Jump to content

Disable ASLR on iOS 8.3/8.4


39 posts in this topic

Recommended Posts

Updated (edited)

After spending literally days trying to solve the stupid ASLR/Signing problem I finally figured out my own solution.

 

This tutorial is for those of you that have issues removing ASLR on iOS 8.3 and 8.4. If for some reason your apps still crash after using the tools and signing, then following the steps below is the answer.

 

Things you need:

Hex Editor
Cycript from Cydia(This is not really necessary, but its an easy way to verify if ASLR is actually disabled)
A Brain

 

Disabling ASLR:
 

  1. Crack the app (At the time of this post, rasticrac is the only cracker that works properly on 8.3/8.4)
     
  2. Put the binary on your desktop and open it with a hex editor. (There are multiple ways to view and edit the hex of a binary. So do it however you like. This is just for reference)
     
  3. You need to go to the following offset depending on if your binary is FAT or non-FAT.(FAT means your binary has more than one arch. non-FAT is a thinned binary or a binary only containing one arch.)
    FAT armv7 = 0x4018
    non-FAT armv7 or arm64 = 0x18
    http://i.imgur.com/PFSxpBe.png
     
  4. You are going to edit the 21 highlighted in the image above to 01. (The entire hex highlighted is the same for both armv7 and arm64. If this is not what you see then you are at the wrong offset.)
     
  5. Save and that is it. Put the modded binary back in your game folder and run it. Just make sure permissions are set. You do not need to sign when you follow this method.

Verifying ASLR is Disabled:
If you would like to make sure that ASLR is disabled before you start debugging and finding out it is not, then do the following in terminal.

cycript -p PROCESS
x = dlsym(RTLD_DEFAULT,"_dyld_get_image_vmaddr_slide")
get_aslr_slide = @[member='encoder88'](uint(int))(x)
get_aslr_slide(0)

Process = Binaryname

CNibkaP.png

If the result of this is 0 then ASLR is disabled. Otherwise it is enabled.

Do not copy and paste all of it at once in the commandline. Run the first line. Then copy and paste the rest.

 

NOTES:
Q: What about FAT arm64 offset?
A:You may have noticed that I do not specify the offset for fat arm64. This is because I am unsure if this is dynamic. As in I don't know if it changes based on binary size. I would assume so but need to test. For now if you want to debug arm64, then lipo the binary and go to the non fat offset. Then stick it into your game. If I figure it out, I will update this tutorial.

 

Credits:
Alcatraz
HackJack: Provided cycript code to verify ASLR status.

Updated by Alcatraz
  • Like 1
Posted

If you read the first cpl of sentences I state that if attempting to sign still causes problems like it was for me then this tut was for you. So no that tut did not work.

Posted (edited)

Hidden Content

React or reply to this topic to see the hidden content & download link. 👀

Every single ASLR removal tool sets it to 01. Never caused any issues. I fail to see the point of your post. I also do not understand why you bothered to use hide content.

Updated by Alcatraz
  • Like 1
Posted

Thanks!! i was waiting for a solution  ^_^

You are actually why I posted it here. I saw you had the same problem as me. Wasn't sure if you were on the other sites.

Posted

You are actually why I posted it here. I saw you had the same problem as me. Wasn't sure if you were on the other sites.

game still crashing =S tried to change the 21 to 01 and nothing. Tried 00 and nothing. Also some games have 20 instead of 21 but anyways is still crashing.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Pingco's Adventure:Penguin Run v1.7.94 [ +3 APK MOD ] Currency Max
      Mod APK Game Name: Pingco's Adventure:Penguin Run
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.ncroquis.penguinrun&hl=en

       

      🤩 Hack Features

      - Auto ADS NO
      - Unlimited Gems
      - Unlimited Coins

       

      ⬇️ Android Mod APK Download Link


      Hidden Content

      iOSGods App for Android







       

      📖 Android Installation Instructions

      STEP 1: Download the modded APK file from the link above using your preferred Android browser or download manager.
      STEP 2: Once the download is complete, open your file manager and locate the downloaded .apk file (usually in the Downloads folder).
      STEP 3: Tap the APK file, then select Install. If prompted, enable Install from Unknown Sources in your device settings.
      STEP 3A: If the mod includes an OBB file, extract it if it’s inside an archive. Then move the folder to: /Android/obb/
      STEP 3B: If the mod includes a DATA file, extract it if it’s archived. Then move the folder to: /Android/data/
      STEP 4: Once installed, open the game and toggle your desired cheats & features through the APK mod menu. Enjoy!

