Hacking How to run the kernel exploit on your WiiU! (Tips)

Selim873

Nunnayobeesnes
Member
Joined
Jul 31, 2010
Messages
1,275
Trophies
0
Age
30
Location
Chillin' with Bob Ross
XP
1,112
Country
United States
I'm looking forward to one for 5.4.0. Fortunately, it didn't download the 5.5.0 update yet so I'm in the clear.

I'll have to double check the web filter and see that I block the servers to disable automatic updating. Don't want to have my system update on me by accident.

Edit: Blocked the update, my system is totally unaware of it, and still grants me online access. I cannot complain about this.

I managed to do it while the system update was at 10% downloaded. I just wish there was a way to remove that.
 

karloz25

Well-Known Member
Member
Joined
Dec 11, 2010
Messages
452
Trophies
1
XP
869
Country
United States
So what does this exploit do? Or should I say, what can be done once the wiiu is exploited using this method? Thanks for the guide.
 

loco365

Well-Known Member
Member
Joined
Sep 1, 2010
Messages
5,457
Trophies
0
XP
2,927
So what does this exploit do? Or should I say, what can be done once the wiiu is exploited using this method? Thanks for the guide.
You can modify anything that is in memory, so, performing memory writes and reads. Nothing else though. This will allow for, at least, Virtual Console injection.
 
  • Like
Reactions: Margen67

Reecey

Mario 64 (favorite game of all time)
Member
Joined
Mar 7, 2010
Messages
5,870
Trophies
2
Location
At Home :)
XP
4,475
Country
Thanks Mr. Rean I'm testing it out now. Is there anything we can do with this now just for a bit of fun?

Edit: also how do you setup XAMPP and grab the file from your PC to the wiiu to execute the payload?
 
Last edited by Reecey,

Reecey

Mario 64 (favorite game of all time)
Member
Joined
Mar 7, 2010
Messages
5,870
Trophies
2
Location
At Home :)
XP
4,475
Country
If people are still having problems, here are video tutorials:





Thanks man, really appreciate your thorough guides! :)

--------------------- MERGED ---------------------------

Thanks man, really appreciate your thorough guides! :)

Edit: just a quiky bud, when I have set up all that at the end and go to my wiiu chrome browser, what would I type in say if my ip address was 101.1001.1.89, to get to the payload file in Wampserver to activate the exploit? Would it be like this> (http://101.1001.1.89/payload532.html for example? to get it to work. This has nothing to do with the browser exploit I presume you don't need to enter the browser exploit first and then run this?
 
Last edited by Reecey,
  • Like
Reactions: Margen67

BullyWiiPlaza

Nintendo Hacking <3
Member
Joined
Aug 2, 2014
Messages
1,932
Trophies
0
XP
2,477
Country
Germany
Edit: just a quiky bud, when I have set up all that at the end and go to my wiiu chrome browser, what would I type in say if my ip address was 101.1001.1.89, to get to the payload file in Wampserver to activate the exploit? Would it be like this> (http://101.1001.1.89/payload532.html for example? to get it to work. This has nothing to do with the browser exploit I presume you don't need to enter the browser exploit first and then run this?
An IP address can not have a number bigger than 255 so 1001 is invalid. Asuming it is 101 instead. You would enter 101.101.1.89 only because it implicitly opens the index.html file which then redirects you to the correct payload ("browser detection code by Relys") so indeed nice job by the developers there.
 

Reecey

Mario 64 (favorite game of all time)
Member
Joined
Mar 7, 2010
Messages
5,870
Trophies
2
Location
At Home :)
XP
4,475
Country
An IP address can not have a number bigger than 255 so 1001 is invalid. Asuming it is 101 instead. You would enter 101.101.1.89 only because it implicitly opens the index.html file which then redirects you to the correct payload ("browser detection code by Relys") so indeed nice job by the developers there.
I'm trying to get it going but I am having an error access with wampserver> you dont have permission to access/on this server on my wiiu screen? that IP was only an example mines 192.168.1.xx
 

YugamiSekai

Mr. Picross
Member
Joined
Dec 24, 2014
Messages
2,015
Trophies
1
Age
22
XP
2,386
Country
United States
Waiting on 5.4.0 like:
43210702.jpg
 

nastys

ナースティス
Member
Joined
Aug 5, 2014
Messages
1,730
Trophies
0
Age
26
Location
Earth
XP
1,794
Country
Italy
How to host the kernel exploit (or any other homebrew) on Ubuntu:


How to install devkitPro and build the kernel exploit on Ubuntu:



Yep, it's easier on Ubuntu because you don't need to install Python and Cygwin, and Apache is easy to install :)
These tutorials, except for the first one, might apply to OS X as well ;)
All the tutorials apply to other GNU/Linux distros, but with some changes.
 
Last edited by nastys,
  • Like
Reactions: Margen67

Relys

^(Software | Hardware) Exploit? Development.$
Member
Joined
Jan 5, 2007
Messages
878
Trophies
1
XP
1,239
Country
United States
Waiting on 5.4.0 like:

1) Go find a WebKit CVE that crashes latest firmware (Google).
2) Hook exception vectors and get stack trace for crash using the kernel exploit on lower firmware (dantarion just committed this).
3) Port the WebKit CVE PoC you found to Wii U arch on lower firmware.
4) Port ROP chain and any other memory offsets from lower firmware to latest firmware blindly.

