Hacking Information regarding 3DS Homebrew and the May 15 update

Status
Not open for further replies.

ALeCTor

New Member
OP
Newbie
Joined
May 16, 2012
Messages
1
Trophies
0
XP
1
Country
Serbia, Republic of
Hi. First off, I'd like to say that I will never be involved in any business involving 3DS hacking. I do this for fun. I enjoy reversing and finding exploits on consoles, although, this is the first exploit I have found that proves useful.

To those who have extracted the data from the patch (decrypting is the hard part, but some people already know how to do this) - you may notice a function that will override signature checks by calling it with a key stored in the decrypted package. I guess Nintendo has a whitelist for certain keys? I haven't yet looked into the signature checking function yet but could not find the decrypted key anywhere in the 3DS RAM, so it's obviously somewhat encrypted. The decrypted key is 8 bytes long.

This allows us to sign our own packages using the same key and override function. I already have a 3D "Hello world" application running! There is no good reason I can think of for Nintendo doing this, I believe that they used it for eShop debugging and forgot to remove it. A simple mistake. But be quick to look because I am sure they will remove it in a new firmware sooner or later.

Sorry for any bad English :)
 

indask8

New Member Forever
Member
Joined
Apr 19, 2007
Messages
987
Trophies
0
Age
36
Location
Look at the Flag...
XP
340
Country
France
Wut?

If it's real does it still works with the yesterday update (it's maybe why they released such a small update that fast, they discovered their mistake) ?

Video?
 

deathking

Well-Known Member
Member
Joined
Mar 15, 2009
Messages
647
Trophies
0
Website
toxsic.com
XP
235
Country
United States
3ds hacking
ohitson.jpg
 

lostdwarf

Well-Known Member
Member
Joined
Nov 2, 2008
Messages
1,071
Trophies
0
Location
ENGLAND
Website
www.rockstarleeds.com
XP
261
Country
I think he thinks he knows what he is doing...
The "hello world" app you have running.... is running in DSi mode. This is not 3DS hack.

You also say the keys are encrypted and/or you still do not have them. So you still can't hack anything.
"could not find the decrypted key anywhere in the 3DS RAM, so it's obviously somewhat encrypted. The decrypted key is 8 bytes long"



"This allows us to sign our own packages using the same key and override function. I already have a 3D "Hello world" application running! There is no good reason I can think of for Nintendo doing this, I believe that they used it for eShop debugging and forgot to remove it."

How does this allow you to do anything?

First post too.
 

NathanDuma

Well-Known Member
Member
Joined
Mar 15, 2012
Messages
114
Trophies
0
XP
57
Can you post proof?

Also I added an "a" in hex editor in the app file, and the nintendo 3ds screen just kept going on and on, so I went to the home menu and it said error and told me to turn off the 3ds.
 

chavosaur

Chavo
Member
Joined
Mar 11, 2012
Messages
4,796
Trophies
1
Age
28
Location
Huntersville, NC
XP
8,154
Country
United States
Hi. First off, I'd like to say that I will never be involved in any business involving 3DS hacking. I do this for fun. I enjoy reversing and finding exploits on consoles, although, this is the first exploit I have found that proves useful.

To those who have extracted the data from the patch (decrypting is the hard part, but some people already know how to do this) - you may notice a function that will override signature checks by calling it with a key stored in the decrypted package. I guess Nintendo has a whitelist for certain keys? I haven't yet looked into the signature checking function yet but could not find the decrypted key anywhere in the 3DS RAM, so it's obviously somewhat encrypted. The decrypted key is 8 bytes long.

This allows us to sign our own packages using the same key and override function. I already have a 3D "Hello world" application running! There is no good reason I can think of for Nintendo doing this, I believe that they used it for eShop debugging and forgot to remove it. A simple mistake. But be quick to look because I am sure they will remove it in a new firmware sooner or later.

Sorry for any bad English :)

Tell me when your 3DS says "Im ready to play 3ds roms"
 

mysticwaterfall

Streamforce Supreme Commander
Member
Joined
Aug 11, 2008
Messages
1,874
Trophies
0
Location
Right behind you
XP
668
Country
United States
Besides the obvious BS here, I would like to point out that is no possible way the key size is only 8 bytes (64 bits). That would make the 3DS ridiculously insecure and open to simple bruteforcing.
 
  • Like
Reactions: 3 people
Status
Not open for further replies.

You may also like...

General chit-chat
Help Users
  • No one is chatting at the moment.
  • M4x1mumReZ @ M4x1mumReZ:
    *obtains the belt of punishment and dominance*
  • ZeroT21 @ ZeroT21:
    while i simply make stinkbombs with pingpong balls
  • ZeroT21 @ ZeroT21:
    cops got called while suspecting arson ,c'mon

    :rofl:
  • K3N1 @ K3N1:
    I stole their bag of Halloween candy last year and the parents said stop being a little bitch and go get it
    +1
  • ZeroT21 @ ZeroT21:
    is it still trick and treat? or steal and cheat?
  • K3N1 @ K3N1:
    I think it's like trick or get kidnapped these days
  • M4x1mumReZ @ M4x1mumReZ:
    Stealing is treating
  • ZeroT21 @ ZeroT21:
    honestly, i find lots of kids nowadays like devils that need to be locked up forever
    +1
  • M4x1mumReZ @ M4x1mumReZ:
    Blame the kind of music that's affecting them
  • K3N1 @ K3N1:
    Issue is we got beat as kids now days it's prison if you flick their head
  • ZeroT21 @ ZeroT21:
    and here i thought they were lacking brain supplements
  • ZeroT21 @ ZeroT21:
    no sheet
  • ZeroT21 @ ZeroT21:
    seeing brats simply calling the cops on the parents just cus they dont wanna do homework or take a friggin bath tsk
  • K3N1 @ K3N1:
    You can't blame technology or what they do it's how they're raised
  • ZeroT21 @ ZeroT21:
    having ''smart tech'' dont always make someone smarter
  • ZeroT21 @ ZeroT21:
    you can blame alexa for teaching weird shit
  • K3N1 @ K3N1:
    Kids are smart or they would get away with what they do
  • ZeroT21 @ ZeroT21:
    we're all taught in school to cheat
  • ZeroT21 @ ZeroT21:
    cheat while not getting caught is not a crime
  • K3N1 @ K3N1:
    If a kid doesn't have the right sponge to learn from then that's what they imitate
  • ZeroT21 @ ZeroT21:
    sounds like my old man who had like 10 flings he brought home and demanding i call them mum the following day
  • ZeroT21 @ ZeroT21:
    is that the current free game?
  • K3N1 @ K3N1:
    Ye
    K3N1 @ K3N1: Ye