Jump to content

[Tutorial] How to Hack Using GNU-Debugger (GDB)


26 posts in this topic

Recommended Posts

Posted

✻ Requirements

✔ Command-line Tool (Putty for Windows; Terminal for Mac)

✔ Memory Access Tool (iGameGuardian, Gameplayer, Gamegem)

✔ OpenSSH (available on BigBoss)

✔ GNU-Debugger (available on cydia.radare.org)

 

✻ Procedure

Firstly, use your memory access tool to find the address of your target (herein “coins”). If the tool you are using cannot find the address, this guide is not for you. There is another method to GDB hacking called breakpointing for this case, but I don’t know how to do it. If I learn it I will be sure to share it.

 

Once you have your address, load up your command-line tool and SSH to your device. To start GDB, follow the commands:

 

 

gdb
/* Loads up GDB */

att pid
/* This means attach process ID. If you don’t know it, the app binary usually works too.
This command will freeze the app so values do not change */

watch *0xADDRESS
/* Sets a watchpoint to your address, where “ADDRESS” is what you found with Gameplayer */

continue
/* Unfreezes the app */
Now it’s your job to change the value of coins, just like you would if hacking with Gameplayer. Once the value changes, the app should freeze because you set a watchpoint on coins. GDB will give you some tasty information now - in your command prompt, you should see the old value and new value of coins. You’ll also be given the “real” address of coins, which can be plugged into IDA (remember, addresses in your memory access tool are temporary and change every launch. The address GDB gives you is consistent until the app is updated).

 

✻ Other Useful Commands

ps ax
/* Loads all processes and their IDs */
display /i $pc
/* Type this after watchpointing. It tells GDB to automatically show the address’ function when frozen */
info r
/* Gives you the current value held in registers 0-12 */
stepi
/* Shows you the next function */
✻ Troubleshooting

GDB is not attaching when I use the app binary name - why?

Using the binary name doesn’t always work. To get the processor ID, quit GDB by simply typing “quit” and then type “ps ax” (no quotes). That will bring up all running processes on your device. Look for the one in /var/mobile/Applications - the pid is listed on the left.

 

When attaching a process, I get “Segmentation fault:11” and get kicked back to root - why?

The app you are trying to debug has anti-debug security. To get around this you’ll have to disable ptrace in IDA. I will not cover that in this guide, perhaps in another. It isn’t a very common issue at the moment, I’ve only seen Gameloft and TinyCo. use it.

 

GDB didn’t freeze when the value changed - why?

This bugged me all the time, and King Kong was nice enough to help me find a solution. :) It’s quite simple actually, just control+c to make Putty/Terminal give you back the command-line. From there, re-enter the watchpoint command and type continue. The new value and address should now pop up without even needing to change it again in-game.

 

The address GDB gave me isn’t a hackable function - why?

The address GDB spits out isn’t always the function to hack. Load up IDA and have a look around the address - most of the time the function you want to hack is above the address given to you. Remember there are multiple ways to hack a function, it really depends on how well you know ARM.

 

✻ Special Thanks

King Kong - For helping me on ptrace and freezing apps!

  • Like 3
  • Thanks 1
  • Agree 1
Posted

Nice tutorial EG!

Thanks for posting this! :)

Posted

One more useful command : x/20i 0xAdress or anything instead of 20 .. It will show the next 20 data's after the offset u have written :)

Posted (edited)

I figured out what Zahir wrote^^ BTW :o EvillyG00d!!!! :o:D

 

to do the x/20i you need to subtract 4 * 20  or 2 * 20 (for thumb ;) ) from the offset

 

BTW

1. watch -location *0xADDRESS gives you some better info than just watch :D

2. instead of display/i $pc you can do x/i $pc

and it doesnt do what u said it does.... complicated to explain.... like reload for ammo, or not enough coins if u attached a watchpoint to coins, pc will display the function that gives u the alert view saying u can't buy

3. you can use c , cont , or continue :)

Updated by -_-

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Our picks

    • Bounce Defense : Brick Breaker +4 Jailed Cheats
      Modded/Hacked App: Bounce Defense : Brick Breaker By cookapps
      Bundle ID: com.cookapps.bouncedefense
      App Store Link: https://apps.apple.com/us/app/bounce-defense-brick-breaker/id6757737431?uo=4

      🤩 Hack Features

      - Gems Freeze / Increase Instead OF Decrease 
      - Coins Freeze / Increase Instead OF Decrease 
      - Energy Freeze / Increase Instead OF Decrease 
      - Energy 0 / Play Unlimited
      - Chest Buy Free
      • 2 replies
    • Bounce Defense : Brick Breaker +4 Cheats
      Modded/Hacked App: Bounce Defense : Brick Breaker By cookapps
      Bundle ID: com.cookapps.bouncedefense
      App Store Link: https://apps.apple.com/us/app/bounce-defense-brick-breaker/id6757737431?uo=4

       

       

      📌 Mod Requirements

      - Jailbroken iPhone or iPad.
      - iGameGod / Filza / iMazing.
      - Cydia Substrate, ElleKit, Substitute or libhooker depending on your jailbreak (from Sileo, Cydia or Zebra).

       

      🤩 Hack Features

      - Damage Multiplier
      - Never Die

       

      ⬇️ iOS Hack Download Link


      Hidden Content

      Download Hack







       

      📖 iOS Installation Instructions

      STEP 1: Download the .deb hack file from the link above. Use Safari, Google Chrome or other iOS browsers to download.
      STEP 2: Once the file has downloaded, tap on it and then you will be prompted on whether you want to open the deb with iGameGod or copy it to Filza.
      STEP 3: If needed, tap on the downloaded file again, then select ‘Normal Install’ from the options on your screen.
      STEP 4: Let iGameGod/Filza finish the cheat installation. If it doesn’t install successfully, see the note below.
      STEP 5: Open the game, log in to your iOSGods account when asked, then toggle on the features you want and enjoy!

       

      NOTE: If you have any questions or problems, read our Jailbreak iOS Hack Troubleshooting & Frequently Asked Questions & Answers topic. If you still haven't found a solution, post your issue below and we'll do our best to help! If the hack does work for you, please post your feedback below and help out other fellow members that are encountering issues.

       

      🙌 Credits

      - AlyssaX64

       

      📷 Cheat Video/Screenshots

      N/A

       

      More iOS App Hacks
      If you’re looking for Non-Jailbroken & No Jailbreak required iOS IPA hacks, visit the iOS Game Cheats & Hacks or the iOSGods App for a variety of modded games and apps for non-jailbroken iOS devices.

      Modded Android APKs
      Need modded apps or games for Android? Check out the latest custom APK mods, cheats & more in our Android Section.
      • 3 replies
    • 스페이스 미니언즈: 디펜스 Space Minions: Defense v0.0.41 [ +9 Cheats ] Never Die
      Modded/Hacked App: Space Minions: Defense By Teamsparta Inc.
      Bundle ID: com.TeamSparta.SpaceMinions
      App Store Link: https://apps.apple.com/kr/app/space-minions-defense/id6758454845?uo=4

      🤩 Hack Features

      - Currency / No Need
      - Resources / No Need
      - DMG MAX
      - Never Die
      - Enemy Speed
      • 13 replies
    • 스페이스 미니언즈: 디펜스 Space Minions: Defense v0.0.41 [ +9 Jailed ] Never Die
      Modded/Hacked App: Space Minions: Defense By Teamsparta Inc.
      Bundle ID: com.TeamSparta.SpaceMinions
      App Store Link: https://apps.apple.com/kr/app/space-minions-defense/id6758454845?uo=4

      🤩 Hack Features

      - Currency / No Need
      - Resources / No Need
      - DMG MAX
      - Never Die
      - Enemy Speed
      • 13 replies
    • Gun Hero: Cat Survival Shooter v2.4.2 [ +8 Cheats ] Currency Max
      Modded/Hacked App: Gun Hero: Cat Survival Shooter By Freeplay LLC
      Bundle ID: com.BMGames.GunHero
      App Store Link: https://apps.apple.com/ca/app/gun-hero-cat-survival-shooter/id6751321179?uo=4

      🤩 Hack Features

      - Auto ADS OFF
      - Unlimited Gems / Earn
      - Unlimited Coins / Earn
      - Unlimited ADS Ticket / Earn
      - Unlimited Keys +2 / Earn
      - Unlimited Scrolls / Earn
      - Unlimited HP / AiD Kit Use In Battle
      - Unlimited ATK / Linked
        • Like
      • 16 replies
    • Gun Hero: Cat Survival Shooter v2.4.2 [ +8 Jailed ] Currency Max
      Modded/Hacked App: Gun Hero: Cat Survival Shooter By Freeplay LLC
      Bundle ID: com.BMGames.GunHero
      App Store Link: https://apps.apple.com/ca/app/gun-hero-cat-survival-shooter/id6751321179?uo=4

