Hacking R.I.P. Public CDNSP Cert. as Nintendo Getting Better

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,014
Trophies
2
Age
29
Location
New York City
XP
13,401
Country
United States
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".
 
  • Like
Reactions: Lacius

KsAmJ

Well-Known Member
OP
Member
Joined
Oct 1, 2015
Messages
249
Trophies
0
Age
40
XP
1,160
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".
source?
 
  • Like
Reactions: DubaiKid83

Conex

Well-Known Member
Newcomer
Joined
Jul 21, 2018
Messages
58
Trophies
0
Age
38
XP
249
Country
Australia
The 6.0 thing is true, however still untested in cdnsp as far as grabbing titles besides Firmware Update, the Switch-Hacks discord is currently obtaining a 6.0 cert for tests.
 

Rikikoo

Member
Newcomer
Joined
Aug 1, 2018
Messages
21
Trophies
0
Age
26
XP
246
Country
France
If you take the current public certificate to try and download a system update, it will work. The only reason its not working is because its not on firmware 6.0
That doesn't mean a thing, a tls cert isn't tied to a specific firmware version.
6.0 could've introduced a cryptographic "challenge" (what dauth really is), or a hardcoded value the server expects to see in a request, etc. Could be anything, but nothing that can't be replicated on desktop.
Or, requests now upload a copy of your ticket (what 3ds was changed to), and in that case it's game over unless Nintendo's private key somehow leaks.
 
Last edited by Rikikoo,
  • Like
Reactions: awtgrduzwt5r9

V-Temp

Well-Known Member
Member
Joined
Jul 20, 2017
Messages
1,227
Trophies
0
Age
34
XP
1,342
Country
United States
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".

How would a tls-cert be tied to a firmware? That doesn't make much sense.

I was under the impression the change was a token challenge from earlier info?
 

Mr_Pichu

かわいいね!
Member
Joined
Dec 10, 2013
Messages
170
Trophies
0
XP
133
Country
United States
I am sure many of us enjoyed the free ride while it lasted. After all it was on the dime of Nintendo and all those third party developers. It dIdn't hurt Nintendo's stock any, but those poor bastard third party and not to forget indie developers.

Just remember, where there is a hack there is a way.
 

bundat

¿
Member
Joined
Jul 25, 2018
Messages
456
Trophies
0
XP
481
Country
Antarctica
If you take the current public certificate to try and download a system update, it will work. The only reason its not working is because its not on firmware 6.0

Wait, does this mean the public cert isn't even banned?
And that the full protocol for 6.0 CDN requests just hasn't been fully RE'd yet, which is causing the CDN error?

Is it possible to request a system update using the older superbanned certs?
(I'd test it myself, as I have copies of the old certs, but I have no idea how to)

Or did they simply change it so that even superbanned certs are able to ask for FW updates, but nothing else?
 
Last edited by bundat,

Lacius

Well-Known Member
Member
Joined
May 11, 2008
Messages
18,099
Trophies
3
XP
18,338
Country
United States
Is anyone aware of a computer application other than CDNSP that can easily check downloaded NSP files for whether or not updates are available? That's really all I ever used CDNSP for.
 

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,014
Trophies
2
Age
29
Location
New York City
XP
13,401
Country
United States
Wait, does this mean the public cert isn't even banned?
And that the full protocol for 6.0 CDN requests just hasn't been fully RE'd yet, which is causing the CDN error?

Is it possible to request a system update using the older superbanned certs?
(I'd test it myself, as I have copies of the old certs, but I have no idea how to)

Or did they simply change it so that even superbanned certs are able to ask for FW updates, but nothing else?
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0
Is anyone aware of a computer application other than CDNSP that can easily check downloaded NSP files for whether or not updates are available? That's really all I ever used CDNSP for.
I've seen people recommend this site: https://www.perfectly-nintendo.com/nintendo-updates/
 
Last edited by Draxzelex,

bundat

¿
Member
Joined
Jul 25, 2018
Messages
456
Trophies
0
XP
481
Country
Antarctica
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0

Oh, I was just thinking of the possibility that they changed the way atum works, and that even if you're CDN banned, they don't block a FW update request (just cause it's weird that they didn't ban the last cert). But if it's confirmed that nothing changed in that regard... then I guess that they really didn't ban this cert :wtf:

In this case, the people who were saying "CDNSP still works, IF the cert owns the game legally" were wrong (was reading this mostly on reddit).
 

Lacius

Well-Known Member
Member
Joined
May 11, 2008
Messages
18,099
Trophies
3
XP
18,338
Country
United States
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0
I've seen people recommend this site: https://www.perfectly-nintendo.com/nintendo-updates/
That's something, but I'm going to miss the convenience of having my downloaded games/updates scanned for updates without me having to check them one by one.
 
