Jump to content

7 posts in this topic

Recommended Posts

Posted (edited)

So I saw a whole bunch of tutorials on IDA and can't figure out my problem.

LLDB Told me my address is 0x5408b4

And my register read told me it stored it at r0

So I go there and it looks like this:

5pZKAiq.png

 

The r0 store is before which should be on the same line right?

Updated by bbReakMe
Posted
1 hour ago, bbReakMe said:

So I saw a whole bunch of tutorials on IDA and can't figure out my problem.

LLDB Told me my address is 0x5408b4

And my register read told me it stored it at r0

So I go there and it looks like this:

5pZKAiq.png

 

The r0 store is before which should be on the same line right?

games have ASLR armv7 you can remove it but ARM64 you have to calculate , it doesn't always take you to the exact place it should. With experience you can sort of work it out. Check out the STR.W r0 5408B0

Posted
1 minute ago, K_K said:

games have ASLR armv7 you can remove it but ARM64 you have to calculate , it doesn't always take you to the exact place it should. With experience you can sort of work it out. Check out the STR.W r0 5408B0

Thanks.

Posted (edited)
On 2/22/2018 at 10:07 PM, K_K said:

games have ASLR armv7 you can remove it but ARM64 you have to calculate , it doesn't always take you to the exact place it should. With experience you can sort of work it out. Check out the STR.W r0 5408B0

Should I also change the 5408BE and the 5408C2 ?

Because I changed what you told me + the LDR and it does not work.

Spoiler

__text:005408AC                 LDR.W           R0, [R7,#var_s0]
__text:005408B0                 STR.W           R7, [R8,#0x40]

(This does not work)

 

Updated by bbReakMe
Posted
3 hours ago, bbReakMe said:

Should I also change the 5408BE and the 5408C2 ?

Because I changed what you told me + the LDR and it does not work.

  Hide contents


__text:005408AC                 LDR.W           R0, [R7,#var_s0]
__text:005408B0                 STR.W           R7, [R8,#0x40]

(This does not work)

 

app name if cal Zenonia4,

lldb type :

image list "Zenonia4" 

u can see the ASLR for the App ,

u need to minus out if lldb =0x1234567,

ASLR = 0x1A000,

use calculator from PC (programmer format)

enter 1234567 - 1A000 , the final IDA offset is this.

Posted
6 hours ago, xiaov said:

app name if cal Zenonia4,

lldb type :

image list "Zenonia4" 

u can see the ASLR for the App ,

u need to minus out if lldb =0x1234567,

ASLR = 0x1A000,

use calculator from PC (programmer format)

enter 1234567 - 1A000 , the final IDA offset is this.

 

6 hours ago, xiaov said:

app name if cal Zenonia4,

lldb type :

image list "Zenonia4" 

u can see the ASLR for the App ,

u need to minus out if lldb =0x1234567,

ASLR = 0x1A000,

use calculator from PC (programmer format)

enter 1234567 - 1A000 , the final IDA offset is this.

I'm not sure to do this because I already removed ASLR and it's armv7 thinned. Should I just restart the whole thing with an ARM64 with ASLR binary and follow your steps?

Posted (edited)
10 hours ago, xiaov said:

app name if cal Zenonia4,

lldb type :

image list "Zenonia4" 

u can see the ASLR for the App ,

u need to minus out if lldb =0x1234567,

ASLR = 0x1A000,

use calculator from PC (programmer format)

enter 1234567 - 1A000 , the final IDA offset is this.

I did this with an untouched binary and the address does not exist. It gives me 0x637474 when I calculate but the smallest address is 0x100004A60. The raw address given by lldb is 0x100703474 so I go there and it's a BL. 

 

EDIT: This happened with the plain arm64 binary.

Updated by bbReakMe

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Goblin Miner: Idle Merger v3.7.1 [ +5 Cheats ] Coins Unlimited
      Modded/Hacked App: Goblin Miner: Idle Merger By ProGamesLab LTD
      Bundle ID: com.goblins.idle.merge.game
      App Store Link: https://apps.apple.com/us/app/goblin-miner-idle-merger/id6751527945?uo=4

      🤩 Hack Features

      - Unlimited Coins / Mine Upgrade
      - Unlimited Goblin Drop / No Limite
      - Goblin LvL Higher / Easy To Skip Time Mine / First Drop Goblin Then Chose Higher LvL
      - Unlimited Magic Dust
      - Ruby Pass
        • Like
      • 0 replies
    • Goblin Miner: Idle Merger v3.7.1 [ +5 Jailed ] Coins Unlimited
      Modded/Hacked App: Goblin Miner: Idle Merger By ProGamesLab LTD
      Bundle ID: com.goblins.idle.merge.game
      App Store Link: https://apps.apple.com/us/app/goblin-miner-idle-merger/id6751527945?uo=4

      🤩 Hack Features

      - Unlimited Coins / Mine Upgrade
      - Unlimited Goblin Drop / No Limite
      - Goblin LvL Higher / Easy To Skip Time Mine / First Drop Goblin Then Chose Higher LvL
      - Unlimited Magic Dust
      - Ruby Pass
        • Thanks
      • 0 replies
    • Gear Truck! v1.0.23 [+3 Jailed Cheats]
      Modded/Hacked App: Gear Truck! By treeplla Inc.
      Bundle ID: com.tree.hybrid.geartank
      App Store Link: https://apps.apple.com/us/app/gear-truck/id6747216965?uo=4



