Hacking [Guide] Kafluke's HardMod CBHC Unbrick guide

  • Thread starter Thread starter Kafluke
  • Start date Start date
  • Views Views 150,773
  • Replies Replies 412
  • Likes Likes 33
I don't believe that's currently possible.
Any reason why? From what I understand all regions/pads use the same hardware. While SLC/SLCCMPT/MLC are encrypted this should be decryptable with the OTP that is accessible. Then possible to reencrypt with other console OTP. While the processor requires Nintendo signed code, as long as this is just firmware from another region it should already be signed. Unless there is some other specific thing used in OTP/SEEPROM to lock out based on firmware? Maybe a tool could be made to auto switch regions based on inputting the correct files.

Also, wii u gamepad firmware from what I have read from years ago the firmware is unencrypted on SPI chip. Combined with same hardware any reason why this wouldn't work?

I would love to try this stuff, but obviously don't want to buy another system if this isn't even possible to work.
 
I don't know the specifics, but @EyeKey , developer of the nand tools, said it's not possible right now to clone one system's information to another. it's being developed, I think, but very slowly.
 
hello
Missing files to unlock my wii u. Help me find8 minutes ago
Download the Nandway-SignalBoosterEdition.hex and NANDway.py files here.
 
hello
Missing files to unlock my wii u. Help me find8 minutes ago
Download the Nandway-SignalBoosterEdition.hex and NANDway.py files here.

It's not clear what you're asking.. Do you need the 2 files? If yes, here are the links (right click, save as..)

NANDway.py = link here
NANDway_SignalBoosterEdition.hex = link here
 
@Kafluke I have an question, If RB1 CE1 and RB2 CE2 is solder can you still restore slc.bin and slccmpt.bin or it won't work like that?

In some of the earlier posts , a few folks attempted the Dual Nand Edition setup for this , but it seemed like people were getting inconsistent dumps .. and so if you continue along in the thread the recommended approach from the community is to dump/flash one nand at a time (make sure to use Nandway-SignalBoosterEdition.hex and NANDway.py)..

In other words.. switch RB1 CE1 and RB2 CE2 on the Teensy depending on which dump you want to work with. You can solder all 4 points on the SLC chip but when connecting it to the Teensy only connect RB1 CE1 OR RB2 CE2 (Don't attempt to connect all 4 at the same time)

I performed this a few months ago and I used female dupont cables for all my solder points for the SLC chip, and and male dupont cables for all the teensy solder points. This made things a lot easier .. not only for switching between RB1 CE1 and RB2 CE2 but to also validate that your flash worked (as your WiiU won't power up with the cables connected to your Teensy ), and so if you need to reconnect the wires for any reason you don't have to constantly solder/desolder to test things out..

Good luck!
 
Last edited by AQS,
  • Like
Reactions: QBH
Could I do this, and leave the teensy inside the console?

I want to install this and mount the teensy somewhere to be accessed easily and quickly when/if I ever need it

I don’t see why not, but I’d hate to assume
 
Could I do this, and leave the teensy inside the console?

I want to install this and mount the teensy somewhere to be accessed easily and quickly when/if I ever need it

I don’t see why not, but I’d hate to assume
Theoretically you don't need this hardmod when your console isn't bricked. Install tiramisu and you are safe in every way.
 
Theoretically you don't need this hardmod when your console isn't bricked. Install tiramisu and you are safe in every way.
Soldering comes easy to me

So this shouldn’t be a hard install, I just like to have safe guards just in case
 
Could I do this, and leave the teensy inside the console?

I want to install this and mount the teensy somewhere to be accessed easily and quickly when/if I ever need it

I don’t see why not, but I’d hate to assume

The console will not boot into the OS with the Teensy connected so there's no point.
I'd recommend only doing the teensy mod if you're already bricked as you risk damaging other things in the process.

If you're worried about having to re-do the mod for any reason you can make use of dupont cables that are easy to connect/disconnect and just leave the soldered (female) dupot cables inside the console and store your teensy somewhere safe.
 
  • Like
Reactions: Aheago
The console will not boot into the OS with the Teensy connected so there's no point.
I'd recommend only doing the teensy mod if you're already bricked as you risk damaging other things in the process.

If you're worried about having to re-do the mod for any reason you can make use of dupont cables that are easy to connect/disconnect and just leave the soldered (female) dupot cables inside the console and store your teensy somewhere safe.
I may do just that in that case, and maybe even mount them to the casing somewhere for quick access with the teensy

Thank you for clarifying, this info helped a ton!
 
Can I use this guide to fix a bricked Wii U that used Tiramisu instead of CBHC? I tried to look for unbricking hardmod tutorials for Tiramisu Wii Us and this thread is all I found so far. My Wii U isn't bricked, but I am curious.
 
Should be possible i would say. But bricking the console is possible, but i think it is unlikely. Because the H&S app (in which Tiramisu is installed) cannot be deleted just like that. For that, you would have to poke around deep in the system via FTPiiU Everywhere and delete everything manually from there.
 
  • Like
Reactions: radioactiveSue
I have this broblume when try to read mmc
IMG_٢٠٢٢٠٧٢٠_١٧٠٠٣٠.jpg
 
Would anyone know where i can buy a legit Teensy 2.0 ++ that isnt going to make me and my wallet cry? my RPI 2B isnt working very well for me.
 
Aliexpress. But this well not work if not have OTP. Bin or slc befor cfw nand backup befor cbhc... I dont know if you can dump this file from chip then why you must need the backup befor!!!!!!
Would anyone know where i can buy a legit Teensy 2.0 ++ that isnt going to make me and my wallet cry? my RPI 2B isnt working very well for me.
 
Aliexpress. But this well not work if not have OTP. Bin or slc befor cfw nand backup befor cbhc... I dont know if you can dump this file from chip then why you must need the backup befor!!!!!!
Hi. Thanks for your concerns however I very well know what im doing.
 

Site & Scene News

Popular threads in this forum