FR0ZN's latest activity

  • F
    FR0ZN replied to the thread OpenLara - GBA port.
    That's incredible seeing it run on a GBA! How is the performance compared to'the N-Gage port?
  • F
    Is there any host that already uses this newer version?
  • F
    FR0ZN reacted to mathieulh's post in the thread Switch OLED teardown V1/V2 with Like Like.
    It glitches the BCT RSA pub hash compare so it returns true, this way you can use your own pub (and thus sign your bootloader with your own RSA private key), it also relies on BCT reads from the eMMC to derive proper timings for the glitch. The...
  • F
    FR0ZN reacted to TheUnknownOne's post in the thread Switch OLED teardown V1/V2 with Like Like.
    Post #716. Send him a pm
  • F
    FR0ZN replied to the thread Switch OLED teardown V1/V2.
    Mena did a firmware?
  • F
    There is a fundraiser to get Linux/Android running on Mariko units. This doesn't seemnto get enough attention, so I hope this helps...
  • F
    FR0ZN reacted to ZachyCatGames's post in the thread Switch OLED teardown V1/V2 with Like Like.
    They write a custom bct and bootloader to boot0 then glitch the bootrom's pubkey hash check to make the bootrom think a custom pubkey in the custom bct is correct/valid. I'd guess they flash it on each boot because the OS attempts to restore...
  • F
    FR0ZN replied to the thread Switch OLED teardown V1/V2.
    Can you explain what the hack actually does? My understanding was that it glitches the signature check of BCT. But it seems that there is more involved, if boot0 is altered as well 🤔
  • F
    FR0ZN reacted to Mena's post in the thread Switch OLED teardown V1/V2 with Like Like.
    You need it for every boot.
  • F
    FR0ZN replied to the thread Switch OLED teardown V1/V2.
    You say "written to your boot0", does this mean that the DAT0 connection is actually used only once to write the modified boot0 to the eMMC? Or is a DAT0 connection necessary for every boot? I always thought that the chip injects a modified BCT...
  • F
    FR0ZN reacted to Mena's post in the thread Switch OLED teardown V1/V2 with Like Like.
    https://github.com/Pheeeeenom/payloadchecker/releases/tag/1.0 Made this really simple app to check the payload that's written to your boot0. This will tell you if the chip that's currently installed is a hwfly with spacecraft v1 or v2 payload...
  • F
    FR0ZN reacted to iolo57's post in the thread Switch OLED teardown V1/V2 with Like Like.
    https://market.m.taobao.com/app/idleFish-F2e/widle-taobao-rax/page-detail?wh_weex=true&wx_navbar_transparent=true&id=666662051462&ut_sk=1.YYPMaY7rDhgDAGG2M%252F8XYHl5_21407387_1641052005164.copy.detail.666662051462.2212723738694&forceFlush=1
  • F
    FR0ZN replied to the thread Switch OLED teardown V1/V2.
    This looks very nice - anyone know if these can be bought yet?
  • F
    FR0ZN reacted to iolo57's post in the thread Switch OLED teardown V1/V2 with Like Like.
    Other new chip for oled switch on sale:
  • F
    FR0ZN reacted to iolo57's post in the thread Switch OLED teardown V1/V2 with Like Like.
    You can find the chip on aliexpress sold by the same retailer here: https://www.aliexpress.com/item/1005003698689759.html?spm=a2g0s.imconversation.0.0.78233e5fvrPqa3
General chit-chat
Help Users
    H @ havefeith: I feel I have to make the joke. "Oh my god, you killed Kennie!"