Hacking Crediar just Released 3DSaveTool!

  • Thread starter Thread starter Hyrule2008
  • Start date Start date
  • Views Views 35,847
  • Replies Replies 128
For those of you complaining about it not working:

Make sure you type the command correctly. You first need to extract the key from your save file, something like this:

3DSaveTool -f savefile.sav key.bin

This command looks through savefile.sav for the XOR key, and saves it to key.bin. This key.bin file is necessary to actually decrypt and encrypt in the next step. After getting key.bin, do something like this:

3DSaveTool -x savefile.sav decryptedsave.sav key.bin

This runs through savefile.sav using key.bin and decrypts it using Crediar's XOR algorithm. It then saves the decrypted file to decryptedsave.sav which should now be in plain text and easily edited with a hex editor. This command will work in reverse to re-encrypt the save file, as well, doing something like this:

3DSaveTool -x decryptedsave.sav encryptedsave.sav key.bin
 
nice to see the first 3ds-related hacking tool

what i am surprised at (as what THEE fast said) is that nintendo kept an easy encrypting for the Save.
Now maybe its the save hence not too much effort here. What if the same applies to the dumping part of the 3ds cartridges.

With this, there is a possibility that the rollercoaster between nintendo's AP measures and hacker's AAP will be leaning towards the hackers.

What i always love about hackers is their determination to get something done even if they are occupied in their work, school etc like the emulator creators and console hackers (teamoverflow too)
 
A Gay Little Catboy said:
I really hope this can't be used for cheating
Someone is probably working on ruining Street Fighter 4 right now.
yaynds.gif
 
All I can say is:
well that didn't take long
yaynds.gif



it won't be too long then 'till we get other goodies like in the old ds =]
 
1. Hacker replaces data with data that is too large for the buffer.
2. Program does not check the data and sends it to the buffer.
3. Buffer "overflows".

Basically what that last part means is that our data "spills out" of the memory allocated to the buffer and starts writing memory that it shouldn't. The scary thing is that you have no clue what is being over written (Well hackers do, but that requires knowledge of 3DS architecture).

That's my explanation for my CS background. Wikipedia also looks like it has a good article.

http://en.wikipedia.org/wiki/Buffer_overflow

If you find yourself asking questions like "should I buy ridge racer?" you should really take a programming class or shut up because it shows that you didn't even read the thread (this is for all DS saves it has nothing to do with ride racer and certinally nothing to do with a buffer overrun). Please, for the health of this forum.
 
"Looks like we found a mjor flaw in the QR image handler ->"

I knew that the QR codes would have some kind of flaw
 
modshroom128 said:
3DSaveTool released?

soon my pretties soon you will have something special


edit: start thanking Team Twiizers

Fake, just a bad Photoshop and an HackMii install image. As I said before, we have no idea if we can even access the SD card using an as of yet undiscovered buffer overflow.
 
ron975 said:
"Looks like we found a mjor flaw in the QR image handler ->"

I knew that the QR codes would have some kind of flaw

That's already been found out to be a Rick Astley rickroll'd code. AKA that one news is fake.
 
Oh, too bad, I was just about to test it as soon as my bro is finished with Pilotwings.

Now, how are we gonna get a Save file, proper dumping tools haven't been released yet.
 
Relys said:
If you find yourself asking questions like "should I buy ridge racer?" you should really take a programming class or shut up because it shows that you didn't even read the thread (this is for all DS saves it has nothing to do with ride racer
Actually you're the one that didn't read the thread.

1 - This is for 3DS saves, not DS saves.
2 - The same twitter that gave this also mentions possible ridge racer vulnerabilities.

While normally such info is in the link and I know people don't always follow links, this info is quoted in the first post, so I don't appreciate you coming in and making insults and accusations when YOU'RE the one not doing enough reading. :\
 
Rydian said:
Relys said:
If you find yourself asking questions like "should I buy ridge racer?" you should really take a programming class or shut up because it shows that you didn't even read the thread (this is for all DS saves it has nothing to do with ride racerActually you're the one that didn't read the thread.

1 - This is for 3DS saves, not DS saves.
2 - The same twitter that gave this also mentions possible ridge racer vulnerabilities.

While normally such info is in the link and I know people don't always follow links, this info is quoted in the first post, so I don't appreciate you coming in and making insults and accusations when YOU'RE the one not doing enough reading. :\

I thought this was a thread aboot the Save Tool, not ridge racer. I was wondering why people kept asking if they need that game.

QUOTE(DigitalDeviant @ Apr 3 2011, 03:13 AM)
So how would one reinsert these save files into a 3DS cart, is it even possible?
use the device linked above.
 
Well, if they can find a way to access the SD card from within a game, it should be fairly simple to write a save to the cart that creates an overflow. I'm no programmer, but I do know it's not completely simple. Still, it's only a matter of time. All the Wii needed was an SD card and a hacked save game (and Twilight Princess doesn't even have any SD card functionality).

Too bad I didn't buy Ridge Racer though. That is, if it really is the one that has vulnerabilities (and before anyone says otherwise, I know it's only a possibility at the moment). I was actually tempted, although I heard it didn't have multiplayer and that didn't make it worth buying for me.
 
TCJJ said:
Well, if they can find a way to access the SD card from within a game, it should be fairly simple to write a save to the cart that creates an overflow. I'm no programmer, but I do know it's not completely simple. Still, it's only a matter of time. All the Wii needed was an SD card and a hacked save game (and Twilight Princess doesn't even have any SD card functionality).
Should have access to the SD card if they can get code inside the game, since that's where streetpass data is saved.(I think)
 

Site & Scene News

Popular threads in this forum