This is an unpatchable exploit to extract the BootROM keys which allows for firebird emulation. It uses the MMU to trick the CPU, hence the name, eMMUlate.
Read my blogpost here for a full technical explaination!
- Use polydumper to obtain a keyless bootrom dump
- Copy the bootrom file(btrom.tns) onto your phone or any device that can scan a QR
- Transfer the .tns from the releases here and run it
- Scan the QR and inject the bootrom
- Use with firebird and enjoy!
- Vogtinator for pointing me towards the right direction and some "hints" :D
- Sasdallas for his expertise is C and helping me clean up the code
- Adriweb for the nice name :D
- https://github.com/ricmoo/QRCode for the QR code library