Jump to content

2 posts in this topic

Recommended Posts

Posted (edited)

iDevice: Jailbroken (checkra1n) iPhone 7 w/iOS 14.4

How can I change the returned value of a method to an expected string?

Below is the method as seen in dnSpy...

public string MatchEndReason
{
	[Token(Token = "0x6002EC5")]
	[Address(RVA = "0x15D2450", Offset = "0x15D2450", VA = "0x1015D2450")]
	[Attribute(Name = "CompilerGeneratedAttribute", RVA = "0x1A7C30", Offset = "0x1A7C30")]
	get
	{
		return null;
	}
	[Token(Token = "0x6002EC6")]
	[Address(RVA = "0x15D2458", Offset = "0x15D2458", VA = "0x1015D2458")]
	[Attribute(Name = "CompilerGeneratedAttribute", RVA = "0x1A7C40", Offset = "0x1A7C40")]
	set
	{
	}
}

The corresponding strings in global-metadata.dat include "PointsCaptured", "OpponentsDestroyed", "TimeWasUp", and "LeftGame" (all without quotes).

If I leave the game, I want to change the MatchEndReason from "LeftGame" to any of the other match end reasons so I can get an ad view for rewards.

Below are the corresponding ARM64 functions from IDA Pro...

il2cpp:00000001015D2450		; DATA XREF: __data:0000000104871DC8↓o
il2cpp:00000001015D2450		LDR		X0, [X0,#0x20]
il2cpp:00000001015D2454		RET
il2cpp:00000001015D2458		; DATA XREF: __data:0000000104871DD0↓o
il2cpp:00000001015D2458		STR		X1, [X0,#0x20]
il2cpp:00000001015D245C		RET

If I just try to patch LDR X0,[X0,#0x20] to a corresponding string list number for the Match End Reason (i.e. patch to MOV X0, #1 by hex-editing the binary at that offset to 200080D2), the game just crashes. I'm guessing it's looking for the actual string, but I don't know how to assign a string to a register.

Any insight you can provide would be greatly appreciated.

Updated by scatrmynd
clarification/reiteration at end of post
Posted
On 5/2/2022 at 11:03 PM, scatrmynd said:
Address(RVA = "0x15D2450", Offset = "0x15D2450", VA = "0x1015D2450")]
	[Attribute(Name = "CompilerGeneratedAttribute", RVA = "0x1A7C30", Offset = "0x1A7C30")]

Which Offset are you trying to patch? also, are you testing the offsets/patch on the go or are you compiling it as an IPA then seeing if the hacks worked.

 

 

On 5/2/2022 at 11:03 PM, scatrmynd said:
il2cpp:00000001015D2450		; DATA XREF: __data:0000000104871DC8↓o
il2cpp:00000001015D2450		LDR		X0, [X0,#0x20]
il2cpp:00000001015D2454		RET
il2cpp:00000001015D2458		; DATA XREF: __data:0000000104871DD0↓o
il2cpp:00000001015D2458		STR		X1, [X0,#0x20]
il2cpp:00000001015D245C		RET

This isn't really needed as DNSPY show's you all the offsets. 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Kingdom Towers v0.3.19 [+4 Jailed Cheats]
      Modded/Hacked App: Kingdom Towers By Martin Quinones
      Bundle ID: com.pizia.kingdomtowers
      iTunes Store Link: https://apps.apple.com/us/app/kingdom-towers/id6699736128?uo=4



      🤩 Hack Features

      - Unlimited Currency
      - Never Die
      - One Hit Kill
      - Unlocked All Towers/Relics
        • Thanks
        • Like
      • 14 replies
    • Kingdom Towers v0.3.19 [+4 Cheats]
      Modded/Hacked App: Kingdom Towers By Martin Quinones
      Bundle ID: com.pizia.kingdomtowers
      iTunes Store Link: https://apps.apple.com/us/app/kingdom-towers/id6699736128?uo=4

       

      🤩 Hack Features

      - Unlimited Currency
      - Never Die
      - One Hit Kill
      - Unlocked All Towers/Relics
        • Informative
        • Agree
        • Thanks
        • Winner
        • Like
      • 11 replies
    • Blades of Deceron v0.1.7 [+4 Jailed Cheats]
      Modded/Hacked App: Blades of Deceron By Dreamon Studios AB
      Bundle ID: com.DreamonStudios.BladesOfDeceron
      iTunes Store Link: https://apps.apple.com/us/app/blades-of-deceron/id6739307553?uo=4



      🤩 Hack Features

      - Unlimited Stat Point (Gain Xp)
      - God Mode / Never Die
      - Infinite Stamina
      - Infinite Gold (Enable and Win Fight)
        • Agree
        • Like
      • 10 replies
    • Blades of Deceron v0.1.7 [+4 Cheats]
      Modded/Hacked App: Blades of Deceron By Dreamon Studios AB
      Bundle ID: com.DreamonStudios.BladesOfDeceron
      iTunes Store Link: https://apps.apple.com/us/app/blades-of-deceron/id6739307553?uo=4


      🤩 Hack Features

      - Unlimited Stat Point (Gain Xp)
      - God Mode / Never Die
      - Infinite Stamina
      - Infinite Gold (Enable and Win Fight)
        • Agree
        • Haha
        • Winner
        • Like
      • 7 replies
    • Omega Royale - Tower Defense v1.7.0 [+2 Jailed Cheats]
      Modded/Hacked App: Omega Royale - Tower Defense By Tower Pop Oy
      Bundle ID: com.towerpop.omegaroyale
      iTunes Store Link: https://apps.apple.com/us/app/omega-royale-tower-defense/id6447241072?uo=4

       

      🚀 Hack Features

      - Omega ViP Active
      - Always Can Cast Skill (Even when it's on cooldown)


      🍏 Jailbreak iOS hacks: https://iosgods.com/forum/5-game-cheats-hack-requests/
      🤖 Modded Android APKs: https://iosgods.com/forum/68-android-section/
        • Agree
        • Thanks
        • Winner
        • Like
      • 50 replies
    • Omega Royale - Tower Defense v1.7.0 [+2 Cheats]
      Modded/Hacked App: Omega Royale - Tower Defense By Tower Pop Oy
      Bundle ID: com.towerpop.omegaroyale
      iTunes Store Link: https://apps.apple.com/us/app/omega-royale-tower-defense/id6447241072?uo=4


       

      🚀 Hack Features

      - Omega ViP Active
      - Always Can Cast Skill (Even when it's on cooldown)


      🍏 For Non-Jailbroken & No Jailbreak required hacks: https://iosgods.com/forum/79-no-jailbreak-section/
      🤖 Modded Android APK(s): https://iosgods.com/forum/68-android-section/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 40 replies
    • Run! Goddess v1.0.19 [+4 Jailed Cheats]
      Modded/Hacked App: Run! Goddess By TOP GAMES INC.
      Bundle ID: com.topgamesinc.rg
      iTunes Store Link: https://apps.apple.com/us/app/run-goddess/id6667111749?uo=4



      🤩 Hack Features

      - No Skill Cooldown
      - Slow Enemy
      - Enemy Can't Attack (Enemy Can't Do Damage)
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 82 replies
    • Run! Goddess v1.0.19 [+4 Cheats]
      Modded/Hacked App: Run! Goddess By TOP GAMES INC.
      Bundle ID: com.topgamesinc.rg
      iTunes Store Link: https://apps.apple.com/us/app/run-goddess/id6667111749?uo=4

       

      🤩 Hack Features

      - No Skill Cooldown
      - Slow Enemy
      - Enemy Can't Attack (Enemy Can't Do Damage)
       
        • Informative
        • Agree
        • Thanks
        • Winner
        • Like
      • 73 replies
    • Pudgy Party - Battle Royale v0.9.1 +7 Jailed Cheats [ Speed, Gravity + More ]
      Modded/Hacked App: Pudgy Party - Battle Royale By Mythical, Inc.
      Bundle ID: com.mythical.pudgyparty
      App Store Link: https://apps.apple.com/us/app/pudgy-party-battle-royale/id6744258913?uo=4

       
       

      🤩 Hack Features

      - Jump Height Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Gravity Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Speed Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Friction Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Freeze Bots
      - Dumb Bots
      - Free In-App Purchases
        • Winner
      • 1 reply
    • Pudgy Party - Battle Royale v0.9.1 +7 Cheats [ Speed, Gravity + More ]
      Modded/Hacked App: Pudgy Party - Battle Royale By Mythical, Inc.
      Bundle ID: com.mythical.pudgyparty
      App Store Link: https://apps.apple.com/us/app/pudgy-party-battle-royale/id6744258913?uo=4

       


      🤩 Hack Features

      - Jump Height Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Gravity Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Speed Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Friction Multiplier -> Affects bots too. Use with Freeze/Dumb Bots.
      - Freeze Bots
      - Dumb Bots
      - Free In-App Purchases
        • Winner
      • 2 replies
    • Football Tycoon 2 v1.0.0 +1 Jailed Cheat [ Unlimited Cash ]
      Modded/Hacked App: Football Tycoon 2 By Scott Baillie
      Bundle ID: com.lazyboydevelopments.idlefootytycoon2
      App Store Link: https://apps.apple.com/us/app/football-tycoon-2/id6744391343?uo=4

       


      🤩 Hack Features

      - Unlimited Cash
        • Like
      • 0 replies
    • Football Tycoon 2 v1.0.0 +1 Cheat [ Unlimited Cash ]
      Modded/Hacked App: Football Tycoon 2 By Scott Baillie
      Bundle ID: com.lazyboydevelopments.idlefootytycoon2
      App Store Link: https://apps.apple.com/us/app/football-tycoon-2/id6744391343?uo=4

       


      🤩 Hack Features

      - Unlimited Cash
        • Agree
        • Winner
      • 0 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines