Jump to content

[Breaking Security]How to disable syscall (anti-debugging protection)


326 posts in this topic

Recommended Posts

Posted

I made this tutorial in April of 2015 for the cheaters here and after almost a year of it being private I decided to post it to the public.

 

Gameloft always uses syscall on their games, and while this was written in April, MC5 still has removable syscall and you can use MC5 to practice :)

 

Requirements:

- IDA Pro

- Modern Combat 5

- GNU Debugger from cydia.radare.org (repo)

- OpenSSH

- Clutch 1.4.7-2

- armv7 binary of MC5, crack it on a 32 bit device for it to be armv7. I won't post one here because of copyright issues.

 

Below this line is the exact text I wrote on April 10, 2015. Enjoy :)

 

------

Hidden Content

    What is syscall? Syscall is anti-debugging protection. This is what causes the Segmentation Fault: 11 when trying to attach to an app. But as hackers we need to attach to an app, and thats why I made this tutorial :snoop:

     

    Again, I'm using MC5.

     

    Let's get started :p

     

    1. Open up the binary in IDA and wait like four to five minutes so that you can actually xref.

     

    2. Once you have waited, click on the "Imports" tab and search for syscall.

    nvzZIjL.jpg

     

    3. Double click it and xref to syscall's location in the binary. Here is the function that you are looking for:

    nuc5Cfj.jpg

     

    It should have _getpid, _memset, and _sysctl there.

     

    4. Highlight the BLX _syscall (or BLX.W _syscall sometimes), and click "Hex View 1". The hex should be highlighted. Now right click before the beginning of the highlighted hex and click "edit".

    fLfnXh3.jpg

     

    5. Now type "C046C046". This means NOP, or no instruction/operation. Basically it makes the app ignore the instruction. The edited hex should have turned orange.

    Wpp9SuU.jpg

     

    6. Save your changes. Right click on the orange edited hex and click "Apply changes".

    0oIyscA.jpg

     

    7. After that, go back to IDA View A and confirm that the BLX _syscall and the instruction below it is NOP'ed.

     

    8. Apply your changes to the binary. Go to Edit --> Patch program --> Apply patches to input file. Create a backup if you want to.

    9Hrh8Xv.jpg

     

    9. Replace the original binary with the hacked binary and set the permissions to:

    Owner: mobile

    Group: mobile

     

    User: read, write, execute

    Group: read, write, execute

    World: read, write, execute

     

    Now you are done! Try to attach and it should work! :)

Proof: (me attaching to Modern Combat 5 in GDB)

 

xrLa6qY.jpg

Posted

Thanks for sharing ! ;)


One question.

when the app do not use _syscall what it could be ?

i searched for all methods that check if they had Cydia or etc.

 

Thanks.

  • Like 47
  • Winner 2
  • Thanks 3
  • Haha 3
  • Agree 8
  • Informative 2
Posted

Thanks for sharing ! ;)

One question.

when the app do not use _syscall what it could be ?

i searched for all methods that check if they had Cydia or etc.

 

Thanks.

 

It's ptrace. Try searching imports for ptrace

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Raising a Pretty Grave Robber: Idle RPG ( 미소녀 도굴단 키우기: 방치형 RPG ) +5 Jailed Cheats [ Damage + More ]
      Modded/Hacked App: 미소녀 도굴단 키우기: 방치형 RPG By Minseok Jo
      Bundle ID: com.joApps.MinerRPG
      iTunes Store Link: https://apps.apple.com/kr/app/미소녀-도굴단-키우기-방치형-rpg/id6756303472

       


      🤩 Hack Features

      - Damage Multiplier
      - God Mode
      - Freeze Currencies

      VIP
      - Unlimited Currencies -> Will increase instead of decrease.
      - Add Currencies -> Head into Settings and toggle any FPS button.
      • 4 replies
    • Mystery Inn: Merge Adventure v2.11 [ +4 Cheats ] Currency Max
      Modded/Hacked App: Mystery Inn: Merge Adventure By Rhino Games LLC
      Bundle ID: com.rhinogames.hotel.project
      App Store Link: https://apps.apple.com/us/app/mystery-inn-merge-adventure/id1615061176?uo=4

      🤩 Hack Features

      - ADS NO
      - Unlimited Gems
      - Unlimited Coins
      - Unlimited Energy
      • 0 replies
    • Mystery Inn: Merge Adventure v2.11 [ +4 Jailed ] Currency Max
      Modded/Hacked App: Mystery Inn: Merge Adventure By Rhino Games LLC
      Bundle ID: com.rhinogames.hotel.project
      App Store Link: https://apps.apple.com/us/app/mystery-inn-merge-adventure/id1615061176?uo=4

      🤩 Hack Features

      - ADS NO
      - Unlimited Gems
      - Unlimited Coins
      - Unlimited Energy
      • 0 replies
    • Spirit Summoners +4 Jailed Cheats [ Damage & Defence ]
      Modded/Hacked App: Spirit Summoners By Proficient City Hong Kong Limited
      Bundle ID: com.f5game.ss
      App Store Link: https://apps.apple.com/us/app/spirit-summoners/id6754621437?uo=4

       

      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      - No Skill Cooldown

      Requires a certificate / Signulous / App+ etc to play. Sideloadly will not work!
      • 10 replies
    • Pickaxe King Island +3 Mods [ Unlimited Everything ]
      Mod APK Game Name: Pickaxe King Island by ROGUE UNION GAMES
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.rogueuniongames.pickaxekingisland

       

      🤩 Hack Features

      - God Mode
      - Unlimited Everything -> Will increase instead of decrease.
      - Free Shopping
      • 2 replies
    • Chrome Valley Customs +1 Jailed Cheat [ Freeze Moves ]
      Modded/Hacked App: Chrome Valley Customs By Space Ape Ltd
      Bundle ID: com.spaceapegames.carsuperstar
      iTunes Store Link: https://apps.apple.com/us/app/chrome-valley-customs/id6444042518
       

      Hack Features:
      - Freeze Moves


      Jailbreak required hack(s): https://iosgods.com/topic/173179-chrome-valley-customs-v400-1-cheat-unlimited-moves/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 118 replies
    • The Game is Bugged: Defense +7 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: The Game is Bugged: Defense By NADDIC GAMES Co Ltd.
      Bundle ID: com.maf.TileDefense
      App Store Link: https://apps.apple.com/us/app/the-game-is-bugged-defense/id6757915094?uo=4

       

      🤩 Hack Features

      - One-Hit Kill
      - Freeze Currencies
      - Unlimited Currencies -> Will increase instead of decrease.
      - No Summon Cost
      - No Upgrade Cost
      - No Troop Limit
      - Score Multiplier
      • 5 replies
    • Pickaxe King Island +4 Jailed Cheats [ Unlimited Everything ]
      Modded/Hacked App: Pickaxe King Island By ROGUE UNION GAMES
      Bundle ID: com.rogueuniongames.pickaxekingisland
      App Store Link: https://apps.apple.com/us/app/pickaxe-king-island/id6738040300?uo=4

       


      🤩 Hack Features

      - God Mode
      - One-Hit Kill
      - Unlimited Everything -> Will increase instead of decrease.
      - Free Shopping
      • 30 replies
    • Adorable Garden +1++ Jailed Cheat [ Unlimited Currencies ]
      Modded/Hacked App: Adorable Garden By Skyborne Games Inc
      Bundle ID: com.skybornegames.adorablegarden
      iTunes Store Link: https://apps.apple.com/us/app/adorable-garden/id6503631437?uo=4

       


