Jump to content

6 posts in this topic

Recommended Posts

Posted (edited)

I want to find IDA address by LLDB.
New puzzle. Convert memory address to IDA address in any way
I found the correct memory address through other ways, but the value of this memory address does not change through the game, so the watchpoint will not be HIT when i set watchpoint, finally unable to find the IDA address.
I have tried to change the memory data, but watchpoint still does not HIT
I am grateful for any help

Edit:The Game Name is "Knives Out By NetEase Games"

Features::Characters become larger(easy to shoot)

search for 0.78(F64) with IGG ,then tap "neaby" and search for 1(auto or F64,in my case search use auto type),then search for 1.000(F64) ,you will get four or five results, change the last one(1.0000) to 5.000, characters will 5 times the size compared to the original.

 @DiDA 

 @shmoo 

 @xiaov 

 @Mayaxaya 

 @Joka 

Updated by Curtain
  • Like 1
  • Haha 1
Posted
19 hours ago, jayvee said:

modify it using memory editor? im sure your watchpoint hits as long as there is changes made

In general, the conditions of breakpoints triggered by the operation of the game changes, so modify the memory value can not trigger a breakpoint ,I have already tried.

Posted

but watchpoint triggers as long as theres a changes on that address. watchpoint and breakpoint are different thing

Posted (edited)
9 hours ago, Curtain said:

In general, the conditions of breakpoints triggered by the operation of the game changes, so modify the memory value can not trigger a breakpoint ,I have already tried.

I understand what you're saying. I've had this happen to me before, but it hasn't happened in a long time.

 

Player size must be held in some instance variable of the player class. Since your watchpoint isn't hitting because the value never changes, I believe your best bet would be to find any function that is apart of the player class, and find the register where the this/self pointer is stored. Set a breakpoint on any LDR or STR instruction with the register where the this pointer is stored, and let it hit. Then you can examine the instance variables of that object by doing

<register>+0xnumber

. Lets say you find R0 as the register thats holding the this pointer. In GDB, you would do

x/i $r0+0x4

to access the first instance variable, then

x/i $r0+0x8

to access the second, and so on. Keep counting by 0x4. You want to keep doing this until GDB spits out 1.0. The great thing about GDB is that you can tell what kind of format you want it to put the number in. In your case it would be a float, so you would do

x/f $r0+0x4

and so on until you see 1.0.

 

You can also see strings this way :D Just do

x/s $r0+0x4

. It doesn't apply to what you're doing right now, but its just a tip for things later on. GDB is amazing. Its like a weapon

 

Once you do find the register/number combination that gives back 1.0, write it down. Do a hex search in IDA for

LDR Rx, [<your register/number combination>

, for 0<=x<=12. Then if you dont come up with any results, do

VLDR Sx, [<your register/number combination>]

, for 0<=x<=18.

 

Its very far fetched but it may work. Good luck! And great idea about changing player size.

Updated by Guest
additional info
Posted
On 1/16/2018 at 2:55 PM, Guest said:

I understand what you're saying. I've had this happen to me before, but it hasn't happened in a long time.

 

Player size must be held in some instance variable of the player class. Since your watchpoint isn't hitting because the value never changes, I believe your best bet would be to find any function that is apart of the player class, and find the register where the this/self pointer is stored. Set a breakpoint on any LDR or STR instruction with the register where the this pointer is stored, and let it hit. Then you can examine the instance variables of that object by doing


<register>+0xnumber

. Lets say you find R0 as the register thats holding the this pointer. In GDB, you would do


x/i $r0+0x4

to access the first instance variable, then


x/i $r0+0x8

to access the second, and so on. Keep counting by 0x4. You want to keep doing this until GDB spits out 1.0. The great thing about GDB is that you can tell what kind of format you want it to put the number in. In your case it would be a float, so you would do


x/f $r0+0x4

and so on until you see 1.0.

 

You can also see strings this way :D Just do


x/s $r0+0x4

. It doesn't apply to what you're doing right now, but its just a tip for things later on. GDB is amazing. Its like a weapon

 

Once you do find the register/number combination that gives back 1.0, write it down. Do a hex search in IDA for


LDR Rx, [<your register/number combination>

, for 0<=x<=12. Then if you dont come up with any results, do


VLDR Sx, [<your register/number combination>]

, for 0<=x<=18.

 

Its very far fetched but it may work. Good luck! And great idea about changing player size.

Dont understand :( 

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Music Wars Rockstar: Rap Life v1.4.1 Cheats +4
      Modded/Hacked App: Music Wars Rockstar: Rap Life By Music Wars LLC
      Bundle ID: com.mwcompany.MusicWarsRockstar
      iTunes Store Link: https://apps.apple.com/us/app/music-wars-rockstar-rap-life/id1623455289?uo=4

      Mod Requirements:
      - Non-Jailbroken/Jailed or Jailbroken iPhone/iPad/iPod Touch.
      - Sideloadly / Cydia Impactor or alternatives.
      - A Computer Running Windows/macOS/Linux with iTunes installed.


      Hack Features:
      - Unlimited money
      - Unlimited creativity
      - Unlimited health
      - Unlimited happiness
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 365 replies
    • BitLife - Life Simulator Cheats v3.22.5 +2
      Modded/Hacked App: BitLife - Life Simulator by Candywriter, LLC
      Bundle ID: com.wtfapps.apollo16
      iTunes Store Link: https://apps.apple.com/us/app/bitlife-life-simulator/id1374403536?uo=4&at=1010lce4


      Hack Features:
      - Infinite Cash
      - Free Bitizen Purchase (Press Cancle) - Work for All Versions


      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/topic/84167-arm64-bitlife-life-simulator-v1412-jailed-cheats-2/


      Hack Download Link: https://iosgods.com/topic/84223-arm64-bitlife-life-simulator-cheats-all-versions-2/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 3,935 replies
    • Beach Buggy Racing 2 Cheats v2026.01.15 +2
      Modded/Hacked App: Beach Buggy Racing 2 by Vector Unit Inc
      Bundle ID: com.vectorunit.cobalt
      iTunes Store Link: https://itunes.apple.com/us/app/beach-buggy-racing-2/id1399253988?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Infinite PowerUp Parts
      - Infinite Gems (Spend some/ Get some)
      - Infinite Coins (Use Gems to Convert)



      Hack Download Link: https://iosgods.com/topic/86113-arm64-beach-buggy-racing-2-cheats-v101-3/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 451 replies
    • RollerCoaster Tycoon Touch Cheats v3.49.0 +5
      Modded/Hacked App: RollerCoaster Tycoon® Touch™ By Atari, Interactive
      Bundle ID: com.atari.mobile.rctempire
      iTunes Store Link: https://apps.apple.com/us/app/rollercoaster-tycoon-touch/id1164507836?uo=4

       

      📌 Mod Requirements

      - Jailbroken iPhone or iPad.
      - iGameGod / Filza / iMazing.
      - Cydia Substrate, ElleKit, Substitute or libhooker depending on your jailbreak (from Sileo, Cydia or Zebra).

       

      🤩 Hack Features

      - Infinite Currencies
      - Instant Max Level (Complete some task - Only use when you finished Tutorial and get to Level 8 at least)
      - VIP Member
      - Card only need 1 to be upgraded

       

      Non-Jailbroken Hack: https://iosgods.com/topic/74948-rollercoaster-tycoon-touch-v3413-jailed-cheats-4/

       

      ⬇️ iOS Hack Download Link: https://iosgods.com/topic/73710-rollercoaster-tycoon-touch-cheats-v3420-5/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 1,126 replies
    • EA SPORTS FC™ (FIFA) MOBILE SOCCER Cheats v26.1.03 +2
      Modded/Hacked App: FIFA Soccer By Electronic Arts
      Bundle ID: com.ea.ios.fifamobile
      iTunes Store Link: https://itunes.apple.com/us/app/fifa-soccer/id1094930513

      Hack Features:
      - Keeper on drugs 
      - stupid AI defense (randomly works lol but funny as hell)
      - EASY WINS BECAUSE OF ABOVE 
       


      Non-Jailbroken & No Jailbreak required hack(s): https://iosgods.com/forum/79-no-jailbreak-section/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 1,214 replies
    • Mini Brawl Go! – RPG Adventure v1.3.1(88) [ +8 Cheats ] Currency Max
      Modded/Hacked App: Mini Brawl Go! – RPG Adventure By LOVINJOY PTE. LTD.
      Bundle ID: com.lvjgames.minibrawlgogo
      App Store Link: https://apps.apple.com/us/app/mini-brawl-go-rpg-adventure/id6755132667?uo=4

      🤩 Hack Features

      - ADS No  Rewards ree
      - ViP Active
      - FOG Removed
      - Team No Limit Drop All Hero In Battle
      - Gems Max
      - Coins Max
      - Dungeon Tokens Max
      - Resources Max
        • Winner
        • Like
      • 2 replies
    • Mini Brawl Go! – RPG Adventure v1.3.1(88) [ +8 Jailed ] Currency Max
      Modded/Hacked App: Mini Brawl Go! – RPG Adventure By LOVINJOY PTE. LTD.
      Bundle ID: com.lvjgames.minibrawlgogo
      App Store Link: https://apps.apple.com/us/app/mini-brawl-go-rpg-adventure/id6755132667?uo=4

      🤩 Hack Features

      - ADS No  Rewards ree
      - ViP Active
      - FOG Removed
      - Team No Limit Drop All Hero In Battle
      - Gems Max
      - Coins Max
      - Dungeon Tokens Max
      - Resources Max
      • 0 replies
    • Royal Kingdom v25641 [ +11 Jailed ] Auto Win
      Modded/Hacked App: Royal Kingdom By Dream Games Teknoloji Anonim Sirketi
      Bundle ID: com.dreamgames.royalkingdom
      iTunes Store Link: https://apps.apple.com/us/app/royal-kingdom/id1606549505?uo=4


      Hack Features:

      - Coins [ Win Match ]

      - Potions

      - Lives Free

      - Booster Max

      - ViP Frame Unlock

      - Kingdom Pass Free

      - District unlock [ One Task Only ]

      - Auto Win [ Just One Move ]

      - Colour Spawn [ Blue Green Red Yellow Pink Orange ] Choose One Only


      Jailbreak required hack(s): https://iosgods.com/forum/5-game-cheats-hack-requests/
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 113 replies
    • Royal Kingdom v25641 [ +11 Cheats ] Auto Win
      Modded/Hacked App: Royal Kingdom By Dream Games Teknoloji Anonim Sirketi
      Bundle ID: com.dreamgames.royalkingdom
      iTunes Store Link: https://apps.apple.com/us/app/royal-kingdom/id1606549505?uo=4

      Hack Features:
      - Coins [ Win Match ]

      - Potions

      - Lives Free

      - Booster Max

      - ViP Frame Unlock

      - Kingdom Pass Free

      - District unlock [ One Task Only ]

      - Auto Win [ Just One Move ]

      - Colour Spawn [ Blue Green Red Yellow Pink Orange ] Choose One Only
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 89 replies
    • SILT v1.0.7 +1 Jailed Cheat [ Unlocked ]
      Modded/Hacked App: SILT By Snapbreak Games AB
      Bundle ID: com.snapbreak.silt
      App Store Link: https://apps.apple.com/us/app/silt/id6477457763?uo=4

       

      🤩 Hack Features

      -- Full Game Unlocked
        • Agree
        • Winner
        • Like
      • 11 replies
    • Forward Assault v1.2078 +14 Jailed Cheats [ Mega Hack ]
      Modded/Hacked App: Forward Assault By Blayze Games, L.L.C.
      Bundle ID: com.blayzegames.newfps
      App Store Link: https://apps.apple.com/us/app/forward-assault/id1191037021?uo=4

       


      🤩 Hack Features

      - Unlimited Ammo
      - Rapid Fire
      - No Spread
      - No Recoil
      - No Camera Recoil
      - No Flinch
      - Minimap Hack
      - Fly Mode
      - Move Before Timer
      - Speed Multiplier
      - Field of View Modifier
      - Anti Flash
      - Anti Smoke
      - Unlimited In-Game Money
        • Informative
        • Agree
        • Haha
        • Thanks
        • Winner
        • Like
      • 24 replies
    • Kingdom Rush Battles: TD Game v1.4.2 +4 Jailed Cheats [ No Tower Cost ]
      Modded/Hacked App: Kingdom Rush Battles: TD Game By Ironhide S.A.
      Bundle ID: com.ironhidegames.kingdomrush.mp
      App Store Link: https://apps.apple.com/ph/app/kingdom-rush-battles-td-game/id6746510979?uo=4

       
       

      🤩 Hack Features

      - Dumb Enemy -> Disables your enemy from buying towers.
      - No Tower Build Cost -> Use with Dumb Enemy.
      - No Tower Upgrade Cost -> Use with Dumb Enemy.
      - No Tower Skill Upgrade Cost -> Use with Dumb Enemy.
        • Informative
        • Agree
        • Winner
        • Like
      • 49 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines