#development
1 messages · Page 170 of 1
@torn oriole open github 
gex
sad
they hated me when I bypassed mdm 🤷♂️
My school gave chromebooks 
chr*mebooks
Why u want ssh ?
nothing else is working
Use CF tunnels ?
What I said ….
What do you want to do exactly ?
I want to selfhost
That's what I do for my domain
It's protected
by CF
through tunnels
Twin
i dont think that would still work tho
the school blocks accessing ips directly for some reason but i can still ssh in via ip
idk how
Try ngrok ?
too much just to use a vpn
I have ssh connection, access to my server remotely everything
What ab domian ?
So put a domain ?
do they block ports ?
from earlier
i tried a bunch of ports
i got this
Just DDOS them like some kid did last years 

He got suspended tho
that just hangs
idk why
also
udp
does not work
on my school wifi
so thats out of the way
Do they block protocols
Use a proxy ?
that's sooo weird
i want a full vpn
Also try shoving stuff onto 443
I love giving random access to my data
L
Ur school said no
got this
Self host …
Looks like your school has competent it
you shouldn't, it's a bad role
nah they arent most of the time
they disabled right clicking in file explorer
??????????????
Is that new term app blocked yet
, for me no
Like the windows store one
mfw when my school banned accessing C:\ on file explorer and banned command prompt but powershell still works and you can explorer C:\
they blocked that
you can just type C:\ into search
thats what i do
to get there
windows 7/vista :
Or I think they blocked that too
No you are allowed to say that
American schools tho
im american
'Murican
@torn oriole stop coping and skid my code

our power shell and cmd is blocked but you can make a shortcut and run cmd with params
Same for us cmd is banned but not .bat
Executables on our school machines aren’t blocked so long as they don’t require privilege escalation
Discord 🎉
@slim bramble skid code 🦾
On some versions of windows, you can run a command just by typing it in the start menu
need that same functionality for ios
you can do that on 10
on 11 the arguments dont argument
average windows 11 L
how long has your name been lower case
Probably a friend request
Prob a few months
crazy
You saw my code 
i have no clue what its doing but code nonetheless
Twin
json is not my strong suite
real

in a swift context anyway because mmmm swift

Can I get refund? 16Player doesn't work on iOS 7
did you ever fix this? seems to have happened to me after updating to sonoma. i reran the theos installer and it didnt update sdks
that fixed it, thanks!
@slim bramble
No fuck no
Lol
Has anyone ran into this before?
Trying to get my MacOS env working. I have SSH files setup in ~/.ssh and I'm able to ssh root@10.0.0.42 from terminal into my phone without a prompt
on device
oh is this not idevice
sorry misread
Yea you might need to set a user or root pw, idk
I prefer password since I have so many devices
doesn't hurt to try
Aha, so my phone has a password, as well as root and mobile
that should be fine then
My MacOS root and user had no password before
That is probably it
Hmm, same exact error annoyingly
root is banned smh
we have the same but no direct write access to that folder lmao
i acn tell you the folder
you can probably write to it
hold on
C:\Windows\System32\Microsoft\Crypto\RSA\MachineKeys
its really specific
ooooo ill keep that in mind, thank you
how did you even figure that out
they blocked C:\ altogether for us, like if you open it in explorer it automatically closes, the workaround is to just navigate around via ps lmfao
in what world are we gonna be disconnecting the hard drive from a school computer
so youre saying in this folder you can run previleged executables?
not privileged but applocker blocked stuff
ah
we have warnings for it but people just don’t read
and we don’t want to block those sales altogether because they can still be legitimate users
can you do this on school computers
https://gist.github.com/acquitelol/77a15f97c88bb8f77175de66678b20a0
provided the usb-a ports recognise flash media
or can the IT team put other restrictions in place to prevent you
yall fucking with school computers, cute
i stopped cause i got in trouble
lol one time i found a patch that let me shut down any school desktop computer in the room
my friend got completely locked out from using the internet at all as a result !!! 😊
see, that happened to me
Time to sue
then I found a general web login account
see i got suspended for doing that before
then they begged me to stop using it and I didn’t 
why delete
the substitute user account had too much permissions, i found the password to it right
you could remote into other teachers computers
yeah ok that is too far
i did the smart thing and well
that’s way too far
based
all of it
ok that’s a little much
that’s a lot much
relatable
except it was a system account that was left by the computer manufacturer
i knew i was fucked when the account was disabled
.
what are the chances btw
one of the routers at my school had the default ddwrt password
i guess it depends on the competence of the IT staff
horror
Pro tip to get around security. Boot into a Linux usb, mount the windows drive, go to system32 and move utilman.exe to utilman.exe.bak and cp cmd.exe to utilman.exe. Boot back into window and click the ease of access button the the login screen to get an admin prompt. Enable the default administrator account and give it a password. Then when asked for admin credentials, just use the built in admins credentials. Oh also maybe restore the utilman exe

you can do the same thing with sethc.exe
that is why the tech dep hates me btw
I had admin on my school laptop and no one cared
yeah because that's really easy to do
noted will try
i mean, it's a makefile
you can just edit it to use sudo instead of su
but you're gonna need the user password for sudo
gonna leave a bad review on Rune
same
@placid kraken misinfo ban

Imma add a review to nexus saying "doesn't work on iOS 7"

rune for iOS 12
dude is discord slow or is it just me??
Me when I make an empty deb makes com.icraze.nexus
just you
lol
the mobile app on 210+ is really slow on the new ui for me
theyre apparently optimizing it though
on desktop expect bad performance because its electron lol
and if you have client mods expect even worse performance because memory leaks
oh ok then no
just you
did my part 
m
e
ok now its better
Um actually there will always be some latency sending messages
Rosie
nvm
v3 thing
I love untethered jailbreaks
big focus on performance and stuff
Is it swift
aalso if youre gonna judge my music taste pls go outside i dont have the brain capacity to argue about it
Worse, RN
no its react native which (iirc) compiles to objc
No nothings worse than swift
LMAO
Straight out of a lelli Kelly ad
swift itself: its ok
swiftui: 💩
the list is scrollable anyway
its necessary to put the icons there because of how discord structured that component lol
if you use the old variant it doesnt scale properly
What about like this element
also imagine sources,,, but theyre not apt theyre just a json file (real)
the bottom tab bar? yeah i could probably do that i guess
based old UI user
i only update my discord when they break stuff
I mean stuff is breaking but I don't really care
have you guys seen the horrors of 225
Like the oled theme just only applying to the chat box unless I reload it
And no hyperlinks
225 what?
the last time i updated was 183 to 220, so no
discord version 225
discord is a flawless platform guys
honestly every single version has some stupid issue like this
idk why the mobile app is so glitchy
Can discord like make a working ui for 5 minutes?
YOU KNOW WHAT THEY DID? THEY COULDNT FIGURE OUT HOW TO FIX THE SEGMENTED CONTROL SO THEY CHANGED IT TO A TABS INSTEAD
LOL
Tbh they should've never let discord change the ui without pushing an update
That way they would actually test it before deploying it
I wish discord didn't have a no third party client rule
Then someone would actually make a good discord client and we would be happy
good luck making a native app in uikit and jetpack compose that looks the same (or similar to an acceptable standard) without hiring 2 different dev teams who now need to interop perfectly
..oh wait that's called react native
sorry
To be fair discord didn't have react native for android for years
fr
in those years the app for ios didnt exist at all
I don't think they enforce that rule
i thought with custom clients (not modified) you can get banned
bunny?
basically nobody has gotten banned thus far
They kinda don't but often a big third party client will start having people get banned and then everyone gets scared
a vendetta fork with a competent dev (we've already had 2 others, sunset and revenge, both didn't)
hmm
as long as you dont go into a discord staff member's dms with screenshots that you're message logging youll probably be fine lmfao
why did my vendetta theme stop working when i got banned from their server

Those aren't custom clients they are modified clients
how do you get banned from the vendetta server
Probably being racist
friend of a moderator doesnt like me
average discord-related server
yeah but why
yeah either way vendetta has eol'ed since then
based
:/
eradicate discord
Was it capt?
its always capt
@young meteor
swiftui
yes
horror
Arm cord is just and electron wrapper but I'll checkout swift cord
that is an interesting name
no i deleted it
swiftcord
Of seiftcord is a Mac app
that mod was apparently really good, but it died when babel -> swc
hm yeah i think i'll stick with the official client
wait why did someone delete my alternate client message
swiftui
Zefram x SwiftUI
aaron's online
may be him
sensoroships
he shags the discord ceo guy
citrus
vencord
I've been censored 
enmity
@cloud yacht this code would probably be way longer in swiftui
function Avatar({ id, size = 24 }: { id: string, size?: number }) {
const [user, setUser] = React.useState(null);
React.useEffect(() => {
const maybeUser = Users.getUser(id);
if (maybeUser && typeof maybeUser?.getAvatarURL === 'function') {
setUser(maybeUser);
} else {
AsyncUsers.fetchProfile(id)
.then(() => setUser(Users.getUser(id)))
.catch(console.error);
}
}, []);
return <RN.Image
source={user ? { uri: user?.getAvatarURL() } : Icons['MoreHorizontalIcon']}
style={{
width: size,
aspectRatio: 1,
borderRadius: 9999
}}
/>;
}
no, recreating RN is very easy in any language
while (true) lag();
discord made their own font
again
😔
if (discord) {
while (true) lag();
}
fr
@objcMembers
other react native apps perform well enough that you cant tell it's react native
L they still havent fixed
discord is just bad
Sure and how many sub classes is this depending on? How's the performance compare? There's many other factors than code length
hmm
admin abuse
looks fine for me 
Moderator team
go away
is this the code block plugin for enmity lmfao
yeah
im surprised that still works
refunding jade rn
censorship
its so jank
i am using old ui, dunno if it’s broken on new
lomao
How hard are enmity plugins to actually do anything?
rune
yes BECAUSE DISCORD'S AST RULESETS FOR MARKDOWN ARE REALLY REALLY BAD
the vencord code block plugin is great
LIKE ASTRONOMICALLY BAD
fix it
make discord plugin ❌
make rune plugin ✅
The vencord view file contents plugin is handy
Buy me rune

if you want to render a monospace font it cannot have color. the color has higher precedence to be gray with a monospace font than without. you cannot apply. a. fucking. monospace. font. without. overriding. the. color.
drop the documentation
you either have to have no color or no monospace font
no im saying the fact that it renders as an embed or something
its obvious which we choose
Can't you just write html or smth cause it's js
yeah because we also have a lot of limitations when working in jsland
pissin
figure it out
we have to render whatever discord made bindings for on the native side
an embed is the best i could come up with
Just like spawn a web view and stick in some html
you were just complaining about performance
writing it rn
Yah but it's a client mod so performance is already out of the window
and in any case you cant put react in the chat area
leak the documentation
i tried for a while
welll, i had one POC but it was really bad for performance
by "writing it rn" i mean i'm about to start writing it probably
Ping captinc
skull
i highly doubt that
use copilot fr
joetube for the people
heres the whole code for adding syntax highlighting that i wrote for my v3 plugin
AAAAA THIS FONT
cam can you do a poll for react native vs uikit
why's it so squashed
i literally don’t even have access to polls lol
no idea why
this looks like a bunch of random bs, but I just assume syntax highlighting is in general

My condolences for your brain damage @kind herald
no thats just typescript
rune is a good tweak
false information
for the most part it's patching the thing that renders the rows in the chat (its json passed to the native side) and then getting rid of codeblock native components and rendering them as embeds
the "getting rid of codeblock native components and rendering them as embeds" consists of mostly an ast traversal so yes
bro got fixed
who said i like react native lmfao
nightwind too
mods, this user is spitting straight facts
you
its what discord uses so its what i have to use too
you use it too much
tbh just rewrite discord and release it as an app
Hi nightwind
if i had the option obviously i would use uikit
zefram for nintendo ds lite
why does discord have start activity as something I can do in a text chat?
WHAT
who’s going to be the first to write a discord app in objc 
wait this is just not bound to a vc
me and icraze
huh
what the fuck is this
garlic phone
garlic phone
WHO IS STILL DRAWING
I just finished
your mom so slow she can't even draw captinc getting shot by aaron for bypassing filter
LMAO WHAT IS THIS
this is a great prompt
discord wants to push app integrations

i think no one was using activities in vc
WHO IS DRAWING WHY ARE THEY TAKING SO LONG
so they're shoving them into chats
yet they don't let me launch my custom app in guilds with 25+ members
RUNE
NUNE
hello!
ICRAZE
Who wrote that
LMAO
WHOA ICRAZE NSFW
LMAO
it's joever
based icraze
mods who wants to warn him
do it
me
(the one who posted the image)
no im being a degen
i’m sorry for your loss
😦
SYAATYA THE SGAME
YES
nvm chat we balling again
@grave sparrow
r
mods
1984
e
that where not intend go
league of legends? we are NOT balling
fr
com.icraze.rune_69.0_iphoneos-arm64.deb
rune is like nexus aexcept nor
com icraze rune 1.0 iphone os arm deb
com icraze rune 1.0 iphone os arm deb
com icraze rune 1.0 iphone os arm deb
do it
you wont do it
gimme debs frenchie
in here
❌
ping gir in there
❌
tbh you should ping captinc in there telling him to ping me
?
Hi icraze
STOP OMG
oh my god
LMAO
the text to speech
Shared from Gartic Phone
real.
Shared from Gartic Phone
Fire. Fire. Fire. Fire. Fire.
captinc on a wednesday = drunk
Wha
I DIDNT GET TO FINISH IT
captinc on a wednesday
ok its like 3am here in the tea land so im gonna go to sleep
yall fw the dock?
yes
dont show this to icraze
LMAO
this one better ngl
this has the quality to be a gif so i can favourite it
they're equivalent
we love to hate swiftui 🙏
pEonY
most of my projects have the name of flowers
theres flora and azalea
go sleep rosie
meow
you need heohep
i got the best project names
ok good night
okay who the heck pinged me
good icraze fan art
captinc says the same thing and then uses the name zefram
YOUR OVERLORD AARON
by nightwind
BUY NIGHTWIND
how much
HearseDev ^
wtf it just broke after i tried to relaunch it
i just crashed playcover 
boobs
boobs
NSFW, don’t say that
boobs
people with boobs go to work all the time
how od they do it
idk but they dont drive there thats for sure
then how do they get there
roll
trick question it was com.icraze.rune_1.0_iphoneos-arm.deb

mb
Capinc women interaction
LEAKED
joesafe
short and definitely not sweet
“hey have you heard about zefram bbg”
i don't think she wants to hear about hookers
??
Anyone know how I can add DRM protection to my tweak ?
nfr
yeah, write a drm
don’t it’ll get cracked anyway drm just adds problems
Yeah
idk if this is true but if you have bigger boobs its more painful to run
nexus drm:
no one has cracked them yet
how do I install libusb headers? I already installed libusb from brew, am i missing something
Check where they are installing ig
There is a command with brew
I don’t remember
same problem w libimobiledevice
yes
Nothing lol
they exist
yep
man why does this ipsec vpn
only work on my laptop
it just hangs on connecting on my phone??
Is it possible to subscribe from an iOS app to notifications sent by notifyd daemon without jailbreak?
icon mask speaking facts
You forgot to censor sw*ft
Do better next time
Zeferam 🧐
no
Zeferam
piracy
What
idk i just felt like saying that
🙏
are you talking from experience or something 😭
no but i know it from friends of mine
is that the thing that doesnt exist
It’s actually trollware
lol i just was curious if it let me cause mobile did nothing
probably old ui is fucked
What’s this ?
alternatively:
place, japan
place
Not display thjng *
A method & a class
Shared iPad allows more than one user to sign in to an iPad. The iPad must be supervised before Shared iPad can be used.
ah yes a supervision+mdm exclusive
https://drive.google.com/file/d/1v1qUP4z5YKWoqdtiUfqDAcZ6_qE7jtYz/view?usp=sharing
16.6.1 DSC extracted and analyzed from ida with .asm/.c output if anyone wants
@restive ether gonna look into the crash log in a bit
yeah thanks, it happens on my uYouPlus build using 19.14.2
whenever i press the done button to close the video or sometimes if i just keep the view open for awhile
gonna need to see console log
looks like iOS 17.5+ thing
oh i didn’t even think of that being an issue
uh, i only have windows stuff i don’t own a mac
unless there’s like a console thing on windows i don’t know about or whatever
you can use this
this
if it’s idevicesyslog i’m currently fighting with it
it is
in what way
Up to date libimobiledevice builds:
- Windows: https://github.com/L1ghtmann/libimobiledevice/releases/download/suite-exe-074b320/libimobile-suite-latest_x86_64-mingw64.tar.xz
- macOS:
brew install libimobiledevice libirecovery - Linux: https://cadoth.net/~nyuszika7h/ios-builds/libimobiledevice-static-linux.tar.gz
that one
won’t recognize my device as connected
windows store or msi
i’m realizing that itunes is in fact not installed on here
is the windows store one still problematic
oh ok it works now
ok i can get this now
@graceful gate i think this is everything relevant if not let me know, its not something im familiar with
the part where it says which selector is unrecognized isn't there 🥹
anw I'm looking at SpringBoard.framework binary to see if my hypothesis is correct
oof
Apr 10 22:38:16 ReportCrash[67149] <Notice>: ASI found [CoreFoundation] (sensitive) '*** Terminating app due to uncaught exception 'NSInternalInconsistencyException', reason: 'The status bar window cannot be accessed from within an application.'
@restive ether Can you also send me your libFLEX.dylib ?
libGEX
Done button on FLEX window?
yeah it crashes when i press done
it crashes if i try to click one of the views in the hierarchy tree as well
I don't understand why they have to use string with format here...
- (UIWindow *)statusWindow {
NSString *statusBarString = [NSString stringWithFormat:@"%@arWindow", @"_statusB"];
return [UIApplication.sharedApplication valueForKey:statusBarString];
}
Yes, this code fails on FLEX on sideloaded YT
@restive ether I pushed a possible fix to my FLEXing fork, you can try it
ok i’ll pull the fixes thank you
Hard to say, it's been there since the first commit. There's a fix for it, just need to update the FLEX submodule on your fork
I already did
So weird
Which fix are you talking about?
Co-authored-by: ClownFish 15800960640@163.com
Got it.. I'm on an outdated branch
Or simply latest commit of uYouPlus
My phone is stuck in smart invert mode
I was messing around in heap objects in flex and there was sm about invert and I flicked Sm “invert” bool on. Nothing happened, but after a respring it’s stuck now
I don’t remember which object it was, so if anyone has any idea pleas lmk
Also it’s still broken while un JB
zefram
It keeps flashing me 😭
hi all! can i call a c method from a framework? when i inspect with IDA i will see method's name in EXPORT tab. but i didnt know how can i call it from an application
this just made me nostalgic damn I remember when this was added
old mf
nostalgic over 2021 is a crime
u were not here for JTV days I miss that mfer man
idk i think it's normal
nah i was 😭
sep compatibility chart
yeah i was waffling tbh
💀
LMFAOOO
holy fuck
dude that UI was SO FUCKING BAD
idc if he gets cancer or dies by rabies im still gonna diss it
😭
I remember when we made a manual SEP/BB compat tag and at the very end we said "do NOT use inaccurate sites which may be misleading" i swear that shit was bullying
real
non help 😦
Oops
:nfr:
It was in like “Homescreen” specific accessibility settings
Leave Tesla alone lol
Damn its a joke brother

link against the framework in your makefile. Them import the framework in whatever file you're trying to use the C function in. Then use the function.
alternatively, you can dynamically get the symbol of the function using MSFindSymbol or dlsym and then call the function like that
i tried this ways but didnt work. :/
Trying to follow the simject setup guide, have compiled it properly but the directory to copy to doesn't exist. can someone tell me what im botching here (neither the first nor second directories exist, and for the first it doesnt exist even a level or two before /Library/Frameworks
can you show what you tried? also, can you elaborate on what you mean by "didn't work"?
i did it with _dyld_get_image_header :d firstly found function address and call like a function
Send the code

