Homebrew The current situation with my NAND decoding project

  • Thread starter Thread starter Retr0Capez
  • Start date Start date
  • Views Views 5,433
  • Replies Replies 43
  • Likes Likes 2
For all of you, the hardware mod I am talking about for putting backups on a system is this: http://gbatemp.net/threads/n3ds-nand-backup-possible-i-hope.381506/
A NAND is unique to a system, as that system only has the key with the xorpads. My goal is make a custom NAND that does not require a key so everyone may use gateway and ninjhax on it.


Hope you have a bootrom exploit to allow loading of said nand image, otherwise this project will be almost entirely useless. If it was as easy as creating a new nand-image, someone would have done it already(and at least bragged, but probably not released)

from what I remember reading(probably on 3dbrew)
The bootrom isn't stored on the nand(of course not, the nand is encrypted) and is what sets up the crypto hardware with the correct keys to encrypt/decrypt the nand.
Unless you can get the bootrom to disable the encryption entirely, you're going to have to have the new nand image encrypted by the target console, which is going to require some exploits which would again make the whole project useless.
 
Hope you have a bootrom exploit to allow loading of said nand image, otherwise this project will be almost entirely useless. If it was as easy as creating a new nand-image, someone would have done it already(and at least bragged, but probably not released)

from what I remember reading(probably on 3dbrew)
The bootrom isn't stored on the nand(of course not, the nand is encrypted) and is what sets up the crypto hardware with the correct keys to encrypt/decrypt the nand.
Unless you can get the bootrom to disable the encryption entirely, you're going to have to have the new nand image encrypted by the target console, which is going to require some exploits which would again make the whole project useless.
already have.
I love how someone who proposes to break the 3ds's firmware security wide open has to ask how to compile a single loose C file.
Unreal.

#shitgbatempsays
Oh, just was to lazy to read the file, just copied it. :P
 
Assuming I have two 3ds one with fw 9.6 and 9.2 with fw; Having hardmod on 3ds with 9.6, I could make the backup copy of the nand 9.6; got the back of the nand you could decrypt it using xorpad or some other tool, change the titles to get the downgrade encrypt it and rerun the flash it on the console 9.6.
This should theoretically be possible or am I dreaming?
 
A rather impossible option..
Unicorns that can drive stick are more likely than this person getting bootrom hax or all of the encryption keys from Ninty. Not saying it can't be done, just really not a realistic goal, especially for the average person.

But if you had either of those you would already "own" the system and a universal NAND image would be fairly useless. You could just down/upgrade as you please, or better yet stay on current firmwares and never worry about losing access to the exploits or eshop. Until Nintendo released a newer model with a revised bootrom and then you could just not buy it and carry on as usual.
 
it's hard to predict the future..perhaps with another leak of devtools more things can be possible. I don't believe nintendo is that crazy with security even for development

you don't need the keys if the encryption can be bypassed, which is already possible to some extent
 
I could be wrong but didn't the KARL team boast about full decryption of the nand? If thats the case when they release it let me know, I have a hard modded 3ds and a hard modded n3ds as well as a n3ds backup from a bricked console that I can throw into the community nand bin.
 
it's hard to predict the future..perhaps with another leak of devtools more things can be possible. I don't believe nintendo is that crazy with security even for development
Nintendo would be stupid NOT to be that crazy with security, especially with development given there's been what, 1 or 2 sdk leaks so far.

you don't need the keys if the encryption can be bypassed, which is already possible to some extent
If you can bypass the encryption at all you probably don't need any of this because you more than likely have enough hax to do what you want.
 

Site & Scene News

Popular threads in this forum