Jump to content

13 posts in this topic

Recommended Posts

Posted

Hello,

 

I checked an App using IDA and I found an interesting line where I'd like to get the values from. The lineitself is a _strlen command which should hold the value.

 

Now I right clicked the line and did "Copy address to command line" wich gave me "0xC10C4C".

 

Then I did "b s -a 0xC10C4C" on LLDB but it just returned "Breakpoint 1: no locations (pending). WARNING: Unable to resolve breakpoint to any actual locations."

 

And when I resume the app the breakpoint won't "break", the app just continues

 

How can I get the right address to set the breakpoint?

Posted

Now I read somewhere that I would need to do "image list -o -f" to get a list of the objects.

The base address should be the value after [0] which is 0x00000000000e4000 in my case.

 

Then I went to IDA to check the line where it says __text:0002512C which is 0x2512C

 

Now I should add the 2 to get the address:

 

0x2512C + 0x00000000000e4000 = 0x10912C

 

Now when I do "b s -a 0x10912C" it says "Breakpoint 1: address = 0x000000000010912C" so it seems it found the address now.

 

When I open the app and perform an action that should trigger the breakpoint it still does not.

 

What could be the issue here?

Posted (edited)

I just tried it with GDB

 

I had to thin the app to make it work.

 

I used "info shared" to get the string with offset  (offset 0x10000) (Why is the offset different this time?)

 

Then I used this 0x10000 + 0x2512C = 0x3512C

 

Afterwards I used break *0x3512C and the breakpoint registered

 

(gdb) break *0x3512C
Breakpoint 1 at 0x3512C
 
But again the breakpoint doesn't get hit.
 
What could potentially be wrong?
 
EDIT:
 
I just hooked a function that comes after the part where I want to put a breakpoint
 
break funcname
 
and GDB returned Breakpoint 2, 0x35f9e6f8 in funcname ()
 
when I ran the App the breakpoint hit without any issues.
 
Now I think I got the wrong address.
 
GDB returned 0x35f9e6f8 as address for the function
 
When I look it up in IDA it is listed as "__picsymbolstub4:00C6F5CC"
 
so address should be 0xC6F5CC
 
When I do the math
 
0xC6F5CC + 0x10000 = 0xC7F5CC the result is totally different from 0x35f9e6f8
 
So maybe I misinterpret the pointer I got from IDA?
 
Edit 2:
 
Could it be I need to use a different base offset? info shared lists multiple files with offsets.
 
I examined the App.app/App binary in IDA and the function was there along with the pointer I need. How do I know if this function is in the main executable or in a lib?
Updated by maddo7
Posted

I just tried it with GDB

 

I had to thin the app to make it work.

 

I used "info shared" to get the string with offset  (offset 0x10000) (Why is the offset different this time?)

 

Then I used this 0x10000 + 0x2512C = 0x3512C

 

Afterwards I used break *0x3512C and the breakpoint registered

 

(gdb) break *0x3512C

Breakpoint 1 at 0x3512C

 

But again the breakpoint doesn't get hit.

 

What could potentially be wrong?

 

EDIT:

 

I just hooked a function that comes after the part where I want to put a breakpoint

 

break funcname

 

and GDB returned Breakpoint 2, 0x35f9e6f8 in funcname ()

 

when I ran the App the breakpoint hit without any issues.

 

Now I think I got the wrong address.

 

GDB returned 0x35f9e6f8 as address for the function

 

When I look it up in IDA it is listed as "__picsymbolstub4:00C6F5CC"

 

so address should be 0xC6F5CC

 

When I do the math

 

0xC6F5CC + 0x10000 = 0xC7F5CC the result is totally different from 0x35f9e6f8

 

So maybe I misinterpret the pointer I got from IDA?

 

Edit 2:

 

Could it be I need to use a different base offset? info shared lists multiple files with offsets.

 

I examined the App.app/App binary in IDA and the function was there along with the pointer I need. How do I know if this function is in the main executable or in a lib?

Did you remove ASLR?

Posted

No, I'm new to this and followed a tutorial. How would I do this? I used a cracked version of the App to begin with.

You download the game/app from itunes, import it to your phone, crack it, take the binary to ArmConverter , thin and remove ASLR

Posted

You download the game/app from itunes, import it to your phone, crack it, take the binary to ArmConverter , thin and remove ASLR

 

Should I analyze it with IDA after doing all this?

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • War Inc: Rising v0.8.2 Jailed Cheats +3
      Modded/Hacked App: War Inc: Rising By SamShui Corporation
      Bundle ID: com.i89trillion.strategy.rising
      App Store Link: https://apps.apple.com/us/app/war-inc-rising/id6747767390?uo=4

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - God Mode
      - One Hit Kill
      - Auto Win

       

      ⬇️ iOS Hack Download IPA Link: https://iosgods.com/topic/202371-war-inc-rising-v080-jailed-cheats-3/
      • 14 replies
    • Angry Birds Dream Blast Cheats v1.99.1 +3
      Modded/Hacked App: Angry Birds Dream Blast By Rovio Entertainment Oyj
      Bundle ID: com.rovio.dream
      iTunes Store Link: https://apps.apple.com/us/app/angry-birds-dream-blast/id1432579280?uo=4


      Hack Features:
      - Infinite Moves
      - Infinite Lives
      - Infinite Boosters


      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/topic/149687-angry-birds-dream-blast-v1340-jailed-cheats-3/


      iOS Hack Download Link: https://iosgods.com/topic/149684-angry-birds-dream-blast-cheats-all-versions-3/
        • Agree
        • Winner
        • Like
      • 117 replies
    • Toy Blast Cheats (Auto Update) +6
      Modded/Hacked App: Toy Blast By Peak Games
      Bundle ID: net.peakgames.amy
      iTunes Store Link: https://itunes.apple.com/us/app/toy-blast/id890378044?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Infinite Hearts
      - Infinite Coins
      - Infinite Boosters
      - Never Lose
      - High Score
      - Always 3 Stars


      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/topic/73056-arm64-toy-blast-v5431-jailed-cheats-3/


      Hack Download Link: https://iosgods.com/topic/73037-arm64-toy-blast-cheats-v5475-6/



      Credits:
      - @Laxus
      • 641 replies
    • PewDiePie's Tuber Simulator Cheats (Auto Update) +3
      Modded/Hacked App: PewDiePie's Tuber Simulator By Outerminds Inc.
      Bundle ID: com.outerminds.tubular
      iTunes Store Link: https://apps.apple.com/us/app/pewdiepies-tuber-simulator/id1093190533?uo=4

       

      📌 Mod Requirements

      - Jailbroken iPhone or iPad.
      - iGameGod / Filza / iMazing.
      - Cydia Substrate, ElleKit, Substitute or libhooker depending on your jailbreak (from Sileo, Cydia or Zebra).

       

      🤩 Hack Features

      - Infinite Subscriber
      - Infinite Views
      - Infinite Bux

      NOTE: Please complete tutorial first before enabling the hacks otherwise it won't work

      NOTe 2: Please make a youtube video to get some views first (without hack) then before enable infinite views

       

      Non-Jailbroken Hack: https://iosgods.com/topic/86411-pewdiepies-tuber-simulator-v2450-jailed-cheats-3/

       

      ⬇️ iOS Hack Download Link: https://iosgods.com/topic/86366-pewdiepies-tuber-simulator-cheats-v2460-3/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 1,184 replies
    • FR Legends Cheats v0.4.2 +3
      Modded/Hacked App: FR LEGENDS By FENG LI
      Bundle ID: com.fengiiley.frlegends
      iTunes Store Link: https://itunes.apple.com/us/app/fr-legends/id1435740083?mt=8&uo=4&at=1010lce4


      Hack Features:
      - Custom Gold (Enter the value you want and enable the switch)
      - Custom Cash
      - Infinite Layer


      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/topic/79729-arm64-fr-legends-v027-jailed-cheats-3/


      Hack Download Link: https://iosgods.com/topic/79816-arm64-fr-legends-cheats-v029-3/
        • Agree
        • Haha
        • Winner
        • Like
      • 641 replies
    • Rick and Morty: Pocket Mortys v2.41.0 Jailed Cheats +1
      Modded/Hacked App: Rick and Morty: Pocket Mortys by Turner Broadcasting System, Inc.
      Bundle ID: com.turner.pocketmorties
      iTunes Store Link: https://itunes.apple.com/us/app/rick-and-morty-pocket-mortys/id992640880?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Infinite Schmeckles
      - Infinite Coupons


