Jump to content
  • Sky
  • Mint
  • Azure
  • Indigo
  • Blueberry
  • Blackcurrant
  • Watermelon
  • Strawberry
  • Pomegranate
  • Ruby Red
  • Orange
  • Banana
  • Apple
  • Emerald
  • Teal
  • Chocolate
  • Slate
  • Midnight
  • Maastricht
  • Charcoal
  • Matte Black
Guest

TuT [IDA Tutorial]How to deal with/hack vectors

166 posts in this topic

Recommended Posts

Guest

This is a tutorial that is pretty advanced and because of that, I expect you to have a grip on regular IDA (normal instructions I mean, MOV, SUB, STR, etc). Of course it is not a requirement, you could just be viewing this tutorial out of curiosity. But it would really help to know some basic IDA before trying to hack vectors.

 

But what the hell is a vector? A vector is an instruction prefixed with "V". For example: VSTR, VMOV, VSUB, VCVT (convert), VLDR, etc. It is the instruction that you get when you set a watchpoint on a memory address that holds a float value. You will know that it is a float when iGameGuardian displays the number like "500.000000". Most of the time you be hacking VSTR, VSUB, and VCVT, at least in my experience.

 

Hidden Content

    Since there is no R7 type register for vectors, we have to find different ways to hack them. If IDA drops you off at a

    VSTR S0, [R0, #20]
    you cannot just change it to

    VSTR S7, [R0, #20]
    because in most cases, it would just make the game crash.

     

    So what the hell can we do? The best way to hack a VSTR is to NOP it (except for when hacking cooldown, but I will get to that). This is extremely effective when hacking your health because instead of storing your health value in a normal, unhacked game, the game won't be able to store your health at all which results in infinite health for you :snoop: But sometimes both enemy health and your health are linked and you have to unlink them. I'll cover that at the end of this tutorial.

     

    If you are hacking cooldown for some sort of skill, you cannot just NOP the VSTR (instructions for cooldown are most always VSTR) because once the timer starts, it will never count down, resulting in an infinite timer for skills. To combat this, either you can:

    1. Find a register that holds the value of zero and store that register into R0+20 or

    2. Move zero into an already existing register and store that register into R0+20.

     

    If you are going with option one, you'll have to set a breakpoint on your offset and examine the registers to see what they hold (reg re for LLDB and info r for GDB). Just for the sake of this tutorial, we'll say that R3 holds the value of zero. Now that you know that, you can change

    VSTR S0, [R0, #20]
    to a regular
    STR R3, [R0, #20]
    . If you know basic IDA, you should understand why/how that works.

     

    If you are going with option two, it will be just a tiny bit more complicated. You'll have to hack the instruction above the VSTR with a MOV R0, #0. Then you'll have to store R0 into R0+20. If that is confusing, look at this:

     

    Here are the instructions before any modification:

    VCVT.F32.F64 S0, D2
    VSTR S0, [R0, #20]
    
    And change that to:

    MOV R0, #0
    STR R0, [R0, #20]
    
    What this does is instead of the game converting a 64 bit float value into a 32 bit float value then store that value into R0+20, the game will now move the value of zero into R0 then store R0 (zero) into R0+20, resulting in a timer of zero seconds, which means instant cooldown. This is what you might know as "no skill cooldown".

     

    VSTR's are really the only instructions that you hack differently than everything else. You hack VSUB's with NOP's, you can hack VMOV's the normal way you hack a MOV (but with common sense), etc. It is not really hard once you get the hang of it.

     

    About unlinking vectors:

    I'm not entirely sure about this, but to unlink vectors you could try this:

    1. Set a breakpoint on your offset.

    2. Let the enemy hit you, and your breakpoint should hit. Now type "bt", which means "backtrace". Copy the backtrace onto notepad or something convienent and label it "my health backtrace".

    3. Now continue, but this time you hurt the enemy, and your breakpoint should hit. Do a backtrace again and copy it onto notepad and label it "enemy health backtrace".

    4. See which frame first differs between the two backtraces (you'll know what I mean by frame when you backtrace) and NOP the branch that connects them.

