Homebrew AES key scrambler

  • Thread starter Thread starter Suiginou
  • Start date Start date
  • Views Views 89,907
  • Replies Replies 455
  • Likes Likes 12
Some known, some unknown. ( ͡° ͜ʖ ͡°)
so I'm guessing there's a work around for when new firmwares get released? it would be weird if a new firmware like 10.4 gets released or when nintendo introduces their new account system in march
 
It's a 10.3 sysNAND.
That's quite a relief to see your team has done that on a latest SysNAND.
I still can remember the low possibility i've calculated for this arm9loaderhax.
Besides this, have you get something special out of that?
I assume there could only be the arm9loader in RAM when this triggered.
--After I've just get a ladder to across the firewall.
 
  • Like
Reactions: kiwiis
Known: memchunkhax2 (but perhaps not with svcControlMemory)
Unknown: random exploit in ARM9/possibly random entrypoint
I think they use the arm9 loader exploit from the 32c3 presentation to get arm9 and firmlaunch to the systemnand after that. Also they seem to have the keys to load the newest firm. This is why they could load it on boot.
I could be wrong(maybe they got something better working), but I think that's what they are showing in the video.
 
Last edited by RednaxelaNnamtra,
I think they use the arm9 loader exploit from the 32c3 presentation to get arm9 and so firmlaunch to the systemnand after that. Also they seem to have the keys to load the newest firm. This is why they could load it on boot.
I could be wrong(maybe they got something better working), but that's what I think they showed in the video.
Yes, that could work.
And if this is indeed right...
It's their usual "lol we did it and u didnt lolololololo".

First hash of https://salthax.org/ is the sha256 of the decrypted N3DS key sector.
 
This thread made an interesting read... will look forward to te day emunand 9.5+ arrives and it becomes game, set and match for n3ds and o3ds dor that matter... no more cat and mouse
 
Out of curiosity, why is the Salthax video private now? What was contained/shown in it, anyway?
Why? Probably butthurt over the dislikes.

Contained: Coldboot into sysNAND CFW on actual 10.3 (system update tried, just said the console was up to date) and a menu that would pop up at the push of a button.

Until nintendo throws another spanner in the works. haha
9.6+ FIRM keys are pretty much the final frontier. There's nowhere else to go for another layer of crypto.
 
If SALT did it, it made be public a day. Let's hope for it. :P


GW is realistically our only hope. But hey, who says that they don't have it, maybe they're holding onto it until it's absolutely needed since most of the CFW'S will rip their work off anyway. But all in all, F "leet" devism. Also, potatoes.
 

Site & Scene News

Popular threads in this forum