Hacking 2DS + Flashcardtimewarp + MSET = DS profile exploit?

  • Thread starter Thread starter u4ia24
  • Start date Start date
  • Views Views 7,258
  • Replies Replies 32

u4ia24

Well-Known Member
Newcomer
Joined
Mar 28, 2010
Messages
50
Reaction score
5
Trophies
1
XP
396
Country
United States
Is this possible with the recent advancements? Can you now downgrade the System Settings app of a 2DS on 9.x FW? I'm not completely familiar with all the exploits but I hope we can do something like this so we can maybe use the Gateway Blue Card to trigger the DS profile exploit or something similar so we'll no longer need to use the browser.
 
It would be possible but not yet.
It seems you can downgrade, you get MSET, but current version of GW launcher.dat doesn't work with it.

EDIT: Complain to GW asking for this and they will probably implement it.
 
It would be possible but not yet.
It seems you can downgrade, you get MSET, but current version of GW launcher.dat doesn't work with it.

EDIT: Complain to GW asking for this and they will probably implement it.


Thanks for the explanation! Hopefully a lot of other 2DS owners are interested in this as well so that there will be a chance of Gateway implementing it.

Follow up question, the other CFWs also use Gateway's launcher.dat to boot right? So it's also a no-go for CFWs?
 
Thanks for the explanation! Hopefully a lot of other 2DS owners are interested in this as well so that there will be a chance of Gateway implementing it.

Follow up question, the other CFWs also use Gateway's launcher.dat to boot right? So it's also a no-go for CFWs?

Sorry, I haven't tried them myself, but unless they somewhat create a modified launcher.dat they shouldn't work.
Ask Roxas75, he sure has some knowledge in this.
But it seems he is quite busy and unavailable lately.
 
Just tryed with my 3DS and it worked, but crashed instead of loading Launcher.dat (black screen with error text).
I played a DS game then tried again and this time it went to the DS profile settings.
It might be the launcher.dat but... it wouldn't make sense!! Why does it work on o3DS 4.1-4.5 and on N3DS but not on o3DS >=5.0??
 
Just tryed with my 3DS and it worked, but crashed instead of loading Launcher.dat (black screen with error text).
I played a DS game then tried again and this time it went to the DS profile settings.
It might be the launcher.dat but... it wouldn't make sense!! Why does it work on o3DS 4.1-4.5 and on N3DS but not on o3DS >=5.0??

Because of the offsets. Devs have to implement an ROP chain for different firms. Look at Ninjhax for example. See how many different barcodes there are for different firmware revisions? Same applies.
 
Because of the offsets. Devs have to implement an ROP chain for different firms. Look at Ninjhax for example. See how many different barcodes there are for different firmware revisions? Same applies.
Does this mean that their launcher.dat contains code for every single firmware version?
 
Does this mean that their launcher.dat contains code for every single firmware version?

Yes, the Launcher.dat contains code that get's launched at different "sectors". For example, 9.2 instructions are stored at 0x16000, I think? It's separated into 7 pieces.

Edit: Each "sector" is 16kb.
 
  • Like
Reactions: nastys
I hope that gateway sees the desire for this to work on 2ds... I would love an offline exploit for my 4 year old sons 2ds...
 
I own a 2DS, we, 2DS users, should make a petition to Gateway with this treath, who is with me?
And I'd like this too for my old 3DS. I downgraded once but since I lost all my DSiWare, I had to restore my backup, so an offline exploit for old 3DS <=9.2 would be useful too.
 
  • Like
Reactions: MAXLEMPIRA
And I'd like this too for my old 3DS. I downgraded once but since I lost all my DSiWare, I had to restore my backup, so an offline exploit for old 3DS <=9.2 would be useful too.
yeah.. you're right... then, why not take note of how many users have 2DS and 3DS, do some kind of signature and send it to Gateway with a "representative temper"?
 
Just tryed with my 3DS and it worked, but crashed instead of loading Launcher.dat (black screen with error text).
I played a DS game then tried again and this time it went to the DS profile settings.
It might be the launcher.dat but... it wouldn't make sense!! Why does it work on o3DS 4.1-4.5 and on N3DS but not on o3DS >=5.0??
Backup SysNAND first then try with N3DS ROP Chain, since both NVRAM and nds ROP installer were done for Firm 9.x you will probably be force to update your SySNAND to 9.0-9.2 (max !! don't go further!!).
You can update to 9.2 with Cooking Mama (EU) or using CIAs pack (for each console region) floating around the net.

If it still not work then simply downgrade to 4.5 sysNAND using your NAND backup :)
 
yeah.. you're right... then, why not take note of how many users have 2DS and 3DS, do some kind of signature and send it to Gateway with a "representative temper"?
And who is this "representative temper"? :lol:

Backup SysNAND first then try with N3DS ROP Chain, since both NVRAM and nds ROP installer were done for Firm 9.x you will probably be force to update your SySNAND to 9.0-9.2 (max !! don't go further!!).
You can update to 9.2 with Cooking Mama (EU) or using CIAs pack (for each console region) floating around the net?

If it still not work then simply downgrade to 4.5 sysNAND using your NAND backup :)
I'm already on 9.2...
 
K, so you're stuck until Gateway Team or one of the smart guys here make new ROP chain for O3DS with firm 9.x
 

Site & Scene News

Popular threads in this forum