Jump to content

9 posts in this topic

Recommended Posts

Posted (edited)

So I'm trying to hack a game's currency and I've done all that lldb stuff and it gave me this

0x100354f78 <+264>: ldr    w8, [x20, #0x8]

Would I jump to address 0x100354f78 and change ldr    w8, [x20, #0x8] to ldr    w8, r7.

r7 is usually a big value, right?

And that means w8 is money?

Updated by NoHax
Posted (edited)

The offset you get from lldb, is probs right. But it's not always the exact thing lldb says, for you the ldr. If u could post a code/screenshot of the entire function, others (maybe me) can help more. 

 

Also r7 is in armv7 a big value, but it seems like you're hacking arm64, so that will be diffrent.

 

have a look at this post:

 

Updated by Ted2
Posted (edited)
9 minutes ago, Ted2 said:

The offset you get from lldb, is probs right. But it's not always the exact thing lldb says, for you the ldr. If u could post a code/screenshot of the entire function, others (maybe me) can help more. 

 

Also r7 is in armv7 a big value, but it seems like you're hacking arm64, so that will be diffrent.

 

have a look at this post:

 

Here's the whole function

ADD             X0, SP, #0x160+var_128

MOV             X1, X22

BL              __ZNSsC1ERKSs ; std::string::string(std::string const&)

ADD             X1, SP, #0x160+var_128

MOV             X0, X21

MOV             X2, X21

BL              __ZN3Rtt15ShaderComposite14SetNamedShaderESsPNS_6ShaderE ; Rtt::ShaderComposite::SetNamedShader(std::string,Rtt::Shader *)

LDR             X8, [SP,#0x160+var_128]

SUB             X0, X8, #0x18

ADRP            X20, #__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGE

LDR             X20, [X20,#__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGEOFF]

CMP             X0, X20

B.NE            loc_1003550FC

Also just incase heres what lldb gave me

->  0x100354f78 <+264>: ldr    w8, [x20, #0x8]

    0x100354f7c <+268>: str    w8, [x25, #0x8]

    0x100354f80 <+272>: strb   wzr, [x24, #0xa]

    0x100354f84 <+276>: ldr    w8, [x20, #0x8]

 

Updated by NoHax
Posted (edited)
2 minutes ago, NoHax said:

Here's the whole function

  Hide contents

ADD             X0, SP, #0x160+var_128

MOV             X1, X22

BL              __ZNSsC1ERKSs ; std::string::string(std::string const&)

ADD             X1, SP, #0x160+var_128

MOV             X0, X21

MOV             X2, X21

BL              __ZN3Rtt15ShaderComposite14SetNamedShaderESsPNS_6ShaderE ; Rtt::ShaderComposite::SetNamedShader(std::string,Rtt::Shader *)

LDR             X8, [SP,#0x160+var_128]

SUB             X0, X8, #0x18

ADRP            X20, #__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGE

LDR             X20, [X20,#__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGEOFF]

CMP             X0, X20

B.NE            loc_1003550FC

[/spoiler]

Also just incase here's what lldb gave me

  Reveal hidden contents

->  0x100354f78 <+264>: ldr    w8, [x20, #0x8]

    0x100354f7c <+268>: str    w8, [x25, #0x8]

    0x100354f80 <+272>: strb   wzr, [x24, #0xa]

    0x100354f84 <+276>: ldr    w8, [x20, #0x8]

Thank's for helping!

 

I'm not sure, u could try chane the SUB to an ADD, when u'll buy something the coins won't substract but they'll add it.

 

btw for arm64 u gotta remove aslr loaded offset. Now U got the wrong function in IDA.

 

how you do that is by type 'image list'  in lldb & then the above line. There's also a tutorial madr about how to do that, something called like 'how to defeat aslr.....'

Updated by Ted2
Posted (edited)
20 minutes ago, Ted2 said:

I'm not sure, u could try chane the SUB to an ADD, when u'll buy something the coins won't substract but they'll add it.

 

btw for arm64 u gotta remove aslr loaded offset. Now U got the wrong function in IDA.

 

how you do that is by type 'image list'  in lldb & then the above line. There's also a tutorial madr about how to do that, something called like 'how to defeat aslr.....'

Wait, so my offset from lldb was 0x100354f78, I just checked my alsr and its d8000, so I would do 0x100354f78-d8000 to find my offset?

Or do I have to do that watchpoint thing again and then take away my alsr value from the new offset I get?

Updated by NoHax
Posted
38 minutes ago, NoHax said:

Wait, so my offset from lldb was 0x100354f78, I just checked my alsr and its d8000, so I would do 0x100354f78-d8000 to find my offset?

Or do I have to do that watchpoint thing again and then take away my alsr value from the new offset I get?

Take the aslr from the lldb offset. See if that matches in IDA. 