  • Like
Reactions: Draxzelex

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,014
Trophies
2
Age
29
Location
New York City
XP
13,401
Country
United States
Oh, I was just thinking of the possibility that they changed the way atum works, and that even if you're CDN banned, they don't block a FW update request (just cause it's weird that they didn't ban the last cert). But if it's confirmed that nothing changed in that regard... then I guess that they really didn't ban this cert :wtf:

In this case, the people who were saying "CDNSP still works, IF the cert owns the game legally" were wrong (was reading this mostly on reddit).
Yeah it was just a "scare tactic" since none of the certs were no longer working with CDNSP but I guess they didn't actually know why? At the very least, it seems game updates are now held behind dauth so people who were afraid of bans and with the lack of working public certs might have to rethink their ways (at least from a convenience perspective).
 

huma_dawii

Well-Known Member
Member
Joined
Apr 3, 2014
Messages
3,880
Trophies
2
Age
33
Location
Planet Earth
XP
4,271
Country
United States
Yeah it was just a "scare tactic" since none of the certs were no longer working with CDNSP but I guess they didn't actually know why? At the very least, it seems game updates are now held behind dauth so people who were afraid of bans and with the lack of working public certs might have to rethink their ways (at least from a convenience perspective).
Hopefully this means no ban with updates from XCI games xD
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • Sicklyboy @ Sicklyboy:
    I use AKG K7XX headphones for daily use, but Meze 99 Classics when I want to *enjoy* the music
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    I mean built in sound on mobo's has gotten way better but still XP handled sound better and X-Fi was still better than onboard audio even to this day
  • Psionic Roshambo @ Psionic Roshambo:
    Hell not sure what was going on but for like a few weeks MP3's sounded muffled, some driver or Windows update fixed it. Thank god lol
  • Sicklyboy @ Sicklyboy:
    Oh boy Massdrop has $1100 IEMs. Want, but not at that price lmao. https://drop.com/buy/campfire-audio-andromeda-emerald-sea-iem
  • Sicklyboy @ Sicklyboy:
    I'd sooner buy the Meze 109 Pro if I was dropping that much on headphones. I don't even like buds/IEMs
  • Sicklyboy @ Sicklyboy:
    I got the Google Pixel Pro buds, they're good enough for when I need portable audio. And some really cheap IEMs that Dankpods recommends, I think the KZ ZSN Pro
    +1
  • K3Nv2 @ K3Nv2:
    I'd stick with cheapo Chinese $10 ones quality is actually becoming on pair with name brand since name Brand usually quads the price up anyway loose one bud that's another $200
  • Sicklyboy @ Sicklyboy:
    My Pixel Pro buds shit the bed a month or two ago. My wireless charger (which they do support Qi charging) absolutely COOKED them. Caused some problem that caused the case to heat up to 180F+
  • Sicklyboy @ Sicklyboy:
    They were like 9 months out of warranty but I hit up Google support anyway and told them how hot they were getting and they replaced them with new ones because they wanted these for failure analysis lol
  • Psionic Roshambo @ Psionic Roshambo:
    lol wireless charging
  • K3Nv2 @ K3Nv2:
    Yeah that's why I can't bring myself to even spend $100 on wireless earbuds
  • Psionic Roshambo @ Psionic Roshambo:
    I think it's a cool idea but damn
  • Sicklyboy @ Sicklyboy:
    Apparently the case has a problem with >15W wireless chargers. Google design fault, that one.
  • K3Nv2 @ K3Nv2:
    I could live with wireless charging if the damn standard case doesn't block connection
  • Xdqwerty @ Xdqwerty:
    how is wireless charging possible?
  • K3Nv2 @ K3Nv2:
    Dbz said everyone has raging energy senses
    +1
  • cearp @ cearp:
    you mean generally, how does the concept work?
    +1
  • K3Nv2 @ K3Nv2:
    Copper conducting electricity or something
  • Sicklyboy @ Sicklyboy:
    @Xdqwerty, power through a coil of wire causes an electromagnetic field to be generated. Another coil of wire can be set up to harness the power from that electromagnetic field and turn it into usable energy for charging a device
  • Sicklyboy @ Sicklyboy:
    Two good videos from ElectroBOOM that touch on the subject:

    https://www.youtube.com/watch?v=TQwGjhwPEik

    https://www.youtube.com/watch?v=M2YwkAWg0_g
    +1
  • K3Nv2 @ K3Nv2:
    Elements on earth are actually more powerful than we think
  • Sicklyboy @ Sicklyboy:
    Wow I can't believe I've been watching ElectroBOOM for that long. I remember when that first video came out lol
    Sicklyboy @ Sicklyboy: Wow I can't believe I've been watching ElectroBOOM for that long. I remember when that first...