Hacking [Discussion] Install DS Profile exploit with Download Play?

dicamarques

Definitely not Bruce Wayne.
OP
Member
Joined
Jun 25, 2010
Messages
1,085
Trophies
1
Location
Your computer's Recycle Bin
Website
www.google.com
XP
1,676
Country
Portugal
So now with all the hopes of CFW on my 3Ds without spending 60+€ on a flashcart I was looking for info and requirements where to only have the 3DS to downgrade and a DS flashcart to install the exploit. Well I'm a unlucky owner of a Ak2i, which the last working is 4.3... so even if I downgrade I cant use my flashcart to install the exploit.
But then I started thinking in a different way to load the exploit, what if I send it over download play, I have a DSi so I could use that?
I remember seeing this thread awhile back https://gbatemp.net/threads/ds-download-play-send-nds-file-with-planet-puzzle-league.306625/
and it is a great idea, but there's a catch, no homebrew is possible to be loaded on the client DS (in this case 3DS) unless it has flashme (there's no flashme for the 3DS).
If it was possible to fakesign or inject or code to a ninty signed .nds and then place it on that game, there was a way to load the exploit without a flashcart (yes without!, I think that there's also a way to send demos using a PC)

So any opinions, or this is completely impossible unless someone guesses the key.
 

MaK11-12

Well-Known Member
Member
Joined
Jul 26, 2009
Messages
241
Trophies
0
Location
Namek
Website
www.deltabeard.com
XP
424
Country
I would also like to know if there is a method of installing the ROP loader without a DS flash card.
I tried replacing the Launcher.dat file from the Gateway 3.0.1 update with the CFW Launcher_GW.dat (renamed to Launcher.dat) and then using the new browser exploit to load it. That didn't work. :(
 

dicamarques

Definitely not Bruce Wayne.
OP
Member
Joined
Jun 25, 2010
Messages
1,085
Trophies
1
Location
Your computer's Recycle Bin
Website
www.google.com
XP
1,676
Country
Portugal
I would also like to know if there is a method of installing the ROP loader without a DS flash card.
I tried replacing the Launcher.dat file from the Gateway 3.0.1 update with the CFW Launcher_GW.dat (renamed to Launcher.dat) and then using the new browser exploit to load it. That didn't work. :(
Yes, its because the new exploit does not only use the browser to work, it needs something else.
 

dicamarques

Definitely not Bruce Wayne.
OP
Member
Joined
Jun 25, 2010
Messages
1,085
Trophies
1
Location
Your computer's Recycle Bin
Website
www.google.com
XP
1,676
Country
Portugal
well i dont know but have you try desmume download play? lol who knows
The problem is not sending the file, is the 3DS accepting the file, because it's not signed by ninty

The exploit downgrades you to 4.2, so your card should be able to work.
from what I know, the EUR version downgrades to 4.5
 

mastermodr94

Well-Known Member
Member
Joined
Dec 3, 2014
Messages
137
Trophies
0
Age
28
XP
194
Country
United States
Heres the thing basically you would need a nds demo that was exploitable. Similar to how smealum just exploited BangioSpirits with its level editor. You would need to find a demo that has something similar or a rom that is under 4mb and then send it over download play and exploit it to patch the 3ds profile. Not imposible but very dificult for little payoff when you can grab a cheap ds flashcard for ~ $15 or less
 

dicamarques

Definitely not Bruce Wayne.
OP
Member
Joined
Jun 25, 2010
Messages
1,085
Trophies
1
Location
Your computer's Recycle Bin
Website
www.google.com
XP
1,676
Country
Portugal
Heres the thing basically you would need a nds demo that was exploitable. Similar to how smealum just exploited BangioSpirits with its level editor. You would need to find a demo that has something similar or a rom that is under 4mb and then send it over download play and exploit it to patch the 3ds profile. Not imposible but very dificult for little payoff when you can grab a cheap ds flashcard for ~ $15 or less
Thats not the issue, already did that. The problem is that the Homebrew is not signed.
 

mastermodr94

Well-Known Member
Member
Joined
Dec 3, 2014
Messages
137
Trophies
0
Age
28
XP
194
Country
United States
Thats not the issue, already did that. The problem is that the Homebrew is not signed.
No what im saying is that yes the homebrew is unsigned however an exploitable ds demo IS signed. So you can send an unmodified demo to the 3ds and then exploit it without the use of a flashcard. But you would need to build the exploit yourself.
 

