Hacking Hykem's 5.5 iosu Exploit

Status
Not open for further replies.

Brandts

Member
Newcomer
Joined
Aug 24, 2010
Messages
20
Trophies
0
XP
141
Country
Netherlands
In case you were afraid to deduce it from the screen I posted, yes, the hack works up to 5.5.1. However, I strongly recommend everyone to start blocking updates. That's why I announced I was working on IOSU in the first place, to raise awareness.
I reached IOSU in 5.5.1 using a different bug (another lame UAF in WebKit) than yellows8's, but the libstagefright one is much more reliable and it's already public. Which means that the release for 5.5.1 will be using yellows8's exploit while I keep the crappy one I used private.

Beware that Nintendo will likely push a big update to the Internet Browser anytime soon (I believe it's logical to deduce that), which will quite likely patch (properly) both the libstagefright bugs and other previously unpatched WebKit bugs (the one I mentioned included).

Marionumber1 also made a solid point about investigating userland bugs in areas not related to the browser (like Mii data, for example), which is something we will likely investigate soon.

Aside from all that, the exploit just needs obfuscation to be released. Like I stated before, the obfuscation layers will be complex which will take time to implement properly. If any delays follow, they will be strictly related to the obfuscation of the exploit.
Also, I mentioned that my "vacations" are extended to the end of February, but that doesn't mean the exploit will only be released by then. I'm guessing it will be done quite before that, but right now it's just a matter of getting it right so Nintendo won't patch it as soon as it comes out.

Am I the only one who's starting to doubt now? I haven't touched my WiiU for a long time (I checked yesterday and I'm still on firmware 3.0.0E :)). Now I'm following the recent activities and I have two options. Buy a game with firmware 5.3.2 on the disk, wait for Hykem to release his exploit and then update to 5.5.1? But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit? Another option is update to 5.5.1 now and wait (maybe even five weeks :O).

I was glad that Hykem was taking his time to do a proper release but now with this information the time starts to tick since yellows8 exploit is publically avaiable, so also patchable by Nintendo. I hope Hykem realises this and releases his exploit soon.
 
Last edited by Brandts,

SonyUSA

We're all mad here
OP
Editorial Team
Joined
May 12, 2006
Messages
1,780
Trophies
2
XP
5,615
Country
United States
Am I the only one who's starting to doubt now? I haven't touched my WiiU for a long time (I checked yesterday and I'm still on firmware 3.0.0E :)). Now I'm following the recent activities and I have two options. Buy a game with firmware 5.3.2 on the disk, wait for Hykem to release his exploit and then update to 5.5.1? But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit? Another option is update to 5.5.1 now and wait (maybe even five weeks :O).

I was glad that Hykem was taking his time to do a proper release but now with this information the time starts to tick since yellows8 exploit is publically avaiable, so also patchable by Nintendo. I hope Hykem realises this and releases his exploit soon.
game fly free trial, use your head ;3
 

Dvdxploitr

Well-Known Member
Member
Joined
May 24, 2008
Messages
705
Trophies
1
XP
1,295
Country
United States
game fly free trial, use your head ;3

GameFly requires a credit card/debit card to sign up even with a free trial. His/her age is not in profile, what if they are not old enough to have a credit card or do not have a bank account? This particular user could be 10 years old.......i'd go with Redbox if you can find one with Wii U games.....although that may be hard to find
 

Brandts

Member
Newcomer
Joined
Aug 24, 2010
Messages
20
Trophies
0
XP
141
Country
Netherlands
Oh no! You might have to buy a game! :ohnoes:
That's not my point so let me rephrase my concerns: "But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit?". (ow wait, that's exactly what I said before)

@DVDxploiter and @SonyUSA
I never heard of Gamefly but I don't believe this service is available in my country.
 
Last edited by Brandts,
  • Like
Reactions: josh87402

Tzuba

Well-Known Member
Member
Joined
Jul 1, 2011
Messages
279
Trophies
0
Age
30
Location
Houston
XP
800
Country
United States
That's not my point so let me rephrase my concerns: "But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit?". (ow wait, that's exactly what I said before)

@DVDxploiter and @SonyUSA
I never heard of Gamefly but I don't believe this service is available in my country.
Uhhh then don't update until its released?? Its really that simple.
 

Brandts

Member
Newcomer
Joined
Aug 24, 2010
Messages
20
Trophies
0
XP
141
Country
Netherlands
Uhhh then don't update until its released?? Its really that simple.
But it would be very unfortunately if Nintendo brings outs it's patch before Hykem releases something and we are not possible to update to 5.5.1 at all anymore
 

xxmasal22xx

Well-Known Member
Member
Joined
Feb 13, 2015
Messages
161
Trophies
0
Age
27
XP
154
Country
United States
But it would be very unfortunately if Nintendo brings outs it's patch before Hykem releases something and we are not possible to update to 5.5.1 at all anymore
if i understand correctly you mean if they release a new update past 5.5.1 we will not be able to get to 5.5.1 any more without going past it because there's no known games with 5.5.1 on disc?
 

MRJPGames

Pretty great guy
Member
Joined
Aug 17, 2013
Messages
1,199
Trophies
1
Location
The Netherlands
Website
fizazy.com
XP
1,674
Country
Netherlands
Am I the only one who's starting to doubt now? I haven't touched my WiiU for a long time (I checked yesterday and I'm still on firmware 3.0.0E :)). Now I'm following the recent activities and I have two options. Buy a game with firmware 5.3.2 on the disk, wait for Hykem to release his exploit and then update to 5.5.1? But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit? Another option is update to 5.5.1 now and wait (maybe even five weeks :O).

I was glad that Hykem was taking his time to do a proper release but now with this information the time starts to tick since yellows8 exploit is publically avaiable, so also patchable by Nintendo. I hope Hykem realises this and releases his exploit soon.
Your 3.0.0 is supported by IOSU, and as iy has acess to kernel as well you will even vr able to update to 5.5.1 manually without using ninty servers.
It will require a separate WebKit exploit first. It's not a problem for firmwares 2.0.0 to 5.3.2, but firmware versions 5.4.0 and 5.5.0 still need to have a proper exploit done. This is being worked on as well (it would be a bit pointless to release a working IOSU exploit without the WebKit entry points for 5.4.0/5.5.0).
In other words, the goal is to release everything at once, giving people more than enough time to prepare themselves. It wouldn't be fair to release the exploit only for up to 5.3.2 and leave 5.4.0/5.5.0 users in the dust.
 

RareKirby

Well-Known Member
Member
Joined
Mar 1, 2011
Messages
567
Trophies
1
XP
987
Country
United States
I been using OpenDNS to block updates and it's been working well. Should I stop using it?

--------------------- MERGED ---------------------------
 

wurstpistole

GBAtemp MVP
Member
Joined
Nov 19, 2015
Messages
4,654
Trophies
1
XP
5,413
Country
United Kingdom
If you don't know what I'm talking about why reply? TubeHax blocks Nintendo update and so does OpenDNS and I wanted to know if I should keep using OpenDNS
Well why in the world would you want to have your console update itself? Stay on whatever firm you are and pray for the exploits.
 
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • BakerMan @ BakerMan:
    ubisoft should #stopkillinggames ngl
  • Badcatalex @ Badcatalex:
    sony should #stopkillinggames
  • Badcatalex @ Badcatalex:
    they killed LittleBigPlanet online, which was the main core of every LBP game
  • BakerMan @ BakerMan:
    for real
  • BakerMan @ BakerMan:
    at least with them, it was because of the DDOS attacks, ubisoft was just scummy
  • BakerMan @ BakerMan:
    fuck ubisoft, and fuck activision
    +1
  • realtimesave @ realtimesave:
    Nintendo needs to release a new console, switch is getting such shitty little games lately lol it's pathetic
  • Purple_Heart @ Purple_Heart:
    Lmao a new flashcart... The Unlock Switch... I knew it's not fake xD
    +1
  • NinStar @ NinStar:
    A new consoles won't solve that problem
  • NinStar @ NinStar:
    It will actually make it worse
  • The Real Jdbye @ The Real Jdbye:
    well actually
    a new console won't do anything right now, because the games are still in development, that's why there are few games being released
  • The Real Jdbye @ The Real Jdbye:
    it won't make the games finish any faster
  • Veho @ Veho:
    2/3rds of launch titles for the Switch 2 will just be lazy ports of Switch games anyway.
  • The Real Jdbye @ The Real Jdbye:
    probably
  • The Real Jdbye @ The Real Jdbye:
    maybe mario kart 9 will be a launch title
  • The Real Jdbye @ The Real Jdbye:
    i really want a new mario kart
  • Veho @ Veho:
    What, you mean the endless stream of DLCs doesn't count?
  • Veho @ Veho:
    Why develop a new game when you can just sell season passes forever?
  • Veho @ Veho:
    I'm still on MKDS so I'm not bothered :tpi:
  • The Real Jdbye @ The Real Jdbye:
    i like the dlc tbh, i'd like a new game more
  • ZeroT21 @ ZeroT21:
    but the current version is still selling fine at full price
  • SylverReZ @ SylverReZ:
    Hello
  • ZeroT21 @ ZeroT21:
    sup
    +1
  • SylverReZ @ SylverReZ:
    @realtimesave, You seen the Unlock Switch flashcart yet?
  • K3Nv2 @ K3Nv2:
    I'll see the 19.0 update that blocks use ability to it
    K3Nv2 @ K3Nv2: I'll see the 19.0 update that blocks use ability to it