Skip to content
Boot9/Boot11 code execution.
C Other
  1. C 98.5%
  2. Other 1.5%
Branch: master
Clone or download



Boot9/Boot11 code execution.

For more details, refer to the presentation here.

Install via SafeB9SInstaller.

Launches "boot.firm" off of the SD card or CTRNAND. Hold Start + Select + X on boot to dump the bootroms/your OTP.


Normmatt: Theorizing the NDMA overwite exploit.
TuxSH: Help implementing bootrom payloads.
Luma3DS: Codebase used in the stage 2 FIRM loader.


This software is licensed under the terms of the GPLv3.
You can find a copy of the license in the LICENSE file.

You can’t perform that action at this time.