anon3536

Well-Known Member
Member
Joined
Nov 4, 2012
Messages
183
Trophies
0
Age
28
XP
243
Country
United States
so what about if you like ran the exploit on the dsi then loaded a game like super mario ds that has single cart play, could it possibly crash then cuz your name shows up on the other users ds? im willing to bet this prob wont work but just a thought after reading this
 

dicamarques

Definitely not Bruce Wayne.
OP
Member
Joined
Jun 25, 2010
Messages
1,085
Trophies
1
Location
Your computer's Recycle Bin
Website
www.google.com
XP
1,676
Country
Portugal
so what about if you like ran the exploit on the dsi then loaded a game like super mario ds that has single cart play, could it possibly crash then cuz your name shows up on the other users ds? im willing to bet this prob wont work but just a thought after reading this
It possibly will crash the ds but wont change the 3DS name, so not going to help :(
My attempts at getting a signed header from another demo and place it on the homebrew were unsuccessful so far :( I was thinking to make the Bangai-oSploit to work, but it's a commercial rom and even though I removed a lot from the rom it wouldn't boot because of the header.
Probably this isn't working because of my lack of skills on DS hacking.
 
  • Like
Reactions: tozevleal

anon3536

Well-Known Member
Member
Joined
Nov 4, 2012
Messages
183
Trophies
0
Age
28
XP
243
Country
United States
It possibly will crash the ds but wont change the 3DS name, so not going to help :(
My attempts at getting a signed header from another demo and place it on the homebrew were unsuccessful so far :( I was thinking to make the Bangai-oSploit to work, but it's a commercial rom and even though I removed a lot from the rom it wouldn't boot because of the header.
Probably this isn't working because of my lack of skills on DS hacking.

well isnt it the actual name that crashes? sure it wont save to the 3ds but once the 3ds attempted to load that name i would think it would crash similar to how it does when you go to open the nds management atm
 

dicamarques

Definitely not Bruce Wayne.
OP
Member
Joined
Jun 25, 2010
Messages
1,085
Trophies
1
Location
Your computer's Recycle Bin
Website
www.google.com
XP
1,676
Country
Portugal
well isnt it the actual name that crashes? sure it wont save to the 3ds but once the 3ds attempted to load that name i would think it would crash similar to how it does when you go to open the nds management atm
You need to have it saved so it loads up on the system settings. I dont even know if we can change any of these values in DS Download....
 

WaterBotttle

Well-Known Member
Member
Joined
Dec 19, 2014
Messages
163
Trophies
0
Age
33
XP
297
Country
Since the DS download play titles have to be signed to run on the 3DS, it seems as others have suggested the best method would be using an already signed title and then exploiting a vulnerability in that to execute the needed DS code. While possible I don't think many would be interested because the DS cards are so cheap and we already have the web browser as an entry point. However it does sound like a cool project.
 
  • Like
Reactions: tozevleal
General chit-chat
Help Users
  • No one is chatting at the moment.
  • SylverReZ @ SylverReZ:
    That sums it up right.
  • Megadriver94 @ Megadriver94:
    I am not it the loop on this, why take it so personally, though? Its just a video game and a work of fiction, at the end of the day.
  • K3N1 @ K3N1:
    I'm sure the devs don't mind refunding my .torrent for it
  • K3N1 @ K3N1:
    @Megadriver94, because these devs take child hood movies and make them look like shit expecting to profit off it
  • SylverReZ @ SylverReZ:
    @K3N1, That's what happens to every movie franchise.
  • Megadriver94 @ Megadriver94:
    Oh alright then, I can see what you are getting at.
  • Sonic Angel Knight @ Sonic Angel Knight:
    Sunday.... sunday dessert night :ninja:
  • K3N1 @ K3N1:
    With unreal engine their should be no excuse to make any animated figure look like complete shit whent hey have rights to it
  • K3N1 @ K3N1:
    The voice actor sounds like he didn't get casted for a tim Burton movie
  • linuxares @ linuxares:
    but you got to pay for the elvish voices
  • linuxares @ linuxares:
    and emotes... in a singleplayer game...
  • K3N1 @ K3N1:
    Damn the rights to LOTR is like all over the place lol
  • SylverReZ @ SylverReZ:
    Deserved
  • SylverReZ @ SylverReZ:
    At least we can point and laugh to an indie game that is not worth playing.
  • K3N1 @ K3N1:
    Last I read Amazon owns some rights you'd think a billion dollar company could fork more over for a decent game but their last game bricked GPUs so theirs that
    +1
  • linuxares @ linuxares:
    Be an e-commerce. Build a game that destroy the GPUs. Sell new GPUs. PROFITS!
  • K3N1 @ K3N1:
    Don't forget your 4090 we promise the next LOTR MMO will make it work for more than a year
  • K3N1 @ K3N1:
    Yay for user end replacement parts
  • SylverReZ @ SylverReZ:
    If your graphics card doesn't work with your game then don't blame us for shitty game performance.
  • K3N1 @ K3N1:
    At least @AncientBoi can run games released in his childhood
    +2
  • K3N1 @ K3N1:
    Marbles and pick up sticks 10/10
    SylverReZ @ SylverReZ: @K3N1, DOOM