Jump to content

H5GG Tricks to do Live (online) Code Patching for Non-Jailbroken Devices !


59 posts in this topic

Recommended Posts

Posted
2 hours ago, ꞋꞌꞋꞌꞋꞌꞋꞌ said:

let procs = h5frida.enumerate_processes();
if(!procs || !procs.length) throw "frida无法获取进程列表\n\nfrida can't get process list";

let pid = -1; //pid=-1, 使用自身进程来调用OC/C/C++函数, 也可以附加到其他APP进程来调用
//Use its own process to call OC/C/C++ functions, or attach to other APP processes to call

try {pid=h5gg.getProcList("UnityFramework")[0].pid;}catch(e){}

let found = false;
for(let i=0;i<procs.length;i++) {
    if(procs[i].pid==pid) {
        //if(procs[i].name!='Gadget') throw "免越狱测试请卸载frida-server的deb然后重启当前APP\nFor non-jailbreak tests, please uninstall the frida-server deb and restart the current APP";
        found = true;
    }
}

if(!found) throw "frida无法找到目标进程\n\nfrida cannot find the target process";

//检查目标APP进程是否在前台运行, 如果在后台暂停了, frida附加调用会卡住
//Check whether the target APP process is running in the foreground, if it is suspended in the background, frida will be blocked
while(pid>0) {
    let frontapp = h5frida.get_frontmost_application();
    if(frontapp && frontapp.pid == pid) break;
    
    alert("请将目标APP切换至前台运行, 再点击确定继续...\n"
            + "Please switch the target APP to the foreground to run, and then click OK to continue...");
}

 

Im on my device atm, couldn't paste it as code, but here is a raw code i found on an H5GG project that takes the PID. Tho i haven't read anything related to frida interceptor method (regarding H5GG)

Cool, let me give them a try. 
If I remember correctly, h5frida.enumerate_processes() return process within Frida only. I only see Gadget in it previously.

Below one could work, frontmost app should be the game

  • let frontapp = h5frida.get_frontmost_application();
  • frontapp.pid

This one, I am not so sure. 

  • h5gg.getProcList("UnityFramework")[0].pid

 

There is a version of h5gg works cross-process app, which is requires jailbroken. Hopefully, these commands does not need that version.

 

Posted
3 hours ago, ꞋꞌꞋꞌꞋꞌꞋꞌ said:

Maybe after there is a way to find an automated step to make the app thinks it's in debugging mod ! 

It's good that "normal" hook with c++ work PepeStop

Am….are we talking the same hook? You seems have special expectation on that word “normal”.

My “normal” just mean, we don’t need to patch and re-Sideload the app. Just directly hook on to the app under debugging state.

Posted
27 minutes ago, Happy Secret said:

Am….are we talking the same hook? You seems have special expectation on that word “normal”.

My “normal” just mean, we don’t need to patch and re-Sideload the app. Just directly hook on to the app under debugging state.

I mean c++ hook like on Ted2 mod menu.

34 minutes ago, Happy Secret said:

h5gg.getProcList("UnityFramework")[0].pid

try {pid=h5gg.getProcList("UnityFramework")[0].pid;}catch(e){}

var session = h5frida.attach(pid);
 

I saw this code on github for the second option. (getProcList), idk if it requires JB or not 

  • Like 1
Posted
2 hours ago, ꞋꞌꞋꞌꞋꞌꞋꞌ said:

I mean c++ hook like on Ted2 mod menu

Never use Ted2 mod menu. I don’t have a jailbroken device now. 
 

is it a simple deb that I can inject and try out? 

Posted

Test Result:

1. try {pid=h5gg.getProcList("UnityFramework")[0].pid;}catch(e){} - NOT WORK

2. let frontapp = h5frida.get_frontmost_application();

    frontapp.pid; - THIS WORK

But the hook seems not always work, sometime it cause game hang (not exit) on applying the hook.

Need some more study.

  • Like 1
Posted
48 minutes ago, Happy Secret said:

Test Result:

1. try {pid=h5gg.getProcList("UnityFramework")[0].pid;}catch(e){} - NOT WORK

2. let frontapp = h5frida.get_frontmost_application();

    frontapp.pid; - THIS WORK

But the hook seems not always work, sometime it cause game hang (not exit) on applying the hook.

Need some more study.

Mhhh so you mean H5GG hook is working some times if debugging is on ? 

Posted
6 hours ago, ꞋꞌꞋꞌꞋꞌꞋꞌ said:

Mhhh so you mean H5GG hook is working some times if debugging is on ? 

I am not able to find out what causing the game hang yet. But I seem happened after I tried to clean up the script. It could also because I mess up the code.

Let me try a bit more today.

