Jump to content

13 posts in this topic

Recommended Posts

Posted

Hello,

 

I checked an App using IDA and I found an interesting line where I'd like to get the values from. The lineitself is a _strlen command which should hold the value.

 

Now I right clicked the line and did "Copy address to command line" wich gave me "0xC10C4C".

 

Then I did "b s -a 0xC10C4C" on LLDB but it just returned "Breakpoint 1: no locations (pending). WARNING: Unable to resolve breakpoint to any actual locations."

 

And when I resume the app the breakpoint won't "break", the app just continues

 

How can I get the right address to set the breakpoint?

Posted

Now I read somewhere that I would need to do "image list -o -f" to get a list of the objects.

The base address should be the value after [0] which is 0x00000000000e4000 in my case.

 

Then I went to IDA to check the line where it says __text:0002512C which is 0x2512C

 

Now I should add the 2 to get the address:

 

0x2512C + 0x00000000000e4000 = 0x10912C

 

Now when I do "b s -a 0x10912C" it says "Breakpoint 1: address = 0x000000000010912C" so it seems it found the address now.

 

When I open the app and perform an action that should trigger the breakpoint it still does not.

 

What could be the issue here?

Posted (edited)

I just tried it with GDB

 

I had to thin the app to make it work.

 

I used "info shared" to get the string with offset  (offset 0x10000) (Why is the offset different this time?)

 

Then I used this 0x10000 + 0x2512C = 0x3512C

 

Afterwards I used break *0x3512C and the breakpoint registered

 

(gdb) break *0x3512C
Breakpoint 1 at 0x3512C
 
But again the breakpoint doesn't get hit.
 
What could potentially be wrong?
 
EDIT:
 
I just hooked a function that comes after the part where I want to put a breakpoint
 
break funcname
 
and GDB returned Breakpoint 2, 0x35f9e6f8 in funcname ()
 
when I ran the App the breakpoint hit without any issues.
 
Now I think I got the wrong address.
 
GDB returned 0x35f9e6f8 as address for the function
 
When I look it up in IDA it is listed as "__picsymbolstub4:00C6F5CC"
 
so address should be 0xC6F5CC
 
When I do the math
 
0xC6F5CC + 0x10000 = 0xC7F5CC the result is totally different from 0x35f9e6f8
 
So maybe I misinterpret the pointer I got from IDA?
 
Edit 2:
 
Could it be I need to use a different base offset? info shared lists multiple files with offsets.
 
I examined the App.app/App binary in IDA and the function was there along with the pointer I need. How do I know if this function is in the main executable or in a lib?
Updated by maddo7
Posted

I just tried it with GDB

 

I had to thin the app to make it work.

 

I used "info shared" to get the string with offset  (offset 0x10000) (Why is the offset different this time?)

 

Then I used this 0x10000 + 0x2512C = 0x3512C

 

Afterwards I used break *0x3512C and the breakpoint registered

 

(gdb) break *0x3512C

Breakpoint 1 at 0x3512C

 

But again the breakpoint doesn't get hit.

 

What could potentially be wrong?

 

EDIT:

 

I just hooked a function that comes after the part where I want to put a breakpoint

 

break funcname

 

and GDB returned Breakpoint 2, 0x35f9e6f8 in funcname ()

 

when I ran the App the breakpoint hit without any issues.

 

Now I think I got the wrong address.

 

GDB returned 0x35f9e6f8 as address for the function

 

When I look it up in IDA it is listed as "__picsymbolstub4:00C6F5CC"

 

so address should be 0xC6F5CC

 

When I do the math

 

0xC6F5CC + 0x10000 = 0xC7F5CC the result is totally different from 0x35f9e6f8

 

So maybe I misinterpret the pointer I got from IDA?

 

Edit 2:

 

Could it be I need to use a different base offset? info shared lists multiple files with offsets.

 

I examined the App.app/App binary in IDA and the function was there along with the pointer I need. How do I know if this function is in the main executable or in a lib?

Did you remove ASLR?

Posted

No, I'm new to this and followed a tutorial. How would I do this? I used a cracked version of the App to begin with.