      🤩 Hack Features

      - Freeze Currencies
      • 11 replies
    • Tile Family®:Match Puzzle Game +5 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Tile Family®:Match Puzzle Game By Jump Plaid GmbH
      Bundle ID: com.tile.match.blockpuzzle
      iTunes Store Link: https://apps.apple.com/us/app/tile-family-match-puzzle-game/id6444056676?uo=4


      Hack Features:
      - Unlimited Coins -> Earn or spend some.
      - Unlimited Lives -> Use coins.
      - Unlimited Stars -> Earn or spend some.
      - Unlimited Boosters -> Earn or spend some.
      - No Ads


      Jailbreak required hack(s): [Mod Menu Hack] Tile Family®:Match Puzzle Game v1.54.1 +5 Cheats [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 38 replies
    • (The War Of Genesis Mobile) 창세기전 모바일 - 아수라 프로젝트 +2 Jailed Cheats
      Modded/Hacked App: 창세기전 모바일 - 아수라 프로젝트 By LINE Games
      Bundle ID: com.linegames.gm
      iTunes Store Link: https://apps.apple.com/kr/app/%EC%B0%BD%EC%84%B8%EA%B8%B0%EC%A0%84-%EB%AA%A8%EB%B0%94%EC%9D%BC-%EC%95%84%EC%88%98%EB%9D%BC-%ED%94%84%EB%A1%9C%EC%A0%9D%ED%8A%B8/id6450174109?uo=4

       

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - Damage Multiplier
      - Defense Multiplier

       

      ⬇️ iOS Hack Download IPA Link


      Hidden Content

      Download via the iOSGods App







       

      📖 PC Installation Instructions

      STEP 1: Download the pre-hacked .IPA file from the link above to your computer. To download from the iOSGods App, see our iOSGods App IPA Download Tutorial which includes a video example.
      STEP 2: Download Sideloadly and install it on your Windows or Mac.
      STEP 3: Open Sideloadly on your computer, connect your iOS device, and wait until your device name appears in Sideloadly.
      STEP 4: Once your iDevice is recognized, drag the modded .IPA file you downloaded and drop it into the Sideloadly application.
      STEP 5: Enter your Apple Account email when prompted, then press “Start.” You’ll then be asked to enter your password. Go ahead and provide the required information.
      STEP 6: Wait for Sideloadly to finish sideloading/installing the hacked IPA. If there are issues during installation, please read the note below.
      STEP 7: Once the installation is complete and you see the app on your Home Screen, you will need to go to Settings -> General -> Profiles / VPN & Device Management. Once there, tap on the email you entered from step 6, and then tap on 'Trust [email protected]'.
      STEP 8: Now go to your Home Screen and open the newly installed app and everything should work fine. You may need to follow further per app instructions inside the hack's popup in-game.

      NOTE: iOS/iPadOS 16 and later, you must enable Developer Mode. For free Apple Developer accounts, you will need to repeat this process every 7 days. If you have any questions or problems, read our Sideloadly FAQ section of the topic and if you don't find a solution, please post your issue below and we'll do our best to help! If the hack does work for you, post your feedback below and help out other fellow members that are encountering issues.

       

      🙌 Credits

      - AlyssaX64

       

      📷 Cheat Video/Screenshots

      N/A
      • 45 replies
    • BitLife - Life Simulator Cheats v3.23.3 +2
      Modded/Hacked App: BitLife - Life Simulator by Candywriter, LLC
      Bundle ID: com.wtfapps.apollo16
      iTunes Store Link: https://apps.apple.com/us/app/bitlife-life-simulator/id1374403536?uo=4&at=1010lce4


      Hack Features:
      - Infinite Cash
      - Free Bitizen Purchase (Press Cancle) - Work for All Versions


      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/topic/84167-arm64-bitlife-life-simulator-v1412-jailed-cheats-2/


      Hack Download Link: https://iosgods.com/topic/84223-arm64-bitlife-life-simulator-cheats-all-versions-2/
      • 3,998 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines