Hacking DSi hacking method?

cracker

Nyah!
OP
Member
Joined
Aug 24, 2005
Messages
3,619
Trophies
1
XP
2,213
Country
United States
I was just reading through other threads on the progress of DSi hacking and something occurred to me. I don't have a DSi so I can't do any of the testing myself. :/ I am thinking that it might be possible to add code to boot a flash cart by injecting code into the decrypted download play ROM and then re-encrypting it and sending it from a DS/Lite. Has anyone attempted this?
 

playallday

Group: GBAtemp Ghost
Member
Joined
May 23, 2008
Messages
3,767
Trophies
1
Location
[@N@[)@
Website
Visit site
XP
504
Country
Canada
I was thinking to use the hack we know about (or some do
frown.gif
) and use it to boot the slot-1. Just my idea.
 

cracker

Nyah!
OP
Member
Joined
Aug 24, 2005
Messages
3,619
Trophies
1
XP
2,213
Country
United States
It never hurts to have more than one type of exploit.
smile.gif
I was just sharing an idea for those who have the means to attempt hacking the DSi. It wouldn't be good for the longterm because you would always need a DS/Lite to boot it up but it might be useful for some type of firmware meddling and figuring out how to get games to boot, etc.
 

cracker

Nyah!
OP
Member
Joined
Aug 24, 2005
Messages
3,619
Trophies
1
XP
2,213
Country
United States
That's basically what I meant. Instead of the demo or multiplayer sharing it would execute code to bypass the check and boot the flash cart up.
 

gamefreakfatty

Active Member
Newcomer
Joined
Dec 28, 2006
Messages
28
Trophies
0
XP
227
Country
United States
Not sure if it helps, but a post i did in another thread:

gamefreakfatty said:
Okay, I don't know if this has been brought up before or not. From what I know, R4DS/M3Simply, other carts of the time, and more modern carts all used the same NoPass method to get the DS/DSL to boot them up without the need of another (legit/licensed) game. This (NoPass) method was discovered/developed/designed/whatever by the developer of no$gba and the other nocash projects, Martin. He dumped the BIOS (or whatever code was used) for the DS (or DSL) and managed to find the code that is used to determine whether or not the inserted cartridge is a legit/licensed one. Honestly, I probably don't know enough to help out with the situation, although I thought I would put this out there as a possibility.


Here are some things that might help:

Does anyone know if the (known/public?) method was missing part of the routine which was not necessarily used in the DS/DSL units but is now used in the DSi?

Has anyone attempted, or better yet, successfully dumped the BIOS (or whatever code is was previously dumped) in a form usable for disassembly and analysis of the code?


If we manage to dump the same portion of the code that Martin (developer of the nocash projects) dumped previously, we may be able to analyze the code and determine how the routine (for headers or whatever is used to determine whether or not the cart is legit) works.


That's just my 2 cents. Hope it helps, and good luck on getting this all sorted out!

-gamefreakfatty
 

Normmatt

Former AKAIO Programmer
Member
Joined
Dec 14, 2004
Messages
2,161
Trophies
1
Age
33
Website
normmatt.com
XP
2,199
Country
New Zealand
cracker said:
I was just reading through other threads on the progress of DSi hacking and something occurred to me. I don't have a DSi so I can't do any of the testing myself. :/ I am thinking that it might be possible to add code to boot a flash cart by injecting code into the decrypted download play ROM and then re-encrypting it and sending it from a DS/Lite. Has anyone attempted this?

We can't re-encrypt them, we don't know Nintendo's private key.
 

cracker

Nyah!
OP
Member
Joined
Aug 24, 2005
Messages
3,619
Trophies
1
XP
2,213
Country
United States
Normmatt said:
cracker said:
I was just reading through other threads on the progress of DSi hacking and something occurred to me. I don't have a DSi so I can't do any of the testing myself. :/ I am thinking that it might be possible to add code to boot a flash cart by injecting code into the decrypted download play ROM and then re-encrypting it and sending it from a DS/Lite. Has anyone attempted this?

We can't re-encrypt them, we don't know Nintendo's private key.

Hmmm yeah that would prove a problem. :/ (I don't know much about encryption/decryption... Does it show?
ph34r.gif
)
 

cracker

Nyah!
OP
Member
Joined
Aug 24, 2005
Messages
3,619
Trophies
1
XP
2,213
Country
United States
That would require a corrupted FAT table on the SD card or something. As for the flash cart it would probably need its code overwritten and rendered useless besides being able to boot the DS into a different mode.
blink.gif
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • AncientBoi @ AncientBoi:
    eeewww
  • K3Nv2 @ K3Nv2:
    I thought it was the toilet
  • AncientBoi @ AncientBoi:
    okies. Time to go watch YT paranormal ghost things. L8er my luvs :D
    +1
  • K3Nv2 @ K3Nv2:
    I got a massive clue
  • BakerMan @ BakerMan:
    this mf def ain't watching ghost shit, he boutta beat his meat fr
    +1
  • K3Nv2 @ K3Nv2:
    Nah he's about to be the ghost in your bedroom
    +1
  • Xdqwerty @ Xdqwerty:
    @K3Nv2, and leave ectoplasm all over the place
  • BakerMan @ BakerMan:

    this is him being described
    +2
  • Xdqwerty @ Xdqwerty:
    Sigh
  • Xdqwerty @ Xdqwerty:
    Yawn
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, I dislike the kind of drm where you have to play single player games online all the time bc of some verification bs
    +1
  • SylverReZ @ SylverReZ:
    @Xdqwerty, Don't use games that have Easy Anti-Cheat as its been exploited many times.
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, my PC can't run most AAA games so i wont
    +1
  • Xdqwerty @ Xdqwerty:
    Most of the modern AAA games
    +1
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, I also heard one of the Prince of Persia games was so unfinished that it required the "24/7 online" drm so a puzzle could be done and the game could be finished. And that when the Ubisoft servers were closed the (cracked) game was impossible to finish or something like that
  • SylverReZ @ SylverReZ:
    @Xdqwerty, That's extra scummy. Ubisoft nowadays ship out incomplete games like Skull and Bones which was being worked on for nearly a decade now.
    +1
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, i think they have been doing that since late 2000s
    +1
  • Xdqwerty @ Xdqwerty:
    Either that or their old games were unfinished aswell but we can't notice it
  • Psionic Roshambo @ Psionic Roshambo:
    I like that games can be fixed after the fact, hate that it's being abused via beta tests... And DLC... I was a 7800 owner back in the day and loved Impossible Mission, turns out I couldn't beat it because it was actually impossible lol
  • Psionic Roshambo @ Psionic Roshambo:
    I never knew about it at the time but a fixed version was available but you had to mail in your broken copy lol
  • Psionic Roshambo @ Psionic Roshambo:
    So that version is semi rare
  • Xdqwerty @ Xdqwerty:
    @Psionic Roshambo, I have a rom of the ds version of impossible mission
    Xdqwerty @ Xdqwerty: @Psionic Roshambo, I have a rom of the ds version of impossible mission