You download the game/app from itunes, import it to your phone, crack it, take the binary to ArmConverter , thin and remove ASLR

Posted

You download the game/app from itunes, import it to your phone, crack it, take the binary to ArmConverter , thin and remove ASLR

 

Should I analyze it with IDA after doing all this?

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Crunchyroll: Two Strikes v1.0.4 +2 Jailed Cheats [ Unlocked ]
      Modded/Hacked App: Crunchyroll: Two Strikes By Crunchyroll, LLC
      Bundle ID: com.crunchyroll.gv.twostrikes
      App Store Link: https://apps.apple.com/us/app/crunchyroll-two-strikes/id6742846993?uo=4

       


      🤩 Hack Features

      - God Mode *Online Untested*
      -- Full Game Unlocked
      • 8 replies
    • Bejeweled Stars v4.0.2 +2++ Cheats [ Unlimited Everything ]
      Modded/Hacked App: Bejeweled Stars By Electronic Arts
      Bundle ID: com.ea.ios.bejeweledskies
      iTunes Store Link: https://apps.apple.com/us/app/bejeweled-stars/id974135847
       

      Hack Features:
      - Unlimited Everything -> Use coins or powerups to gain an unlimited amount.


      Jailbreak required hack(s): [Mod Menu Hack] Bejeweled Stars v3.02.0 +1++ Cheats [ Unlimited Everything ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 16 replies
    • Parking Master Multiplayer 2 v2.9.5 +4 Jailed Cheats [ No Damage ]
      Modded/Hacked App: Parking Master Multiplayer 2 By SPEKTRA GAMES OYUN VE YAZILIM ANONIM SIRKETI
      Bundle ID: com.SpektraGames.ParkingMasterMultiplayer2
      iTunes Store Link: https://apps.apple.com/us/app/parking-master-multiplayer-2/id1604738089?uo=4

       
       

      🤩 Hack Features

      - Freeze Fuel
      - No Damage
      - No Traffic
      -- No Forced Ads
      • 10 replies
    • Episode My First Kiss BL Story v2.0.5 +2 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Episode My First Kiss BL Story By Faifly, LLC
      Bundle ID: com.faifly.my.first.kiss.bl.yaoi.choices
      iTunes Store Link: https://apps.apple.com/us/app/episode-my-first-kiss-bl-story/id1644503857?uo=4

       
       

      🤩 Hack Features

      - Unlimited Feathers -> Spend some.
      - Unlimited Gems -> Buy a feather.


      🍏 Jailbreak iOS hacks: [Mod Menu Hack] Episode My First Kiss BL Story v1.5.20 +2 Cheats [ Unlimited Currencies ] - Free Jailbreak Cheats - iOSGods
      🤖 Modded Android APKs: https://iosgods.com/forum/68-android-section/
      • 15 replies
    • Couple Breaker: Romance Otome v1.0.8 +1 Jailed Cheat [ Free Premium Choices ]
      Modded/Hacked App: Couple Breaker: Romance Otome By Storytaco.inc
      Bundle ID: com.storytaco.p37client
      App Store Link: https://apps.apple.com/us/app/couple-breaker-romance-otome/id6502985582?uo=4

       


      🤩 Hack Features

      - Free Premium Choices
      • 7 replies
    • Mystery Matters v3.5.0 +6 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Mystery Matters By Playrix
      Bundle ID: com.playrix.mystery-matters
      iTunes Store Link: https://apps.apple.com/us/app/mystery-matters/id6450447751
       

      Hack Features:
      - Freeze Coins
      - Freeze Stars
      - Freeze Lives
      - Freeze Moves

      VIP
      Note - These features will get you banned from teams/clans.
      - Unlimited Coins -> Earn or spend some.
      - Unlimited Stars -> Earn some.
      • 62 replies
    • GEARZBOUND v1.90.61 +3 Jailed Cheats [ Damage & Defence ]
      Modded/Hacked App: 기어즈바운드 By WHITEBEARDGAMES
      Bundle ID: com.WhiteBeardGames.GEARZBOUND
      App Store Link: https://apps.apple.com/us/app/%EA%B8%B0%EC%96%B4%EC%A6%88%EB%B0%94%EC%9A%B4%EB%93%9C/id1560784581?uo=4

       


      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      • 6 replies
    • Boxing Superstar v1.0.24 +1 Jailed Cheat [ Unlimited Cash ]
      Modded/Hacked App: Boxing Superstar By Scott Baillie
      Bundle ID: com.lazyboydevelopments.boxingsuperstar
      App Store Link: https://apps.apple.com/us/app/boxing-superstar/id1550517987?uo=4

       

      🤩 Hack Features

      - Unlimited Cash
      • 0 replies
    • Five Hearts Under One Roof v1.1.3 +3 Jailed Cheats [ All Chapters Unlocked ]
      Modded/Hacked App: Five Hearts Under One Roof By Storytaco.inc
      Bundle ID: com.storytaco.pc01mclient
      iTunes Store Link: https://apps.apple.com/us/app/five-hearts-under-one-roof/id6742767401?uo=4

       


      🤩 Hack Features

      - Unlimited Love Letters & All Scenes Unlocked
      - All Chapters Unlocked
      - All Ranking Characters Unlocked
      • 123 replies
    • GhostM Global +5 cheats
      Modded/Hacked App: GhostM Global By MGAME Corp
      Bundle ID: com.mgame.gb.ghostm
      App Store Link: https://apps.apple.com/ph/app/ghostm-global/id6749339629?uo=4

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - Fast Use Hp Potions 
      - Fast Use Sp Potions
      - High Jump Height
      - High Attack Range -> Tested with archer. Not sure other classes.
      - Attack Speed Boost
       

       

      ⬇️ iOS Hack Download IPA Link


      Hidden Content
      React or reply to this topic to see the <a href='https://iosgods.com/topic/3762-info-how-to-unlockview-the-hidden-content-on-iosgods/#findComment-78119'>hidden content & download link</a>. 👀







       

      📖 PC Installation Instructions

      STEP 1: Download the pre-hacked .IPA file from the link above to your computer. To download from the iOSGods App, see our iOSGods App IPA Download Tutorial which includes a video example.
      STEP 2: Download Sideloadly and install it on your Windows or Mac.
      STEP 3: Open Sideloadly on your computer, connect your iOS device, and wait until your device name appears in Sideloadly.
      STEP 4: Once your iDevice is recognized, drag the modded .IPA file you downloaded and drop it into the Sideloadly application.
      STEP 5: Enter your Apple Account email, then press “Start.” You’ll then be asked to enter your password. Go ahead and provide the required information.
      STEP 6: Wait for Sideloadly to finish sideloading/installing the hacked IPA. If there are issues during installation, please read the note below.
      STEP 7: Once the installation is complete and you see the app on your Home Screen, you will need to go to Settings -> General -> Profiles / VPN & Device Management. Once there, tap on the email you entered from step 6, and then tap on 'Trust [email protected]'.
      STEP 8: Now go to your Home Screen and open the newly installed app and everything should work fine. You may need to follow further per app instructions inside the hack's popup in-game.

      NOTE: iOS/iPadOS 16 and later, you must enable Developer Mode. For free Apple Developer accounts, you will need to repeat this process every 7 days. If you have any questions or problems, read our Sideloadly FAQ section of the topic and if you don't find a solution, please post your issue below and we'll do our best to help! If the hack does work for you, post your feedback below and help out other fellow members that are encountering issues.

       

      🙌 Credits

      - KyosukeNanbu

       

      📷 Cheat Video/Screenshots

      N/A
      • 49 replies
    • (Gakuen Bungo Stray Dogs Japan) 學園文豪ストレイドッグス v1.0.1 +2 Jailed Cheats
      Modded/Hacked App: 學園文豪ストレイドッグス By NextNinja Co.,Ltd.
      Bundle ID: jp.co.nextninja.bunstgakuen
      App Store Link: https://apps.apple.com/jp/app/%E5%AD%B8%E5%9C%92%E6%96%87%E8%B1%AA%E3%82%B9%E3%83%88%E3%83%AC%E3%82%A4%E3%83%89%E3%83%83%E3%82%B0%E3%82%B9/id6532588682?uo=4

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - Damage Multiplier
      - Defense Multiplier

       

      ⬇️ iOS Hack Download IPA Link


      Hidden Content

      Download via the iOSGods App







       

