This is an automated archive made by the Lemmit Bot.

The original was posted on /r/speedrun by /u/gloriousliar on 2024-03-25 01:39:03.


By wrong-grabbing misaligned actor data we can bring actors into new maps that execute update code from an area of RAM that is dynamically loaded. If we bring them into certain maps that don’t utilize this region, the framebuffer takes up that slot.

By wrong grabbing a bonus barrel to set up an out-of-bounds warp, we can bring one of these actors into a map without instantly crashing. Then, when we selectively load it later, we can have a payload set up in the framebuffer.

This is potentially the biggest exploit ever discovered in DK64, and could lead to TAS-viable arbitrary code execution (ACE).