Homebrew My Experimentation with the DS Profile Exploit

Bond697

Dies, died, will die.
Member
Joined
Jun 7, 2009
Messages
350
Trophies
0
Age
38
Location
CT
XP
454
Country
United States
phDacnGh.jpg

CRCs are working.

congrats on accomplishing nothing using someone else's code.
 
  • Like
Reactions: Hozu, tyons and NEP

Bond697

Dies, died, will die.
Member
Joined
Jun 7, 2009
Messages
350
Trophies
0
Age
38
Location
CT
XP
454
Country
United States
plutooo and lightenup were the first, who managed it. They did it completely without any doc about the NVRAM ROP. They said "we figured it out by staring at the NVRAM payload.". To be honest, we had a doc about all gadgets. The only problem left, was to find a way to dump memory to reverse the Launcher.dat ROP (the doc only described, what the NVRAM ROP-gadgets do).

So just to be clear, the 2 people you mentioned managed to figure out the gateway exploit by doing nothing but look at the NVRAM ROP chain? They had no RAM dump or anything else? And you managed to do the same thing separately(eventually culminating in you being able to dump RAM without having a RAM dump to start with), but with a document (possibly provided by the first 2 guys) that generally outlined what the ROP chain pieces did?

Is that all correct? I believe it, I just wanted to make sure I have it 100% right.
 

profi200

Banned!
Banned
Joined
Sep 3, 2011
Messages
330
Trophies
0
XP
282
Country
Gambia, The
Is that all correct? I believe it, I just wanted to make sure I have it 100% right.

That's correct, but the document was not from them. Someone uploaded it to help another team. I better say not who, because i don't want to piss on others vehicle :tpi:

Anyway, a part of this document was pasted month's ago on #3dsdev and someone pasted it again 2 days ago.
 

Bond697

Dies, died, will die.
Member
Joined
Jun 7, 2009
Messages
350
Trophies
0
Age
38
Location
CT
XP
454
Country
United States
That's correct, but the document was not from them. Someone uploaded it to help another team. I better say not who, because i don't want to piss on others vehicle :tpi:

Anyway, a part of this document was pasted month's ago on #3dsdev and someone pasted it again 2 days ago.


Interesting, thank you. I'll have to see if I can track that down somewhere. I've actually managed to make a little progress on how the NVRAM ROP chain works, myself. I'd love to see if my observations match up with it.
 

Jackalus

Member
Newcomer
Joined
Dec 18, 2013
Messages
16
Trophies
0
Age
37
XP
126
Country
Finland
Good jooooob, finally someone working on it publicly. I would be also interested in working on this. What asm does 3DS use ? arm asm?
 

Jackalus

Member
Newcomer
Joined
Dec 18, 2013
Messages
16
Trophies
0
Age
37
XP
126
Country
Finland
Ah haven't done that in a while. I mostly reverse stuff on Windows and Linux with x64 asm and x86 asm.
Any irc channel or such where we could talk. I got flashcart and 4.5 3DS at home but no Gateway.
 

profi200

Banned!
Banned
Joined
Sep 3, 2011
Messages
330
Trophies
0
XP
282
Country
Gambia, The
Jackalus
You need to do it yourself. Go with waffle or do your own stuff ;) I don't work on that stuff alone, even if it looks like.
(And to be honest, why do you think, if we talk privately, i give you all my stuff? I only share stuff with peoples, which got code execution working.)
 

profi200

Banned!
Banned
Joined
Sep 3, 2011
Messages
330
Trophies
0
XP
282
Country
Gambia, The
If you do your own stuff or do it with others in a team, no problem, but don't expect others just share their stuff, only because someone came and asked for. I know the potential of piracy of this exploit. It is very easy to run ROMs from the SD card with this. I don't want this to happen, otherwise i had already released all my stuff ;)

My 2 cents.
 

Cyan

GBATemp's lurking knight
Former Staff
Joined
Oct 27, 2002
Messages
23,746
Trophies
4
Age
45
Location
Engine room, learning
XP
15,563
Country
France
That's enough offtopic.
Jackalus, stop replying to him and do what you want. Hypocrite or scientific mind, it won't change anything.

If this thread is done talking about the exploit and how it works, I'll close it.
If you want to argument about piracy and morals, go to IRC.
 
General chit-chat
Help Users
  • No one is chatting at the moment.
  • SylverReZ @ SylverReZ:
    Hope they made lots of spaget
  • K3N1 @ K3N1:
    Chill dog
  • SylverReZ @ SylverReZ:
    Chilli dog
  • Skelletonike @ Skelletonike:
    Damn, I'm loving the new zelda.
  • xtremegamer @ xtremegamer:
    loving the new zelda, i started a game, it was so fucking good, so i
    am waiting on my friend to get home so we can start a new one together
  • Skelletonike @ Skelletonike:
    I just dislike that they don't let me choose the voices before the game starts. Happened with botw as well, had to change to japanese and restart.
  • K3N1 @ K3N1:
    But the important question is can you choose gender
  • Skelletonike @ Skelletonike:
    Same way you can choose Gerald's gender.
  • Skelletonike @ Skelletonike:
    *Geralt, damn autocorrect.
  • Psionic Roshambo @ Psionic Roshambo:
    But can he be trans? Lol
  • K3N1 @ K3N1:
    Zelda transforms into link
  • Psionic Roshambo @ Psionic Roshambo:
    Link I'm not the princess your looking for.... *Pulls a crying game*
  • K3N1 @ K3N1:
    *skirt up* it's exactly what I always wanted
  • Skelletonike @ Skelletonike:
    Just scanned all my zelda amiibos, took a while but didn't get anything that cool, did get the lon lon ranch hylian fabrics though.
  • Skelletonike @ Skelletonike:
    It was pretty funny when I scanned wolf link and got a shit load of meat.
  • K3N1 @ K3N1:
    @Skelletonike, btw I ran that custom for mgs4 on the deck I'm amazed it got that far in game
  • K3N1 @ K3N1:
    Plug in*
  • K3N1 @ K3N1:
    Your favorite activity
  • BentlyMods @ BentlyMods:
    My fav actvity is:

    mario-dancing.gif
  • Psionic Roshambo @ Psionic Roshambo:
    Do the Mario lol
  • K3N1 @ K3N1:
    🍑
  • K3N1 @ K3N1:
    Whoever developed Bramble was smoking that good shit fucking gnomes
    K3N1 @ K3N1: Whoever developed Bramble was smoking that good shit fucking gnomes