Hacking Any luck on fake eshop/update server?

  • Thread starter Yil
  • Start date
  • Views 2,236
  • Replies 10
  • Likes 1

Yil

Well-Known Member
OP
Member
Joined
Feb 19, 2014
Messages
2,126
Trophies
0
XP
1,282
Country
Canada
If you can trick the 3ds, you probably could install your own os/ application without hacking the hardware. Say boot with home-brew that has eshop and other features. Too bad this is too technical.
 
  • Like
Reactions: Margen67

Typhin

Well-Known Member
Member
Joined
Jan 30, 2008
Messages
305
Trophies
0
XP
293
Country
United States
It should be possible to spoof the eShop server, especially if someone had captured the responses/data from the official server. But since anything downloaded and installed would need a valid signature, it wouldn't be useful. Only Nintendo has the private key to generate a valid signature for your system, so you wouldn't even be able to use it to grab old versions of apps (like the vulnerable YouTube app, for instance).
 

Apache Thunder

I have cameras in your head!
Member
Joined
Oct 7, 2007
Messages
4,312
Trophies
3
Age
35
Location
Levelland, Texas
Website
www.mariopc.co.nr
XP
6,336
Country
United States
I believe it's theoretically possible to spoof a eShop update server. But I don't think you can use it to downgrade the console without first having a Arm11 kernel hack or access to the needed services as Arm11 normally verifies what it's installing is newer then what's being replaced. It doesn't normally allow you to downgrade and even a server spoof will not get around that if you don't have Arm11 at the least.
 

Yil

Well-Known Member
OP
Member
Joined
Feb 19, 2014
Messages
2,126
Trophies
0
XP
1,282
Country
Canada
I believe it's theoretically possible to spoof a eShop update server. But I don't think you can use it to downgrade the console without first having a Arm11 kernel hack or access to the needed services as Arm11 normally verifies what it's installing is newer then what's being replaced. It doesn't normally allow you to downgrade and even a server spoof will not get around that if you don't have Arm11 at the least.
Of course not downgrade, but custom OS with higher system signature.
 

Apache Thunder

I have cameras in your head!
Member
Joined
Oct 7, 2007
Messages
4,312
Trophies
3
Age
35
Location
Levelland, Texas
Website
www.mariopc.co.nr
XP
6,336
Country
United States
You need Arm9 access to fool sig checks. That or find a way to create valid signatures which requires gaining access to highly secret company data like the private keys. That is highly unlikely. It's a pipe dream to ever think you will be able to run a modified CFW natively on sysnand without using exploits.
 
  • Like
Reactions: Margen67

Yil

Well-Known Member
OP
Member
Joined
Feb 19, 2014
Messages
2,126
Trophies
0
XP
1,282
Country
Canada
You need Arm9 access to fool sig checks. That or find a way to create valid signatures which requires gaining access to highly secret company data like the private keys. That is highly unlikely. It's a pipe dream to ever think you will be able to run a modified CFW natively on sysnand without using exploits.
Okay, I thought some guy already have the private keys cracked. but what I mean is to replace sysnand.
 

Apache Thunder

I have cameras in your head!
Member
Joined
Oct 7, 2007
Messages
4,312
Trophies
3
Age
35
Location
Levelland, Texas
Website
www.mariopc.co.nr
XP
6,336
Country
United States
I don't think so. Unless you were thinking of the homemenu hax that recently came out. That also depends on a exploit. (specifically an exploit involving the theme system and if your above 9.2 firmware, it won't get you Arm11 nor Arm9 access) A full custom CFW that doesn't rely on exploits would either have to exploit a flaw in bootrom or having the private keys. Which as far as I know, no one has gotten even close to doing.
 

Psi-hate

GBATemp's Official Psi-Hater
Member
Joined
Dec 14, 2014
Messages
1,745
Trophies
1
XP
3,105
Country
United States
Okay, I thought some guy already have the private keys cracked. but what I mean is to replace sysnand.
Nope. Nintendo is the only people who can sign stuff. All we can do is run unsigned stuff via arm9hax. Other than that, there's really no point unless you are able to use homemenuhax to autoload kernel exploits to boot into a modified emunand. (I don't even think modifying emunand is even possible in a lot of ways. Merely minor stuff like tools and software, not anything near OS stuff.)
 

shinyquagsire23

SALT/Sm4sh Leak Guy
Member
Joined
Nov 18, 2012
Messages
1,971
Trophies
2
Age
25
Location
Las Vegas
XP
3,709
Country
United States
crazy stuff.
I believe 3ds verify some ticket or whatever with the server.
This happens as well, all tickets (even common ones) must be retrieved from the Nintendo servers, and non-common ones need proper signing from Nintendo as well. So even before issues with the app you're downloading's signature, you'd sooner have ticket issues.
 
  • Like
Reactions: Margen67
General chit-chat
Help Users
  • JuanMena @ JuanMena:
    Kissing random dudes choking in celery? Really? Need to study for that?
  • K3N1 @ K3N1:
    Yes it requires a degree
  • K3N1 @ K3N1:
    I could also yank out the rest of my teeth but theirs professionals for that
  • x65943 @ x65943:
    If your throat closes, putting oxygen in your mouth will not solve anything - as you will be introducing oxygen prior to the area of obstruction
  • JuanMena @ JuanMena:
    Just kiss me Kyle.
  • x65943 @ x65943:
    You either need to be intubated to bypass obstruction or create a stoma inferior to the the area of obstruction to survive
  • x65943 @ x65943:
    "Just kiss me Kyle." And I thought all the godreborn gay stuff was a smear campaign
  • JuanMena @ JuanMena:
    If I die, tell my momma I won't be carrying Baby Jesus this christmas :sad::cry:
  • K3N1 @ K3N1:
    Smear campaigns are in The political section now?
  • JuanMena @ JuanMena:
    Chary! Chary! Chary, Chary, Chary!
  • Sonic Angel Knight @ Sonic Angel Knight:
    Pork Provolone :P
  • Psionic Roshambo @ Psionic Roshambo:
    Sounds yummy
  • K3N1 @ K3N1:
    Sweet found my Wii u PSU right after I ordered a new one :tpi:
  • JuanMena @ JuanMena:
    It was waiting for you to order another one.
    Seems like, your PSU was waiting for a partner.
  • JuanMena @ JuanMena:
    Keep them both
    separated or you'll have more PSUs each year.
  • K3N1 @ K3N1:
    Well one you insert one PSU into the other one you get power
  • JuanMena @ JuanMena:
    It literally turns it on.
  • K3N1 @ K3N1:
    Yeah power supplies are filthy perverts
  • K3N1 @ K3N1:
    @Psionic Roshambo has a new friend
    +1
  • JuanMena @ JuanMena:
    It's Kyle, the guy that went to school to be a Certified man Kisser.
  • Psionic Roshambo @ Psionic Roshambo:
    Cartmans hand has taco flavored kisses
  • A @ abraarukuk:
    hi guys
  • Iron_Masuku @ Iron_Masuku:
    Hello
    Skelletonike @ Skelletonike: hmm