NTRBoot Released!

It's here!
ntrboot_checklist_2.png

Info


@Normmatt has created a way to run B9S .firm files from bootrom via a DSi Flashcard and a magnet! This works on every 3DS on any firmware version.

For installation without a PC, user @TheCyberQuake has created a pack which will automatically install B9S and copy over essential starter homebrew from the flashcard's SD to the 3DS's. This will mainly be used for PC-less B9S installations. If you have a PC with you, use 3ds.guide. Read more here: https://gbatemp.net/threads/481141/

How does this work?


This works because of a flaw in the bootrom. Before the bootrom boots the NAND, it checks to see if Start+Select+X is held down, and if the shell is closed. If these requirements are met, it will boot an NDS cartridge from the bootrom. This give that cartridge bootrom access. You might be wondering how you'd hold down buttons while the shell is closed, and why you need a magnet. If you put a magnet in a specific spot on the 3DS, it will go into sleep mode. Using this, you can boot the NDS cartridge with the buttons held down while in sleep mode! Using a reflashable flashcard, you can boot B9SInstaller using the flashcard, and easily install it on your 3DS.
The 2DS doesn't need a magnet since a switch puts it to sleep instead of a magnet.

What does this mean?


  1. Any 3DS model on any firmware can be hacked with minimal effort
  2. You can unbrick any 3DS model from any type of brick.
    - Remember, you don't need a NAND backup for this. Just do a CTRTransfer.
    - This does not apply to MCU bricks.
  3. Even consoles with fried NAND, or even the NAND chip physically removed, can use this
This is incredibly impressive stuff, and will most likely be released soon! edit: now!

FAQ


Q: Can Nintendo patch this?
A: Nope! Not without a new hardware revision.

Q: My flashcard is blocked by my firmware! Can I still use this?
A: Yes! The flashcard blacklist is not enabled on the bootrom.

Q: Why can't this work with my flashcard?
A: The installation requires you to flash NTRBoot to the flashcard's nand. Most DS flashcards, such as the original R4, have a ROM, which is not flashable.

Q: Can I install NTRBoot on my flashcard without another 3DS system?
A: If you can run NDS roms on your 3DS with it, then yes. If it's blocked on your 3DS version, then you'll need another 3DS system to use it.

Q: Will my 3DS flashcard work?
A: No, only the NDSi flashcards listed above.

Q: Will any other flash cards work?
A: Only the ones listed in the OP. However keep in mind that flashcards such as the DSTT, Supercard DS2 and R4 SDHC Dualcore are planned to be supported in the future.

Q: I tried to do this with my cartridge and it didn't work?
A: It doesn't work with regular DS cards.

Q: Can I unbrick from a ____ brick?
A: Considering the card has access to the bootrom, yes! This can unbrick any brick (except MCU), unless you've taken a knife to the motherboard.

Q: Can I install B9S on the latest firmware with this?
A: Again, since the card has access to the bootrom, you can do this easily! Just plug in your flashcard, boot up using the magnet and button combination, and install.

Q: Does this work on the New Nintendo 2DS XL?
A: Yes!

:arrow: Release
:arrow: Guide
:arrow: Free NTRBoot Flashing
:arrow: Free B9S Installations

Here is SciresM's post about this

Please see SciresM's presentation on bootromhax.
 
Last edited by Deleted member 381889,
roll-safe-hungover.jpg



I copied the two nds files from my card to my PC, but I wonder if we can write to the flashcart. I'll putting a different ROM on the cart when I get home.

Also, loading the non trimmed ROM in DeSmuMe does nothing, but loading the .trim.nds file shows me the R4 "Loading...." screen. Weird.
Lol you did the exact same thing as I did but apparently the .trim and the normal .nds file (Spongebob AP) are just a white screen on DeSmuME and if I load them on the flashcard itself with my 3DS too..^^
 
Oh wow, glad I ordered an AK2i when I did. They went up $10 overnight on nds-card. I knew that would happen.
nobody knows if that is even the card yet. I was going to buy one today because even if isn't, I can still use the card to play ROMs
 
nobody knows if that is even the card yet. I was going to buy one today because even if isn't, I can still use the card to play ROMs
That's my thinking. I've been wanting an NTR flashcart for a good while now. This exploit is just an added bonus. Also, it's probably a safe bet that the AK2i will be one of the supported cartridges due to how easy it is to reflash.
 
  • Like
Reactions: Deleted User
That's my thinking. I've been wanting an NTR flashcart for a good while now. This exploit is just an added bonus. Also, it's probably a safe bet that the AK2i will be one of the supported cartridges due to how easy it is to reflash.
One in the same I suppose. As soon as I get my last paycheck from my last job, I'll be grabbing one.
 
Crap i sold my AK2i years ago ... :(
Not that i need this ever hopefully but its freaking amazing!
Thats the only one that can re-write itself?
 
wow, I looked at other sites and they also went up in price by 50%. ALL TODAY. crap, news are getting around too quickly
 
Crap i sold my AK2i years ago ... :(
Not that i need this ever hopefully but its freaking amazing!
Thats the only one that can re-write itself?
Well, considering @Normmatt is the dev, and he wrote CFW for the AK2i, and the AK2i is reflashable, I will probably pick one up.
 
That's my thinking. I've been wanting an NTR flashcart for a good while now. This exploit is just an added bonus. Also, it's probably a safe bet that the AK2i will be one of the supported cartridges due to how easy it is to reflash.
How to reflash it please reveal the secret xD :D
 
Few pages back, we were discussing how some flashcards are reflashable, you can find it there. But without the proper image, it is of no use.
 
Shit!
Now Nintendo ninjas will ban our magnets, they're gonna come home at midnight and steal all my fridge magnets because of your stupid little obsession of being a pirate.
Or, ya know, homebrew, not just piracy

I thought this gave us more access to BootROM things, because doesn't Sighax happen after bootROM executes, but before the lockout? This happens inside of BootROM, correct?
 
Reflashing flashcards isn't exactly anything new. You used to have to do it to update them and that didn't involve godmode or anything, though i could be wrong.
I imagine (not being a dev myself or anything alike) that the issue is that every flashcard type needs its own special flasher. So that's why it'll take some time.
 
Reflashing flashcards isn't exactly anything new. You used to have to do it to update them and that didn't involve godmode or anything, though i could be wrong.
I imagine (not being a dev myself or anything alike) that the issue is that every flashcard type needs its own special flasher. So that's why it'll take some time.
I imagine that not all of them can be reflashed, as some may have been released and then had new revisions come out without the flashing just to make more money. Like Sky3ds. iirc, R4i uses files on the SD card, which may mean it uses those and never changes its header. But I could be wrong
 
Man, I'm not going to read through those 20 pages, I just wanted to say, if the DSTwo could be supported, depending on the progress nds bootstrap makes, it'd be awesome if my dstwo could have its swan song as an unbricker for perhaps the greatest handheld that has been (ignoring switch that is a hybrid).


Sent from my iPhone using Tapatalk
 

Site & Scene News

Popular threads in this forum