nds-constrain't - Taking advantage of a flaw in the Nintendo DS(i) SSL library

Discussion in 'NDS - Emulation and Homebrew' started by shutterbug2000, Oct 29, 2018.

  1. Song of storms

    Song of storms GBAtemp Advanced Fan

    Member
    5
    Jul 18, 2018
    Antarctica
    You beautiful, beautiful man.
     
  2. Yerkz

    Yerkz Advanced Member

    Newcomer
    2
    Nov 17, 2016
    Brazil
    Couldn't get MKDS to work here, but Pokémon Diamond and White worked flawlessly
    EDIT: Ok, maybe Pokémon is not working flawlessly, now I got connection error. It might be my R4 I think.
     
    Last edited by Yerkz, Nov 7, 2018
  3. ReshibanGaming

    ReshibanGaming Newbie

    Newcomer
    1
    May 13, 2018
    France
    Nice, MKDS can relife
     
  4. CaptainSodaPop

    CaptainSodaPop Mario Kart 7 Semi Pro

    Member
    5
    Aug 10, 2012
    Croatia
    Lovely! <3
     
  5. smf

    smf GBAtemp Psycho!

    Member
    9
    Feb 23, 2009
    Right, but if you're using it a lot then change the key.

    MAC spoofing is easy, so I'd rather someone didn't feel the need to fuck up my connection by spoofing my MAC address if they were trying to hack the network.
     
  6. eyeliner

    eyeliner Has an itch needing to be scratched.

    Member
    6
    Feb 17, 2006
    Portugal
    I read a lot here about security. Considering you all are domestic users, the chance of someone going happily sniffing your network to do harm is low. Now, they just might want some free wifi, so I wouldn't worry too much. Just get a cheap router and use it just for this. Unplug when not in use and that's it.

    This is an amazing feat. Worthy of a prize in the bounty, even not being Switch related. This reawakens an old system, and that demans respect. Too bad I don't have my 3DS anymore. Now, I regret it.
     
    banjo2 and Memoir like this.
  7. RHOPKINS13

    RHOPKINS13 Geek

    Member
    7
    Jan 31, 2009
    United States
    This is awesome - but aren't the Wii's certificate and key copyright by Nintendo?

    I think these should be pulled from the repo, just to be on the safe side.
     
  8. The Real Jdbye

    The Real Jdbye Always Remember 30/07/08

    Member
    18
    GBAtemp Patron
    The Real Jdbye is a Patron of GBAtemp and is helping us stay independent!

    Our Patreon
    Mar 17, 2010
    Norway
    Alola
    They might do it anyway just to be sure. Saves them having to test just to find out they need to spoof it after all.
    When someone spoofed my MAC address to get back in to my WEP network after I noticed they got in the first time and enabled MAC spoofing, it didn't seem to affect my own connectivity, I just noticed my wifi speeds getting slow again. I didn't want to switch to WPA since I still used DS wifi but he left me with no choice. Really I just wish someone would patch DS wifi to support WPA. It should be possible on a DSi/3DS.
     
    JSMastah likes this.
  9. JunTheBobOmbAce

    JunTheBobOmbAce Double Trouble

    Member
    2
    Sep 9, 2015
    United States
    Prime Hunter games anyone?
     
    Tarmfot, Zense and banjo2 like this.
  10. 9gennaio

    9gennaio Member

    Newcomer
    1
    Oct 5, 2017
    Italy
    OMG ! This is amazing! I never tought i could use the wfc, because it was too late in 2015. THANK YOU SO MUCH!!!
    But for now there are no people...
     
  11. FAST6191

    FAST6191 Techromancer

    pip Reporter
    22
    Nov 21, 2005
    United Kingdom
    Copyright? Not if various previous cases are anything to go by. Most notable would probably be the HDDVD keys. It is generally held that there is no creative work done in making a key and as copyright is kind of all about protecting creative works.
    Some kind of intellectual property? Maybe.

    Other considerations.
    The service is abandoned (the DMCA exemptions specifically list abandoned games - https://torrentfreak.com/copyright-office-adds-dmca-exemption-for-abandoned-online-games-181026/ ), not operated and thus no customer is likely to be troubled by it. Nintendo would then have to prove loss and that would be hard to do (a 2 generations old console with a free service... yeah).

    Beyond that I am not aware of any cases here, and the original savedswifi service (bypassing is also a part of laws, not just having the keys) has been going on untroubled for years now.

    Anyway I am curious why people are saying game changer and all that -- the previous methods were trivial to launch (flash carts, cheat devices, cheat programs on flash carts, all common and easy to come by) and while it had a bit of a following it did not generate some kind of world changing event. I fail to see how this is going to do much more than that.

    Edit
    We have had things since late 2014
    https://gbatemp.net/threads/save-nintendo-wifi-a-project-to-save-online-servers-for-ds-and-wii-games.362717/
     
    Last edited by FAST6191, Nov 7, 2018
  12. 9gennaio

    9gennaio Member

    Newcomer
    1
    Oct 5, 2017
    Italy
    I tried it but it don't worked
     
  13. 3EGaming

    3EGaming Member

    Newcomer
    1
    Jul 26, 2018
    United Kingdom
    I will be trying MKDS soon!
     
  14. MarcusRaven

    MarcusRaven HBC Theme Maker

    Member
    5
    Feb 5, 2010
    United States
    N. Carolina
    Weird question: Is this set up in such a way that it would allow the access of WiFi Connection DLC so I could properly save said DLCs again? (Professor Layton or Picross DLC puzzles come to mind.)
     
  15. 9gennaio

    9gennaio Member

    Newcomer
    1
    Oct 5, 2017
    Italy
    I tried Mario Kart and it worked、but Picross didn't work it gives you an error
     
  16. Plstic

    Plstic Guru Meditation Error

    Member
    7
    Apr 21, 2010
    United States
    Milwaukee WI
    DLC works.
     
  17. RHOPKINS13

    RHOPKINS13 Geek

    Member
    7
    Jan 31, 2009
    United States
    Various keys have not been allowed to be shared here in the past. One GitHub repo was linked here and a mod removed it because a script there had a reference to "that title key site." After it was removed from the script they allowed the link here again, but it's funny because if you look in the Git commit history you can still see the URL.

    A key is a key. They may be used for different things, but I would think that if sharing title keys and other keys like the ones that originally enabled piracy on the Switch are banned, I don't see why this would be much different. As it says in the repo, it's easy enough to rip the key from any existing Wii.

    As far as proving a loss? I suppose Nintendo could argue that it's allowing people to continue gaming online with their old devices and hold off on buying a Switch and getting a Nintendo Online subscription.
     
  18. FAST6191

    FAST6191 Techromancer

    pip Reporter
    22
    Nov 21, 2005
    United Kingdom
    GBAtemp's rules are not necessarily the same as those of the world at large (leaving aside the jurisdictional nightmare) and it would also depend what you can do with it. A key is not a key either -- you are generally held to be free to post your own console's save game signing keys. Title keys on the other hand are in many ways links to download games. This would be a rather more grey area, and not quite the same as some other keys we have seen which handle decryption.

    They could argue that but I doubt it would fly as there have been any number of previous events where a company would have been delighted to argue that (think all the things making replacement parts the original company no longer cares to do) and nobody has.
     
  19. smf

    smf GBAtemp Psycho!

    Member
    9
    Feb 23, 2009
    The exemption is pointless as you have to obtain the original server code & it's only allows in libraries for research, not for playing games on the net.

    https://arstechnica.com/gaming/2018...egally-restore-abandoned-online-game-servers/
     
  20. FAST6191

    FAST6191 Techromancer

    pip Reporter
    22
    Nov 21, 2005
    United Kingdom
    Hmm. I was thinking the earlier game discussions but that would potentially be troubling.
    On the other hand this is more utterly basic "authentication" and matchmaking rather than an MMO style server generating/serving real content.
     
Loading...