Xbox One Exploit Revealed at RE//verse 2026

The Xbox One, originally released in 2013, has until now evaded the fate of its contemporary PS4 and Wii U consoles - i.e. being "hacked" and running unsigned code. But that has finally changed. At the annual RE//verse 2026 conference this year in Orlando Florida, which focuses on reverse engineering, vulnerability research and malware analysis, security researcher Markus Gaasedelen "Doom" showcased a new exploit that has now made running unsigned code possible.

During his talk he discussed some of the prior challenges posed by Xbox One security including hardware-only content decryption keys, three VMs (HostOS, System OS, GameOS), forced updates and fuse revocation. He also discussed how his two pronged exploit known as "Bliss" managed to circumvent these security measures. Voltage glitching of the SOC power rails was utilized to skip two important security steps. The first skips the loop where the ARM Cortex memory protection is setup, the second targets the Memcpy operation which allows for jumping to user controlled data/memory.

The attack is unpatchable as it takes advantage of a hardware vulnerability, but it importantly only applies to the original, or first revision, of the Xbox One (at least for now). A further decryption of firmware, security measures, and understanding of the internals of the Xbox One could potentially reveal vulnerabilities in later revisions - and Doom says he is confident he can port this to the rest of the "Phat" consoles. Stay tuned for more updates.

1773676153197.png1773676171147.png1773676243487.png

You can watch the full video of Doom's presentation at RE/verse here:
 
That's cool, but there just hasn't been much motivation as Xbox already allows to do so much as it is I don't mind buying the games for it as they're super cheap, anyway.

At least with this, it can be used to backup games and preserve them.
Yes, Doom talks about that quite a bit

preservation of the xbox one is extremely lacking

he also discusses later in the talk how things learned from xbox one hacking will likely translate into XSX hacking - although notes that security is quite a big stronger on the newer consoles
 
Interesting to see. Microsoft's hardware designs may not have always been the best, but you can see their corporate IT background in how seriously they take their console security, and how ruthlessly competent they are at it. Though i wonder how much of the speed we see on the Nintendo and PlayStation scenes are because of the more energized fanbases.
 
Interesting to see. Microsoft's hardware designs may not have always been the best, but you can see their corporate IT background in how seriously they take their console security, and how ruthlessly competent they are at it. Though i wonder how much of the speed we see on the Nintendo and PlayStation scenes are because of the more energized fanbases.
More Xbox had less interest in hacking due to dev mode access.
 
More Xbox had less interest in hacking due to dev mode access.
Yeah. When you can already fire up Dolphin and run GameCube games on unmodified Xboxes there isn't too much reason for your average homebrew interested hacker to look into it. It's really just for piracy.
 
Yeah. When you can already fire up Dolphin and run GameCube games on unmodified Xboxes there isn't too much reason for your average homebrew interested hacker to look into it. It's really just for piracy.
And even then

At this stage no one is interested in piracy for this 13 year old console

If you watch his talk - best I can tell, he did it for bragging rights alone

He wanted to hack the unhackable

edit:
"Even gods can bleed"
1773683041769.png
 
Hopefully this unlocks some internal storage upgrades in the future. Sure Xbox hadn't been that motivated to hack by devs but if anything with support of emulators and free dev accounts escaping Xbox proprietary everything would be a fresh of breath air.
 
  • Like
Reactions: yoyoyo69
And even then

At this stage no one is interested in piracy for this 13 year old console

If you watch his talk - best I can tell, he did it for bragging rights alone

He wanted to hack the unhackable

edit:
"Even gods can bleed"
View attachment 562607
And there are still people on this site that think the Switch 2 is unhackable. Lol.
 

Site & Scene News

Popular threads in this forum