NTRBoot Released!

It's here!
ntrboot_checklist_2.png

Info


@Normmatt has created a way to run B9S .firm files from bootrom via a DSi Flashcard and a magnet! This works on every 3DS on any firmware version.

For installation without a PC, user @TheCyberQuake has created a pack which will automatically install B9S and copy over essential starter homebrew from the flashcard's SD to the 3DS's. This will mainly be used for PC-less B9S installations. If you have a PC with you, use 3ds.guide. Read more here: https://gbatemp.net/threads/481141/

How does this work?


This works because of a flaw in the bootrom. Before the bootrom boots the NAND, it checks to see if Start+Select+X is held down, and if the shell is closed. If these requirements are met, it will boot an NDS cartridge from the bootrom. This give that cartridge bootrom access. You might be wondering how you'd hold down buttons while the shell is closed, and why you need a magnet. If you put a magnet in a specific spot on the 3DS, it will go into sleep mode. Using this, you can boot the NDS cartridge with the buttons held down while in sleep mode! Using a reflashable flashcard, you can boot B9SInstaller using the flashcard, and easily install it on your 3DS.
The 2DS doesn't need a magnet since a switch puts it to sleep instead of a magnet.

What does this mean?


  1. Any 3DS model on any firmware can be hacked with minimal effort
  2. You can unbrick any 3DS model from any type of brick.
    - Remember, you don't need a NAND backup for this. Just do a CTRTransfer.
    - This does not apply to MCU bricks.
  3. Even consoles with fried NAND, or even the NAND chip physically removed, can use this
This is incredibly impressive stuff, and will most likely be released soon! edit: now!

FAQ


Q: Can Nintendo patch this?
A: Nope! Not without a new hardware revision.

Q: My flashcard is blocked by my firmware! Can I still use this?
A: Yes! The flashcard blacklist is not enabled on the bootrom.

Q: Why can't this work with my flashcard?
A: The installation requires you to flash NTRBoot to the flashcard's nand. Most DS flashcards, such as the original R4, have a ROM, which is not flashable.

Q: Can I install NTRBoot on my flashcard without another 3DS system?
A: If you can run NDS roms on your 3DS with it, then yes. If it's blocked on your 3DS version, then you'll need another 3DS system to use it.

Q: Will my 3DS flashcard work?
A: No, only the NDSi flashcards listed above.

Q: Will any other flash cards work?
A: Only the ones listed in the OP. However keep in mind that flashcards such as the DSTT, Supercard DS2 and R4 SDHC Dualcore are planned to be supported in the future.

Q: I tried to do this with my cartridge and it didn't work?
A: It doesn't work with regular DS cards.

Q: Can I unbrick from a ____ brick?
A: Considering the card has access to the bootrom, yes! This can unbrick any brick (except MCU), unless you've taken a knife to the motherboard.

Q: Can I install B9S on the latest firmware with this?
A: Again, since the card has access to the bootrom, you can do this easily! Just plug in your flashcard, boot up using the magnet and button combination, and install.

Q: Does this work on the New Nintendo 2DS XL?
A: Yes!

:arrow: Release
:arrow: Guide
:arrow: Free NTRBoot Flashing
:arrow: Free B9S Installations

Here is SciresM's post about this

Please see SciresM's presentation on bootromhax.
 
Last edited by Deleted member 381889,

Gamer4647

Well-Known Member
Member
Joined
Jul 16, 2016
Messages
242
Trophies
0
Age
24
XP
455
Country
I have a super card dstwo plus you guys think i can use this card
You'd have to reflash the card to use it for this, but most likely yes. It depends on whether you can change the header of the card. Right now though, the exploit is still in development and the supported flashcards are yet to be confirmed, so you can't currently run the exploit.
 

Ryccardo

Penguin accelerator
Member
Joined
Feb 13, 2015
Messages
7,696
Trophies
1
Age
28
Location
Imola
XP
6,927
Country
Italy
(I have no idea what SPI booting would be used for, and its priority is *after* NAND, so it isn't very useful in cases where FIRM is valid but parts of CTRNAND are broken.)
Good old paperclip shorting one nand data line to the ground...

(Probably it's simpler to plug in a special wifi card for OS preinstallation, rather than a DS card and holding 3+1 buttons)
 

Gamer4647

Well-Known Member
Member
Joined
Jul 16, 2016
Messages
242
Trophies
0
Age
24
XP
455
Country
if you already have a hacked 3ds dishware hax is going to be cheaper then magnet hax unless your stupid and you have bricked a 3ds.

DsiWare would be cheaper, but it would involve a bunch of downgrading, installing a9lh, then upgrading. Downgrading is risky, especially when you go down to 2.1 on the New 3DS.
MagnetHax (this) would probably cost more since you have to have a flashcard and magnet, but it directly installs the CFW or whatever straight on.

lol, dishware
 

SoslanVanWieren

Banned!
Banned
Joined
Feb 6, 2017
Messages
1,809
Trophies
0
XP
857
Country
Australia
DsiWare would be cheaper, but it would involve a bunch of downgrading, installing a9lh, then upgrading. Downgrading is risky, especially when you go down to 2.1 on the New 3DS.
MagnetHax (this) would probably cost more since you have to have a flashcard and magnet, but it directly installs the CFW or whatever straight on.

lol, dishware
you can install bs9 straight from dsiware hax no downgrading needed
 

Gamer4647

Well-Known Member
Member
Joined
Jul 16, 2016
Messages
242
Trophies
0
Age
24
XP
455
Country
you can install bs9 straight from dsiware hax no downgrading needed
Well idk where I've been then. I haven't hacked a 3DS yet, I just look at all the new things coming out.
MagnetHax will still be the way going forward though, since unlike DSiWare it'll be around a long time.
 

Gamer4647

Well-Known Member
Member
Joined
Jul 16, 2016
Messages
242
Trophies
0
Age
24
XP
455
Country
Yeah, but you can't unbrick systems like that. 3ds devs have literal stacks of bricked systems.
Yeah, MagnetHax unbricks systems, so at some point you'd probably need it. Unbricks almost anything but hardware issues and N3DS 2.1. It even works on a corrupt NAND, or probably even without any NAND in.
 
Last edited by Gamer4647,

N7Kopper

Lest we forget... what Nazi stood for.
Member
Joined
Aug 24, 2014
Messages
1,030
Trophies
0
Age
30
XP
1,343
Country
United Kingdom
You'd have to reflash the card to use it for this, but most likely yes. It depends on whether you can change the header of the card. Right now though, the exploit is still in development and the supported flashcards are yet to be confirmed, so you can't currently run the exploit.
You also need to be able to modify the flashcard's Blowfish key. Most flashcards have them hardcoded, the ones that don't will most likely work.
it's an exploit because we can fuck with the part it loads from. Tell me it isn't an exploit when we are loading unintended software via the backdoor tendo left in.
Pedantically, the only exploit is sighax, which exploits the vulnerability in the bootrom's signature checking routines. If you had Nintendo's private keys, there would be no exploit at all.
 
  • Like
Reactions: gamesquest1

failzers

Well-Known Member
Member
Joined
Aug 3, 2015
Messages
135
Trophies
0
Age
33
XP
283
Country
United States
Yeah, MagnetHax unbricks systems, so at some point you'd probably need it. Unbricks almost anything but hardware issues and N3DS 2.1. It even works on a corrupt NAND, or probably even without any NAND in.
I was saying Magnethax unbricks. I mean't you can't just install b9s to a bricked one currently
 
  • Like
Reactions: Gamer4647

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    BigOnYa @ BigOnYa: I like that Natasha Hindstridge actress (Godmother) She was the woman in the movie Species.