       

      NOTE: If you have any questions or issues, read our Frequently Asked Questions topic. If you still need help, post your issue below and we’ll assist you as soon as possible. If the mod works for you, please share your feedback to help other members!

       

      🙌 Credits

      - IK_IK

       

      📷 Cheat Video/Screenshots

      N/A

       

       iOS & iPadOS App Hacks
      If you’re looking for Non-Jailbroken & No Jailbreak required iOS IPA hacks, visit the iOS Game Cheats & Hacks or the iOSGods App for a variety of modded games and apps for non-jailbroken iOS devices.
      • 0 replies
    • Pingco's Adventure:Penguin Run v1.7.94 [ +3 Cheats ] Currency Max
      Modded/Hacked App: Pingco's Adventure:Penguin Run By NCROQUIS
      Bundle ID: com.ncroquis.penguinrun
      App Store Link: https://apps.apple.com/us/app/pingcos-adventure-penguin-run/id6756044876?uo=4

       

       

      📌 Mod Requirements

      - Jailbroken iPhone or iPad.
      - iGameGod / Filza / iMazing.
      - Cydia Substrate, ElleKit, Substitute or libhooker depending on your jailbreak (from Sileo, Cydia or Zebra).

       

      🤩 Hack Features

      - Auto ADS NO
      - Unlimited Gems
      - Unlimited Coins

       

      ⬇️ iOS Hack Download Link


      Hidden Content

      Download Hack







       

      📖 iOS Installation Instructions

      STEP 1: Download the .deb hack file from the link above. Use Safari, Google Chrome or other iOS browsers to download.
      STEP 2: Once the file has downloaded, tap on it and then you will be prompted on whether you want to open the deb with iGameGod or copy it to Filza.
      STEP 3: If needed, tap on the downloaded file again, then select ‘Normal Install’ from the options on your screen.
      STEP 4: Let iGameGod/Filza finish the cheat installation. If it doesn’t install successfully, see the note below.
      STEP 5: Open the game, log in to your iOSGods account when asked, then toggle on the features you want and enjoy!

       

      NOTE: If you have any questions or problems, read our Jailbreak iOS Hack Troubleshooting & Frequently Asked Questions & Answers topic. If you still haven't found a solution, post your issue below and we'll do our best to help! If the hack does work for you, please post your feedback below and help out other fellow members that are encountering issues.

       

      🙌 Credits

      - IK_IK

       

      📷 Cheat Video/Screenshots

      N/A

       

      More iOS App Hacks
      If you’re looking for Non-Jailbroken & No Jailbreak required iOS IPA hacks, visit the iOS Game Cheats & Hacks or the iOSGods App for a variety of modded games and apps for non-jailbroken iOS devices.

      Modded Android APKs
      Need modded apps or games for Android? Check out the latest custom APK mods, cheats & more in our Android Section.
      • 0 replies
    • Pingco's Adventure:Penguin Run v1.7.94 [ +3 jailed ] Currency Max
      Modded/Hacked App: Pingco's Adventure:Penguin Run By NCROQUIS
      Bundle ID: com.ncroquis.penguinrun
      App Store Link: https://apps.apple.com/us/app/pingcos-adventure-penguin-run/id6756044876?uo=4

      🤩 Hack Features

      - Auto ADS NO
      - Unlimited Gems
      - Unlimited Coins
      • 0 replies
    • Bloons Blitz +5 Mods [ Unlimited Currencies ]
      Mod APK Game Name: Bloons Blitz By ninja kiwi
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.ninjakiwi.bloonsblitz

       

      🤩 Hack Features

      - God Mode
      - One-Hit Kill

      VIP
      - Unlimited Gold -> Earn some.
      - Unlimited Bloodstones -> Earn some.
      - Unlimited Energy -> Earn some.
      • 1 reply
    • Bloons Blitz +5 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Bloons Blitz By Ninja Kiwi Limited
      Bundle ID: com.ninjakiwi.bloonsblitz
      App Store Link: https://apps.apple.com/ph/app/bloons-blitz/id6741921686?uo=4

       

      🤩 Hack Features

      - God Mode
      - One-Hit Kill

      VIP
      - Unlimited Gold -> Earn some.
      - Unlimited Bloodstones -> Earn some.
      - Unlimited Energy -> Earn some.
      • 2 replies
    • Cash Masters: Billionaire Life v1.12.3 +2 Jailed Cheats [ Unlimited Cash ]
      Modded/Hacked App: Cash Masters: Billionaire Life By USPEX ARASTIRMA GELISTIRME YAZILIM BILGISAYAR SANAYI VE TICARET ANONIM SIRKETI
      Bundle ID: com.uspex.hts
      iTunes Store Link: https://apps.apple.com/us/app/cash-masters-billionaire-life/id1636818775
       

      Hack Features:
      - Unlimited Cash -> Will increase instead of decrease.
      - Free In-App Purchases


      Jailbreak required hack(s): [Mod Menu Hack] Cash Masters: Billionaire Life v1.0.0 +2 Cheats [ Unlimited Cash ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 84 replies
    • Football Superstar 2 +2 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Football Superstar 2 By Lazy Boy Developments
      Bundle ID: com.lazyboydevelopments.footballsuperstar2
      iTunes Store Link: https://apps.apple.com/us/app/football-superstar-2/id1607289341
       

      Hack Features:
      - Unlimited Cash
      - Unlimited Exp


      Jailbreak required hack(s): https://iosgods.com/topic/168893-football-superstar-2-v1011-2-cheats-unlimited-currencies/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 327 replies
    • Football Superstar 2: USA Ed. +2 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Football Superstar 2: USA Ed. By Scott Baillie
      Bundle ID: com.lazyboydevelopments.usafootysuperstar2
      iTunes Store Link: https://apps.apple.com/us/app/football-superstar-2-usa-ed/id6449435265?uo=4


      Hack Features:
      - Unlimited Cash
      - Unlimited Exp


      Jailbreak required hack(s): [Mod Menu Hack] Football Superstar 2: USA Ed. v1.0.18 +2 Cheats [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 21 replies
    • Little Singham 2: World Hero v1.0.0 [ +2 APK MOD ] Currency Max
      Mod APK Game Name: Little Singham 2: World Hero
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.zapak.littlesingham.cat.minion.princess.temple.cookie&hl=en

       

      🤩 Hack Features

      - Unlimited Coins
      - Unlimited Gems

       

      ⬇️ Android Mod APK Download Link


      Hidden Content

      iOSGods App for Android







       

      📖 Android Installation Instructions

      STEP 1: Download the modded APK file from the link above using your preferred Android browser or download manager.
      STEP 2: Once the download is complete, open your file manager and locate the downloaded .apk file (usually in the Downloads folder).
      STEP 3: Tap the APK file, then select Install. If prompted, enable Install from Unknown Sources in your device settings.
      STEP 3A: If the mod includes an OBB file, extract it if it’s inside an archive. Then move the folder to: /Android/obb/
      STEP 3B: If the mod includes a DATA file, extract it if it’s archived. Then move the folder to: /Android/data/
      STEP 4: Once installed, open the game and toggle your desired cheats & features through the APK mod menu. Enjoy!

       

      NOTE: If you have any questions or issues, read our Frequently Asked Questions topic. If you still need help, post your issue below and we’ll assist you as soon as possible. If the mod works for you, please share your feedback to help other members!

