Jump to content

9 posts in this topic

Recommended Posts

Posted (edited)

So I'm trying to hack a game's currency and I've done all that lldb stuff and it gave me this

0x100354f78 <+264>: ldr    w8, [x20, #0x8]

Would I jump to address 0x100354f78 and change ldr    w8, [x20, #0x8] to ldr    w8, r7.

r7 is usually a big value, right?

And that means w8 is money?

Updated by NoHax
Posted (edited)

The offset you get from lldb, is probs right. But it's not always the exact thing lldb says, for you the ldr. If u could post a code/screenshot of the entire function, others (maybe me) can help more. 

 

Also r7 is in armv7 a big value, but it seems like you're hacking arm64, so that will be diffrent.

 

have a look at this post:

 

Updated by Ted2
Posted (edited)
9 minutes ago, Ted2 said:

The offset you get from lldb, is probs right. But it's not always the exact thing lldb says, for you the ldr. If u could post a code/screenshot of the entire function, others (maybe me) can help more. 

 

Also r7 is in armv7 a big value, but it seems like you're hacking arm64, so that will be diffrent.

 

have a look at this post:

 

Here's the whole function

ADD             X0, SP, #0x160+var_128

MOV             X1, X22

BL              __ZNSsC1ERKSs ; std::string::string(std::string const&)

ADD             X1, SP, #0x160+var_128

MOV             X0, X21

MOV             X2, X21

BL              __ZN3Rtt15ShaderComposite14SetNamedShaderESsPNS_6ShaderE ; Rtt::ShaderComposite::SetNamedShader(std::string,Rtt::Shader *)

LDR             X8, [SP,#0x160+var_128]

SUB             X0, X8, #0x18

ADRP            X20, #__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGE

LDR             X20, [X20,#__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGEOFF]

CMP             X0, X20

B.NE            loc_1003550FC

Also just incase heres what lldb gave me

->  0x100354f78 <+264>: ldr    w8, [x20, #0x8]

    0x100354f7c <+268>: str    w8, [x25, #0x8]

    0x100354f80 <+272>: strb   wzr, [x24, #0xa]

    0x100354f84 <+276>: ldr    w8, [x20, #0x8]

 

Updated by NoHax
Posted (edited)
2 minutes ago, NoHax said:

Here's the whole function

  Hide contents

ADD             X0, SP, #0x160+var_128

MOV             X1, X22

BL              __ZNSsC1ERKSs ; std::string::string(std::string const&)

ADD             X1, SP, #0x160+var_128

MOV             X0, X21

MOV             X2, X21

BL              __ZN3Rtt15ShaderComposite14SetNamedShaderESsPNS_6ShaderE ; Rtt::ShaderComposite::SetNamedShader(std::string,Rtt::Shader *)

LDR             X8, [SP,#0x160+var_128]

SUB             X0, X8, #0x18

ADRP            X20, #__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGE

LDR             X20, [X20,#__ZNSs4_Rep20_S_empty_rep_storageE_ptr@PAGEOFF]

CMP             X0, X20

B.NE            loc_1003550FC

[/spoiler]

Also just incase here's what lldb gave me

  Reveal hidden contents

->  0x100354f78 <+264>: ldr    w8, [x20, #0x8]

    0x100354f7c <+268>: str    w8, [x25, #0x8]

    0x100354f80 <+272>: strb   wzr, [x24, #0xa]

    0x100354f84 <+276>: ldr    w8, [x20, #0x8]

Thank's for helping!

 

I'm not sure, u could try chane the SUB to an ADD, when u'll buy something the coins won't substract but they'll add it.

 

btw for arm64 u gotta remove aslr loaded offset. Now U got the wrong function in IDA.

 

how you do that is by type 'image list'  in lldb & then the above line. There's also a tutorial madr about how to do that, something called like 'how to defeat aslr.....'

Updated by Ted2
Posted (edited)
20 minutes ago, Ted2 said:

I'm not sure, u could try chane the SUB to an ADD, when u'll buy something the coins won't substract but they'll add it.

 

btw for arm64 u gotta remove aslr loaded offset. Now U got the wrong function in IDA.

 

how you do that is by type 'image list'  in lldb & then the above line. There's also a tutorial madr about how to do that, something called like 'how to defeat aslr.....'

Wait, so my offset from lldb was 0x100354f78, I just checked my alsr and its d8000, so I would do 0x100354f78-d8000 to find my offset?

Or do I have to do that watchpoint thing again and then take away my alsr value from the new offset I get?

Updated by NoHax
Posted
38 minutes ago, NoHax said:

Wait, so my offset from lldb was 0x100354f78, I just checked my alsr and its d8000, so I would do 0x100354f78-d8000 to find my offset?

Or do I have to do that watchpoint thing again and then take away my alsr value from the new offset I get?

Take the aslr from the lldb offset. See if that matches in IDA. 

Posted
On 7/6/2017 at 1:32 AM, Ted2 said:

The offset you get from lldb, is probs right. But it's not always the exact thing lldb says, for you the ldr. If u could post a code/screenshot of the entire function, others (maybe me) can help more. 

 

Also r7 is in armv7 a big value, but it seems like you're hacking arm64, so that will be diffrent.

 

have a look at this post:

 

 you don't reply inbox me ???

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Age of Hexpires Rise of Hexpires New Age v0.0.157 [ +2 APK MOD ] Currency Max
      Mod APK Game Name: Age of Hexpires Rise of Hexpires New Age
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.hook.axeofhexpires&ref=apkcombo.com

      🤩 Hack Features

      - Unlimited Gold
      - Unlimited resources
      • 0 replies
    • Tiny Heroes: Idle Boss Fight v1.5.2 [ +1 APK MOD ] Currency Max
      Mod APK Game Name: Tiny Heroes: Idle Boss Fight
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.vivuga.herotycoon

      🤩 Hack Features

      - Currency & Resources Freeze
      • 0 replies
    • Legend of Mushroom v2.0.71 Jailed Cheats +4
      Modded/Hacked App: Legend of Mushroom By JOY MOBILE NETWORK PTE. LTD.
      Bundle ID: com.us.mxdzz.ios
      App Store Link: https://apps.apple.com/us/app/legend-of-mushroom/id6475333787?uo=4

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - Multiply Attack
      - God Mode
      - Fast Attack
      - Fast Skill Cooldown

       

      ⬇️ iOS Hack Download IPA Link: https://iosgods.com/topic/180880-legend-of-mushroom-v2071-jailed-cheats-4/
      • 495 replies
    • Cats & Soup : Magic Recipe v0.12.1 Jailed Cheats +1
      Modded/Hacked App: Cats & Soup : Magic Recipe By NEOWIZ Corporation
      Bundle ID: com.hidea.cat.magicrecipe
      App Store Link: https://apps.apple.com/us/app/cats-soup-magic-recipe/id6446347021?uo=4

       

      📌 Mod Requirements

      - Non-Jailbroken/Jailed or Jailbroken iPhone or iPad.
      - Sideloadly or alternatives.
      - Computer running Windows/macOS/Linux with iTunes installed.

       

      🤩 Hack Features

      - Infinite Currencies

       

      Jailbroken Hack: https://iosgods.com/topic/207756-cats-soup-magic-recipe-cheats-auto-update-1/

       

      ⬇️ iOS Hack Download IPA Link: https://iosgods.com/topic/207755-cats-soup-magic-recipe-v0121-jailed-cheats-1/
      • 3 replies
    • Myth Reborn: Merge Master v2.0.7 [ +2 APK MOD ] Currency Max
      Mod APK Game Name: Myth Reborn: Merge Master
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.dobolix.mythreborn.merge.master

      🤩 Hack Features

      - Unlimited Gems
      - Unlimited Coins
      • 0 replies
    • Viking Hero TD: Roguelike RTS v1.0.4 [ +7 APK MOD ] Currency Max
      Mod APK Game Name: Viking Hero TD: Roguelike RTS
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.SimpleBitStudios.VikingHeroTD&hl=en

      🤩 Hack Features

      - Unlimited Coins
      - Unlimited Amber
      - Unlimited Keys +3
      - Unlimited Ascend
      - HP MAX
      - ATK MAX
      - ATK Range
      • 0 replies
    • Pines Peak: Merge Travel Games +6 Jailed Cheats [ Unlimited Cash ]
      Modded/Hacked App: Pines Peak: Merge Travel Games By VIZOR APPS LTD
      Bundle ID: com.vizor-apps.Road-Trip2
      App Store Link: https://apps.apple.com/ph/app/pines-peak-merge-travel-games/id6743472188?uo=4

       


      🤩 Hack Features

      - Freeze Merge Energy
      - Freeze Energy
      - Freeze Cash

      VIP
      - Unlimited Merge Energy -> Spend some then restart the game.
      - Unlimited Energy -> Spend some then restart the game.
      - Unlimited Cash -> Spend some then restart the game.
      • 9 replies
    • MIST: Horror Idle Survival RPG +4 Jailed Cheats [ Damage + More ]
      Modded/Hacked App: MIST: Horror Idle Survival RPG By Anton Nazarov
      Bundle ID: com.eg.mist.horror.idle.rpg
      iTunes Store Link: https://apps.apple.com/us/app/mist-horror-idle-survival-rpg/id6499312165?uo=4


      Hack Features:
      - God Mode
      - Damage Multiplier
      - Unlimited Resources/Currencies -> Will not decrease.
      - Unlock All Skill Slots -> Slots will cost nothing to unlock then after disable this feature to use the slots.


      Jailbreak required hack(s): [Mod Menu Hack] MIST: Horror Idle Survival RPG v1.2 +4 Cheats [ Damage Multiplier ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 24 replies
    • Earth Inc. Tycoon Idle Miner +3 Jailed Cheats [ Unlimited Currencies ]
      Modded/Hacked App: Earth Inc. Tycoon Idle Miner By Treetop Crew Oy
      Bundle ID: com.TreetopCrew.EarthInc
      iTunes Store Link: https://apps.apple.com/us/app/earth-inc-tycoon-idle-miner/id1582514877?uo=4


      Mod Requirements:
      - Non-Jailbroken/Jailed or Jailbroken iPhone/iPad/iPod Touch.
      - Sideloadly / Cydia Impactor or alternatives.
      - A Computer Running Windows/macOS/Linux with iTunes installed.


      Jailbreak required hack(s): [Mod Menu Hack] Earth Inc. v2.2.1 +3 Cheats [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 97 replies
    • Hellsquad Rrrush! +3 Jailed Cheats [ Damage & Defence ]
      Modded/Hacked App: Hellsquad Rrrush! By Wemade Max Co., Ltd.
      Bundle ID: com.wemademax.projectsc
      App Store Link: https://apps.apple.com/us/app/hellsquad-rrrush/id6737409896?uo=4

       


      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      • 50 replies
    • Tiny Reaper: Reborn +4 Jailed Cheats [ God Mode + More ]
      Modded/Hacked App: Tiny Reaper: Reborn By DAERI SOFT
      Bundle ID: com.daerigame.babysasin
      App Store Link: https://apps.apple.com/us/app/tiny-reaper-reborn/id6739761698?uo=4

       


      🤩 Hack Features

      - God Mode
      - One-Hit Kill
      - No Skill Cooldown
      - Dumb Enemies
      • 34 replies
    • dropcult +3 Jailed Cheats [ Damage & Defence ]
      Modded/Hacked App: dropcult By SMOKESPOT GAMES, LLC
      Bundle ID: com.SmokeSpotGames.SkreetFigherzGame
      App Store Link: https://apps.apple.com/us/app/dropcult/id1550684098?uo=4

       
       

      🤩 Hack Features

      - Damage Multiplier
      - Defence Multiplier
      - God Mode
      • 45 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines