Here are the ram dumpers for gateway and msetforboss mset exploit.Can someone help me making a memory dump of a 4.x 3DS from MSET (Range 0x01000000 - 0x03ffffff)? When I back from my work I have very few time left to finish spiderpasta, and this will make me save some time.
Whit this dump I have to check the ROP gadget used in firmlauchax and compare them with the equivalent from the spider memory dump (that I already have).
Thaks in advance
If it is useful i have 4.4 3ds xl is good for your dump request?
Mind if I ask how IS the spider port coming along? Slowly coming together?Can someone help me making a memory dump of a 4.x 3DS from MSET (Range 0x01000000 - 0x03ffffff)? When I back from my work I have very few time left to finish spiderpasta, and this will make me save some time.
Whit this dump I have to check the ROP gadget used in firmlauchax and compare them with the equivalent from the spider memory dump (that I already have).
Thaks in advance
Mind if I ask how IS the spider port coming along? Slowly coming together?
Sounds good, wish I was able to code but I've only just started to learn how recently so good luck with it and thanks for working on it, aswell as your replyI have to fix four function calling in the second stage (it's the same second stage of firmlaunchax):
- GSPGPU_FlushDataCache
- GX_SetTextureCopy
- nn__gxlow__CTR__CmdReqQueueTx__TryEnqueue
- svcControlMemory
I have the gadgets addresses for spider but there are little differences on the used register to fix, I'm going to check them with the provided dumps.
After this, if it works for 4.x, I'll ask some 9.x Spider dumps to do the same for this FW.
Keep finger crossed but don'b bee too excited, the release could be this week or not. There could be some memory buffer location to move to work on different FW.
.definelabel memcpy, 0x001065F4 ; old 0x001BFA60
.definelabel GSPGPU_FlushDataCache, 0x00191500 ; old 0x001346C4
.definelabel GX_SetTextureCopy, 0x0011DD48 ; old 0x0013C284
.definelabel nn__gxlow__CTR__CmdReqQueueTx__TryEnqueue, 0x0012BF04 ; old 0x001AC924
.definelabel svcControlMemory, 0x001431A0 ; old 0x001C3E24
So did you literally just find EXACTLY what you needed? XDDone!!!!!
Code:.definelabel memcpy, 0x001065F4 ; old 0x001BFA60 .definelabel GSPGPU_FlushDataCache, 0x00191500 ; old 0x001346C4 .definelabel GX_SetTextureCopy, 0x0011DD48 ; old 0x0013C284 .definelabel nn__gxlow__CTR__CmdReqQueueTx__TryEnqueue, 0x0012BF04 ; old 0x001AC924 .definelabel svcControlMemory, 0x001431A0 ; old 0x001C3E24
Now I have to wait to back home, and I can't be there till midnight. It will be a long wait!
--------------------- MERGED ---------------------------
Thank you.
Stop posting dumps please. They should all be the same (I'll check this just for curiosity ).
Impressive, as always.Done!!!!!
Code:.definelabel memcpy, 0x001065F4 ; old 0x001BFA60 .definelabel GSPGPU_FlushDataCache, 0x00191500 ; old 0x001346C4 .definelabel GX_SetTextureCopy, 0x0011DD48 ; old 0x0013C284 .definelabel nn__gxlow__CTR__CmdReqQueueTx__TryEnqueue, 0x0012BF04 ; old 0x001AC924 .definelabel svcControlMemory, 0x001431A0 ; old 0x001C3E24
Now I have to wait to back home, and I can't be there till midnight. It will be a long wait!
--------------------- MERGED ---------------------------
Thank you.
Stop posting dumps please. They should all be the same (I'll check this just for curiosity ).