Hacking 3DS 11.5 system update incoming

Father Crilly

GBAtemp's Phoney Priest
Member
Joined
Aug 5, 2015
Messages
217
Trophies
0
Location
Ireland
XP
143
Country
Off-topic slightly - I'm on 11.4 and I'm trying to update a cartridge based game, but it tells me to update to 11.5 before I can download the game update. I can download the game's latest update to my PC, is there any way to install it to my SD card without updating?
 
Last edited by Father Crilly,
Joined
Feb 17, 2017
Messages
1,214
Trophies
1
XP
2,473
Off-topic slightly - I'm on 11.4 and I'm trying to update a cartridge based game, but it tells me to update to 11.5 before I can download the game update. I can download the game's latest update to my PC, is there any way to install it to my SD card without updating?
Why won't you update? It doesn't have any cons.
 
  • Like
Reactions: Father Crilly

GerbilSoft

Well-Known Member
OP
Member
Joined
Mar 8, 2012
Messages
2,395
Trophies
2
Age
34
XP
4,252
Country
United States
So Nintendo DO HAVE the ability to release an update that breaks BS9?
They could add a second FIRM update path that isn't currently patched by CFW in order to replace the B9S FIRM with original FIRM. This would cause affected systems to be reverted back to stock.

However, the system could be rehacked using DSiWareHax, hardmod, or (eventually) ntrboothax, and then more write-protect patches can be added to the CFW to block the second path.

The sighax vulnerability, which is used by boot9strap, cannot be fixed. The relevant code is permanently stored in mask ROM on the CPU. Nintendo could have taken the time to fix it in the New 2DS XL, but they didn't for some reason.
 
  • Like
Reactions: TheCyberQuake

GerbilSoft

Well-Known Member
OP
Member
Joined
Mar 8, 2012
Messages
2,395
Trophies
2
Age
34
XP
4,252
Country
United States
That would be illegal. They can't legally replace the boot.firm on your sd card.
1. I was referring to the FIRM partition in CTR NAND.
2. Exactly which law states that they can't replace boot.firm on the SD card? As far as I know, the only applicable terms is the EULA *you* agreed to with regards to not using unauthorized software modifications.
 
Last edited by GerbilSoft,

Quantumcat

Dead and alive
Member
Joined
Nov 23, 2014
Messages
15,144
Trophies
0
Location
Canberra, Australia
Website
boot9strap.com
XP
11,094
Country
Australia
The sighax vulnerability, which is used by boot9strap, cannot be fixed. The relevant code is permanently stored in mask ROM on the CPU. Nintendo could have taken the time to fix it in the New 2DS XL, but they didn't for some reason.
The 2DS XL was announced before we had b9s so it was probably too late in the development cycle to alter the design.
 

Quantumcat

Dead and alive
Member
Joined
Nov 23, 2014
Messages
15,144
Trophies
0
Location
Canberra, Australia
Website
boot9strap.com
XP
11,094
Country
Australia
1. I was referring to the FIRM partition in CTR NAND.
2. Exactly what law states that they can't replace boot.firm on the SD card? As far as I know, the only applicable terms is the EULA *you* agreed to with regards to not using unauthorized software modifications.
They can't start altering user's personal data. I don't know if it is illegal or not but it would cause a public relations nightmare. It just isn't done.
 

PrincessLillie

(Future) VTuber
Member
Joined
Nov 28, 2013
Messages
2,921
Trophies
3
Age
21
Location
Virtual Earth
Website
lillie2523.carrd.co
XP
4,795
Country
United States
Nintendo could have taken the time to fix it in the New 2DS XL, but they didn't for some reason.
It would have impacted the stability.
 

GerbilSoft

Well-Known Member
OP
Member
Joined
Mar 8, 2012
Messages
2,395
Trophies
2
Age
34
XP
4,252
Country
United States
They can't start altering user's personal data. I don't know if it is illegal or not but it would cause a public relations nightmare. It just isn't done.
"boot.firm" isn't necessarily personal data. They can easily claim that they detected it as malware (as most anti-virus vendors do with regards to keygens etc).

Never mind that the only recourse affected users would have is a class-action lawsuit, and considering that the class-action lawsuit against Microsoft regarding disc scratching on the Xbox 360 was tossed, a suit over boot.firm would get nowhere.
 

Quantumcat

Dead and alive
Member
Joined
Nov 23, 2014
Messages
15,144
Trophies
0
Location
Canberra, Australia
Website
boot9strap.com
XP
11,094
Country
Australia
"boot.firm" isn't necessarily personal data. They can easily claim that they detected it as malware (as most anti-virus vendors do with regards to keygens etc).

Never mind that the only recourse affected users would have is a class-action lawsuit, and considering that the class-action lawsuit against Microsoft regarding disc scratching on the Xbox 360 was tossed, a suit over boot.firm would get nowhere.
It isn't the legal side that they'd be worried about. It would be people being outraged and causing a public relations nightmare. Nobody wants to think that they could put personal pictures or documents on their SD card and have Nintendo look at them or delete them or modify them. Even if that isn't the case, general users won't understand Nintendo is only modifying one particular file to slow down hackers. Facts won't get in the way of a good uninformed media beat-up.
 

GerbilSoft

Well-Known Member
OP
Member
Joined
Mar 8, 2012
Messages
2,395
Trophies
2
Age
34
XP
4,252
Country
United States
It isn't the legal side that they'd be worried about. It would be people being outraged and causing a public relations nightmare. Nobody wants to think that they could put personal pictures or documents on their SD card and have Nintendo look at them or delete them or modify them. Even if that isn't the case, general users won't understand Nintendo is only modifying one particular file to slow down hackers. Facts won't get in the way of a good uninformed media beat-up.
Hasn't been a problem for Microsoft. (Windows 10 Telemetry, Windows 10 intentionally installing broken drivers, Microsoft themselves going through users' emails without consent, etc.)

(And before you mention Google for the last part: That was automated scanning; Microsoft actually looked through a user's emails without a warrant to find a Windows 8 leaker.)
 

Quantumcat

Dead and alive
Member
Joined
Nov 23, 2014
Messages
15,144
Trophies
0
Location
Canberra, Australia
Website
boot9strap.com
XP
11,094
Country
Australia
Hasn't been a problem for Microsoft. (Windows 10 Telemetry, Windows 10 intentionally installing broken drivers, Microsoft themselves going through users' emails without consent, etc.)

(And before you mention Google for the last part: That was automated scanning; Microsoft actually looked through a user's emails without a warrant to find a Windows 8 leaker.)
Edit: @jupitteer is right. None of the things you mentioned involved modifying user data.
 
Last edited by Quantumcat,

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • SylverReZ @ SylverReZ:
    Ninty can still make money filing false DMCAs.
    +1
  • realtimesave @ realtimesave:
    they need to have a strong line up on the launch titles too. I think they should move metroid prime 4 to the next console because by now it has been quite a while and there's no release date scheduled yet
  • realtimesave @ realtimesave:
    lol there's a guy selling mig switch in usa on ebay for $200/ea he's definitely going to get nailed with dmca by tomorrow
  • ZeroT21 @ ZeroT21:
    Wasn't Metroid Prime 4 teased all the way back in 2017? For the switch no less?
    :rofl2:
  • ZeroT21 @ ZeroT21:
    Pretty sure anyone buying the switch just for that got duped
  • realtimesave @ realtimesave:
    for $200? rofl.
  • realtimesave @ realtimesave:
    well as far as metroid prime 4 is concerned, the next system probably is similar enough to the current gen they can probably easily just slap it onto a next gen cart and call it good :P
  • K3Nv2 @ K3Nv2:
    The switch was about 350 in 2017
  • Metoroid0 @ Metoroid0:
    mabe where you live
  • K3Nv2 @ K3Nv2:
    Nintendo president Tatsumi Kimishima took the stage at the outset to reveal that Switch will launch globally on March 3, 2017 for $299.99—earlier than some had expected at the price many suspected. https://time.com/4632820/nintendo-switch-nx/
  • Psionic Roshambo @ Psionic Roshambo:
    The NES launched at like 250 and the rob and light gun kit was like 350 or something
  • Psionic Roshambo @ Psionic Roshambo:
    I was near the test market for the NES and man did it make my 2600 look like ass lol
  • K3Nv2 @ K3Nv2:
    There has to be some mutual agreement with them all anything over $600 is just pc territory
  • realtimesave @ realtimesave:
    next system rumored to launch at $400
  • realtimesave @ realtimesave:
    but I don't really believe any rumors yet
  • realtimesave @ realtimesave:
    need to have official info from N
  • Psionic Roshambo @ Psionic Roshambo:
    The 3DO and Neo Geo where like 700 bucks hmm the PS3 was stupid expensive at launch lol
  • Psionic Roshambo @ Psionic Roshambo:
    But at least the PS3 was only 500 for the cheapest one at launch
  • Psionic Roshambo @ Psionic Roshambo:
    My opinion is that 199.99 is the sweet spot but that spot is long gone lol
  • Psionic Roshambo @ Psionic Roshambo:
    Just played some Micheal Jackson Moonwalker.... Those poor parents trying desperately to protect their children
  • K3Nv2 @ K3Nv2:
    400 is a decent sweet spot if we get enough out of it
  • K3Nv2 @ K3Nv2:
    It's not like how it was when we were locked down to a few options and that's it
  • Psionic Roshambo @ Psionic Roshambo:
    For me just buying a Pi and some accessories fills that not a PC void new consoles have just put them close to PC prices and all the patching and updates makes me feel like I might as well just get a PC
  • K3Nv2 @ K3Nv2:
    Were talking new Gen consoles at launch here
    K3Nv2 @ K3Nv2: Were talking new Gen consoles at launch here