Posted
On 7/6/2017 at 1:32 AM, Ted2 said:

The offset you get from lldb, is probs right. But it's not always the exact thing lldb says, for you the ldr. If u could post a code/screenshot of the entire function, others (maybe me) can help more. 

 

Also r7 is in armv7 a big value, but it seems like you're hacking arm64, so that will be diffrent.

 

have a look at this post:

 

 you don't reply inbox me ???

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Westland Survival - Cowboy RPG v10.1.0 +7 [ Items Cheat ]
      Modded/Hacked App: Westland Survival - Cowboy RPG By HELIO LTD
      Bundle ID: com.heliogames.a1
      iTunes Store Link: https://apps.apple.com/us/app/westland-survival-cowboy-rpg/id1339238576?uo=4


      Hack Features:
      - Unlimited Energy / Instant Energy Refills
      - Unlock All Blueprints
      - Items Duplicate When Split / Items Hack
      - Unlimited Consumable Items
      - Unlimited Item Durability
      - God Mode / Never Die -> Linked with enemies. Useful for looting.
      - One Hit Kill / High Damage -> Linked with enemies. Use with caution.


      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/forum/79-no-jailbreak-section/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 430 replies
    • Subway Surfers Cheats v3.49.2 +5
      Modded/Hacked App: Subway Surfers By Sybo Games ApS
      Bundle ID: com.kiloo.subwaysurfers
      iTunes Store Link: https://apps.apple.com/us/app/subway-surfers/id512939461?uo=4

       

      📌 Mod Requirements

      - Jailbroken iPhone or iPad.
      - iGameGod / Filza / iMazing.
      - Cydia Substrate, ElleKit, Substitute or libhooker depending on your jailbreak (from Sileo, Cydia or Zebra).

       

      🤩 Hack Features

      - Free Store (not Free iAP)
      - Free iAP (ViP Only)
      - Unlock Characters Outfit
      - Custom Jump Height
      - No Clip (To end level swipe to left til you get dizzy, swipe again and you will lose)

       

      Non-Jailbroken Hack: https://iosgods.com/topic/119795-subway-surfers-v3425-jailed-cheats-5/

       

      ⬇️ iOS Hack Download Link: https://iosgods.com/topic/119793-subway-surfers-cheats-v3430-5/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 2,338 replies
    • Township: Farm & City Building v29.0.1 Jailed Cheats +2
      Modded/Hacked App: Township by PLR Worldwide Sales Limited
      Bundle ID: com.playrix.township-ios
      iTunes Store Link: https://apps.apple.com/us/app/township/id638689075?uo=4&at=1010lce4


      Hack Features:
      - Freeze Currencies

      EDIT: Please be aware that this maybe cause your account banned, please use with caution and don’t abuse


      iOS Hack Download Link: https://iosgods.com/topic/116584-arm64-township-farm-city-building-v852-jailed-cheats-2/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 1,709 replies
    • DomiNations v12.1500.1502 +40++ Cheats [ Exclusive ]
      Modded/Hacked App: DomiNations by NEXON M Inc.
      Bundle ID: com.nexonm.dominations
      iTunes Store Link: https://itunes.apple.com/us/app/dominations/id922558758


      Mod Requirements:
      - Jailbroken iPhone/iPad/iPod Touch.
      - iFile / Filza / iFunBox / iTools or any other file managers for iOS.
      - Cydia Substrate (from Cydia).
      - PreferenceLoader (from Cydia).


      Hack Features:
      - Unlimited Crowns/Food/Oil/Gold -> Resources will add instead of subtracting. Works with Crowns. Read note inside the feature for more information! This does not work for speeding up buildings.
      - All Achievements Unlocked
      - Freeze Crowns/Food/Oil/Gold -> Freezes Resources so they do not decrease when used! This does not work for speeding up buildings.
      - No Citizens Cost
      - Place Multiple of Same Building
      - 0 Cost to Speed Up Training Troops
      - 0 Cost to Speed Up Tactics
      - 0 Food Cost to Train Troops
      - 0 Food Cost to Upgrade Troops
      - No Timer to Upgrade Troops
      - 0 Food Cost to Train Spells
      - 0 General Train Cost
      - No General Train Cooldown
      - 0 Food Cost to Build Wonder
      - 0 Food Cost to Research Troops
      - 0 Food Cost to Upgrade Tactics
      - No Timer to Library Research
      - No Timer to Upgrade Spells
      - 0 Cost to Upgrade Buildings
      - 0 Workers Required to Upgrade
      This hack is an In-Game Mod Menu (iGMM). In order to activate the Mod Menu, tap on the iOSGods button found inside the app.
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 5,001 replies
    • BlazBlue Entropy Effect v1.1.0 +3 Cheats [ Damage + More ]
      Modded/Hacked App: BlazBlue Entropy Effect By ActGames Inc.
      Bundle ID: com.actgames.bbee.ios.gl
      App Store Link: https://apps.apple.com/us/app/blazblue-entropy-effect/id6742527094?uo=4