      🤩 Hack Features

      - Auto ADS OFF
      - Unlimited Gems / Earn
      - Unlimited Coins / Earn
      - Unlimited ADS Ticket / Earn
      - Unlimited Keys +2 / Earn
      - Unlimited Scrolls / Earn
      - Unlimited HP / AiD Kit Use In Battle
      - Unlimited ATK / Linked
      • 43 replies
    • Super Heavy Iron Tank v1.1.4 [ +7 Jailed ] Auto Win
      Modded/Hacked App: Super Heavy Iron Tank By Game Duo Co.,Ltd.
      Bundle ID: net.gameduo.vg
      App Store Link: https://apps.apple.com/ph/app/super-heavy-iron-tank/id6757405833?uo=4

      🤩 Hack Features

      - ADS NO / Rewards Free
      - DMG
      - ATK Speed
      ::::: ViP :::::
      - Auto Win
      - Energy Unlimited
      - Auto Skip Wave
      - Quick Supply
      • 7 replies
    • Super Heavy Iron Tank v1.1.4 [ +7 Cheats ] Auto Win
      Modded/Hacked App: Super Heavy Iron Tank By Game Duo Co.,Ltd.
      Bundle ID: net.gameduo.vg
      App Store Link: https://apps.apple.com/ph/app/super-heavy-iron-tank/id6757405833?uo=4

      🤩 Hack Features

      - ADS NO / Rewards Free
      - DMG
      - ATK Speed
      ::::: ViP :::::
      - Energy Unlimited
      - Auto Skip Wave
      - Auto Win
      - Quick Supply
      • 5 replies
    • Bloons Card Storm +4 Mods [ Unlimited Cards ]
      Mod APK Game Name: Bloons Card Storm By ninja kiwi
      Rooted Device: Not Required.
      Google Play Store Link: https://play.google.com/store/apps/details?id=com.ninjakiwi.bloonscardstorm

       

      🤩 Hack Features

      - Unlimited Cards
      - Unlock All Cards
      - Unlock All Cosmetics -> Avatars, Card Backs etc.
      - Unlock All Heroes
      • 0 replies
    • Obey Me! - Anime Otome Sim - +2 Jailed Cheats [ Auto Win ]
      Modded/Hacked App: Obey Me! - Anime Otome Sim - By NTT Solmare
      Bundle ID: com.nttsolmare.game.ios.obeyme
      App Store Link: https://apps.apple.com/us/app/obey-me-anime-otome-sim/id1477167654?uo=4

       
       

      🤩 Hack Features

      - Auto Win
      - VIP Enabled
      • 3 replies
    • Cozy Town: Build Explore Game +1++ Jailed Cheat [ Unlimited Currencies ]
      Modded/Hacked App: Cozy Town: Build Explore Game By Sparkling Society Games B.V.
      Bundle ID: com.sparklingsocietysims.cozytownbuildexploregame
      iTunes Store Link: https://apps.apple.com/us/app/cozy-town-build-explore-game/id6657973290?uo=4


      Hack Features:
      - Unlimited Currencies -> Spend some.


      Jailbreak required hack(s): [Mod Menu Hack] Cozy Town: Build Explore Game v1.3.3 +1++ Cheat [ Unlimited Currencies ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
      • 4 replies
    • Bloons Card Storm +4 Jailed Cheats [ Unlimited Cards ]
      Modded/Hacked App: Bloons Card Storm By Ninja Kiwi Limited
      Bundle ID: com.ninjakiwi.bloonscardstorm
      iTunes Store Link: https://apps.apple.com/us/app/bloons-card-storm/id6478193271?uo=4


      Hack Features:
      - Unlimited Cards
      - Unlock All Cards
      - Unlock All Cosmetics -> Avatars, Card Backs etc.
      - Unlock All Heroes


      Jailbreak required hack(s): [Mod Menu Hack] Bloons Card Storm v1.00 +4 Cheats [ Unlimited Cards ] - Free Jailbroken Cydia Cheats - iOSGods
      Modded Android APK(s): https://iosgods.com/forum/68-android-section/
      For more fun, check out the Club(s): https://iosgods.com/clubs/
        • Agree
      • 35 replies
×
  • Create New...

Important Information

We would like to place cookies on your device to help make this website better. The website cannot give you the best user experience without cookies. You can accept or decline our cookies. You may also adjust your cookie settings. Privacy Policy - Guidelines