From 802379750ef595234d94d62e018c846ed09268b8 Mon Sep 17 00:00:00 2001 From: vibecoder <16832299+vibecoder@user.noreply.gitee.com> Date: Wed, 9 Sep 2026 17:51:49 +0800 Subject: [PATCH 1/3] [version] add win32 25558 support --- frida/config/win32/addresses.25558.json | 6 ++++++ 1 file changed, 6 insertions(+) create mode 100644 frida/config/win32/addresses.25558.json diff --git a/frida/config/win32/addresses.25558.json b/frida/config/win32/addresses.25558.json new file mode 100644 index 0000000..2854a80 --- /dev/null +++ b/frida/config/win32/addresses.25558.json @@ -0,0 +1,6 @@ +{ + "Version": 25558, + "LoadStartHookOffset": "0x2ce7c50", + "CDPFilterHookOffset": "0x37aa110", + "SceneOffsets": [64, 1536, 8, 1472, 16, 456] +} From 15a1dfab6b591443e311bb174dfceae514ddbdc7 Mon Sep 17 00:00:00 2001 From: vibecoder <16832299+vibecoder@user.noreply.gitee.com> Date: Fri, 11 Sep 2026 15:04:05 +0800 Subject: [PATCH 2/3] [version] update 25558 support with CDP filter bypass - Update CDPFilterHookOffset to 0x3978930 (FUN_183978930) - Add patchEnabled: force enabled_ = 1 for Document/Fetch handlers (required for 25558+, Network.enable doesn't set enabled_ properly) - Keep original patchCDPFilter logic unchanged (type 6 -> 0) --- frida/config/win32/addresses.25558.json | 2 +- frida/hook.js | 30 ++++++++++++++++++++++++- 2 files changed, 30 insertions(+), 2 deletions(-) diff --git a/frida/config/win32/addresses.25558.json b/frida/config/win32/addresses.25558.json index 2854a80..9a178a6 100644 --- a/frida/config/win32/addresses.25558.json +++ b/frida/config/win32/addresses.25558.json @@ -1,6 +1,6 @@ { "Version": 25558, "LoadStartHookOffset": "0x2ce7c50", - "CDPFilterHookOffset": "0x37aa110", + "CDPFilterHookOffset": "0x3978930", "SceneOffsets": [64, 1536, 8, 1472, 16, 456] } diff --git a/frida/hook.js b/frida/hook.js index 0d1ca14..fc96187 100644 --- a/frida/hook.js +++ b/frida/hook.js @@ -145,6 +145,33 @@ const patchOnLoadStart = (base, config) => { }); }; +// Hook Document/Fetch handlers to force enabled_ = 1 +// Required for 25558+: Network.enable command doesn't set enabled_ properly +const patchEnabled = (base) => { + // Document handler + Interceptor.attach(base.add(0x13b71b0), { + onEnter(args) { + try { + var obj = this.context.rcx; + if (obj.add(0x98).readU8() != 1) { + obj.add(0x98).writeU8(1); + } + } catch(e) {} + } + }); + // Fetch handler + Interceptor.attach(base.add(0x7259e60), { + onEnter(args) { + try { + var obj = this.context.rcx; + if (obj.add(0x98).readU8() != 1) { + obj.add(0x98).writeU8(1); + } + } catch(e) {} + } + }); +}; + const parseConfig = () => { const rawConfig = `@@CONFIG@@`; if (rawConfig.includes("@@")) { @@ -163,7 +190,8 @@ const main = () => { const config = parseConfig(); const mainModule = getMainModule(config.Version); patchOnLoadStart(mainModule.base, config); + patchEnabled(mainModule.base); patchCDPFilter(mainModule.base, config); }; -main(); \ No newline at end of file +main(); \ No newline at end of file From 3a7c640052141eea109a08913f3f11508649a7c9 Mon Sep 17 00:00:00 2001 From: vibecoder <16832299+vibecoder@user.noreply.gitee.com> Date: Fri, 11 Sep 2026 17:43:15 +0800 Subject: [PATCH 3/3] [version] add 25560 support --- frida/config/win32/addresses.25560.json | 13 +++++++++++++ 1 file changed, 13 insertions(+) create mode 100644 frida/config/win32/addresses.25560.json diff --git a/frida/config/win32/addresses.25560.json b/frida/config/win32/addresses.25560.json new file mode 100644 index 0000000..bb34cf1 --- /dev/null +++ b/frida/config/win32/addresses.25560.json @@ -0,0 +1,13 @@ +{ + "Version": 25560, + "LoadStartHookOffset": "0x2ce7cf0", + "CDPFilterHookOffset": "0x39789d0", + "SceneOffsets": [ + 64, + 1536, + 8, + 1472, + 16, + 456 + ] +} \ No newline at end of file