       


      🤩 Hack Features

      - Damage Multiplier
      - God Mode
      - Freeze MP
        • Winner
        • Like
      • 9 replies
    • Train of Hope: Survival Game v1.9.1 +5 Jailed Cheats [ Damage & Defence ]
      Modded/Hacked App: Train of Hope: Survival Game By Samfinaco LLC
      Bundle ID: com.samfinaco.tos
      iTunes Store Link: https://apps.apple.com/us/app/train-of-hope-survival-game/id6636482655?uo=4

       
       

      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      - Unlimited Resources -> Will increase instead of decrease.
      - Unlimited Hero Experience -> Will increase instead of decrease.
        • Haha
        • Thanks
        • Winner
        • Like
      • 56 replies
    • Train of Hope: Survival Game v1.9.1 +5 Cheats [ Damage & Defence ]
      Modded/Hacked App: Train of Hope: Survival Game By Samfinaco LLC
      Bundle ID: com.samfinaco.tos
      iTunes Store Link: https://apps.apple.com/us/app/train-of-hope-survival-game/id6636482655?uo=4

       


      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      - Unlimited Resources -> Will increase instead of decrease.
      - Unlimited Hero Experience -> Will increase instead of decrease.
        • Agree
        • Like
      • 43 replies
    • Bloons Card Storm v5.1 +4 Jailed Cheats [ Unlimited Cards ]
      Modded/Hacked App: Bloons Card Storm By Ninja Kiwi Limited
      Bundle ID: com.ninjakiwi.bloonscardstorm
      iTunes Store Link: https://apps.apple.com/us/app/bloons-card-storm/id6478193271?uo=4


      Hack Features:
      - Unlimited Cards
      - Unlock All Cards
      - Unlock All Cosmetics -> Avatars, Card Backs etc.
      - Unlock All Heroes


      Jailbreak required hack(s): [Mod Menu Hack] Bloons Card Storm v1.00 +4 Cheats [ Unlimited Cards ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 29 replies
    • Bloons Card Storm v5.1 +4 Cheats [ Unlimited Cards ]
      Modded/Hacked App: Bloons Card Storm By Ninja Kiwi Limited
      Bundle ID: com.ninjakiwi.bloonscardstorm
      iTunes Store Link: https://apps.apple.com/us/app/bloons-card-storm/id6478193271?uo=4


      Hack Features:
      - Unlimited Cards
      - Unlock All Cards
      - Unlock All Cosmetics -> Avatars, Card Backs etc.
      - Unlock All Heroes


      Non-Jailbroken & No Jailbreak required hack(s): [IPA Mod Menu] Bloons Card Storm v1.00 +4 Cheats [ Unlimited Cards ] - Free Non-Jailbroken IPA Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Thanks
        • Winner
        • Like
      • 32 replies
    • Merge 2 Survive: Zombie Game v1.22.2 +3 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Merge 2 Survive: Zombie Game By Pixodust Aplicativos LTDA
      Bundle ID: com.pixodust.games.merge.survive.puzzle.game
      iTunes Store Link: https://apps.apple.com/us/app/merge-2-survive-zombie-game/id6468487156?uo=4


      Hack Features:
      - Unlimited Coins
      - Unlimited Diamonds
      - Unlimited Energy


      Jailbreak required hack(s): [Mod Menu Hack] Merge 2 Survive: Zombie Game v1.0.3 +3 Cheats [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Thanks
        • Winner
        • Like
      • 32 replies
    • Merge 2 Survive: Zombie Game v1.22.2 +3 Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Merge 2 Survive: Zombie Game By Pixodust Aplicativos LTDA
      Bundle ID: com.pixodust.games.merge.survive.puzzle.game
      iTunes Store Link: https://apps.apple.com/us/app/merge-2-survive-zombie-game/id6468487156?uo=4


      Hack Features:
      - Unlimited Coins
      - Unlimited Diamonds
      - Unlimited Energy


      Non-Jailbroken & No Jailbreak required hack(s): [Non-Jailbroken Hack] Merge 2 Survive: Zombie Game v1.0.3 +3 Jailed Cheats [ Unlimited Currencies ] - Free Non-Jailbroken IPA Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Thanks
        • Winner
        • Like
      • 35 replies
    • Disney Emoji Blitz Game v71.0.0 +1++ Jailed Cheat [ Unlimited Currencies ]
      Modded/Hacked App: Disney Emoji Blitz Game By Jam City, Inc.
      Bundle ID: com.disney.emojimatch
      iTunes Store Link: https://apps.apple.com/us/app/disney-emoji-blitz-game/id1017551780
       

      Hack Features:
      - Unlimited Currencies -> Earn some.


      Jailbreak required hack(s): https://iosgods.com/topic/168886-disney-emoji-blitz-game-all-versions-1-cheats-unlimited-currencies/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 185 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines