Hacking SX OS contains brick code!

Localhorst86

Robert'); DROP TABLE members;--
Member
Joined
Jul 17, 2014
Messages
2,737
Trophies
1
Location
Nintendo works for my dad
XP
5,349
Country
Germany
Can you explain how we are "unaware of the extent"? Hexkyz has proven all it takes is a simple RCM payload to unlock and rebuild the eMMC.
"still need a 2.0.0 raw nand dump (I had backups of all the important stuff, the rest is just re-encrypt with BIS key and write back)."

Hexkyz was able to recover because he had a backup of his BIS key (to rebuild his NAND). From what I understand, that's the console unique key. You can't get to that once your eMMC is locked so if you don't already have that backed up, it looks like it might not be recoverable entirely on your own (without help from TX - if that is even possible)
 
Last edited by Localhorst86,

Kioku

猫。子猫です!
Member
Joined
Jun 24, 2007
Messages
12,007
Trophies
3
Location
In the Murderbox!
Website
www.twitch.tv
XP
16,143
Country
United States
"still need a 2.0.0 raw nand dump (I had backups of all the important stuff, the rest is just re-encrypt with BIS key and write back)."

Hexkyz was able to recover because he had a backup of his BIS key. From what I understand, that's the console unique key. You can't get to that once your eMMC is locked so if you don't already have that backed up, it looks like it might not be recoverable entirely on your own (without help from TX - if that is even possible)
Which is why you back all of that up from the get go. We have the tools to do so.
 
D

Deleted User

Guest
"still need a 2.0.0 raw nand dump (I had backups of all the important stuff, the rest is just re-encrypt with BIS key and write back)."

Hexkyz was able to recover because he had a backup of his BIS key. From what I understand, that's the console unique key. You can't get to that once your eMMC is locked so if you don't already have that backed up, it looks like it might not be recoverable entirely on your own (without help from TX - if that is even possible)
The console specific key can be recovered without a working eMMC. You just need to extract the TSEC firmware from any public eMMC dump/software update package, and use that to recover the SBK and others (bis keys).
 

Metal___

Member
Newcomer
Joined
Jun 20, 2018
Messages
17
Trophies
0
Age
30
XP
86
Country
Brazil
"still need a 2.0.0 raw nand dump (I had backups of all the important stuff, the rest is just re-encrypt with BIS key and write back)."

Hexkyz was able to recover because he had a backup of his BIS key (to rebuild his NAND). From what I understand, that's the console unique key. You can't get to that once your eMMC is locked so if you don't already have that backed up, it looks like it might not be recoverable entirely on your own (without help from TX - if that is even possible)


Do you have any homebrew that backup? or how can I do it?
 

Localhorst86

Robert'); DROP TABLE members;--
Member
Joined
Jul 17, 2014
Messages
2,737
Trophies
1
Location
Nintendo works for my dad
XP
5,349
Country
Germany
The console specific key can be recovered without a working eMMC. You just need to extract the TSEC firmware from any public eMMC dump/software update package, and use that to recover the SBK and others (bis keys).
ok, fair enough. If that's the case it should be recoverable even without a backup (which I am sure a lot of people that use SX OS don't have). This does sound very involved, though. Something that a lot of people might not be able to.
 
D

Deleted User

Guest
ok, fair enough. If that's the case it should be recoverable even without a backup (which I am sure a lot of people that use SX OS don't have). This does sound very involved, though. Something that a lot of people might not be able to.
While it might sound quite involved, this can be automated pretty easily, to the point where the user only has to copy a few files to their sd card and run a payload. But this all is assuming the "bricking" occurs in the first place, which is quite improbable.
 

Sp1tFire92

Member
Newcomer
Joined
Jun 25, 2018
Messages
21
Trophies
0
Age
31
XP
242
Country
Luxembourg
By the team:

Hello ,

We are delighted to have now a massive SX OS userbase. We never had a single
report of a 'bricked' or damaged console caused by SX Pro or SX OS.

If people modify, hack and fiddle with their console, regardless of SX OS being
installed, they expose themselves to dangers such as 'bricking' their console.
We can't be held responsible for this.

We are a professional team, with a solid reputation for quality product and
support for many years.
We offer full commercial and technical support, updates for life and warranty on
our product, like we always did.
But obviously this is only valid if you do not use other modifications of hacks
that can damage your console.
Clearly, our customers do not want or need any other software and hardware than
Team Xecuter SX product. Please be careful who you trust when you use other
software or hardware on your valuable Nintendo Switch. Not everyone has a track
record like Team Xecuter, and they can disappear like they appeared.
Please also be careful with copies and clone of our software and hardware,
although as of today, we haven't seen any.

To sum all this up: You can be certain that you are safe when using original
Team Xecuter product such as SX OS. We not only state it, we guarantee it!

Thanks again to all our customers for their trust for the past 15 years already!

--
Best regards,
Team

So i guess i just get it and the other guys in this thread just talked nonsense.
 
  • Like
Reactions: MehMeh27

The Real Jdbye

*is birb*
Member
Joined
Mar 17, 2010
Messages
23,293
Trophies
4
Location
Space
XP
13,850
Country
Norway
autorcm = brick code :)

but yeah, as long as it's safe and won't ever trigger by accident, i'm fine with anti-tamper brick code.

is it recoverable if you have a nand dump?

they could do evil stuff, like burning all your fuses lol
Yes. You need to erase the NAND to get rid of the password, then restore the backup.
 
  • Like
Reactions: linuxares

pLaYeR^^

Doctor Switch
Member
Joined
Sep 18, 2014
Messages
3,151
Trophies
1
Age
27
Location
Austria
XP
3,884
Country
Austria
I knew it that there's something fishy. Well, if you don't wanna risk a brick, just buy their product and don't steal it. They have the permission to protect their own product from thieves. But it seems that it's not that hard to recover your NAND, so maybe some people are still waiting for a crack.
 

Sp1tFire92

Member
Newcomer
Joined
Jun 25, 2018
Messages
21
Trophies
0
Age
31
XP
242
Country
Luxembourg
I knew it that there's something fishy. Well, if you don't wanna risk a brick, just buy their product and don't steal it. They have the permission to protect their own product from thieves. But it seems that it's not that hard to recover your NAND, so maybe some people are still waiting for a crack.

I agree, i just hesistated since some people in this thread said that it could hit endusers aswell. Just bought it on axiogame for 24.95 (cheapest i found). Now i just need to wait for the license and my jig :P
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    S @ salazarcosplay: show him fighting in ww2