      📖 PC Installation Instructions

      STEP 1: Download the pre-hacked .IPA file from the link above to your computer. To download from the iOSGods App, see our iOSGods App IPA Download Tutorial which includes a video example.
      STEP 2: Download Sideloadly and install it on your Windows or Mac.
      STEP 3: Open Sideloadly on your computer, connect your iOS device, and wait until your device name appears in Sideloadly.
      STEP 4: Once your iDevice is recognized, drag the modded .IPA file you downloaded and drop it into the Sideloadly application.
      STEP 5: Enter your Apple Account email, then press “Start.” You’ll then be asked to enter your password. Go ahead and provide the required information.
      STEP 6: Wait for Sideloadly to finish sideloading/installing the hacked IPA. If there are issues during installation, please read the note below.
      STEP 7: Once the installation is complete and you see the app on your Home Screen, you will need to go to Settings -> General -> Profiles / VPN & Device Management. Once there, tap on the email you entered from step 6, and then tap on 'Trust [email protected]'.
      STEP 8: Now go to your Home Screen and open the newly installed app and everything should work fine. You may need to follow further per app instructions inside the hack's popup in-game.

      NOTE: iOS/iPadOS 16 and later, you must enable Developer Mode. For free Apple Developer accounts, you will need to repeat this process every 7 days. If you have any questions or problems, read our Sideloadly FAQ section of the topic and if you don't find a solution, please post your issue below and we'll do our best to help! If the hack does work for you, post your feedback below and help out other fellow members that are encountering issues.

       

      🙌 Credits

      - AlyssaX64

       

      📷 Cheat Video/Screenshots

      N/A
      • 0 replies
    • (Shadowverse China) 影之诗 +2 Jailed Cheats
      Modded/Hacked App: 影之诗 By Hangzhou NetEase Leihuo Technology Co., Ltd.
      Bundle ID: com.netease.yzsios
      iTunes Store Link: https://apps.apple.com/cn/app/%E5%BD%B1%E4%B9%8B%E8%AF%97/id1297191124?uo=4


      Mod Requirements:
      - Non-Jailbroken/Jailed or Jailbroken iPhone/iPad/iPod Touch.
      - Sideloadly / Cydia Impactor or alternatives.
      - A Computer Running Windows/macOS/Linux with iTunes installed.


      Hack Features:
      - One Hit Kill
      - Never Die


      Jailbreak required hack(s): 


      iOS Hack Download IPA Link:

      Hidden Content

      Download via the iOSGods App








      PC Installation Instructions:
      STEP 1: If necessary, uninstall the app if you have it installed on your iDevice. Some hacked IPAs will install as a duplicate app. Make sure to back it up so you don't lose your progress.
      STEP 2: Download the pre-hacked .IPA file from the link above to your computer. To download from the iOSGods App, see this tutorial topic.
      STEP 3: Download Sideloadly and install it on your PC.
      STEP 4: Open/Run Sideloadly on your computer, connect your iOS Device, and wait until your device name shows up.
      STEP 5: Once your iDevice appears, drag the modded .IPA file you downloaded and drop it inside the Sideloadly application.
      STEP 6: You will now have to enter your iTunes/Apple ID email login, press "Start" & then you will be asked to enter your password. Go ahead and enter the required information.
      STEP 7: Wait for Sideloadly to finish sideloading/installing the hacked IPA. If there are issues during installation, please read the note below.
      STEP 8: Once the installation is complete and you see the app on your Home Screen, you will need to go to Settings -> General -> Profiles/VPN & Device Management. Once there, tap on the email you entered from step 6, and then tap on 'Trust [email protected]'.
      STEP 9: Now go to your Home Screen and open the newly installed app and everything should work fine. You may need to follow further per app instructions inside the hack's popup in-game.

      NOTE: iOS/iPadOS 16 and later, you must enable Developer Mode. For free Apple Developer accounts, you will need to repeat this process every 7 days. Jailbroken iDevices can also use Sideloadly/Filza/IPA Installer to normally install the IPA with AppSync. If you have any questions or problems, read our Sideloadly FAQ section of the topic and if you don't find a solution, please post your issue down below and we'll do our best to help! If the hack does work for you, post your feedback below and help out other fellow members that are encountering issues.


      Credits:
      - AlyssaX64


      Cheat Video/Screenshots:

      N/A
      • 11 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines