Hacking Post your ideas regarding how to hack the 3DS, here

Rydian

Resident Furvert™
Member
Joined
Feb 4, 2010
Messages
27,880
Trophies
0
Age
36
Location
Cave Entrance, Watching Cyan Write Letters
Website
rydian.net
XP
9,111
Country
United States
sorry to bother you, but there is something i feel strange.
i had found 2 files has exactly 0x00004200 length long, while both of them is a part of the 3ds update file.
So..Rydian i beg you take a look at that >>Can it be any clue? .. If not please let me apologize for my impatient.
I don't know much about the 3DS's security or how it manages files specifically.
 
  • Like
Reactions: Syphurith

Syphurith

Beginner
Member
Joined
Mar 8, 2013
Messages
641
Trophies
0
Location
Xi'an, Shaanxi Province
XP
364
Country
Switzerland
Question: Does 3ds's Browser support gziped image? Can this be a portal to overflow it?
Tip: If a browser can support gziped image, it will appear with notices in its header. Gziped image can be rather small sometimes, even the original image is enough big to flow the memory.. When recieved an image from server, the browser will try to unzip the image first then display it to the screen. So it is possible to overflow your PC browser to make your PC out of service.
So you can use a image of size 1024px*(1024*128)px all blank (that means 0xffffff, white) then segment of data to flow into in HEX.
Bitmap type will be your friend. Someone can even use .bmp file to script 'Hello World' in C. Oh..I like TIFF exploit..
But i'm also wondering where will the left data go when its previous part overflew the memory.
 

Janthran

Solarian
Member
Joined
Sep 17, 2011
Messages
3,777
Trophies
0
Location
The Pacific Northwet
XP
1,146
Country
United States
Question: Does 3ds's Browser support gziped image? Can this be a portal to overflow it?
Tip: If a browser can support gziped image, it will appear with notices in its header. Gziped image can be rather small sometimes, even the original image is enough big to flow the memory.. When recieved an image from server, the browser will try to unzip the image first then display it to the screen. So it is possible to overflow your PC browser to make your PC out of service.
So you can use a image of size 1024px*(1024*128)px all blank (that means 0xffffff, white) then segment of data to flow into in HEX.
Bitmap type will be your friend. Someone can even use .bmp file to script 'Hello World' in C. Oh..I like TIFF exploit..
But i'm also wondering where will the left data go when its previous part overflew the memory.
Pretty sure the 3DS browser would just say "Cannot load this image"
 
  • Like
Reactions: Syphurith

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
I was thinking of downloading an app from the store playing it a little
then putting the Sd card in my computer editing the files for that game by using a hex editor or even just opening them up in notepad then taking out random chunks of the text then play the app to see if it crashes and what happens and see if the game crashing unexpectedly like this might cause in certain games could lead to an exploit :3
 

pyromaniac123

ส็็็็็็็็็็็็็็็็็็็(ಠ益ಠส็็็็็็็็็็็็็็็็็็็
Member
Joined
Sep 24, 2011
Messages
2,006
Trophies
2
XP
1,770
Country
I was thinking of downloading an app from the store playing it a little
then putting the Sd card in my computer editing the files for that game by using a hex editor or even just opening them up in notepad then taking out random chunks of the text then play the app to see if it crashes and what happens and see if the game crashing unexpectedly like this might cause in certain games could lead to an exploit :3

If it were that easy it would of been hacked ages ago.
 

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
If it were that easy it would of been hacked ages ago.
Of course that wouldn't be all of it but i don't think it has been suggested here and it could actually work
it could really depend on the game where it crashes if it even fully crashes or just starts glitching weirdly
and of course because the files are encrypted we wouldn't know exactly what to edit on another 3Ds
but if no one has tried it it could be something worth trying it who knows what it could lead to
 

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
People have been trying to crash the 3Ds various ways to get an exploit and i think this might be the easiest way to crash it hundreds of different ways
 

Rydian

Resident Furvert™
Member
Joined
Feb 4, 2010
Messages
27,880
Trophies
0
Age
36
Location
Cave Entrance, Watching Cyan Write Letters
Website
rydian.net
XP
9,111
Country
United States
I was thinking of downloading an app from the store playing it a little
then putting the Sd card in my computer editing the files for that game by using a hex editor or even just opening them up in notepad then taking out random chunks of the text then play the app to see if it crashes and what happens and see if the game crashing unexpectedly like this might cause in certain games could lead to an exploit :3
If you edit the files, the signatures will become invalid and the 3DS will not run whatever it is anymore.
 

Rat.2

Well-Known Member
Newcomer
Joined
Sep 23, 2010
Messages
96
Trophies
1
XP
233
Country
If you edit the files, the signatures will become invalid and the 3DS will not run whatever it is anymore.
I was hoping that wasn't the case
I wonder if they are any files they don't do a complete check on
I will check it out myself later
 

Syphurith

Beginner
Member
Joined
Mar 8, 2013
Messages
641
Trophies
0
Location
Xi'an, Shaanxi Province
XP
364
Country
Switzerland
Oh yeah. The CDN Scanner does help me collecting the TMD files.
But it is not pausable.. Can anyone familiar with win32 take a look at it? WHERE I GOT IT.
I want to have pause & continue feather. The job can not be archived in a day..
i think pause it before sleep then continue it tomorrow will be a good idea..
Remember change the CDNScan.bat as the attachment below otherwise it will just delete the files.

Em... Does this thing really helps? I mean if that file really useful to a developer to be analyzed?
I'm wondering about that "Root-CA00000003CP0000000b"..That string seems always appear..
Elisherer it broke the structure you defined to analyse those TMDs!

Also attach some that generated.. named as 0000-00.zip.. Lots of TMD yeah.
 

Attachments

  • CDNScan.zip
    1.1 KB · Views: 89
  • 0000-00.zip
    797.2 KB · Views: 108

KittyPaws

New Member
Newbie
Joined
Mar 22, 2013
Messages
1
Trophies
0
Age
35
XP
51
Country
Hi, I haven't really read through this thread, but I was wondering. Since the nintendo eshop downloads demos and games onto the SD card, why can't we just take one of those downloaded demos and repackage a rom into it? Or patch a rom so it that the eshop thinks it was downloaded from the eshop?
 

medoli900

Open the Benzenes;Gate
Member
Joined
Jan 7, 2013
Messages
1,116
Trophies
0
Location
Lavender Town
XP
1,326
Country
Antarctica
Now i really want that signature leaked...
Hey,big N! You want $. Leak it. PS3 code is on the loose and they aren't ruined. Better,the 3DS sell would go upward with all the hack n00bie that will brick their 3DS!
/Is hopeless...
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    AncientBoi @ AncientBoi: Ahhhh ok