      🤩 Hack Features

      - Never Die
      - High Wheel Speed Gain
      - One Hit Kill
        • Winner
        • Like
      • 5 replies
    • Gear Truck! v1.0.23 [+3 Cheats]
      Modded/Hacked App: Gear Truck! By treeplla Inc.
      Bundle ID: com.tree.hybrid.geartank
      App Store Link: https://apps.apple.com/us/app/gear-truck/id6747216965?uo=4



      🤩 Hack Features

      - Never Die
      - High Wheel Speed Gain
      - One Hit Kill
       
        • Haha
        • Thanks
        • Winner
        • Like
      • 5 replies
    • Soul Huntress: Dungeon Crawler v1.1.4 [+3 Jailed Cheats]
      Modded/Hacked App: Soul Huntress: Dungeon Crawler By Panthera Joint Stock Company
      Bundle ID: com.pantheraplay.soulhuntress
      App Store Link: https://apps.apple.com/ph/app/soul-huntress-dungeon-crawler/id6743422594?uo=4


      🤩 Hack Features

      - Never Die
      - Unlimited Currency (Always Will Increase Spend)
      - Always Can Use Items (Even when has cooldown)
        • Informative
        • Agree
        • Thanks
        • Winner
        • Like
      • 46 replies
    • Soul Huntress: Dungeon Crawler v1.1.4 [+3 Cheats]
      Modded/Hacked App: Soul Huntress: Dungeon Crawler By Panthera Joint Stock Company
      Bundle ID: com.pantheraplay.soulhuntress
      App Store Link: https://apps.apple.com/ph/app/soul-huntress-dungeon-crawler/id6743422594?uo=4



      🤩 Hack Features

      - Never Die
      - Unlimited Currency (Always Will Increase Spend)
      - Always Can Use Items (Even when has cooldown)
        • Agree
        • Thanks
        • Winner
        • Like
      • 47 replies
    • Cannon Heroes X v1.2.27 [+2 Jailed Cheats]
      Modded/Hacked App: Cannon Heroes X By Zego Global Pte Ltd
      Bundle ID: com.ig.cannon.heroes
      App Store Link: https://apps.apple.com/us/app/cannon-heroes-x/id6744356657?uo=4



      🤩 Hack Features

      - Free IAP
      - Never Die
      - Debug Menu (Enable once then restart game. Enable again you'll see debug menu)
        • Winner
        • Like
      • 10 replies
    • Cannon Heroes X v1.2.27 [+2 Cheats]
      Modded/Hacked App: Cannon Heroes X By Zego Global Pte Ltd
      Bundle ID: com.ig.cannon.heroes
      App Store Link: https://apps.apple.com/us/app/cannon-heroes-x/id6744356657?uo=4



      🤩 Hack Features

      - Free IAP
      - Never Die
      - Debug Menu (Enable once then restart game. Enable again you'll see debug menu)
       
        • Winner
        • Like
      • 7 replies
    • Slay Quest v1.3.13 [+3 Cheats]
      Modded/Hacked App: Slay Quest By Quest Lab Games Korlatolt Felelossegu Tarsasag
      Bundle ID: com.questlab.slayquest
      App Store Link: https://apps.apple.com/us/app/slay-quest/id6670221918?uo=4



      🤩 Hack Features

      - Unlimited Resources
      - Never Die
      - One Hit Kill
       
        • Agree
        • Thanks
        • Winner
        • Like
      • 8 replies
    • Slay Quest v1.3.13 [+3 Jailed Cheats]
      Modded/Hacked App: Slay Quest By Quest Lab Games Korlatolt Felelossegu Tarsasag
      Bundle ID: com.questlab.slayquest
      App Store Link: https://apps.apple.com/us/app/slay-quest/id6670221918?uo=4

       

      🤩 Hack Features

      - Unlimited Resources
      - Never Die
      - One Hit Kill
        • Like
      • 6 replies
    • Endless Wander - Roguelike RPG v3.0.4 [+3 Jailed Cheats]
      Modded/Hacked App: Endless Wander - Roguelike RPG By First Pick Studios
      Bundle ID: com.FirstPickStudios.Endless-Wander
      App Store Link: https://apps.apple.com/us/app/endless-wander-roguelike-rpg/id6473157705?uo=4



      🤩 Hack Features

      - Never Die
      - Always Enough Currency
      - Unlimited Currency (Will Always Increase)
        • Agree
        • Thanks
        • Winner
        • Like
      • 23 replies
    • Endless Wander - Roguelike RPG v3.0.4 [+3 Cheats]
      Modded/Hacked App: Endless Wander - Roguelike RPG By First Pick Studios
      Bundle ID: com.FirstPickStudios.Endless-Wander
      App Store Link: https://apps.apple.com/us/app/endless-wander-roguelike-rpg/id6473157705?uo=4



      🤩 Hack Features

      - Never Die
      - Always Enough Currency
      - Unlimited Currency (Will Always Increase)
       
        • Agree
        • Winner
        • Like
      • 17 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines