Hacking Zelda Buffer overflow

  • Thread starter Thread starter xvishon
  • Start date Start date
  • Views Views 18,279
  • Replies Replies 72
great post explaining about heap and stack overflows , i was about to bring that up but was beaten to it by someone more knowledgeable,
so was the wii exploit a stack smash or was it a heap overflow that was called a stack smash
i forget if it was or if i am thinking of the ps3 jailbreak ,which is either a heap or stack overflow, i think they are both heap overflows that are misnomers being called stack smash attacks
i remember reading about this but it was awhile ago
i know the ps3 jailbreak dongles work by emulating a usb hub that emulates devices being plugged in and out really fast on different ports in a specific sequence to overflow the heap i think
 
ok nice one now make hacks
really great found Ron457x2
this can be the way in for us
biggrin.gif
 
urisma said:
I doubt this would cause a buffer overflow. Just an integer overflow, which might crash the 3DS, but isn't exploitable since you can't insert your own code since a buffer isn't being overflowed. Even if this did cause a buffer overflow, it would be terribly difficult to even figure out if it's exploitable. To be exploitable then you'd have to overwrite the executable code or redirect IP to somewhere that your own code is. The problem with redirecting the IP to data that is actually code is that you might run into trouble with the noexecute feature, which is present in ARM11. Not sure if the 3DS uses it or not, but it'd be another obstacle to figure out.

This. Buffer overflows are generally in string inputs, and may be exploitable, but I suppose it's worth a shot getting all those hearts.

'Course, I could be wrong, looks like integer overflows can be used to corrupt data, but what purpose does that serve to
anyone hacking the 3DS? Hahaha, but please correct me if what I've said is just nonsense.
 
MSaki said:
iv checked the oot 3ds no interesting strings in the save as of yet so...ill keep checking...

night

blink.gif
What. Wouldn't you need to check the actual ROM itself to check if there's anything exploitable, or somehow do a test?
 
RDilus said:
ok this is what i am thinking
i dont own the game yet i will get it tomorrow
if this is really a bug
then it might be a hole to hack it
but it also might brick you're system when you try to hack it or anything else
to make it long story short
you dont know what can happen yet
if it turns out to be a kind of way to hack the 3ds
pls call this hax like this

Zelda heart attack

good name right
tongue.gif
HEY GAIZE IMMA COME IN THIS THREAD, MAKE BASELESS COMMENTS AND TRY TO TAKE CREDIT FOR SHIT

Get the fuck out.
 
chao1212 said:
RDilus said:
ok this is what i am thinking
i dont own the game yet i will get it tomorrow
if this is really a bug
then it might be a hole to hack it
but it also might brick you're system when you try to hack it or anything else
to make it long story short
you dont know what can happen yet
if it turns out to be a kind of way to hack the 3ds
pls call this hax like this

Zelda heart attack

good name right
tongue.gif
HEY GAIZE IMMA COME IN THIS THREAD, MAKE BASELESS COMMENTS AND TRY TO TAKE CREDIT FOR SHIT

Get the fuck out.
Overkill?
 
Ron457x2 said:
chao1212 said:
RDilus said:
ok this is what i am thinking
i dont own the game yet i will get it tomorrow
if this is really a bug
then it might be a hole to hack it
but it also might brick you're system when you try to hack it or anything else
to make it long story short
you dont know what can happen yet
if it turns out to be a kind of way to hack the 3ds
pls call this hax like this

Zelda heart attack

good name right
tongue.gif
HEY GAIZE IMMA COME IN THIS THREAD, MAKE BASELESS COMMENTS AND TRY TO TAKE CREDIT FOR SHIT

Get the fuck out.
Overkill?
Look at his other posts.
 
Ron457x2 said:
If your looking for a possible buffer overflow, here ya go
rolleyes.gif

[youtube]http://www.youtube.com/watch?v=0NvEHxcdWNk[/youtube]

[youtube]6oiAfDJENCA[/youtube]
 
Ron457x2 said:
If your looking for a possible buffer overflow, here ya go
rolleyes.gif

[youtube]http://www.youtube.com/watch?v=0NvEHxcdWNk[/youtube]


chao1212 said:
QUOTE(RDilus @ Jun 30 2011, 08:48 AM) ok this is what i am thinking
i dont own the game yet i will get it tomorrow
if this is really a bug
then it might be a hole to hack it
but it also might brick you're system when you try to hack it or anything else
to make it long story short
you dont know what can happen yet
if it turns out to be a kind of way to hack the 3ds
pls call this hax like this

Zelda heart attack

good name right
tongue.gif
HEY GAIZE IMMA COME IN THIS THREAD, MAKE BASELESS COMMENTS AND TRY TO TAKE CREDIT FOR SHIT

Get the fuck out.

dude stfu i am not try to make credits at all
so shut ya holes right before you waste time on something what is not true
i wonder if you even know what credits are
 
Ron457x2 said:
If your looking for a possible buffer overflow, here ya go
rolleyes.gif

[youtube]http://www.youtube.com/watch?v=0NvEHxcdWNk[/youtube]

Freeze, yes, buffer overflow, probably not. As far as I can see, there was no input to any values like hearts or a string, of course, as usual, what I say
could be wrong.
unsure.gif
 
Kaleadoskope said:
MSaki said:
iv checked the oot 3ds no interesting strings in the save as of yet so...ill keep checking...

night

blink.gif
What. Wouldn't you need to check the actual ROM itself to check if there's anything exploitable, or somehow do a test?


if we had the rom there really wouldn't be a point we just need the save.

look at twilight princess exploit, did they dump the disk then exploit it
tongue.gif




dont really see how you would understand you kinda push the games buttons until it gets angry and crashes. lol XD



just took a look at the save and i think i found a way to crash it. going to mess with it until i get a crash even if i have to rip open the cart and wire it
tongue.gif
 
MSaki said:
Kaleadoskope said:
MSaki said:
iv checked the oot 3ds no interesting strings in the save as of yet so...ill keep checking...

night

blink.gif
What. Wouldn't you need to check the actual ROM itself to check if there's anything exploitable, or somehow do a test?


if we had the rom there really wouldn't be a point we just need the save.

look at twilight princess exploit, did they dump the disk then exploit it
tongue.gif




dont really see how you would understand you kinda push the games buttons until it gets angry and crashes. lol XD



just took a look at the save and i think i found a way to crash it. going to mess with it until i get a crash even if i have to rip open the cart and wire it
tongue.gif
Going to hack it the team twiizers way, or should I say, team ThriiD way. lol
Just don't break your cart.
 
machomuu said:
Ron457x2 said:
pachura said:
n00bz think game crashing or freezing is buffer overflow. Pathetic.
Thats what I thought.
unsure.gif
Wait...You were serious!? I thought you were joking when you put that video up.
But aren't most exploits game crashes(or so they seem)? Yes I know it will run on unassigned coding,
but I thought they were the same thing or similar, breaking the game is one, implementing a code is another.
 
Ron457x2 said:
machomuu said:
Ron457x2 said:
pachura said:
n00bz think game crashing or freezing is buffer overflow. Pathetic.
Thats what I thought.
unsure.gif
Wait...You were serious!? I thought you were joking when you put that video up.
But aren't most exploits game crashes(or so they seem)? Yes I know it will run on unassigned coding,
but I thought they were the same thing or similar, breaking the game is one, implementing a code is another.

+1 for this one he is right
most exploits are game crashes
smile.gif
 
RDilus said:
Ron457x2 said:
machomuu said:
Ron457x2 said:
pachura said:
n00bz think game crashing or freezing is buffer overflow. Pathetic.
Thats what I thought.
unsure.gif
Wait...You were serious!? I thought you were joking when you put that video up.
But aren't most exploits game crashes(or so they seem)? Yes I know it will run on unassigned coding,
but I thought they were the same thing or similar, breaking the game is one, implementing a code is another.

+1 for this one he is right
most exploits are game crashes
smile.gif
No...no they're not. The reason crash exploits are notable is because they are the first place hackers look for exploits, probably because they're rather easy than other exploits by comparison.
 
i remember in twilight princess, th ehack for will was the overflow with naming Epona (right?). Its been a while, but cant you name it in here too? jw if anyone tried that one out yet.

(guessing someone thought that one through a while ago, but cant hurt to ask)
 

Site & Scene News

Popular threads in this forum