Homebrew SigHax Updates and Discussion Thread

adrifcastr

Well-Known Member
OP
Member
Joined
Sep 12, 2016
Messages
2,038
Trophies
0
XP
1,947
Country
Germany
Alright thanks but there is no release (e.g. for the installer) yet, since I cannot see anything under the section "Releases"?

(I do not want to be annoying, I am just a noob I guess and I do not want to miss anything before it is taken down or something.)
run make and compile it. thats also what I did it's a simple arm9 payload which can be executed
 
  • Like
Reactions: hurrz
D

Deleted User

Guest
Wrong. You should think before posting.
We also need some SigHaxed firms or even the bruteforced signature. So please stop being the new bakawun. Thanks.

Thanks for your answer about the installers, though. I didn't realize that the brute forcer actually exists (nobody seems to talk about it, ever), but it's good to know that there will actually be an extra step between the bootrom dump and sighax.

Not to sound like an asshole, but did you even read the post literally right above yours? Or did you just want to be right? I mean like, come on, nobody's perfect, man.

EDIT BECAUSE I DON'T WANNA DOUBLE POST:

Alright thanks but there is no release (e.g. for the installer) yet, since I cannot see anything under the section "Releases"?

(I do not want to be annoying, I am just a noob I guess and I do not want to miss anything before it is taken down or something.)

Woah there friendo, you shouldn't be messing around with those yet. We don't even have sighax, so those installers might mess up your 3DS (because as far as I know, we haven't tested it without sighax yet). The other tools probably won't work either, since they piggyback off of sighax too. Besides, those current versions might not work, since we don't have working sighax implementations yet.
 
Last edited by ,

adrifcastr

Well-Known Member
OP
Member
Joined
Sep 12, 2016
Messages
2,038
Trophies
0
XP
1,947
Country
Germany
Not to sound like an asshole, but did you even read the post literally right above yours? Or did you just want to be right? I mean like, come on, nobody's perfect, man.

EDIT BECAUSE I DON'T WANNA DOUBLE POST:



Woah there friendo, you shouldn't be messing around with those yet. We don't even have sighax, so those installers might mess up your 3DS (because as far as I know, we haven't tested it without sighax yet). The other tools probably won't work either, since they piggyback off of sighax too. Besides, those current versions might not work, since we don't have working sighax implementations yet.
You are officially the new @bakawun
 
  • Like
Reactions: proflayton123

hurrz

Well-Known Member
Member
Joined
Apr 17, 2017
Messages
217
Trophies
0
XP
609
Country
Gambia, The
Woah there friendo, you shouldn't be messing around with those yet. We don't even have sighax, so those installers might mess up your 3DS (because as far as I know, we haven't tested it without sighax yet). The other tools probably won't work either, since they piggyback off of sighax too. Besides, those current versions might not work, since we don't have working sighax implementations yet.

Thanks for informing me about being careful! I did not plan to use these files (yet) but having them before links are taken down or so because somewhen, you might be able to turn your console into a helicopter after everything has been finished and released. I just do not want to miss the chance to fly with my future helicopter only because a certain company will make the links / files unavailable (just me being a bit paranoid :D).
 

zero318

Member
Newcomer
Joined
Oct 28, 2015
Messages
15
Trophies
0
XP
93
Country
United States
I haven't been keeping up with the scene for awhile, so I'm not up to date on all this. Reading the beginning of this thread, it sounds like there isn't anything available to install yet. But some of these recent posts are talking about installers and such. It doesn't sound like sighax is ready yet, but has there been progress since the first post was last edited?
 

proflayton123

The Temp Loaf'
Member
Joined
Jan 11, 2016
Messages
6,032
Trophies
1
Age
24
Location
日本
Website
www.facebook.com
XP
3,236
Country
Japan
I haven't been keeping up with the scene for awhile, so I'm not up to date on all this. Reading the beginning of this thread, it sounds like there isn't anything available to install yet. But some of these recent posts are talking about installers and such. It doesn't sound like sighax is ready yet, but has there been progress since the first post was last edited?

an installer for once it has been released, has been made so thats good work beforehand~~
 

Selver

13,5,1,14,9,14,7,12,5,19,19
Member
Joined
Dec 22, 2015
Messages
219
Trophies
0
XP
426
Country
Here's the million dollar question, though: How will a dumper tool actually run properly without essentially getting a bunch of greg clones floating around?