objective c lookin ass
@queen ruin no.
uint64_t getExecAddr(uint64_t addr, int index)
{
const struct mach_header* header = _dyld_get_image_header(index);
if (header == NULL){return 0;}
uint64_t libLoadAddr = (uint64_t)header;
uint64_t exec_addr = libLoadAddr + addr;
return exec_addr;
}
uint64_t getLibIndex(const char* que_image)
{
int i = 0;
int image_count = _dyld_image_count();
for(; i < image_count; i++)
{
const char* req_image = _dyld_get_image_name(i);
[arr addObject:[NSString stringWithUTF8String:req_image]];
if(req_image && strcmp(req_image, que_image) == 0)
{return i;}
}
return -1;
}
hm
NSString libName = @"/var/foo/bar.framework/bar";
int index = getLibIndex([libName UTF8String]);
uint64_t address = getExecAddr(startindex, index);
typedef long long func(const char);
func* f = (func*)address;
void *address = dlsym(NULL, "_func_symbol");
if (address) {
typedef long long func(const char *);
func *f = (func *)address;
}
wouldn't this work?
didnt work but i dont know why :/ i tried every type of cast
compile is ok but app crashing when code blocks run
check what the value of address is
void *address = dlsym(NULL, "_func_symbol");
NSLog(@"address -> %p", address);
signal is killing bcs of unexpected address
dlsym not retrieving true address maybe
i tried with dlopen (for load if didnt)
checked 15726721 times in IDA
its a framework for an application. its not public.
symbol name like _getSomeParameter
i wanted to access this c function. its not swift or objc. i tried more times for substrate functions for hooking or dlopen/dlsym for call but didnt work
when i listed all loaded frameworks and getting func by start address its worked !
try this
#import <substrate.h>
// ... //
void *address = MSFindSymbol(NULL, "_getSomeParameter");
NSLog(@"address -> %p", address);
i tried it with/without MSImageRef
and still 0x0?
app still crashing but i didnt check whats address
check the address
I'm guessing that the symbol name might be wonky, that's why it's returning 0x0
well is this a tweak for an app, or is this an actual normal app?
it is a normal app compiling with theos cli
hm idk then
maybe some substrate functions not working well with app. it can be relevant with makefile
theos loading some files for every type (tweak, lib, tool, app etc.)
i finished my work. thats code working perfectly for me
we just tried to find where is the fault for other ways
when it return -1 means, library not loaded memory yet.
you can load it manually with dlopen :d
oh 😄
is it about of secure coding or ?
whats problem with uint64_t when return -1
uint is positive i understand but it doesnt crash anything :d
yea i saw it when you reply again :d
getLibIndex just return an integer. uint is not necesseary for it. i will change it and we will be in peace
aight gonna read
the func arg0 is const char *. true. just typo
typo too
😄
typedef long long func(const char * );
func* f = (func*)address;
f("test");
its not crashed. i finished my work with this code.
oh i understand why there isnt * character. its hiding when i copy/paste to discord :d
i need to shortcuts like a vscode
some keyboards(like mine) has no backticks
i will copy that when i need
```like that i think ````
uint64_t getExecAddr(uint64_t addr, int index)
{
const struct mach_header* header = _dyld_get_image_header(index);
if (header == NULL){return 0;}
uint64_t libLoadAddr = (uint64_t)header;
uint64_t exec_addr = libLoadAddr + addr;
return exec_addr;
}
int getLibIndex(const char* que_image)
{
int i = 0;
int image_count = _dyld_image_count();
for(; i < image_count; i++)
{
const char* req_image = _dyld_get_image_name(i);
[arr addObject:[NSString stringWithUTF8String:req_image]];
if(req_image && strcmp(req_image, que_image) == 0)
{return i;}
}
return -1;
}
NSString *libName = @"/var/foo/bar.framework/bar";
int index = getLibIndex([libName UTF8String]);
uint64_t address = getExecAddr(0x4000, index);
typedef long long func(const char*);
func* f = (func*)address;
long long value = f("parameter");```
how can i do it highlighted like you
thanks mate ❤️
https://verify.shsh.host/
(iphone 15 not here yet but still)
just says request times out
question ab LC_UUID: is the UUID on like an appstore app's main binary going to be the same for lets just say user A and user B
or is it a UUID for each user, not just binary versions
LC_UUID is for a binary version yea, i don't think fairplay encryption modifies it
it should be pretty easy to test though
find something to download with ipatool i'll download it as well
Same here
hm okay
when you decrypt an app the only thing that should change is the encryption_info_command->cryptid, right?
yeah it's something that ld creates
The UUID is computed based on an MD5 hash of the binary's contents.
ye
[[CopyLogFix]]
developers - someone can make fix like that for eqe? or somth
Also @shrewd moth don’t cross post in channels
ok sory
@grave sparrow could you breifly explain what the [] do in this
var_20= -0x20
; ...
STP X22, X21, [SP,#0x60+var_20]
it storing a pair of registers (x22 and x21) at the stack pointer + 0x40
Me when the "Home Screen" is responsible for the rendering of every app
so stp is store pairs and sp is stack pointer
and stp takes 3 args, 2 registers and 1 "stack offset"
and thats just the routines stack + 0x40?
since #0x60+var_20 = #0x60-0x20 = #0x40
basically yea, and in the [] the first "argument" is the register which holds the address it will store the pair at, the second one is an optional offset to be added/subtracted from that address before storing
mhm
so [x0] && [#40] are both valid
they just don't require offsetting
and when you say "pair of registers", are they just 2 registers that will hold the same value? or do they have any extra significance
just storing the values in the registry to memory, normally used to save values before doing stuff in a function, then using ldp to load them back before returning
0xkuj probably has millions in the bank from r/tweakbounty
It’s Home Screen aka springboard
Still cant see why i should use stp instead of 2 str's 🤷
Then again idk shit yet
yoo nerds
yk when you but new apple device it shows “hello” “hola” and so on is that pre rendered or hardcoded
like if i was to do it in my app to make that playground text animated what’s the best way to do it
eqe dev working on rootless and ios 16 versions i thought
he literally take all bounties
but everyone can use chatgpt
i tried it few times I didn't understand a word he says
chatgpt is pretty sometimes dumb imo
ik i was joking about chatgpt
where can I get updates on that?
🤷♂️ don’t really know sorry
You know how you overflow the stack with letters (AAAABBBBCCC etc) and it cant return to 0x41414141 etc and crashes. Why not populate adresses such as those with error functions so it doesn't crash but quits normally (all this as a security measure)
Why is not that a good idea if it was it would probably be done anyways
Wouldn't it also make it hard to determine jump bytes
claude >>
i bet free claude beats gpt 4
i assume you're talking about stack canaries?
Idk what that is 💀
the concept you're talking about seems like stack canaries
idk much about this but to answer your question i assume it's because it wouldn't be very stable
it wouldn't be very secure for a first
Also there are a lot of possible adresses such as those probably
intersections like 41414242
Also that ig yeah
it'd likely introduce more security issues
an attacker could find ways to exploit the error functions themselves
True
What
No
@orchid fulcrum attackers do it to just show that they can trigger the bug
A more complex exploit would divert control flow to a custom payload
Yeah i just thought maybe it would disallow the attacker to understand at which point it gets overwritten
Thanks everyone 🙏
If you use different letters you can see exactly which offset the overwrite starts from
e.g. AAAABBBBCCCCDDDDEEEEFFFF
Usually yeah they use 0x414141414141 just to show they got a bug and after that well they release it or not
wait that's the thingy that detects stack buffer overflow
idk why i said that 💀
so ipsec/ikev2 vpns only seem to work on laptops at my school
well
i got the method
i bring chromebook to school and connect it to ipsec vpn
then run a openvpn server on said chromebook and connect to that from phone
im testing right now and it seems to be working
@vivid dew hb hagd
@torn cloud one of my new test devices has the screen glass coming away from the LCD
skill issue
Is it dangerous or not
could be
how did you break it anyway
also if you're really unlucky a shard of glass might pierce the battery
boom
if i was you i would replace it
?
I only got it yesterday
Second hand
It was missing a pentagons screw but I found a spare
tf is a pentagon screw

