Switch TrustZoneHax on 4.x

nintendo-switch-15-1-630x354.jpg

The ReSwitched Hacking Team have done it again. motezazer, ktemkin and SciresM have achieved code execution on 4.1.0, the latest version at the time of writing this, via deja vu at TrustZone level. This means devices on 4.1.0 and below will be able to gain access to the whole system. SciresM strongly advises to not update in the future.

After less than a year, the Switch hacking team has moved extremely fast and now have got full access on the latest version. The progress being made is incredible, and in comparison, the 3DS took around 2 years to get ARM9 access. The scene is looking very promising so far and we are very lucky to have such talented people working on the Switch.

:arrow: Source
 
Last edited by Deleted member 381889,

TheCyberQuake

Certified Geek
Member
Joined
Dec 2, 2014
Messages
5,012
Trophies
1
Age
28
Location
Las Vegas, Nevada
XP
4,433
Country
United States
also that boot rom hax can still be figured out so if you own the current revision of the switch if you update you will still get cfw some day.
Well that depends on the requirements to access that bootrom exploit. At minimum it will likely require userland, and may potentially require kernel or even trustzone. The software only bootrom exploit was not given much detail, and is not guaranteed to be installable from every firmware.
 

Frezgle

Well-Known Member
Member
Joined
Aug 4, 2016
Messages
168
Trophies
0
Age
30
XP
275
Country
United States
Good lord. The Switch scene has been going at such lightspeed. The people whining about no releases yet must be new to hacking in general; the fact that every iteration of a new console is pwnable less than a year after its release is insane. o_o
 

TheCyberQuake

Certified Geek
Member
Joined
Dec 2, 2014
Messages
5,012
Trophies
1
Age
28
Location
Las Vegas, Nevada
XP
4,433
Country
United States
Good lord. The Switch scene has been going at such lightspeed. The people whining about no releases yet must be new to hacking in general; the fact that every iteration of a new console is pwnable less than a year after its release is insane. o_o
The 3ds, which is well regarded as one of the best hacking scenes with how blown open it got, took years to make any good progress for free or cheap homebrew, let alone public free cfw being reasonably easy to obtain. People who are anyway upset nothing is released yet need to chill, it hasn't even been a year yet and we already have private trustzone up to latest firmware and know a bootrom exploit exists. It will come shortly, be patient people.
 

DarthDub

Amateur Hacker
Member
Joined
Jan 26, 2016
Messages
2,834
Trophies
1
Age
34
Location
Your mom's basement.
Website
www.gaiaonline.com
XP
3,635
Country
United States
The 3ds, which is well regarded as one of the best hacking scenes with how blown open it got, took years to make any good progress for free or cheap homebrew, let alone public free cfw being reasonably easy to obtain. People who are anyway upset nothing is released yet need to chill, it hasn't even been a year yet and we already have private trustzone up to latest firmware and know a bootrom exploit exists. It will come shortly, be patient people.
Maybe it'll be released by the time I 100 percent Xenoblade Chronicles 2. lol
 

Dungeonseeker

Well-Known Member
Member
Joined
Mar 28, 2016
Messages
440
Trophies
0
Age
42
XP
1,689
Country
While this is good news, and it is good news, I hope somebody has the balls to release something soon otherwise Switch hacking has the potential to end up like Wii U hacking, a few groups having everything privately and nobody releasing anything because everyone wants to see what everyone else has first or are waiting for Nintendo to patch this or release that before they released what they had.

IOSU on Wii U remained private for such a long time that when it finally did get released it was DOA because the console was dying and nobody really gave a crap. Now the Wii U has some good methods of running unsigned code but no real CFW because nobody wants to spend the effort making it for a dead system.

I'm not saying the Switch is anywhere close to dying yet, heck I'd say the system is closer to infancy than old age but I don't want to see a repeat of the "we'll release when they do" mentality because once that starts nobody releases anything and the system remains locked down for way longer than it needs to be.

I fully understand the need for an open source SDK though, releasing stuff built with Nintendo's SDK would effectively be suicidal for the scene.

I'm not demanding, I'm not being impatient or ungrateful but please, for the love of God somebody release something so the scene doesn't remain stagnant for so long that everyone moves on.
 

Frezgle

Well-Known Member
Member
Joined
Aug 4, 2016
Messages
168
Trophies
0
Age
30
XP
275
Country
United States
While this is good news, and it is good news, I hope somebody has the balls to release something soon otherwise Switch hacking has the potential to end up like Wii U hacking, a few groups having everything privately and nobody releasing anything because everyone wants to see what everyone else has first or are waiting for Nintendo to patch this or release that before they released what they had.

If it makes you feel any better, SciresM has said that this project is going to be open-source: https://gbatemp.net/threads/atmosph...n-development-by-sciresm.496832/#post-7837554
 

Geezerdorf

Well-Known Member
Newcomer
Joined
Apr 11, 2016
Messages
96
Trophies
0
Age
40
Location
ヴェラクルス、メキシコ, AKA Hell.
XP
579
Country
Mexico
Ahh, I have been working on other stuff (this was definitely not a priority), but when I was eating breakfast a week or so ago I thought up a way to get stuff to work, and it only took about an hour and a half to implement.

So...less a changed mind and more "I got lucky with shower thoughts", heh.

Ha! And they say that nobody is getting inspiration in the weirdest moments anymore. Massive Kudos to you, @SciresM !
I'm really intrigued on the reason the scene is advancing this fast With the Switch, yet the 3DS was a bulwark and a half of security to advance! Is it because of the loaned structure of the hardware, derivated from the tablets it's based of? Or is it that the OS was that much flawed to get those exploits? Or a mixture of both?? Anyway, this is amazing!

I already started stockpiling games ever since news of Deja vu existing on 4.1.0 but needed some new privilege escalation.
Highly recommend Celeste for a platformer, and NueroVoider for a twin-stick Rougelike shooter
Adding to the list now that you need to have some stuff to play, i suggest The Next Penelope: Race to Odysseus as well. It's a very interesting Racing/Shmup with top-view perspective (a la Micro Machines)
Lacrimosa of Dana is also one i would recommend if you're into ye olde Ys games.

This is gonna be a very fascinating year! Looking forward to everything that'll come from it! :switch:
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    BigOnYa @ BigOnYa: After watching, that I feel like I'm on them already