I figured the software Hedge was referring to would be similar to that of dumping the OTP.bin. That's how I took Hedge's statement at least.

Seems a bit of misunderstanding exists relating to SigHax...

SigHax will still require the ability to write to the system's NAND. This can be via HardMod, or via kernel exploit. It might(*) also be available from some user-mode programs.

Having the bootrom will answer the question: What magic size is required, so that instead of pointing to its own last few bytes, it instead points to the memory location the bootrom is using to temporarily store the hash of the current boot sector?

This magic size is used by the bruteforce engine to find "random" data that decrypts into a structure having the magic offset. This "random" data will be SigHax, and as a result, the bootrom will believe that any firmware with this header is properly signed. This occurs before any use of the OTP.

This means that SigHax can be used to bootstrap ANY 3DS device, again because setting it up does not depend on the OTP... it's a single, global failure of the 3DS security system.
 
Last edited by Selver,

Deleted member 350372

Well-Known Member
Member
Joined
Jun 15, 2014
Messages
316
Trophies
0
Age
29
Location
boot.firm, New Jersey
XP
388
Country
United States
Wait. But Hedgeberg is on it since something like 6 months. So it means that we'll have to go through these 8-9 months of work if we wanna hack our 3DSes in the future?
Do you know by any chance when exactly or approximately hedge has started this whole process? I'm just curious, not because I want to not wait for sighax and complain about it. :P

BTW: If anyone here exactly knows, that would be okay as well.
 

The Catboy

GBAtemp Official Catboy™: Savior of the broken
Member
Joined
Sep 13, 2009
Messages
28,071
Trophies
4
Location
Making a non-binary fuss
XP
39,773
Country
Antarctica
Wait. But Hedgeberg is on it since something like 6 months. So it means that we'll have to go through these 8-9 months of work if we wanna hack our 3DSes in the future?
Actually it most likely won't take that long after the actual bootROM is dumped. She is actually going to be posting the entire process once it's done. Right now it's just working to re-create the process used by Derrek in order to actually document the process.
This is actually how long it takes for these kinds of exploits. We just happen to never see it happen and only end up with the end results.
 

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
Seems a bit of misunderstanding exists relating to SigHax...

SigHax will still require the ability to write to the system's NAND. This can be via HardMod, or via kernel exploit. It might(*) also be available from some user-mode programs.

Having the bootrom will answer the question: What magic size is required, so that instead of pointing to its own last few bytes, it instead points to the memory location the bootrom is using to temporarily store the hash of the current boot sector?

This magic size is used by the bruteforce engine to find "random" data that decrypts into a structure having the magic offset. This "random" data will be SigHax, and as a result, the bootrom will believe that any firmware with this header is properly signed. This occurs before any use of the OTP.

This means that SigHax can be used to bootstrap ANY 3DS device, again because setting it up does not depend on the OTP... it's a single, global failure of the 3DS security system.
I wasn't saying that installing SigHax was dependant on the OTP, I know that it isn't. Hegde said once they dump the bootrom a software will be made and released and not the actual bootrom(they made it clear they weren't releasing the actual bootrom, they said a good friend would make a software to dump the bootrom and that's what will be released). I was just using the process of dumping the the OTP as an example to the what the software will do that Hegde was referring to.

Now, I don't know if that software is intended for other devs to dump the bootrom or for users to dump the bootrom themselves, that wasn't mentioned. You can go back and watch Thursday night's Twitch to hear what Hedge said though.
 

adrifcastr

Well-Known Member
OP
Member
Joined
Sep 12, 2016
Messages
2,038
Trophies
0
XP
1,947
Country
Germany
I wasn't saying that installing SigHax was dependant on the OTP, I know that it isn't. Hegde said once they dump the bootrom a software will be made and released and not the actual bootrom(they made it clear they weren't releasing the actual bootrom, they said a good friend would make a software to dump the bootrom and that's what will be released). I was just using the process of dumping the the OTP as an example to the what the software will do that Hegde was referring to.

Now, I don't know if that software is intended for other devs to dump the bootrom or for users to dump the bootrom themselves, that wasn't mentioned. You can go back and watch Thursday night's Twitch to hear what Hedge said though.
there is no way in dumping the bootrom just with software you would have tp recreate hedge's process
 
  • Like
Reactions: Selver

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
there is no way in dumping the bootrom just with software you would have tp recreate hedge's process
I may have misinterpreted what they meant, my apologies for that but Hedge says that they won't release the bootrom it's self but there will be "software developed to finish SigHax and make it work". Honest mistake.

What I'm referring to can be heard for yourselves if you watch the Thursday night Twitch stream and listen to 2:52:55-2:53:30
 
  • Like
Reactions: hurrz
D

Deleted User

Guest
I may have misinterpreted what they meant, my apologies for that but Hedge says that they won't release the bootrom it's self but there will be "software developed to finish SigHax and make it work". Honest mistake.

What I'm referring to can be heard for yourselves if you watch the Thursday night Twitch stream and listen to 2:52:55-2:53:30

The software developed to finish sighax sounds like it'll probably be the bruteforcer, because (according to my current information) that's the only other piece of the puzzle that's not necessarily solved quite yet. This makes sense when you line it up with other things, because she said that the software is gonna be made by a friend of hers (which myriachan is), and to "finish sighax and make it work", we need to force out the signature using the bruteforcer.
 

BL4Z3D247

GBAtemp Stoner
Member
Joined
Oct 22, 2008
Messages
1,942
Trophies
0
Age
39
Location
I'm so high, I don't even know!
XP
1,229
Country
United States
The software developed to finish sighax sounds like it'll probably be the bruteforcer, because (according to my current information) that's the only other piece of the puzzle that's not necessarily solved quite yet. This makes sense when you line it up with other things, because she said that the software is gonna be made by a friend of hers (which myriachan is), and to "finish sighax and make it work", we need to force out the signature using the bruteforcer.
Right, that makes sense. I took "finish SigHax and make it work" as the bootrom being dumped because that still needs to happen before anything else. Like I said, it was an honest mistake. I was going from memory on something I watched days before, late at night, after a long day at work.
 
  • Like
Reactions: adrifcastr

pixelmasher

Gaming Gamer
Member
Joined
Dec 12, 2016
Messages
1,668
Trophies
0
Location
Near N2DS XL
XP
971
Country
United States
The software developed to finish sighax sounds like it'll probably be the bruteforcer, because (according to my current information) that's the only other piece of the puzzle that's not necessarily solved quite yet. This makes sense when you line it up with other things, because she said that the software is gonna be made by a friend of hers (which myriachan is), and to "finish sighax and make it work", we need to force out the signature using the bruteforcer.
A program for brute-forcing the signature for the "sighax" exploit of a certain device's boot ROM.
NOTE: This program isn't known to actually find valid signatures!
 

zoogie

playing around in the end of life
Developer
Joined
Nov 30, 2014
Messages
8,560
Trophies
2
XP
15,000
Country
Micronesia, Federated States of
Please don't let the 3rd one win, it has nothing to do with getting the bootrom dumped! Teachberg can come after bootrom :P

 
  • Like
Reactions: Billy Acuña
D

Deleted User

Guest
The reason it says that is because we don't have the bootrom , meaning we can't properly test the bruteforcer yet, and since we don't have the bootrom, we also cant test it on other code, because the bootrom tells us what hash and length to try and find the sig with.

Or at least, thats the info that's circulating.
 
Last edited by ,

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    K3Nv2 @ K3Nv2: https://youtu.be/LM0Y6RWvcr8?si=RjMLNrx1TEX301g1 Already has cfw lol +1