Hacking Pasta CFW - A CFW that allows unsigned CIA to be installed on Old and New 3DS! (required ninjhax)

  • Thread starter Thread starter capito27
  • Start date Start date
  • Views Views 1,429,223
  • Replies Replies 6,595
  • Likes Likes 123
Status
Not open for further replies.
I only need one, but nobody could help me before now.
If you have a never-booted New 3DS with an exploitable firmware, I would really like if you follow my instructions.
It could help a lot Pasta CFW.
i have two small white european new 3ds's brand new in the box and i'm almost positive both are exploitable.
i'd like to know what its for first if you could message me about it.
 
i have two small white european new 3ds's brand new in the box and i'm almost positive both are exploitable.
i'd like to know what its for first if you could message me about it.
Almost positive he wants a (virgin) nand dump before any system files are created in an attempt to see how they are compiled or what service complies them, but it's mere speculation on my part.
 
  • Like
Reactions: Margen67
Yes. Makefiles are driving me crazy!

To give you a little bit more info, i'm rewriting firmlaunchax to use spider ROP gadget, so it can work on other fw than 4.x.
Does this mean that we possibly get to launch Pasta on, let's say, 9.2?

edit
let me clear that up a little. I mean without CN, of course
 
Pretty sure the spider entry-point works from 2.2-9.2.

Entry point works on any FW with the supported spider version.

Starting from this I rewrote the second stage on the same philosopy: I used only Spider ROP gadgets, so the second stage should load on every FW supported by the first stage. And the good news is that I fixed the makefile and compiled it.

Since firmlauchax was already done (I had only to remove the first stage from the MSET version, and let the last part be loaded by the spider second stage) I should have all the stages ready to work on 4.x. After upgrading my son's 3DS or downgrading mine I will test it.
 
Last edited by nop90,
I believe you've mentioned you'll try to enable Dev Menu installation from the SD card with the browser exploit, is that still happening (on 4.5)?
 
I believe you've mentioned you'll try to enable Dev Menu installation from the SD card with the browser exploit, is that still happening (on 4.5)?

In the second stage of the spider hax all the services should still be working, so it should be possible.

I tryed to prove this theory writing the second stage using ctrulib (instead of using handles already in memory, it should be possible to init the services and get proper handle at runtime for the needed FW).

I quitted firstly for a messed makefile, and most important because I realized that I have to pass in memory to firmlaunch handles and fuc pointers to make it work on higher FW, and it's easyer to pass the spider ROP gadget.

But I'll return on this soon.
 
Nice! For what it's worth it's what I'm looking forward to the most since I don't have CN and was never able to transfer Dev Menu over the network (on 4.5). So I'm patiently waiting until that's possible to try out Pasta.
 
In the second stage of the spider hax all the services should still be working, so it should be possible.

I tryed to prove this theory writing the second stage using ctrulib (instead of using handles already in memory, it should be possible to init the services and get proper handle at runtime for the needed FW).

I quitted firstly for a messed makefile, and most important because I realized that I have to pass in memory to firmlaunch handles and fuc pointers to make it work on higher FW, and it's easyer to pass the spider ROP gadget.

But I'll return on this soon.
Would you mind attaching the source you've written so far? PMing as to not spread it would work, too. I'd love to look at it it. I'm still learning.
 
  • Like
Reactions: Margen67
Would you mind attaching the source you've written so far? PMing as to not spread it would work, too. I'd love to look at it it. I'm still learning.

Only when and if I'll release it.

Since 4.x mset version is out by relatively long time, I'm going to release the code. I'll load it on my github one of this day.
 
Last edited by nop90,
Only when and if I'll release it.

Since 4.x mset version is out by relatively long time, I'm going to release the code. I'll load it on my github one of this day.

you said you were working on your own Palantine CFW version( I mean, + emunand for Palantine) Do you remember ?
 
  • Like
Reactions: Margen67
you said you were working on your own Palantine CFW version( I mean, + emunand for Palantine) Do you remember ?

Code lost with the stolen laptop and probably the interrupt vector hack to reboot the firmware is too hard to be fixed by me.

But porting the emunand to PASTA is possible, someone else is working on it at the moment, and I could join his work after finishing what I'm doing now.
 
I tried in my old 3ds, 9.2.0-20E with Cubic Ninja, and no matter if verion 1.1.1 or 1.2.1, I always get black screen when trying to boot the CFW, any idea what's wrong?
Delete your cubic ninja save and reinstall it online.
 
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum