Hacking [RCM Payload] Hekate - CTCaer mod

  • Thread starter CTCaer
  • Start date
  • Views 1,080,278
  • Replies 3,248
  • Likes 128

pandavova

56
Member
Joined
Oct 27, 2015
Messages
902
Trophies
0
XP
2,110
Country
Germany
FUCK YEAH!
@XaneTenshi @yacepi15 A big thanks to you both!
I restored my Nand and the Boot1/Boot0. It booted.
Now i need to do that firmware update guide again.

Btw, how could i extract my Octopath Save from the "bricked" NandBackup?

Edit: Only first boot worked. wtf. Whyyyyyy.
Edit2: 3. Boot worked. WTTTTTF.
Edit4: it looks like it only doesnt boot if i let the usb c cable plugged in after the inject.
Ok, i maybe want to try something:
I will now copy the "bricked" nand and boot1/0 and will try it again.
 
Last edited by pandavova,

XaneTenshi

Well-Known Member
Member
Joined
Nov 24, 2013
Messages
506
Trophies
0
Age
34
XP
1,124
Country
Denmark
FUCK YEAH!
@XaneTenshi @yacepi15 A big thanks to you both!
I restored my Nand and the Boot1/Boot0. It booted.
Now i need to do that firmware update guide again.

Btw, how could i extract my Octopath Save from the "bricked" NandBackup?

Edit: Only first boot worked. wtf. Whyyyyyy.
Edit2: 3. Boot worked. WTTTTTF.
Edit4: it looks like it only doesnt boot if i let the usb c cable plugged in after the inject.
Ok, i maybe want to try something:
I will now copy the "bricked" nand and boot1/0 and will try it again.

I doubt trying to restore the Switch using a bricked Nand will work, but you can try. Also, don't know why the Switch wouldn't boot if the USB C cable is attached after the Payload has been sent, but there is no need to keep it attached once the Payload is successfully received by the Switch anyway.

There may be another way to restore your savefile, but that might be a little daunting, depending on how you updated your Switch firmware. READ the below paragraph in caps first before you try this!!

If you followed the guide here https://gbatemp.net/threads/how-to-...nofficially-without-burning-any-fuses.507461/ and used ChoiDujour (not the NX version, which is a HomeBrew) then you might still be able to mount the Nand backup on you PC using Rajkostos "HacDiskMount" tool, found here: https://switchtools.sshnuke.net/. The step that you need to follow, loosely, since your kinda doing the opposite, is step 8.8, but like I said, read the ENTIRE thing, before you do it.

If your PC can still recognize the bricked Nand, you can mount the partition to your PC and access it like it was a HDD. Then copy the contents of the USER folder and save it on your PC. Then either use HacDiskMount to mount the Unbricked Nand and copy over the USER folder or connect the Switch itself to your PC, mount the right partition and paste over the USER folder.

FOR THE RECORD, IF YOU HAVEN'T USED THE REGULAR VERSION OF CHOIDUJOUR TO UPDATE YOUR SWITCH FIRMWARE, I STRONGLY RECOMMEND YOU READ THE ENTIRE GUIDE TO KNOW WHAT YOU ARE GETTING INTO. ALSO, DEPENDING ON WHAT BRICKED YOUR SWITCH IN THE FIRST PLACE, PASTING THE USER FOLDER FROM THE BRICKED NAND TO THE UNBRICKED ONE COULD BRICK THAT ASWELL, SO MAKE SURE YOU EITHER MAKE A COPY OF YOUR UNBRICKED NAND BACKUP, OR PERFORM THE OPERATION ON THE SWITCH ITSELF, SO THAT YOU ARE NOT TOUCHING YOUR UNBRICKED NAND BACKUP.
 
Last edited by XaneTenshi,
  • Like
Reactions: pandavova

XaneTenshi

Well-Known Member
Member
Joined
Nov 24, 2013
Messages
506
Trophies
0
Age
34
XP
1,124
Country
Denmark
  • Like
Reactions: pandavova

yacepi15

Well-Known Member
Member
Joined
Aug 15, 2015
Messages
1,023
Trophies
0
XP
1,883
Country
Germany
FUCK YEAH!
@XaneTenshi @yacepi15 A big thanks to you both!
I restored my Nand and the Boot1/Boot0. It booted.
Now i need to do that firmware update guide again.

Btw, how could i extract my Octopath Save from the "bricked" NandBackup?

Edit: Only first boot worked. wtf. Whyyyyyy.
Edit2: 3. Boot worked. WTTTTTF.
Edit4: it looks like it only doesnt boot if i let the usb c cable plugged in after the inject.
Ok, i maybe want to try something:
I will now copy the "bricked" nand and boot1/0 and will try it again.
I wouldn't use that type-C cable again. That's not normal. And if another cable doesn't fix it, there's something weird hardware-related in your switch...

PS: What cfw are you using? ReiNX (Not raj, have not tried) works perfectly even without disconnecting the cable.
 
Last edited by yacepi15, , Reason: Typo

pandavova

56
Member
Joined
Oct 27, 2015
Messages
902
Trophies
0
XP
2,110
Country
Germany
I wouldn't use that type-C cable again. That's not normal. And if another cable doesn't fix it, there's something weird hardware-related in your switch...

PS: What cfw are you using? ReiNX (Not raj, have not tried) works perfectly even without disconnecting the cable.
im using an anker cable with an anker usb-c to micro-b adapter.
i was using SdFilesSwitch "cfw" (kip1=modules/newfirm/loader.kip, kip1=modules/newfirm/sm.kip) to use the homebrew with holding r on the album.
 

CTCaer

Developer
OP
Developer
Joined
Mar 22, 2008
Messages
1,154
Trophies
0
XP
3,009
Country
Greece
it's probably a kip that does this and hangs at logo. The cable is only needed until you see the screen light up

EDIT:
Try booting stock or stock with nogc (depending on what you want to do). This should have 100% success.
 
Last edited by CTCaer,

CTCaer

Developer
OP
Developer
Joined
Mar 22, 2008
Messages
1,154
Trophies
0
XP
3,009
Country
Greece
This can happen if you use nsp installers also. So be careful.
But to be true, I never heard of working and not working between reboots.
 

pandavova

56
Member
Joined
Oct 27, 2015
Messages
902
Trophies
0
XP
2,110
Country
Germany
i never used an nsp installer, only started the homebrew launcher some times (with holding r on the album).
well my "bricked" nandbackup is restoring, I will tell what happend later this day.
 

pandavova

56
Member
Joined
Oct 27, 2015
Messages
902
Trophies
0
XP
2,110
Country
Germany
Ok. Its really the USB-C Cable. Thats... strange i guess.
So maybe if someone has this issue, maybe tell them to unplug the cable after injecting the payload?
 

yacepi15

Well-Known Member
Member
Joined
Aug 15, 2015
Messages
1,023
Trophies
0
XP
1,883
Country
Germany
Ok. Its really the USB-C Cable. Thats... strange i guess.
So maybe if someone has this issue, maybe tell them to unplug the cable after injecting the payload?
._.

So, you lost tons of time just for a USB cable... But... I would try to find another one. That's not normal and you may have more serious problems in the future.
 
  • Like
Reactions: pandavova

pandavova

56
Member
Joined
Oct 27, 2015
Messages
902
Trophies
0
XP
2,110
Country
Germany
So, you lost tons of time just for a USB cable... That's not normal and you may have more serious problems in the future.
Yes... I hope not...

Edit:
Ok, i tried now a different usb cable with the adapter and the issue is still there.
I will ask someone i know for an usb a to c cable. hmmmmm...

(Could theoretically be code implemented that automatically disables the usb c port via software after injecting? or would that be too big for the payload size?)
 
Last edited by pandavova,

CTCaer

Developer
OP
Developer
Joined
Mar 22, 2008
Messages
1,154
Trophies
0
XP
3,009
Country
Greece
Yes... I hope not...

Edit:
Ok, i tried now a different usb cable with the adapter and the issue is still there.
I will ask someone i know for an usb a to c cable. hmmmmm...

(Could theoretically be code implemented that automatically disables the usb c port via software after injecting? or would that be too big for the payload size?)
This will not help you.
The connection is actually stopped after the injection.
But if the adapter is faulty, that can happen.

Because of the nature of RCM exploit, we can't check the received data integrity. So if some parts of the payload got corrupted, you'll know this from its weird/undefined behavior after injection.
 

Mr. Wizard

Ending the spread of bullshit one thread at a time
Member
Joined
Mar 20, 2015
Messages
1,814
Trophies
0
Location
E8 lattice
XP
1,532
Country
Canada
weird/undefined behavior after injection.
So pretty though...

maxresdefault.jpg
 

Mr. Wizard

Ending the spread of bullshit one thread at a time
Member
Joined
Mar 20, 2015
Messages
1,814
Trophies
0
Location
E8 lattice
XP
1,532
Country
Canada
Beautiful!

BTW, that's pink or purple (in case camera did an auto white balance)?
Not my image, had to find one on webz, but I've had this happen twice now and iirc it was a little less purple than the image but not quite pink.
Then again color is subjective isn't it? https://en.wikipedia.org/wiki/The_dress
 

CTCaer

Developer
OP
Developer
Joined
Mar 22, 2008
Messages
1,154
Trophies
0
XP
3,009
Country
Greece
Not my image, had to find one on webz, but I've had this happen twice now and iirc it was a little less purple than the image but not quite pink.
Then again color is subjective isn't it? https://en.wikipedia.org/wiki/The_dress
These can happen from unaligned access to mem, or from kips or using an incorrect boot0 (so keygen generates the wrong keys).
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • K3Nv2 @ K3Nv2:
    They should've just made it a movie at 50 minutes
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    No from Paramount Plus or whatever it is
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Psi now has access to every streaming and cable channel out
  • K3Nv2 @ K3Nv2:
    Eh I'd rather just download and delete is it already up on paramount?
  • Psionic Roshambo @ Psionic Roshambo:
    Yeah it's on now
  • Xdqwerty @ Xdqwerty:
    @Psionic Roshambo, why are most new south park episodes half hour specials?
    +1
  • K3Nv2 @ K3Nv2:
    @Psionic Roshambo, let me get a Netflix account I've always been nice to you
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    I made a honey pepper glazed turkey breast for dinner turned out pretty bomb
  • K3Nv2 @ K3Nv2:
    We can Netflix and chill
  • Xdqwerty @ Xdqwerty:
    Nvm not half hour, but hour long
  • Xdqwerty @ Xdqwerty:
    Normal south park episodes are already half hour
  • Psionic Roshambo @ Psionic Roshambo:
    Got 2 free Xumo boxes they work pretty good
  • K3Nv2 @ K3Nv2:
    I'm happy to get anything most series don't make it pass 6 seasons
  • Psionic Roshambo @ Psionic Roshambo:
    Except Stars and Encore those are being a bitch lol
  • K3Nv2 @ K3Nv2:
    I may consider that onn pro box finally a media box with type A ;O
    +1
  • Xdqwerty @ Xdqwerty:
    @K3Nv2, cuz the companies don't want em to
  • K3Nv2 @ K3Nv2:
    No it's revenue and demand south park could argue has a bigger audience than family guy about the same
    +1
  • K3Nv2 @ K3Nv2:
    Family guy is worth 300mill south parks worth 1Bill according to the interwebs
  • Xdqwerty @ Xdqwerty:
    @K3Nv2, probably cuz family guy is more disliked compared to south park
  • K3Nv2 @ K3Nv2:
    It just does the same formula south park can press buttons without going overboard
  • Xdqwerty @ Xdqwerty:
    And bc most of the family guy budget is spent on the voice actors rather than on the animation
  • K3Nv2 @ K3Nv2:
    Southpark could spend 30k on a animated dick and people would laugh at it
    +2
  • K3Nv2 @ K3Nv2:
    lol one prescription to Lizzo
  • Xdqwerty @ Xdqwerty:
    who is lizzo?
  • Xdqwerty @ Xdqwerty:
    yawn
    Xdqwerty @ Xdqwerty: yawn