If they had it all figured out, they wouldn't disable the crypto - they would use it. They merely found an exploit that disables a hurdle they didn't know how or didn't care how to cross.

There's also another problem, that being that different carts have different kinds of storage built into them, and this goes beyond the CARD-1 and CARD-2 distinction. From what I remember, some games are sensitive to that - you can't put "any game" on "any cartridge". The PSVita is similar to that, some hackers managed to put game X on cartridge Y and it didn't work out or they've experienced some issues, so clearly there's an underlying low-level protection in play.
Encrypted or not, a protocol is the same. If you connect to irc over ssl the data stream is encrypted, but the decrypted data is the same as that of a normal irc connection. What I tried to point out is that, if the gateway launcher merely disables the encryption layer on the 3ds side (probably they didn't have the keys to use it at the time), all the hardware checks and protections are taken care of by the card itself.
About the manufacturer id and card id: that's probably why they keep you offline if you don't use a "3dz" (it probably uses the very same card id and manufacturer id each time for "3ds", so it could get banned). I honestly don't know if they patch the 3ds software to get the data from certain offsets in the ROM chip (3dz have that data always at the same offsets) or the card does that transparently.
 
Has anyone's 3DS actually been banned from online play, or is it all just still guess work?

It's all guess work. Then again, I think that Nintendo can detect whether you're using a different header for a rom and if you are, they can send you a spotpass which will overclock your 3ds cpu and burn it out. But that's just a hunch.
 
  • Like
Reactions: Pawed and Jayro
I will take 2 please! Obviously I wouldn't care about HB and other stuff for my 8 year old daughter to use. I would however be excited to be able to let her use a flashcart on the 3DSXL that she already owns as opposed to buying a whole other set of 4.5 3DSXL and GW. Also I would not be perpetually worried that she would update the nand and end up with an extra 3DS that I don't need. This is a far cheaper option even at $120.
 
I will take 2 please! Obviously I wouldn't care about HB and other stuff for my 8 year old daughter to use. I would however be excited to be able to let her use a flashcart on the 3DSXL that she already owns as opposed to buying a whole other set of 4.5 3DSXL and GW. Also I would not be perpetually worried that she would update the nand and end up with an extra 3DS that I don't need. This is a far cheaper option even at $120.

wait and see if it's real or if it gets blocked first :)

i still think if they where smart they would of just produced fake carts rather than a flash cart from it less likely to be blocked as quickly(as im sure it would be a good while before people discover there is even fakes if they where made to a good standard) and they get to sell lots to people not interested in flash carts , people wanting to buy flashcards is probably a small minority of 3ds owners
 
It's all guess work. Then again, I think that Nintendo can detect whether you're using a different header for a rom and if you are, they can send you a spotpass which will overclock your 3ds cpu and burn it out. But that's just a hunch.
Is there any actual evidence of that or are you just joking?
 
Can Nintendo even remotely run code on a 3DS without permission? If so that's just asking for a disaster if the keys ever leak. I know there's updates but you have to accept those.
 
Can Nintendo even remotely run code on a 3DS without permission? If so that's just asking for a disaster if the keys ever leak. I know there's updates but you have to accept those.

"can they" sure they most likely can.....the question is "would they".......not very likely, pretty sure that would be deemed illegal in most countries especially if it was designed to damage the product

oh you mean someone else doing it........there would be several thing someone would have to hack to do something like that......including offline servers and stuff to sign the software they intend to run............basically anyone with that level of skill would be off doing something much more productive/lucrative like hacking a bank or something :lol:
 
Nintendo could ban you from online services (eShop, online gaming, etc) as per PSN/XBL bannings. They theoretically could disable your hardware, but I highly doubt that will happen. Case in point, Microsoft Windows and pirated copies. They'll disable a function or two (like updates), but they won't make your computer go boink.
 
If they REALLY wanted to curb/end piracy and exploits once and for all, they would make their firmware modular, and be able to patch the vulnerable modules silently and quickly without any user consent whatsoever. They could make it download secretly in the background, then install silently upon reboot, 100% nagless and without any user interaction or confirmation. I'm not sure why they haven't done this already, it seems like a no-brainer from launch day.
 
If they REALLY wanted to curb/end piracy and exploits once and for all, they would make their firmware modular, and be able to patch the vulnerable modules silently and quickly without any user consent whatsoever. They could make it download secretly in the background, then install silently upon reboot, 100% nagless and without any user interaction or confirmation. I'm not sure why they haven't done this already, it seems like a no-brainer from launch day.

What if the update is massive like the Wii U's ?
 
If they REALLY wanted to curb/end piracy and exploits once and for all, they would make their firmware modular, and be able to patch the vulnerable modules silently and quickly without any user consent whatsoever. They could make it download secretly in the background, then install silently upon reboot, 100% nagless and without any user interaction or confirmation. I'm not sure why they haven't done this already, it seems like a no-brainer from launch day.

kinda, what they are starting to do with the WiiU
maybe they thought, they could test this concept on the WiiU, since the console already flopped anyway, so there is no big loss included, if their tactics scare off customers
and if everything works fine and people get used to this kind of silent updating, they might implement it into other devices, like the (N)3DS
 
If they REALLY wanted to curb/end piracy and exploits once and for all, they would make their firmware modular, and be able to patch the vulnerable modules silently and quickly without any user consent whatsoever. They could make it download secretly in the background, then install silently upon reboot, 100% nagless and without any user interaction or confirmation. I'm not sure why they haven't done this already, it seems like a no-brainer from launch day.

First, there's no need to make it "modular", it already is based off titles.
Second, updates have been downloading in the background since 2.x (IIRC) on the 3DS. Auto install already on the Wii U.
Furthermore, if they update without consent it could be considered illegal.
 
but I can tell you how it worked on the Neo Geo Pocket.The reason why there's only one flashcart for it is that the system actually checked for the storage chip's manufacturer ID, which is hardcoded into the chip and cannot be altered. Since you couldn't get memory manufactured by SNK, there were no flashcarts for the system. A flashcart for the NGP popped up recently, once FPGA's/ASIC's became more affordable and it became possible to fool the system into thinking that the attached modules were indeed SNK-made. I'm sure the 3DS also uses tricks akin to that, so "cloning" a cartridge would literally require you to know and understand the low-level workings of the cartridge and the system, down to the ALU's.
There's been NGP carts around for years other than the newer Flashmasta by Flavor ( www.flashmasta.com )

NG Pocket Linker 16M - Bung enterprises Ltd
NG Pocket Linker 32M - Bung enterprises Ltd
Plus possibly some variations of the Bung device sold under the UFO label also.
 
There's been NGP carts around for years other than the newer Flashmasta by Flavor ( www.flashmasta.com )

NG Pocket Linker 16M - Bung enterprises Ltd
NG Pocket Linker 32M - Bung enterprises Ltd
Plus possibly some variations of the Bung device sold under the UFO label also.
I was unaware of the Bung ones - I didn't know they've cracked the chip ID protection. I'm only aware of flashmasta. ;)
 

Site & Scene News

Popular threads in this forum