      Hack Download Link: https://iosgods.com/topic/86695-arm64-rick-and-morty-pocket-mortys-v271-jailed-cheats-2/
        • Informative
        • Agree
        • Winner
        • Like
      • 453 replies
    • [ Push Hero: Idle RPG ] 푸시 히어로: 방치형 RPG 키우기 v0.40.12 Jailed Cheats +4
      Modded/Hacked App: 푸시 히어로: 방치형 RPG 키우기 By MalangGames Corp.
      Bundle ID: com.malang.store.finalidle
      App Store Link: https://apps.apple.com/kr/app/%ED%91%B8%EC%8B%9C-%ED%9E%88%EC%96%B4%EB%A1%9C-%EB%B0%A9%EC%B9%98%ED%98%95-rpg-%ED%82%A4%EC%9A%B0%EA%B8%B0/id6476646717?uo=4

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - God Mode
      - Multiply Attack
      - Freeze Currencies
      - Premium
      - Support English

       

      Jailbroken Hack: https://iosgods.com/topic/204528-push-hero-idle-rpg-%ED%91%B8%EC%8B%9C-%ED%9E%88%EC%96%B4%EB%A1%9C-%EB%B0%A9%EC%B9%98%ED%98%95-rpg-%ED%82%A4%EC%9A%B0%EA%B8%B0-cheats-v04011-4/

       

      ⬇️ iOS Hack Download IPA Link: https://iosgods.com/topic/204527-push-hero-idle-rpg-%ED%91%B8%EC%8B%9C-%ED%9E%88%EC%96%B4%EB%A1%9C-%EB%B0%A9%EC%B9%98%ED%98%95-rpg-%ED%82%A4%EC%9A%B0%EA%B8%B0-v04011-jailed-cheats-4/
      • 3 replies
    • Love Eden: Chapters of Romance v2.0.2 +10++ Jailed Cheats [ Debug Menu ]
      Modded/Hacked App: Love Eden: Chapters of Romance By NODERNO LIMITED
      Bundle ID: com.noderno.loveeden
      App Store Link: https://apps.apple.com/us/app/love-eden-chapters-of-romance/id6471411677?uo=4

       


      🤩 Hack Features

      - Debug Menu -> Head over to your profile and then tap on Settings.
      • 7 replies
    • Grand War: Rome Strategy Games v1233 +5 Mods [ Damage & Defence ]
      Mod APK Game Name: Grand War: Rome Strategy Games By Joynow Studio
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.rome.caesar.war.strategy.conqueror.games

       

      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - Unlimited Silver
      - Unlimited Gold
      - Unlimited Medals
      • 1 reply
    • Love Eden: Interactive Stories v2.0.2 +10++ Mods [ Debug Menu ]
      Mod APK Game Name: Love Eden: Interactive Stories By Noderno Limited
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.noderno.loveeden

       

      🤩 Hack Features

      - Debug Menu -> Head over to your profile and then tap on Settings. 
      • 1 reply
    • Grand War: Rome Strategy Games v2.4.1 +5 Jailed Cheats [ Damage & Defence ]
      Modded/Hacked App: Grand War: Rome Strategy Games By HangZhouCaiLingTechnology.Co., Limited
      Bundle ID: com.rome.caesar.war.strategy.conqueror.games.2021
      iTunes Store Link: https://apps.apple.com/us/app/grand-war-rome-strategy-games/id1593989305?uo=4

       


      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - Unlimited Silver
      - Unlimited Gold
      - Unlimited Medals
        • Agree
        • Like
      • 45 replies
    • Classroom of the Elite v1.0.2 +8 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Classroom of the Elite By Crunchyroll, LLC
      Bundle ID: com.crunchyroll.gv.classroomoftheelite
      App Store Link: https://apps.apple.com/us/app/classroom-of-the-elite/id6670073323?uo=4

       
       

      🤩 Hack Features

      - Freeze Energy
      - Freeze Gems
      - Auto Win
      -- Full Game Unlocked

      VIP
      - Unlimited Coins -> Earn some.
      - Unlimited Gems -> Spend some.
      - Unlimited Energy - Earn some.
      - Unlimited XP -> Earn some.
        • Like
      • 9 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines