Hacking 3DS decapping fundraising topic.

Status
Not open for further replies.

Metoroid0

Samus Aran
Member
Joined
Nov 2, 2012
Messages
2,276
Trophies
1
Location
Unknown region of space
Website
www.metroidwiki.org
XP
2,242
Country
Japan
WTF is it possible :D $2000.10 USD so..when is decapping starting?

first getaway, now this wooho, things couldn't been better.. this is making history on GBA temp!! :D

tumblr_lb2wsoVC0g1qcrzswo1_250.gif
 

lolfaget

New Member
Newbie
Joined
Jun 1, 2013
Messages
1
Trophies
0
Age
37
XP
52
Country
United States
gshock was last seen:
Nov 16, 2012

You are now aware that this project was dead for months.
Thanks for your hard-earned money.
 
  • Like
Reactions: yuyuyup

Mthb54

Well-Known Member
Member
Joined
Jun 4, 2013
Messages
107
Trophies
0
Age
27
XP
163
Country
Canada
Greetings. I'm one of the contributors on 3DBrew, going as JL12 there as well as a variety of other reverse-engineering, haxing and development communities.

I've been participating in the reverse engineering of the 3DS since launch, although there have been leaps and bounds due to the combined efforts of many contributors, I strongly feel much of what we're doing would be expedited by extracting the boot code and other proprietary information (/secretz) from the custom Nintendo (System-On-a-Chip) of a retail 3DS.

For those that are unfamiliar: the CPU, GPU & DSP all exist on one proprietary SOC design used on the 3DS. Secure information is stored there partly, most likely burned onto the SoC during manufacturing and not readable by any other normal means or from outside of the SoC, in such a way that the secure information there, always stays there. In good design it will never reach the main memory of the 3DS and so sensitive data (like encryption keys or algorithms) stay secure.

Extracting data from a proprietary chip to reverse-engineer it is typically done by decapping it, which is risky business and involves removing the epoxy, delayering the chip and taking high-resolution pictures of every layer to reconstruct logic from the images. Special equipment is used ( SEM / scanning electron microscope ) and it is rarely done outside of a professional context because it is very costly to an average enthusiast/hax0r and access to equipment and the expertise is hard to realize.

This method has been used by the "emulation" community to reverse-engineer and recover data from special proprietary chips, such as those in SNES cartridges. It has also been used to to reverse-engineer other hardware to create emulators for other platforms besides the SNES.

I got a price quote from a professional lab on the deal (removal, decap, delayer, SEM imaging) and it came out to $400 per layer, which they estimate will come to "about $2000 total". Plus the cost of the 3DS I'd be donating for the hardware sample.

Kicking it around with other 3DBrew contributors I think we all agreed it would be interesting or valuable to us but $2000+ is simply a lot to ask of anyone to drop suddenly on a hobby project.

I suggested a 'donate' thread here on GBATemp to gradually 'fund raise' donations for this purpose.

I feel there are likely other users here on GBATemp that understand what this is about and what the potential value is and may be willing to contribute.

Also $2000+ while a lot for an individual is a very achievable goal for a fund raising.

To reiterate, what we're trying to do is: send in 1 3DS to a professional lab to get delayered and imaged (covering the costs of doing so). The resulting SEM images will be reconstructed and used towards reverse-engineering the 3DS.

We're considering giving contributors a copy of the images produced as thanks.

If you'd like to donate and help contribute to this cause you can do so by donating here.
Well now that it's confirmed, I tossed $5 in (can't spare more now).
Greetings. I'm one of the contributors on 3DBrew, going as JL12 there as well as a variety of other reverse-engineering, haxing and development communities.

I've been participating in the reverse engineering of the 3DS since launch, although there have been leaps and bounds due to the combined efforts of many contributors, I strongly feel much of what we're doing would be expedited by extracting the boot code and other proprietary information (/secretz) from the custom Nintendo (System-On-a-Chip) of a retail 3DS.

For those that are unfamiliar: the CPU, GPU & DSP all exist on one proprietary SOC design used on the 3DS. Secure information is stored there partly, most likely burned onto the SoC during manufacturing and not readable by any other normal means or from outside of the SoC, in such a way that the secure information there, always stays there. In good design it will never reach the main memory of the 3DS and so sensitive data (like encryption keys or algorithms) stay secure.

Extracting data from a proprietary chip to reverse-engineer it is typically done by decapping it, which is risky business and involves removing the epoxy, delayering the chip and taking high-resolution pictures of every layer to reconstruct logic from the images. Special equipment is used ( SEM / scanning electron microscope ) and it is rarely done outside of a professional context because it is very costly to an average enthusiast/hax0r and access to equipment and the expertise is hard to realize.

This method has been used by the "emulation" community to reverse-engineer and recover data from special proprietary chips, such as those in SNES cartridges. It has also been used to to reverse-engineer other hardware to create emulators for other platforms besides the SNES.

I got a price quote from a professional lab on the deal (removal, decap, delayer, SEM imaging) and it came out to $400 per layer, which they estimate will come to "about $2000 total". Plus the cost of the 3DS I'd be donating for the hardware sample.

Kicking it around with other 3DBrew contributors I think we all agreed it would be interesting or valuable to us but $2000+ is simply a lot to ask of anyone to drop suddenly on a hobby project.

I suggested a 'donate' thread here on GBATemp to gradually 'fund raise' donations for this purpose.

I feel there are likely other users here on GBATemp that understand what this is about and what the potential value is and may be willing to contribute.

Also $2000+ while a lot for an individual is a very achievable goal for a fund raising.

To reiterate, what we're trying to do is: send in 1 3DS to a professional lab to get delayered and imaged (covering the costs of doing so). The resulting SEM images will be reconstructed and used towards reverse-engineering the 3DS.

We're considering giving contributors a copy of the images produced as thanks.

If you'd like to donate and help contribute to this cause you can do so by donating here.
you guys reached the 200$ goal now, when are you sending the 3ds to the lab?
 
  • Like
Reactions: yuyuyup

PhillipDS

Active Member
Newcomer
Joined
Jul 31, 2008
Messages
28
Trophies
0
XP
194
Country
Colombia
Not really expectations, I'd rather hope that this can offer a lot of things to work on for the 3DBrew guys ;)!!!
 

kehkou

does what Nintendon't
Member
Joined
Dec 19, 2009
Messages
798
Trophies
1
Location
The Duke City
XP
1,104
Country
United States
well he did leave his e-mail contact info on the donation article. Pretty sure he wouldn't have allowed that if he didn't want to be reached...God I hope this doesn't cause a flood of emails to him. ONE temper should be chosen email him if he doesn't show up this week.
 
  • Like
Reactions: Mthb54

Thorhian

My CPU's prefer Water
Member
Joined
May 23, 2012
Messages
355
Trophies
0
Location
Shazezar
XP
142
Country
United States
Hmmm, I should rephrase what I said in another thread, since we MAY need more money for another 3DS.

"Hmmm, is it really necessary to buy a whole new 3DS? Why not go on Ebay and buy a 3DS mainboard that is confirmed to work, or a broken 3DS that still has operation (but broken chasis, screen, etc) for a low price? We are just decapping the SoC..."
 

Metoroid0

Samus Aran
Member
Joined
Nov 2, 2012
Messages
2,276
Trophies
1
Location
Unknown region of space
Website
www.metroidwiki.org
XP
2,242
Country
Japan
you guys reached the 200$ goal now, when are you sending the 3ds to the lab?

3DS alone is 200$ :P

Hmmm, I should rephrase what I said in another thread, since we MAY need more money for another 3DS.

"Hmmm, is it really necessary to buy a whole new 3DS? Why not go on Ebay and buy a 3DS mainboard that is confirmed to work, or a broken 3DS that still has operation (but broken chasis, screen, etc) for a low price? We are just decapping the SoC..."

That's a REALLY good point!
I didn't think of that, but if i would to Sent 3DS to the Lab i would buy used one or as you said, just a main-board.

I'm surprised your comment don't have likes.
 
  • Like
Reactions: Mthb54

DiabloStorm

Anti-Semantic Bastard
Member
Joined
May 29, 2011
Messages
666
Trophies
1
Location
Charicific Valley
XP
527
Country
Japan
Gshock had ample opportunity to point out if they needed more than $2000 in donations at the beginning of the thread, you really don't think someone at 3Dbrew has a 3DS or parts laying around somewhere?
The only reason I see why $2000 plus is mentioned is because they don't know how many layers they're dealing with, they were only able to estimate.

Also I have a question, when you raise the 2K how long will this process take to finish?

How long will decapping the 3DS take?
5-7 business days.

The donation was solely for the decapping process, not the 3DS...next are we gonna speculate on how much to donate towards transportation costs/postage when they send it in? :P

Plenty of people can get their hands on a 3DS, not many can afford to decap one, which makes more sense to hold a donation drive for?
 
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • Xdqwerty @ Xdqwerty:
    @a_username_that_isnt_cool, could you change your username?
  • Xdqwerty @ Xdqwerty:
    i guess not...
  • Xdqwerty @ Xdqwerty:
    yawn
  • Xdqwerty @ Xdqwerty:
    anybody here?
  • P @ PKNate:
    nope
  • BakerMan @ BakerMan:
    fun fact: 7 years by lukas graham, supermassive black hole by muse, and megalomania all have the same bpm
  • BakerMan @ BakerMan:
    girls just wanna have fun and renai circulation also share the same tempo as the few i said before
  • Xdqwerty @ Xdqwerty:
    @BakerMan, megalomania the live a live song?
  • BakerMan @ BakerMan:
    wait no, megalovania*
  • BakerMan @ BakerMan:
    my bad
  • K3Nv2 @ K3Nv2:
    I don't forgive you
  • BigOnYa @ BigOnYa:
    The nerve of that guy, gosh.
  • K3Nv2 @ K3Nv2:
    Yeah expecting me to forgive gtfo
  • Psionic Roshambo @ Psionic Roshambo:
    But how could the Dr have known you didn't want to be circumcized?
  • K3Nv2 @ K3Nv2:
    He didn't you just wanted your dick to be fondled
    +1
  • K3Nv2 @ K3Nv2:
    Watching dune 2 it's eh
  • Psionic Roshambo @ Psionic Roshambo:
    Dune one sucked
  • Psionic Roshambo @ Psionic Roshambo:
    The original with Patrick Stewart was Great
  • K3Nv2 @ K3Nv2:
    A sexual psycopath that love pain where have I heard that before
  • BigOnYa @ BigOnYa:
    In your high school diary?
  • K3Nv2 @ K3Nv2:
    No but your wife let's me read her diary the word psychopath comes up more than sexual
    +1
  • K3Nv2 @ K3Nv2:
    Lol stremio hogging all of my tvs on board ram
    K3Nv2 @ K3Nv2: Lol stremio hogging all of my tvs on board ram