Hacking Markus Gaasedelen‘s xb1 vulnerability In a nut shell

  • Thread starter Thread starter RainReach
  • Start date Start date
  • Views Views 460
  • Replies Replies 2
  • Likes Likes 1

RainReach

Active Member
Newcomer
Joined
Apr 21, 2021
Messages
41
Reaction score
11
Trophies
0
Age
27
XP
319
Country
United States
Yo, check this out. After 12 years of being literally the most secure console out there, the Xbox One finally got cracked wide open at the deepest level possible. This isnt just some basic software exploit either, it’s a "God Mode" hardware attack on the Boot ROM. Basically, Microsoft is cooked because they cant even patch it with an update.

So after watching an hour of that video, this is what I have gathered

The dev, Markus Gaasedelen (doom), basically went on a "dragon hunt" to make this happen. Heres the simple breakdown of how he did it:
1. Getting a "Look" Inside
The biggest issue was that the Xbox One is a total black box—no debug ports, no error codes, and zero ways to see what the processor is doing. To fix that, he:
-Tapped the Power: He started monitoring the power draw on the North Bridge just to see the "heartbeat" of the security chip.
-Built a Side Channel: He found a tiny trace on the mobo for the eFuses (where the secret keys live). By watching tiny voltage dips while the console reads the fuses, he finally got the timing perfect.
- Bypassed the "Stalls": MS added random delays (stalls) in the boot to make glitching impossible. He found "digital anchors" like the GPIO init to reset his timing and skip the random delays.

2. The Double-Glitch Attack
The "Bliss Hack" works by hitting the console with two super precise voltage drops (glitches) at the exact right microsecond:

- Glitch #1: Breaking the Jail
The Xbox uses a "Memory Protection Unit" (MPU) to keep everything in a "user jail" so it cant touch sensitive stuff. By glitching right when it turns that protection on, he tricked it into skipping the setup entirely. Basically "collapsed the jail" and gave him full supervisor access.

- Glitch #2: Taking the Wheel
While it was busy copying the next bootloader (SP1) into memory, he hit it with the second glitch. This caused a "memcpy" error that messed up the processors instructions. Instead of running the official code, it jumped straight to a custom payload he hid in the flash memory.

3. Why this is huge
-This is the ultimate win for preservation and repair:
Full Decryption: We got "Oracle access" now. Means we can decrypt every game, firmware, and system update from the past, present, and even future.
- Unpairing Hardware: You can actually unpair a disc drive or HDD from a dead console and move it to a new one—literally impossible until now.
-Unpatchable: Its a flaw in the actual silicon of the chip, so its a permanent hardware vulnerability.
Is it a Modchip??
Not yet. The research looks like a messy spiderweb of wires, but the actual exploit only needs like 3 wires to the motherboard. Its still super technical and u need a steady hand for soldering + an oscilloscope, but it proves even the "most secure" console has its limits.
What do u guys think, is this gonna lead to some crazy homebrew soon or what??
But I believe by the end of 2026 will probably have a jailbreak
 
  • Like
Reactions: CHaradaBR
What do u guys think, is this gonna lead to some crazy homebrew soon or what??
But I believe by the end of 2026 will probably have a jailbreak
Any potential for a homebrew scene is loooong gone. if this was discovered in 2014 then maybe but its 10+ years too late.
I mean MS has given an official dev mode for years now that most people will just use considering it does not require modding.
Even then if you need a box to stick under your TV to run whatever you want we have multiple options now,

but besides that
its the shitty 2013 xbone, It genuinely sucked in every aspect as a console and worse than the ps4 in all aspects.
Chonky brick PSU that makes an obnoxious whine when the fan ages,
No HDR
No 4k blu rays or content in general (The one S has no hope of gaming at 4k but can play movies and stream content in 4k)

Wouldn't even want to pirate the 4 exclusives on it cause playing them on a one S or one X or series S/X would be that much better.
 
Wow, why do you hate the Xbox One so much, but still post in this subforum?! 🤔😂

Some people like me like the few exclusives and their easy backwards compatibility. I hate that you can't get Rare Replay anywhere else...

But yeah, it's too much to hustle with rn and not worth it rn, you are right, the PS4 is far superior in almost every aspect.

Btw, did they improve the BD jailbreak and is there an pkg store that work's nowdays, like on the ps3? Hated that part about the ps4.
 

Site & Scene News

Popular threads in this forum