Jump to content

Disable ASLR on iOS 8.3/8.4


39 posts in this topic

Recommended Posts

Updated (edited)

After spending literally days trying to solve the stupid ASLR/Signing problem I finally figured out my own solution.

 

This tutorial is for those of you that have issues removing ASLR on iOS 8.3 and 8.4. If for some reason your apps still crash after using the tools and signing, then following the steps below is the answer.

 

Things you need:

Hex Editor
Cycript from Cydia(This is not really necessary, but its an easy way to verify if ASLR is actually disabled)
A Brain

 

Disabling ASLR:
 

  1. Crack the app (At the time of this post, rasticrac is the only cracker that works properly on 8.3/8.4)
     
  2. Put the binary on your desktop and open it with a hex editor. (There are multiple ways to view and edit the hex of a binary. So do it however you like. This is just for reference)
     
  3. You need to go to the following offset depending on if your binary is FAT or non-FAT.(FAT means your binary has more than one arch. non-FAT is a thinned binary or a binary only containing one arch.)
    FAT armv7 = 0x4018
    non-FAT armv7 or arm64 = 0x18
    http://i.imgur.com/PFSxpBe.png
     
  4. You are going to edit the 21 highlighted in the image above to 01. (The entire hex highlighted is the same for both armv7 and arm64. If this is not what you see then you are at the wrong offset.)
     
  5. Save and that is it. Put the modded binary back in your game folder and run it. Just make sure permissions are set. You do not need to sign when you follow this method.

Verifying ASLR is Disabled:
If you would like to make sure that ASLR is disabled before you start debugging and finding out it is not, then do the following in terminal.

cycript -p PROCESS
x = dlsym(RTLD_DEFAULT,"_dyld_get_image_vmaddr_slide")
get_aslr_slide = @[member='encoder88'](uint(int))(x)
get_aslr_slide(0)

Process = Binaryname

CNibkaP.png

If the result of this is 0 then ASLR is disabled. Otherwise it is enabled.

Do not copy and paste all of it at once in the commandline. Run the first line. Then copy and paste the rest.

 

NOTES:
Q: What about FAT arm64 offset?
A:You may have noticed that I do not specify the offset for fat arm64. This is because I am unsure if this is dynamic. As in I don't know if it changes based on binary size. I would assume so but need to test. For now if you want to debug arm64, then lipo the binary and go to the non fat offset. Then stick it into your game. If I figure it out, I will update this tutorial.

 

Credits:
Alcatraz
HackJack: Provided cycript code to verify ASLR status.

Updated by Alcatraz
  • Like 1
Posted

If you read the first cpl of sentences I state that if attempting to sign still causes problems like it was for me then this tut was for you. So no that tut did not work.

Posted (edited)

Hidden Content

React or reply to this topic to see the hidden content & download link. 👀

Every single ASLR removal tool sets it to 01. Never caused any issues. I fail to see the point of your post. I also do not understand why you bothered to use hide content.

Updated by Alcatraz
  • Like 1
Posted

Thanks!! i was waiting for a solution  ^_^

You are actually why I posted it here. I saw you had the same problem as me. Wasn't sure if you were on the other sites.

Posted

You are actually why I posted it here. I saw you had the same problem as me. Wasn't sure if you were on the other sites.

game still crashing =S tried to change the 21 to 01 and nothing. Tried 00 and nothing. Also some games have 20 instead of 21 but anyways is still crashing.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Good Coffee, Great Coffee v1.6.1 +8 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Good Coffee, Great Coffee By TAPBLAZE, LLC
      Bundle ID: com.tapblaze.coffeebusiness
      iTunes Store Link: https://apps.apple.com/us/app/good-coffee-great-coffee/id1603584945?uo=4
       


      🤩 Hack Features

      - Unlimited Cash
      - Unlimited Gems
      - Unlimited Energy
      - Unlimited Brew Points
      - Unlimited Daily Rewards
      - All Decor Unlocked
      - All Equipment Unlocked
      - All Equipment Upgrades Unlocked
      - All Shop Upgrades Unlocked
      - Perfect Drinks
      • 117 replies
    • Good Coffee, Great Coffee v1.6.1 +8 Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Good Coffee, Great Coffee By TAPBLAZE, LLC
      Bundle ID: com.tapblaze.coffeebusiness
      iTunes Store Link: https://apps.apple.com/us/app/good-coffee-great-coffee/id1603584945?uo=4

       
       

      🤩 Hack Features

      - Unlimited Cash
      - Unlimited Gems
      - Unlimited Energy
      - Unlimited Brew Points
      - Unlimited Daily Rewards
      - All Decor Unlocked
      - All Equipment Unlocked
      - All Equipment Upgrades Unlocked
      - All Shop Upgrades Unlocked
      - Perfect Drinks
        • Like
      • 85 replies
    • Cozy Town: Build Explore Game v2.2.0 +1++ Jailed Cheat [ Unlimited Currencies ]
      Modded/Hacked App: Cozy Town: Build Explore Game By Sparkling Society Games B.V.
      Bundle ID: com.sparklingsocietysims.cozytownbuildexploregame
      iTunes Store Link: https://apps.apple.com/us/app/cozy-town-build-explore-game/id6657973290?uo=4


      Hack Features:
      - Unlimited Currencies -> Spend some.


      Jailbreak required hack(s): [Mod Menu Hack] Cozy Town: Build Explore Game v1.3.3 +1++ Cheat [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 3 replies
    • Goblins Wood: Tycoon Idle Sim v2.53.1 +1++ Jailed Cheat [ Unlimited Currencies ]
      Modded/Hacked App: Goblins Wood: Tycoon Idle Sim By ProGamesLab LTD
      Bundle ID: idle.goblins.wood.tycoon
      iTunes Store Link: https://apps.apple.com/us/app/goblins-wood-tycoon-idle-sim/id6446766326?uo=4


      Hack Features:
      - Unlimited Currencies -> Will increase instead of decrease.


      Jailbreak required hack(s): [Mod Menu Hack] Goblins Wood: Tycoon Idle Sim v2.42.0 +1++ Cheat [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 48 replies
    • Goblins Wood: Tycoon Idle Sim v2.53.1 +1++ Cheat [ Unlimited Currencies ]
      Modded/Hacked App: Goblins Wood: Tycoon Idle Sim By ProGamesLab LTD
      Bundle ID: idle.goblins.wood.tycoon
      iTunes Store Link: https://apps.apple.com/us/app/goblins-wood-tycoon-idle-sim/id6446766326?uo=4


      Hack Features:
      - Unlimited Currencies -> Will increase instead of decrease.


      Non-Jailbroken & No Jailbreak required hack(s): [IPA Mod Menu] Goblins Wood: Tycoon Idle Sim v2.42.0 +1++ Jailed Cheat [ Unlimited Currencies ] - Free Non-Jailbroken IPA Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 59 replies
    • Cozy Town: Build Explore Game v2.2.0 +1++ Cheat [ Unlimited Currencies ]
      Modded/Hacked App: Cozy Town: Build Explore Game By Sparkling Society Games B.V.
      Bundle ID: com.sparklingsocietysims.cozytownbuildexploregame
      iTunes Store Link: https://apps.apple.com/us/app/cozy-town-build-explore-game/id6657973290?uo=4


      Hack Features:
      - Unlimited Currencies -> Spend some.


      Non-Jailbroken & No Jailbreak required hack(s): [IPA Mod Menu] Cozy Town: Build Explore Game v1.3.3 +1++ Jailed Cheat [ Unlimited Currencies ] - Free Non-Jailbroken IPA Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 3 replies
    • Royal Kingdom v22272 +4 Jailed Cheats [ Coins + More ]
      Modded/Hacked App: Royal Kingdom By Dream Games
      Bundle ID: com.dreamgames.royalkingdom
      iTunes Store Link: https://apps.apple.com/ph/app/royal-kingdom/id1606549505
       

      Hack Features:
      - Freeze Coins
      - Freeze Lives
      - Freeze Boosters
      - Freeze Moves


      Jailbreak required hack(s): [Mod Menu Hack] Royal Kingdom v3987 +4 Cheats [ Unlimited Coins ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 156 replies
    • Royal Kingdom v22272 +4 Cheats [ Coins + More ]
      Modded/Hacked App: Royal Kingdom By Dream Games
      Bundle ID: com.dreamgames.royalkingdom
      iTunes Store Link: https://apps.apple.com/ph/app/royal-kingdom/id1606549505
       

      Hack Features:
      - Freeze Coins
      - Freeze Lives
      - Freeze Boosters
      - Freeze Moves


      Non-Jailbroken & No Jailbreak required hack(s): [Non-Jailbroken Hack] Royal Kingdom v3987 +4 Jailed Cheats [ Unlimited Coins ] - Free Non-Jailbroken IPA Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 113 replies
    • Ghost Invasion: Idle Hunter v1.7.1 +5 Jailed Cheats [ Damage & Defence ]
      Modded/Hacked App: Ghost Invasion: Idle Hunter By Miniclip SA
      Bundle ID: com.miniclip.ghostinvasion
      App Store Link: https://apps.apple.com/us/app/ghost-invasion-idle-hunter/id6502696892?uo=4

       


      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      - Freeze Currencies
      - XP Multiplier
      • 12 replies
    • Ghost Invasion: Idle Hunter v1.7.1 +5 Cheats [ Damage & Defence ]
      Modded/Hacked App: Ghost Invasion: Idle Hunter By Miniclip SA
      Bundle ID: com.miniclip.ghostinvasion
      App Store Link: https://apps.apple.com/us/app/ghost-invasion-idle-hunter/id6502696892?uo=4

       


      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      - Freeze Currencies
      - XP Multiplier
      • 13 replies
    • Monster Hunter Puzzles v2.20.01 +7 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Monster Hunter Puzzles By CAPCOM Co., Ltd
      Bundle ID: jp.co.capcom.mhpuzzle
      iTunes Store Link: https://apps.apple.com/us/app/monster-hunter-puzzles/id1591864714?uo=4


      Mod Requirements:
      - Non-Jailbroken/Jailed or Jailbroken iPhone/iPad/iPod Touch.
      - Sideloadly / Cydia Impactor or alternatives.
      - A Computer Running Windows/macOS/Linux with iTunes installed.


      Hack Features:
      - Unlimited Acorns -> Earn or spend some.
      - Unlimited Gems -> Earn or spend some.
      - Unlimited Tickets -> Earn or spend some.
      - Unlimited Lives -> Will not decrease.
      - Unlimited Boosters -> Will not decrease.
      - Unlimited Moves -> Will not decrease.
      - Auto Win


      Jailbreak required hack(s): [Mod Menu Hack] Monster Hunter Puzzles v2.01.02 +7 Cheats [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 57 replies
    • MARVEL Puzzle Quest: Hero RPG v331.0.713664 +4 Jailed Cheats [ Damage + More ]
      Modded/Hacked App: MARVEL Puzzle Quest: Hero RPG By 505 Go Inc.
      Bundle ID: com.d3p.yorkMPQ
      App Store Link: https://apps.apple.com/us/app/marvel-puzzle-quest-hero-rpg/id618349779?uo=4

       
       

      🤩 Hack Features

      - Damage Multiplier
      - God Mode
      - Unlimited Currencies -> Will increase instead of decrease.
      - Free In-App Purchases
      • 107 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines