Hacking Discussion Why The Switch cant have any savegame or DNS Exploit?

RednaxelaNnamtra

Well-Known Member
Member
Joined
Dec 8, 2011
Messages
1,208
Trophies
1
XP
3,336
Country
Germany
who knows tbh, but if i had to guess nintendo learned alot form their past consoles

--------------------- MERGED ---------------------------

i feel like software hax is going to happen at some point, but right now, i dont think its going to happen

--------------------- MERGED ---------------------------

the problem is that so far there are no real ways to exploit it. If nintendo added a web browser and whatnot or saves on micro sd, im 99.99999% sure that something is going to come out of it
Even then the browser would only be the very first layer, to do anything more usefull on a modern console, you will need to exploit other things from there on, like the system modules, the kernel and/or trustzone
 
  • Like
Reactions: Julie_Pilgrim

The Catboy

GBAtemp Official Catboy™: Boywife
Member
Joined
Sep 13, 2009
Messages
27,909
Trophies
4
Location
Making a non-binary fuss
XP
39,184
Country
Antarctica
These kinds of exploits require finding a bug to exploit. Homebrew devs didn't just take a game and suddenly there was homebrew. Devs found something broken in the game code that could allow code to be run from a save file, causing the game to crash and launch their exploit. It could be possible that something like this exists in some Switch games, but it would require people investing their time into looking for these exploits. The same really goes for any exploits found in the system, there needs to be a bug that can found to be "game-breaking" enough to be exploited and used for homebrew.
 
Last edited by The Catboy,

The Real Jdbye

*is birb*
Member
Joined
Mar 17, 2010
Messages
23,256
Trophies
4
Location
Space
XP
13,816
Country
Norway
I know its for a specific reason that has no Home menu or game exploits unlike all other Nintendo consoles. Only through RCM Payloads. I would like to know through anybody's reply...
It's because of KASLR (address space layout randomization), it makes it near impossible to identify the correct pieces of code in memory to string together (before we have code execution, we have to rely on stringing existing bits of code together in a way that it loads our own code and jumps to it)
The reason it works in the browser is because of the javascript engine, which is a big attack surface for potential exploits, but not only that, all of the API is exposed, and we can abuse that to make it do what we want, so finding the right bits of code in memory is essentially taken out of the equation.
 
Last edited by The Real Jdbye,

masagrator

The patches guy
Developer
Joined
Oct 14, 2018
Messages
6,265
Trophies
3
XP
12,026
Country
Poland
It's because of KASLR (address space layout randomization), it makes it near impossible to identify the correct pieces of code in memory to string together (before we have code execution, we have to rely on stringing existing bits of code together in a way that it loads our own code and jumps to it)
The reason it works in the browser is because of the javascript engine, which is a big attack surface for potential exploits, but not only that, all of the API is exposed, and we can abuse that to make it do what we want, so finding the right bits of code in memory is essentially taken out of the equation.
Plus that games are running in sandbox (dunno about applet calls). If you will try to access memory address outside of sandbox, system will crash instantly. So you're limited only to addresses assigned to game by loader.

For ASLR there were exploits that could potentially make it predictible or could extract addresses, but all that we know about are already patched.
 
Last edited by masagrator,

BaamAlex

UDE GA NARU ZE!
Member
Joined
Jul 23, 2018
Messages
6,051
Trophies
1
Age
29
Location
Lampukistan
Website
hmpg.net
XP
6,163
Country
Germany
since there is already RCM.
Yes, we have the rcm. But this exploit has already been fixed. And the consoles that still have this exploit will not exist forever. And newer units can only use homebrew via chip. And as far as we know, the chips can't be bought atm. If yes, very overpriced or very quickly out of stock. So, from that point of view, we don't really have much at the moment. There are no more chips, no RCM units (except the ones out in the wild). A softwarehax would be nice. But who knows what us the future shows.
 

M7L7NK7

Well-Known Member
Member
Joined
Oct 16, 2017
Messages
3,898
Trophies
1
Website
youtube.com
XP
5,961
Country
Australia
Actually I already did it to access with save of breath of the wild goes to nintendo's browser but I can't share it you can check my old posts. Devs r too lazy and they don't care about it. They can earn money with chip... And I sold the method. My contract will end soon and I am thinking of starting a group and moving forward my project.

So what date does your contract end?
 

Detroitguy22

Well-Known Member
Member
Joined
May 6, 2020
Messages
118
Trophies
0
Age
37
XP
225
Country
United States
Actually I already did it to access with save of breath of the wild goes to nintendo's browser but I can't share it you can check my old posts. Devs r too lazy and they don't care about it. They can earn money with chip... And I sold the method. My contract will end soon and I am thinking of starting a group and moving forward my project.

So where is it
 

Viri

Well-Known Member
Member
Joined
Sep 13, 2009
Messages
4,221
Trophies
2
XP
6,806
Country
United States
Actually I already did it to access with save of breath of the wild goes to nintendo's browser but I can't share it you can check my old posts. Devs r too lazy and they don't care about it. They can earn money with chip... And I sold the method. My contract will end soon and I am thinking of starting a group and moving forward my project.
Well?
 

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,007
Trophies
2
Age
29
Location
New York City
XP
13,374
Country
United States
Actually I already did it to access with save of breath of the wild goes to nintendo's browser but I can't share it you can check my old posts. Devs r too lazy and they don't care about it. They can earn money with chip... And I sold the method. My contract will end soon and I am thinking of starting a group and moving forward my project.
Keeping the chain alive.
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    SylverReZ @ SylverReZ: https://www.youtube.com/watch?v=ftyFz0yBxj8