Posted
11 hours ago, ꞋꞌꞋꞌꞋꞌꞋꞌ said:

Mhhh so you mean H5GG hook is working some times if debugging is on ? 

Update:

1. It works every time on my iPad Pro (9.7) but not work on my iPad Pro 2nd Generation.

2. Both are on iPad OS 16.2

Completely no idea what happens. 
 

Luckily the live patching work across device. Just the Interceptor failed on one.

I guess it is the implementation of Interceptor causing problem. Because the statement simply hang and not returning, app’s console log show nothing. We just see the Interceptor call invoked, then nothing more in log and not progressing.

So, it is probably not invalid memory access stuff.


Looking for possible solutions.

  • Like 1
Posted
3 hours ago, Happy Secret said:

Update:

1. It works every time on my iPad Pro (9.7) but not work on my iPad Pro 2nd Generation.

2. Both are on iPad OS 16.2

Completely no idea what happens. 
 

Luckily the live patching work across device. Just the Interceptor failed on one.

I guess it is the implementation of Interceptor causing problem. Because the statement simply hang and not returning, app’s console log show nothing. We just see the Interceptor call invoked, then nothing more in log and not progressing.

So, it is probably not invalid memory access stuff.


Looking for possible solutions.

Mhhh okay okay thanks for testing :) 

Posted

Completely dead ended for live hook on non-jailbroken.

Tried 

1. Interceptor.replace instead of Interceptor.attach —FAILED on my IPad Pro 2nd Gen

2. Remove memory protection —FAILED on my IPad Pro 2nd Gen

 

For now, I will Iive with live patch first.
May be later see if H5GG would update embedded Frida version to latest. Then could give it a try.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Zombie Gunship Survival v1.7.43 +7 Cheats for Jailed iDevices!
      Modded/Hacked App: Zombie Gunship Survival By Flaregames GmbH
      Bundle ID: com.flaregames.zombiegunship
      iTunes Store Link: https://apps.apple.com/us/app/zombie-gunship-survival/id1019161597?uo=4


      Mod Requirements:
      - Non-Jailbroken/Jailed or Jailbroken iPhone/iPad/iPod Touch.
      - Sideloadly / Cydia Impactor or alternatives.
      - A Computer Running Windows/Mac/Linux with iTunes installed.


      Hack Features:
      - Unlimited Ammo
      - No Reload
      - No Overheat
      - No Zombie Spawn
      - No Zombie Speed
      - 1 Hit Kill [Human & Gunship]
      - Zombie Does No Damage
      - Movement Speed


      Note: Your helicopter does damage against your humans, so if you hit them while having 1 Hit Kill turned on, they die too.


      Jailbreak required hack(s): https://iosgods.com/forum/5-game-cheats-hack-requests/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 209 replies
    • Plants vs. Zombies v3.15.0 Jailed Cheats +5
      Modded/Hacked App: Plants vs. Zombies™ By EA Swiss Sarl
      Bundle ID: com.ea.pvzfree.bv
      iTunes Store Link: https://apps.apple.com/us/app/plants-vs-zombies/id893677096?uo=4


      Hack Features

      - Infinite Sun
      - Infinite Fertilizer, BugSpray, and Chocolate
      - Infinite Coins
      - Infinite Plants Life
      - No Cooldown

      Author: https://iosgods.com/profile/37846-asianqueen/

      Complete tutorial before using any hacked features or you will stuck forever



      iOS Hack Download IPA Link https://iosgods.com/topic/191088-plants-vs-zombies%E2%84%A2-v381-jailed-cheats-5/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 80 replies
    • The Tower - Idle Tower Defense v27.5.1 Jailed Cheats +2
      Modded/Hacked App: The Tower - Idle Tower Defense By Tech Tree Games LLC
      Bundle ID: com.TechTreeGames.TheTower
      App Store Link: https://apps.apple.com/us/app/the-tower-idle-tower-defense/id1575590830?uo=4

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - Free iAP ( Turn on inside iOSGods Mod Menu first )
      - iGameGod Cheat Engine Enabled ( modify in-game currency and speed up stage )

       

      ⬇️ iOS Hack Download IPA Link: https://iosgods.com/topic/154025-the-tower-idle-tower-defense-v2706-jailed-cheats-2/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 201 replies
    • Pocket Survivor: Expansion 2d v6.2.1 [ +1+++ Jailed ] Unlimited All Off
      Modded/Hacked App: Pocket Survivor: Expansion 2d By APPWILL COMPANY LTD
      Bundle ID: develop.pocket.survivor.expansion
      App Store Link: https://apps.apple.com/us/app/pocket-survivor-expansion-2d/id1644395434?uo=4


      🤩 Hack Features

      - Unlimited ALL OFF


        • Agree
        • Winner
        • Like
      • 5 replies
    • Pocket Survivor: Expansion 2d v6.2.1 [ +1+++ Cheats ] Unlimited All Off
      Modded/Hacked App: Pocket Survivor: Expansion 2d By APPWILL COMPANY LTD
      Bundle ID: develop.pocket.survivor.expansion
      App Store Link: https://apps.apple.com/us/app/pocket-survivor-expansion-2d/id1644395434?uo=4


      🤩 Hack Features

      - Unlimited ALL OFF


        • Like
      • 3 replies
    • World War Fight For Freedom V0.2.0.1 [ +5 Cheats ] DMG
      Modded/Hacked App: World War: Fight For Freedom By HORUS ENTERTAINMENT COMPANY LIMITED
      Bundle ID: com.horusent.beach.head
      App Store Link: https://apps.apple.com/us/app/world-war-fight-for-freedom/id1535605228?uo=4

      Hack Features:
      - NOADS [ End The Mission ]
      - Damage 
      - HP KIT
      - Firing Rate
      - No Reload
        • Informative
        • Agree
        • Thanks
        • Winner
        • Like
      • 19 replies
    • World War Fight For Freedom V0.2.0.1 [ +5 Jailed ] DMG
      Modded/Hacked App: World War: Fight For Freedom By HORUS ENTERTAINMENT COMPANY LIMITED
      Bundle ID: com.horusent.beach.head
      App Store Link: https://apps.apple.com/us/app/world-war-fight-for-freedom/id1535605228?uo=4

      🤩 Hack Features

      - NOADS [ End The Mission ]
      - Damage 
      - HP KIT
      - Firing Rate
      - No Reload
        • Winner
      • 1 reply
    • Pirates & Puzzles - PVP League V2.6.2 [ +4 Jailed ] Easy Win
      Modded/Hacked App: Pirates & Puzzles - PVP League By MAD PIXEL GAMES LTD
      Bundle ID: com.herocraft.game.pirates.and.puzzles.match.pvp
      iTunes Store Link: https://apps.apple.com/us/app/pirates-puzzles-pvp-league/id1483755748?uo=4

      Hack Features:
      - ATK MAX
      - DEF MAX
      - Hint Freeze 
      - Shuffle Freeze  
        • Winner
        • Like
      • 15 replies
    • Pirates & Puzzles - PVP League V2.6.2 [ +4 Cheats ] Easy Win
      Modded/Hacked App: Pirates & Puzzles - PVP League By MAD PIXEL GAMES LTD
      Bundle ID: com.herocraft.game.pirates.and.puzzles.match.pvp
      iTunes Store Link: https://apps.apple.com/us/app/pirates-puzzles-pvp-league/id1483755748?uo=4
      Hack Features:
      - ATK MAX
      - DEF MAX
      - Hint Freeze 
      - Shuffle Freeze 
        • Informative
        • Agree
        • Winner
        • Like
      • 27 replies
    • Elemental Adventurer v1.17.3 [+9 Jailed ] Currency Max
      Modded/Hacked App: Elemental Adventurer By SkyRise Digital PTE. LTD.
      Bundle ID: com.elementsadventurer.ios
      App Store Link: https://apps.apple.com/us/app/elemental-adventurer/id1671509460?uo=4

      🤩 Hack Features

      - Unlimited Diamonds 
      - Unlimited Coins 
      - Health MAX
      - Damage MAX
      - Skill CD
      - Attack Range
      - Pickup Range
      - Movement Speed
      - Skill Reroll
        • Winner
      • 2 replies
    • Elemental Adventurer v1.17.3 [+9 Cheats ] Currency Max
      Modded/Hacked App: Elemental Adventurer By SkyRise Digital PTE. LTD.
      Bundle ID: com.elementsadventurer.ios
      iTunes Store Link: https://apps.apple.com/us/app/elemental-adventurer/id1671509460?uo=4

      Hack Features:
      - Unlimited Diamonds 
      - Unlimited Coins 
      - Health MAX
      - Damage MAX
      - Skill CD
      - Attack Range
      - Pickup Range
      - Movement Speed
      - Skill Reroll
        • Informative
        • Agree
        • Thanks
        • Like
      • 29 replies
    • Score Masters v2.4 [ +7 Jailed ] Always Win
      Modded/Hacked App: Score Masters By SKYLOFT YAZILIM BILISIM VE TICARET ANONIM SIRKETI
      Bundle ID: com.bh.hypergoal
      iTunes Store Link: https://apps.apple.com/us/app/score-masters/id6473402760?uo=4


      🚀 Hack Features

      - Auto ADS Disable

      - Gems [ Mission Rewards ]

      - Coins [ Mission Rewards ]

      - Player Score 20 Max

      - Always Win Player

      - AI Score 0

      - AI Miss
        • Informative
        • Like
      • 8 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines