Hacking Pasta CFW - A CFW that allows unsigned CIA to be installed on Old and New 3DS! (required ninjhax)

Status
Not open for further replies.

dkabot

Better With Others' Systems Than Their Own
Member
Joined
Sep 9, 2014
Messages
1,042
Trophies
0
XP
626
Country
United States
Quick question would this fuck my GW functionality? I want to check out dsiware and stuff.

Unless you launch GW with CN, no (and even then you'd just overwrite your means to launch GW).
Just note you can't use CN from GW because of how GW works, so you need legit CN (or Sky or 4.X I guess)
 

kheldar

Well-Known Member
Member
Joined
Jul 4, 2014
Messages
522
Trophies
0
XP
420
Country
Unless you launch GW with CN, no (and even then you'd just overwrite your means to launch GW).
Just note you can't use CN from GW because of how GW works, so you need legit CN (or Sky or 4.X I guess)

I have a legit CN copy. So I'd need to rescan the qr image to be able to launch gw from CN if I use this.. Hm is there a work around to this?
 

dkabot

Better With Others' Systems Than Their Own
Member
Joined
Sep 9, 2014
Messages
1,042
Trophies
0
XP
626
Country
United States
I have a legit CN copy. So I'd need to rescan the qr image to be able to launch gw from CN if I use this.. Hm is there a work around to this?

Since you're launching GW from CN I can safely presume it's a N3DS, so you could downgrade MSET and use that exploit for GW.
 

dkabot

Better With Others' Systems Than Their Own
Member
Joined
Sep 9, 2014
Messages
1,042
Trophies
0
XP
626
Country
United States
Yeah I don't want to use MSET since It modifies sysnand..
Using Pasta to install any CIAs modifies SysNAND far worse than downgrading MSET does.
A lower version of MSET is still legitimate software, DSiWare/GBA installed through means like this are installed with a wrong ticket which prevents that NAND from ever being able to get it legitimately without reverting or (painfully, from what I hear) editing it out manually.
(as it stands we can't run DSiWare/GBA on an EmuNAND)
 
  • Like
Reactions: ninb and kheldar

Nollog

Well-Known Member
Member
Joined
Oct 10, 2008
Messages
2,964
Trophies
0
XP
1,327
Country
Ireland
Please understand, I'm making experience on 3DS while working, I'm not a super expert dev like the 3DBrew guys.

UCWa1Hf.jpg


It's on the back-burner. Now people have something to tell others who will undoubtedly ask every 4 posts.
Thanks for the clarity.
 

thekarter104

Well-Known Member
Member
Joined
Mar 28, 2013
Messages
1,992
Trophies
1
XP
3,067
Country
United States
Using Pasta to install any CIAs modifies SysNAND far worse than downgrading MSET does.
A lower version of MSET is still legitimate software, DSiWare/GBA installed through means like this are installed with a wrong ticket which prevents that NAND from ever being able to get it legitimately without reverting or (painfully, from what I hear) editing it out manually.
(as it stands we can't run DSiWare/GBA on an EmuNAND)


But can't you install stuff on the SD card with FBI? Or isn't that possible with GBA games?
 

gamesquest1

Nabnut
Former Staff
Joined
Sep 23, 2013
Messages
15,153
Trophies
2
XP
12,247
But can't you install stuff on the SD card with FBI? Or isn't that possible with GBA games?
pretty sure they dont work unless they are installed to nand....but even if they did the tickets would still be installed to sysnand, so the whole argument of "i want to keep my sysnand 100% clean" is a bit flawed, truth is installing the 4.x MSET is sfer as if you ever did update sysnand the 4.x MSET ticket would be overwrote when you update....the fake tickets wouldnt unless you restore a nand backup first
 

urherenow

Well-Known Member
Member
Joined
Mar 8, 2009
Messages
4,815
Trophies
2
Age
48
Location
Japan
XP
3,739
Country
United States
pretty sure they dont work unless they are installed to nand...
Not the case at all. In fact, only a couple of the ambassador games installed to NAND even on my old ambassador 3DS. All others went to SD.

Edit: and my ticket.db is over 35MB... are you sure new versions even bother overwriting the older tickets? Seems like they simply get added on or something... I don't know how to look at the file and separate it by individual ticket. Guess it would be nice to know though, in case I need to blank one out or something. Or would that mess up a signature and cause a black screen brick:wtf:
 

kheldar

Well-Known Member
Member
Joined
Jul 4, 2014
Messages
522
Trophies
0
XP
420
Country
Another question after installing cias to sysnand do i need to launch the cfw each time I need to launch em?
 

gamesquest1

Nabnut
Former Staff
Joined
Sep 23, 2013
Messages
15,153
Trophies
2
XP
12,247
Not the case at all. In fact, only a couple of the ambassador games installed to NAND even on my old ambassador 3DS. All others went to SD.

Edit: and my ticket.db is over 35MB... are you sure new versions even bother overwriting the older tickets? Seems like they simply get added on or something... I don't know how to look at the file and separate it by individual ticket. Guess it would be nice to know though, in case I need to blank one out or something. Or would that mess up a signature and cause a black screen brick:wtf:
yeah just had a look and they do install to SD, guess its just DSiware that installs to nand :lol:....but in regards to checking the title.db file, you can simply search for the titleID in a hexeditor, so for example if i search, 0004001000022000 (EU MSET) i only find one ticket for it, and directly after the titleID there will be the version number (in hex) so in my case its says 0C03 which is 3075....so if i update it will replace that with the updated ticket :)
 

nyder

Well-Known Member
Member
Joined
Mar 6, 2014
Messages
485
Trophies
0
Age
55
XP
918
Country
United States
I can just use my Gateway to boot into sysnand and install cia's that way? Then boot up pasta to run them? That should work right?
 

jaceyen

Member
Newcomer
Joined
May 22, 2015
Messages
19
Trophies
0
Age
29
XP
57
Country
Switzerland
pretty sure they dont work unless they are installed to nand....but even if they did the tickets would still be installed to sysnand, so the whole argument of "i want to keep my sysnand 100% clean" is a bit flawed, truth is installing the 4.x MSET is sfer as if you ever did update sysnand the 4.x MSET ticket would be overwrote when you update....the fake tickets wouldnt unless you restore a nand backup first
So even if I delete unlegit dsiware in data management the wrong ticket will still remain in my ticket.db?
 

megazero1x1

Well-Known Member
Member
Joined
Oct 16, 2011
Messages
431
Trophies
1
XP
363
Country
United States
Gadgets are small pieces of code already loaded in ram. ROP (Return Oriented Programming) put a sequences of addresses on the stack and create program made of this small chunks of code (ROP chain). They are like LEGO bricks used to build what you want.

Executing this kind of code the program jumps on different locations of the memory instead of following a linear path.

This is used because on modern systems if you write something in memory you can't execute it untill a kenell process marks it as executable.

If you don't have kernel access (like in a Hack) with this kind of programming you can execute complex code joining instruction already in RAM.

The bad thing is that at every change of memory (i.e. for differtent FW) there are different things in RAM. So you have to collect different sets of gadget for every possible memory configuration.

Hope it's clear enough, this is a complex matter and I explained it in a very simplified (and not complete) way.


I don't think I have ever seen a simpler explanation.......
 
  • Like
Reactions: SMVB64

The Real Jdbye

*is birb*
Member
Joined
Mar 17, 2010
Messages
23,392
Trophies
4
Location
Space
XP
14,027
Country
Norway
I have a legit CN copy. So I'd need to rescan the qr image to be able to launch gw from CN if I use this.. Hm is there a work around to this?

What you can do is install a CIA of CN in Pasta and install the GW payload in that. It's an extra step to get into GW mode but it should work.
Wouldn't it be great if someone found an exploit in one of the games available as legit CIA :P
 

dimmidice

Well-Known Member
Member
Joined
Sep 12, 2009
Messages
2,359
Trophies
2
XP
3,005
Country
Belgium
i have a(nother) question for you folk. i have omega ruby retail cartridge. but it's not up to date. i can't access the nintendo e-shop. can i update it using a cia update? if so how do i do that? just install it with the retail cart in or what?
 
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    BigOnYa @ BigOnYa: I played the intro to far cry 5, that is like some crazy Jim Jones cult shit. Still its petty...