Don't expect to see 5.4.0 in the wild unless an 0day gets burned (i.e. Nintendo patches it). We're more than happy to release exploits that Nintendo has already patched, but want to keep the good stuff under the hood. Also, we'll probably shy away from releasing anything on the absolute latest firmware because we don't want a lot of online cheaters wreaking havoc. People cheating online just gives us a bad name.
 
  • Like
Reactions: VinsCool

mariogamer

Well-Known Member
Member
Joined
Aug 12, 2015
Messages
1,256
Trophies
0
Age
28
XP
790
Country
Canada
How to host the kernel exploit (or any other homebrew) on Ubuntu:


How to install devkitPro and build the kernel exploit on Ubuntu:



Yep, it's easier on Ubuntu because you don't need to install Python and Cygwin, and Apache is easy to install :)
These tutorials, except for the first one, might apply to OS X as well ;)
All the tutorials apply to other GNU/Linux distros, but with some changes.

what I have I do with Kubuntu?
 

nastys

ナースティス
Member
Joined
Aug 5, 2014
Messages
1,730
Trophies
0
Age
26
Location
Earth
XP
1,794
Country
Italy
what I have I do with Kubuntu?
Use Konsole instead of Terminal and launch it from Kickoff (the "K" menu), as the shortcut is disabled by default.
Instead of gedit, type kate.
Instead of Ubuntu Software Centre, use Apper or the following command in Konsole:
Code:
sudo apt-get install apache2

EDIT: and dolphin instead of nautilus.
 
Last edited by nastys,

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • Quincy @ Quincy:
    Usually when such a big title leaks the Temp will be the first to report about it (going off of historical reports here, Pokemon SV being the latest one I can recall seeing pop up here)
  • K3Nv2 @ K3Nv2:
    I still like how a freaking mp3 file hacks webos all that security defeated by text yet again
  • BigOnYa @ BigOnYa:
    They have simulators for everything nowdays, cray cray. How about a sim that shows you playing the Switch.
  • K3Nv2 @ K3Nv2:
    That's called yuzu
    +1
  • BigOnYa @ BigOnYa:
    I want a 120hz 4k tv but crazy how more expensive the 120hz over the 60hz are. Or even more crazy is the price of 8k's.
  • K3Nv2 @ K3Nv2:
    No real point since movies are 30fps
  • BigOnYa @ BigOnYa:
    Not a big movie buff, more of a gamer tbh. And Series X is 120hz 8k ready, but yea only 120hz 4k games out right now, but thinking of in the future.
  • K3Nv2 @ K3Nv2:
    Mostly why you never see TV manufacturers going post 60hz
  • BigOnYa @ BigOnYa:
    I only watch tv when i goto bed, it puts me to sleep, and I have a nas drive filled w my fav shows so i can watch them in order, commercial free. I usually watch Married w Children, or South Park
  • K3Nv2 @ K3Nv2:
    Stremio ruined my need for nas
  • BigOnYa @ BigOnYa:
    I stream from Nas to firestick, one on every tv, and use Kodi. I'm happy w it, plays everything. (I pirate/torrent shows/movies on pc, and put on nas)
  • K3Nv2 @ K3Nv2:
    Kodi repost are still pretty popular
  • BigOnYa @ BigOnYa:
    What the hell is Kodi reposts? what do you mean, or "Wut?" -xdqwerty
  • K3Nv2 @ K3Nv2:
    Google them basically web crawlers to movie sites
  • BigOnYa @ BigOnYa:
    oh you mean the 3rd party apps on Kodi, yea i know what you mean, yea there are still a few cool ones, in fact watched the new planet of the apes movie other night w wifey thru one, was good pic surprisingly, not a cam
  • BigOnYa @ BigOnYa:
    Damn, only $2.06 and free shipping. Gotta cost more for them to ship than $2.06
    +1
  • BigOnYa @ BigOnYa:
    I got my Dad a firestick for Xmas and showed him those 3rd party sites on Kodi, he loves it, all he watches anymore. He said he has got 3 letters from AT&T already about pirating, but he says f them, let them shut my internet off (He wants out of his AT&T contract anyways)
  • K3Nv2 @ K3Nv2:
    That's where stremio comes to play never got a letter about it
  • BigOnYa @ BigOnYa:
    I just use a VPN, even give him my login and password so can use it also, and he refuses, he's funny.
  • BigOnYa @ BigOnYa:
    I had to find and get him an old style flip phone even without text, cause thats what he wanted. No text, no internet, only phone calls. Old, old school.
  • Psionic Roshambo @ Psionic Roshambo:
    @BigOnYa, Lol I bought a new USB card reader thing on AliExpress last month for I think like 87 cents. Free shipping from China... It arrived it works and honestly I don't understand how it was so cheap.
    Psionic Roshambo @ Psionic Roshambo: @BigOnYa, Lol I bought a new USB card reader thing on AliExpress last month for I think like 87...