     

    That's it! :) If you want to see some examples of me hacking vectors, check these links out: http://iosgods.com/topic/7615-offsetsdragon-slayer-v110/

    http://iosgods.com/topic/7152-offsets-not-str-r7-for-everything-pindestructible-v301/

    http://iosgods.com/topic/7501-offsetsblood-and-glory-immortals-v110/

 

Please let me know if you have any questions. :)

Share this post


Link to post
Share on other sites
Guest

lol two thanks within ten seconds of posting. awesome :D

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic... Posting Guidelines

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


  • Our picks

    • [iOS 12 Support] DRAGON BALL LEGENDS v1.35.0 +4 Jailed Cheats [No Ki Cost + More]
      Modded/Hacked App: DRAGON BALL LEGENDS By BANDAI NAMCO Entertainment Inc.
      Bundle ID: jp.co.bandainamcoent.BNEI0334
      iTunes Store Link: https://itunes.apple.com/us/app/dragon-ball-legends/id1358222641?mt=8&uo=4&at=1010lce4


      Mod Requirements:
      - Jailbroken or Non-Jailbroken iPhone/iPad/iPod Touch.
      - Cydia Impactor.
      - A Computer Running Windows/Mac/Linux.


      Hack Features:
      - No Ki Cost
      - No Character Swap Cooldown
      - No Vanish Cooldown
      - Tutorial Bypassed
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 2,078 replies
    • [ARM64] Galaxy Attack: Alien Shooter Cheats (All Versions) +1
      Modded/Hacked App: Galaxy Attack: Alien Shooter by ABIGAMES PTE. LTD
      Bundle ID: com.alien.shooter.galaxy.attack
      iTunes Store Link: https://apps.apple.com/us/app/galaxy-attack-alien-shooter/id1176011642?uo=4&at=1010lce4


      Hack Features:
      - Free Store (Let you buy stuffs even you don't have enough money)


      iOS Hack Download Link: https://iosgods.com/topic/100858-arm64-galaxy-attack-alien-shooter-cheats-v4135-1/
        • Winner
        • Agree
        • Haha
        • Thanks
        • Like
      • 23 replies
    • [ARM64] VivaVideo - Best Video Editor Modded (All Versions) +1
      Modded/Hacked App: VivaVideo - Best Video Editor by QuVideo Inc.
      Bundle ID: com.quvideo.XiaoYing
      iTunes Store Link: https://itunes.apple.com/us/app/vivavideo-best-video-editor/id738897668?mt=8&uo=4&at=1010lce4



      Hack Features:
      - PREMIUM


      Hack Download Link: https://iosgods.com/topic/86497-arm64-vivavideo-best-video-editor-mod-v771-1/
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 61 replies
    • Bid Wars: Storage Auctions v2.16 Jailed Cheats +1
      Modded/Hacked App: Bid Wars: Storage Auctions By Tapps Tecnologia da Informação Ltda.
      Bundle ID: br.com.tapps.bidwars
      iTunes Store Link: https://itunes.apple.com/us/app/bid-wars-storage-auctions/id1023494154?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Free iAP


      Hack Download Link: https://iosgods.com/topic/71367-bid-wars-storage-auctions-v2113-jailed-cheats-1/
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 358 replies
    • [ARM64] Tap Tap Fish - AbyssRium Cheats v1.13.1 +1
      Modded/Hacked App: Tap Tap Fish - AbyssRium By SangHeon Kim
      Bundle ID: com.idleif.abyssrium
      iTunes Store Link: https://itunes.apple.com/us/app/tap-tap-fish-abyssrium/id1068366937?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Infinite Vitality, Gem, etc ... (Increase When Used) / Untested with Pearl
       

      Hack Download Link: https://iosgods.com/topic/81337-arm64-tap-tap-fish-abyssrium-cheats-v179-1/
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 130 replies
    • [ARM64] Thrill Rush Theme Park Cheats (All Versions) +5
      Modded/Hacked App: Thrill Rush Theme Park by SPIL Games
      Bundle ID: com.spilgames.ThrillRush1
      iTunes Store Link: https://itunes.apple.com/us/app/thrill-rush-theme-park/id1378627405?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Infinite Coins (Spend some/ Get some)
      - Infinite Gems (Spend some/ Get some)
      - No Ads
      - All Rides Unlocked
      - All Characters Unlocked


      Hack Download Link: https://iosgods.com/topic/90516-arm64-thrill-rush-theme-park-cheats-v1364-5/

      #Hack #Jailbreak #Cydia #Cheat #Apple #Android #iOSGods
        • Winner
        • Upvote
        • Thanks
        • Like
      • 10 replies
    • [ARM64] Taps to Riches Cheats (All Versions) +2
      Modded/Hacked App: Taps to Riches by Game Circus LLC
      Bundle ID: com.gamecircus.tycoon
      iTunes Store Link: https://itunes.apple.com/us/app/taps-to-riches/id1069160488?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Infinite Money
      - Infinite Diamond



      Hack Download Link: https://iosgods.com/topic/95738-arm64-taps-to-riches-cheats-all-versions-2/
        • Upvote
        • Thanks
        • Like
      • 19 replies
    • [ARM64] Toram Online Cheats (All Versions) +7
      Modded/Hacked App: Toram Online By ASOBIMO,Inc.
      Bundle ID: com.asobimo.toramonline
      iTunes Link: https://itunes.apple.com/us/app/toram-online/id988683886?mt=8&uo=4&at=1010lce4


      Hack Features:
      - Player take no damage
      - Fast attack speed
      - Fast cast speed
      - Always critical hit
      - Enemies only deal 1 damage
      - God Mode + Enemies Always Miss
      - Movement Speed Multiplier


      This hack is an In-Game Mod Menu (iGMM). In order to activate the Mod Menu, tap your screen with 3 fingers simultaneously. This hack only works on x64 or ARM64 iDevices: iPhone 5s, 6, 6 Plus, 6s, 6s Plus, 7, 7 Plus, 8, 8 Plus, X, SE, iPod Touch 6G, iPad Air, Air 2, Pro & iPad Mini 2, 3, 4 and later.

      Non-Jailbroken version of this hack: https://iosgods.com/topic/58926-toram-online-v3121-2-jailed-hacks/
      Toram Online Club: https://iosgods.com/clubs/123-toram-online-mmorpg/
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 1,563 replies
    • [ARM64] Trivia Crack 2 Cheats (All Versions) +1
      Modded/Hacked App: Trivia Crack 2 By Etermax
      Bundle ID: com.etermax.trivia.preguntados2
      iTunes Store Link: https://itunes.apple.com/us/app/trivia-crack-2/id1424533120?mt=8&uo=4&at=1010lce4



      Hack Features:
      - Infinite Answer Times
       


      Hack Download Link: https://iosgods.com/topic/81480-arm64-trivia-crack-2-cheats-v143-1/
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 129 replies
    • [ARM64] True Surf v1.0.18 Jailed Cheats +2
      Modded/Hacked App: True Surf By True Axis
      Bundle ID: com.trueaxis.truesurf
      iTunes Store Link: https://itunes.apple.com/us/app/true-surf/id1177819604?mt=8&uo=4&at=1010lce4



      Hack Features:
      - All Boards Unlocked
      - Infinite Slams (Spend some)
       


      Hack Download Link: https://iosgods.com/topic/80207-arm64-true-surf-v102-jailed-cheats-2/
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 74 replies
    • FINAL BLADE v1.9.2 - [ x5 Attack & HP ]
      Modded/Hacked App: FINAL BLADE By SkyPeople
      Bundle ID: com.skypeople.finalbladegb
      iTunes Store Link: https://itunes.apple.com/ph/app/final-blade/id1440448430?mt=8&uo=4&at=1010lce4

      Mod Requirements:
      - Jailbroken iPhone/iPad/iPod Touch.
      - iFile / Filza / iFunBox / iTools or any other file managers for iOS.
      - Cydia Substrate (from Cydia).
      - PreferenceLoader (from Cydia).


      Hack Features:
      - x10 Attack
      - x10 HP
      - x20 Attack
      - x20 HP
      - x100 Attack
      - x100 HP
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 296 replies
    • ONE PIECE Bounty Rush v24100 - [ God Mode & No Skills CoolDown ]
      Modded/Hacked App: ONE PIECE Bounty Rush By BANDAI NAMCO Entertainment Inc.
      Bundle ID: jp.co.bandainamcoent.BNEI0297
      iTunes Store Link: https://itunes.apple.com/us/app/one-piece-bounty-rush/id1343688545?mt=8&uo=4&at=1010lce4
       

      Mod Requirements:
      - Jailbroken iPhone/iPad/iPod Touch.
      - iFile / Filza / iFunBox / iTools or any other file managers for iOS.
      - Cydia Substrate (from Cydia).
      - PreferenceLoader (from Cydia).


      Hack Features:
      - God Mode
      - No Skills CoolDown

      All features are unlinked and only for player, you!
        • Winner
        • Informative
        • Agree
        • Upvote
        • Haha
        • Thanks
        • Like
      • 261 replies
  • Recently Browsing   0 members

    No registered users viewing this page.


    • Administrator |
    • Global Moderator  |
    • Moderator  |
    • ViP Plus |
    • ViP Jailed |
    • ViP |
    • Cheater  |
    • Modder  |
    • Novice Cheater |
    • Rookie Modder |
    • Contributor |
    • Senior Member |
    • Member |
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue. Privacy Policy - Guidelines