INTRODUCTION:-

This is a single payload which can be used on pre 9.2 firmwares to launch an arm9 payload from the sd card directly. This can be used by people who either have no browser or can't perform the mset exploit due to some reason + it simplies the whole process. Works on all regions, for all firmwares between 1.X and 9.3.

USAGE:-



Can be used along with *hax to execute an arm9 payload(should be named arm9.bin) from the root of the sd-card.

This does not launch boot the hbl so a file named boot.3dsx is not required

Sample steps to use with soundhax and safeb9sinstaller

Steps:-

Get the soundhax file for your console and region Get the arm9 payload, safeb9sinstaller in this case Download the otherapp.bin from the releases page Put all the files on the root of your sd(for safeb9sinstaller, just copy the arm9.bin from the zip) Launch soundhax

If everything goes correctly you will be in safeb9sinstaller, this might/might not work on the first try.

ADDITIONAL INFO:-



This incorporates an edited version of svchax(memchunkhax) to gain arm11 escalation and brahma(firmlaunchhax) to gain arm9 escalation. I originally aimed to use udsploit + safehax but that combo didn't work out so I had to fall back to use this combo. Theoretically it is possible to make this work on lower/higher firmwares by replacing the arm11/arm9 exploits.



CREDITS:-



svchax,



Massive thanks to my testers:- @MrJason005, @FrozenPhoenix,

Most of the code used in this project from already existing projects. I would like to credit anyone who has aided in the development of BrahmaLoader ctrulib and ninjhax2.x Massive thanks to my testers:- @Chromaryu @saibotu and many others at my discord server

DOWNLOAD:-



The repo is here and binary can be obtained from here

HELP:-



Although we have tried to test it thoroughly, we couldn't test it on some firmwares. You can help this project by reporting if this works for you.