       

      🙌 Credits

      - IK_IK

       

      📷 Cheat Video/Screenshots

      N/A

       

       iOS & iPadOS App Hacks
      If you’re looking for Non-Jailbroken & No Jailbreak required iOS IPA hacks, visit the iOS Game Cheats & Hacks or the iOSGods App for a variety of modded games and apps for non-jailbroken iOS devices.
      • 1 reply
    • Little Singham 2: World Hero v1.0.0 [ +2 Cheats ] Currency Max
      Modded/Hacked App: Little Singham 2: World Hero By Zapak Games Private Limited
      Bundle ID: com.zapak.littlesingham.cat.minion.princess.temple.cookie
      App Store Link: https://apps.apple.com/us/app/little-singham-2-world-hero/id6751190081?uo=4

      🤩 Hack Features

      - Unlimited Coins
      - Unlimited Gems
      • 0 replies
    • Little Singham 2: World Hero v1.0.0 [ +2 Jailed ] Currency Max
      Modded/Hacked App: Little Singham 2: World Hero By Zapak Games Private Limited
      Bundle ID: com.zapak.littlesingham.cat.minion.princess.temple.cookie
      App Store Link: https://apps.apple.com/us/app/little-singham-2-world-hero/id6751190081?uo=4

      🤩 Hack Features

      - Unlimited Coins
      - Unlimited Gems
      • 0 replies
    • SLIME - ISEKAI Memories +5 Jailed Cheats
      Modded/Hacked App: SLIME - ISEKAI Memories By BANDAI NAMCO Entertainment Inc.
      Bundle ID: jp.co.bandainamcoent.BNEI0402
      iTunes Store Link: https://apps.apple.com/us/app/slime-isekai-memories/id1577316192?uo=4


      Mod Requirements:
      - Non-Jailbroken/Jailed or Jailbroken iPhone/iPad/iPod Touch.
      - Sideloadly / Cydia Impactor or alternatives.
      - A Computer Running Windows/Mac/Linux with iTunes installed.


      Hack Features:
      - Damage Multiplier
      - Defense Multiplier
      - Always Our Turn
      - Instant Win
      - Unlimited Skills


      Jailbreak required hack(s): https://iosgods.com/forum/5-game-cheats-hack-requests/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/


      iOS Hack Download Link:

      Hidden Content

      Download via the iOSGods App








      PC Installation Instructions:
      STEP 1: If necessary, uninstall the app if you have it installed on your iDevice. Some hacked IPAs will install as a duplicate app. Make sure to back it up so you don't lose your progress.
      STEP 2: Download the pre-hacked .IPA file from the link above to your computer. To download from the iOSGods App, see this tutorial topic.
      STEP 3: Download Sideloadly and install it on your PC.
      STEP 4: Open/Run Sideloadly on your computer, connect your iOS Device, and wait until your device name shows up.
      STEP 5: Once your iDevice appears, drag the modded .IPA file you downloaded and drop it inside the Sideloadly application.
      STEP 6: You will now have to enter your iTunes/Apple ID email login & then your password. Go ahead and enter the required information.
      STEP 7: Wait for Sideloadly to finish sideloading/installing the hacked IPA.
      STEP 8: Once the installation is complete and you see the app on your Home Screen, you will need to go to Settings -> General -> Profiles/VPN & Device Management. Once there, tap on the email you entered from step 6, and then tap on 'Trust [email protected]'.
      STEP 9: Now go to your Home Screen and open the newly installed app and everything should work fine. You may need to follow further per app instructions inside the hack's popup in-game.

      NOTE: For free Apple Developer accounts, you will need to repeat this process every 7 days. Using a disposable Apple ID for this process is suggested but not required. Jailbroken iDevices can also use Sideloadly to install the IPA with AppSync. Filza & IPA Installer (or alternatives) from Cydia also work. If you have any questions or problems, read our Sideloadly FAQ section of the topic and if you don't find a solution, post your issue down below and we'll do our best to help! If the hack does work for you, post your feedback below and help out other fellow members that are encountering issues.


      Credits:
      - Zahir


      Cheat Video/Screenshots:

      N/A
      • 427 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines