Homebrew SigHax Updates and Discussion Thread

  • Thread starter Thread starter adrifcastr
  • Start date Start date
  • Views Views 532,002
  • Replies Replies 3,813
  • Likes Likes 43
Lol, does anyone read? why would you need OTP if you are flashing with hardmod and the bootloader is unlocked? you could just create a universal nand backup that can be flashed to atleast to enter recovery mode and restore bricked 3ds? this would expand the community even more people wouldnt be scared to homebrew
 
for short, this is like soft resetting a legendary to Pokémon 4000 times to finally get a Shiny one, you do it over and over and over, until you got it
If we agree that shiny appearance is not actually random but pseudo-random, since a computer isn't made to do random things.
Then this "randomness" is comparable.
Dumping the Bootrom isn't really random. It requires REALLY REALLY REALLY specifc timing.
And it's not really 1/4000.

But for a comparison... I guess it's okay?

Ahh. I see. I thought that was one of the only easiest ways to get the protected bootrom. Good to know though. :P
Would you explain to me how it would be "the easiest" way?
If I get that correct you use the electron microscope to examine the device while running to see how it works. To conclude how certain things function by their electronic state.
To use this state to replicate a copy. This would however require multiple things to actually work.
You need to basically record this from the microscope, slow it down extremely. Then look at what you recorded. Transfer the data you examine MANUALLY from electronic state into bits and then convert this into a computer readable representation.
And then you also need to be sure you didn't mess up at a single point.
And all of this woulf only work if you carefully checked the whole chip beforehand to exactly know what's doing what. And in case you messed up that at some point your "dump" would be faulty as well.
So good luck. But I don't see how this is easy.
Because to me this requires A LOT more precision than a working vextorhax setup.
 
Sorry for the ignorance, but will this combined with A9LH allow us to install a CFW on 11.3? And all we need in a kernal exploit?
 
Sorry for the ignorance, but will this combined with A9LH allow us to install a CFW on 11.3? And all we need in a kernal exploit?
This is replace A9LH the same way A9LH replaced Menuhax.
Apparently this will allow us to install CFWs on 11.3, but as of right now nothing is completely confirmed. And we need the boot9 to be dumped and decrypted.
 
Lol, does anyone read? why would you need OTP if you are flashing with hardmod and the bootloader is unlocked? you could just create a universal nand backup that can be flashed to atleast to enter recovery mode and restore bricked 3ds? this would expand the community even more people wouldnt be scared to homebrew
The boot loader doesn't get "unlocked" (The whole reason for trying to dump it is to exploit a bug that has been documented but not publicly shared, we only really need one person to dump it and be willing to share for everyone to reap the benefits of it) and there couldn't be a "universal" nand, the 3ds uses device specific encryption, and when I brought up if the encryption flags could be altered to disable the encryption or at least use a system shared keyslot apparently the firm section loading is hard coded to only use the 0x06 key slot which is system unique, this means that to be able to use sighax you would still need to know the plaintext of one of the firm sections, or have an existing xorpad or the off chance that someone figures out how to use the wifi spi recovery option which I assume isn't using console unique encryption (although Idk tbh)
 
Last edited by gamesquest1,
The boot loader doesn't get "unlocked" (The whole reason for trying to dump it is to exploit a bug that has been documented but not publicly shared, we only really need one person to dump it and be willing to share for everyone to reap the benefits of it) and there couldn't be a "universal" nand, the 3ds uses device specific encryption, and when I brought up if the encryption flags could be altered to disable the encryption or at least use a system shared keyslot apparently the firm section loading is hard coded to only use the 0x06 key slot which is system unique, this means that to be able to use sighax you would still need to know the plaintext of one of the firm sections, or have an existing xorpad or the off chance that someone figures out how to use the wifi spi recovery option which I assume isn't using console unique encryption (although Idk tbh)
you just crushed my hopes sir :c
 
If we agree that shiny appearance is not actually random but pseudo-random, since a computer isn't made to do random things.
Then this "randomness" is comparable.
Dumping the Bootrom isn't really random. It requires REALLY REALLY REALLY specifc timing.
And it's not really 1/4000.

But for a comparison... I guess it's okay?

that was just to show him how long this takes and how frustrating it is, and agaik the shiny rate in sumo is 4000 and something
 
you just crushed my hopes sir :c
Well Signax will still be possible for most people, knowing the plaintext of a firm section is fairly trivial, as long as you know what fw your system is on or was on/downgrading to when bricked then you could generate a the firm section for your console

It's only really people who corrupted their firm section and don't know what they did or restored a different consoles nand and didn't have a nand backup for their own system that would still be screwed
 
Well Signax will still be possible for most people, knowing the plaintext of a firm section is fairly trivial, as long as you know what fw your system is on or was on/downgrading to when bricked then you could generate a the firm section for your console

It's only really people who corrupted their firm section and don't know what they did or restored a different consoles nand and didn't have a nand backup for their own system that would still be screwed

That is exactly what we need. A way to repair a corrupt nand dump that doesnt blue screen. Basically rebuild decrypted files in the ctr partition. Without having to manually hex edit and decrypt with xorpads.
 
Well Signax will still be possible for most people, knowing the plaintext of a firm section is fairly trivial, as long as you know what fw your system is on or was on/downgrading to when bricked then you could generate a the firm section for your console

It's only really people who corrupted their firm section and don't know what they did or restored a different consoles nand and didn't have a nand backup for their own system that would still be screwed
can I pm you about a related topic? I was told you could help me solve some questions I've been having :D
 
can I pm you about a related topic? I was told you could help me solve some questions I've been having :D
you can also PM me, I'm mostly online in the temp.

--------------------- MERGED ---------------------------

Whoa... I missed out a few things here. Good thing my PC is back from repair!
and anything new that shocked you?:rofl:
 
Hedgeberg must have read The Diary of the Wimpy Kid before naming his 2DS or loves Gregory Heffley like Magneton loves Sick Pikachu! Ha Ha :D
You are quite Hillarious :D but I suppose that Hedgeberg is Rodrick cause he is EXPLOITING his little brother Greg. But where is Rowley? Might be around some girls after Greg and Heather's cologne incident at his house and his expression :ohnoes:
 

Site & Scene News

Popular threads in this forum