Homebrew safefirmraunchhax - new Arm9 exploit discussion

Does the exploit work for you?


  • Total voters
    48

uyjulian

Homebrewer
OP
Member
Joined
Nov 26, 2012
Messages
2,567
Trophies
2
Location
United States
Website
sites.google.com
XP
3,870
Country
United States
https://3dbrew.org/wiki/3DS_System_Flaws said:
The fix for firmlaunchhax was only applied to NATIVE_FIRM in 9.5.0-X, leaving SAFE_FIRM exploitable. With ARM11-kernel execution, one can trigger FIRM-launch in to SAFE_FIRM, do Kernel9 <=> Kernel11 sync and then repeat the original attack on SAFE_FIRM instead.
Other place to talk: http://gbatemp.net/threads/safehax-11-1-2-downgrade-without-dsiware.455456/

Apparently this exploit was 「leaked」 and that 「many people know about it」. Also, apparently, it was going to be released at 「the _real_ EoL」. These are some things I saw people talk about on an IRC channel. Please be careful about this information. My opinion on this, is that this is going to probably be the last arm9 exploit ever released before the 3DS' End-of-Life, since the 「inside people」 don't really want to share.

Please visit https://3ds.guide/ for updated softmod instructions that use this exploit.
 
Last edited by uyjulian,

Blaine20

Well-Known Member
Member
Joined
May 28, 2016
Messages
204
Trophies
0
Age
33
XP
67
Country
United States
I agree, you should implement the exploit and provide a download link for us :)
glad to have an agreeing person

--------------------- MERGED ---------------------------

lmao this is not even a real release yet xD
kinda figured that

--------------------- MERGED ---------------------------

bored as hell
cant wait for fasthax to be released officially
 
D

Deleted User

Guest
Does SAFE_FIRM load anything on startup?
....If this only works on >9.5 then why its worth discussing about it? It won't change the fact that ALL the payloads are made for the 9.2 ARM9 exploit...
No, the point is it that it works on all firmware.
 

Wolfvak

nyaa~
Member
Joined
Oct 25, 2015
Messages
918
Trophies
1
XP
3,386
Country
Uruguay
....If this only works on >9.5 then why its worth discussing about it? It won't change the fact that ALL the payloads are made for the 9.2 ARM9 exploit...
It's K9-less ARM9 code. Payloads like Decrypt9 don't care about your system firmware, all they care about is running with privileges on the ARM9 processor. It doesn't matter if its running on 1.0, 2.1, 4.x, 9.2, 10.4 (ntrcardhax) or 11.2.

As long as the entrypoint remains at 0x23F00000 and that screens are set up properly, in the end, the firmware version doesn't even matter.
 

Tenshi_Okami

Well-Known Member
Member
Joined
Nov 3, 2015
Messages
1,490
Trophies
0
Age
25
XP
1,616
Country
Puerto Rico
It's K9-less ARM9 code. Payloads like Decrypt9 don't care about your system firmware, all they care about is running with privileges on the ARM9 processor. It doesn't matter if its running on 1.0, 2.1, 4.x, 9.2, 10.4 (ntrcardhax) or 11.2.

As long as the entrypoint remains at 0x23F00000 and that screens are set up properly, in the end, the firmware version doesn't even matter.
Ye, i just woke up so, i already "removed" the dumb stuff i said lol sorry
 

Wolfvak

nyaa~
Member
Joined
Oct 25, 2015
Messages
918
Trophies
1
XP
3,386
Country
Uruguay
btw to anyone reading this thread (holy crap 60 people!) there's no implementation of this yet. the end result will be 11.2 becoming "the new 9.2", but until an implementation is made you'll have to wait ¯\_(ツ)_/¯
 

leerpsp

Well-Known Member
Member
Joined
Feb 22, 2014
Messages
1,742
Trophies
0
Age
33
XP
1,871
Country
United States
so does this mean that arm9loaderhax can be installed safe with 9.5 and now we don't have to downgrade to 2.1 to do this when it comes out?
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • Xdqwerty @ Xdqwerty:
    also gonna install twilight menu in my r4 flashcard
  • Psionic Roshambo @ Psionic Roshambo:
    One thing that just occurred to me.... The sound on the 2600 sucked less back then the harsh sound we hear now is from infinitely better speakers we have now, back when the 2600 was new speakers produced a almost muffled sound, like CRTs made old graphics look slightly better.
  • Psionic Roshambo @ Psionic Roshambo:
    I wonder if I could recommend that to some emulation devs that perhaps the sound could use some smoothing out to simulate those old TVs
  • Psionic Roshambo @ Psionic Roshambo:
    I think a few of the early systems could benefit from that, at least up to the 8 bit generation, by the 16 bit generation I think TVs had gotten a lot better in almost every way
  • Xdqwerty @ Xdqwerty:
    i dont have an sd card adapter but I have an usb sd card adapter
  • K3Nv2 @ K3Nv2:
    Old people games
  • Xdqwerty @ Xdqwerty:
    its not the one that comes with the r4
  • Xdqwerty @ Xdqwerty:
    doesnt work (my flashcard is from r4isdhc.com)
  • Xdqwerty @ Xdqwerty:
    might install ysmenu first
  • Psionic Roshambo @ Psionic Roshambo:
    Try Wood firmware
  • Psionic Roshambo @ Psionic Roshambo:
    For your R4
  • Psionic Roshambo @ Psionic Roshambo:
    It's old but it's the best firmware out for DS stuff
  • Xdqwerty @ Xdqwerty:
    it says it only works for the original R4, R4i Gold (r4ids.cn), R4iDSN (r4idsn.com) and Acekard R.P.G.
  • Xdqwerty @ Xdqwerty:
    nvm it does support mine
  • Xdqwerty @ Xdqwerty:
    but why choose it over ysmenu @Psionic Roshambo?
  • Xdqwerty @ Xdqwerty:
    bc im stupid?
  • Xdqwerty @ Xdqwerty:
    yea ik im stupid
  • Xdqwerty @ Xdqwerty:
    good night
  • Psionic Roshambo @ Psionic Roshambo:
    Just give it a try, but honestly if you have a 3DS you can play DS games without a card just off the internal SD card
  • Psionic Roshambo @ Psionic Roshambo:
    Slightly slower loading but a bit more convenient
  • BakerMan @ BakerMan:
    guys, my fuckin headphones have an out of place speaker
  • K3Nv2 @ K3Nv2:
    Did you try wearing them?
    B @ btjunior: @Xdqwerty 16