BluUBomb - A primary Wii U entrypoint via bluetooth

H2x1_generic_WiiU_image1280w.jpg

BluUBomb exploits the Wii U's bluetooth stack to gain IOSU kernel access via bluetooth.

Not to be confused with BlueBomb for the Wii and Wii Mini.

What does this mean?
This means you can get IOSU code execution by only pairing an emulated Wii Remote to the system.

This should be useful to fix a few softbricks on the Wii U side.
You don't need a working browser or Mii Maker.
if you've messed up with regionhax and can no longer access the browser, BluUBomb can fix this as well.

The BluUBomb repository contains a few different kernel binaries for different purposes:

loadrpx.bin
Launches a launch.rpx from the root of your SD card on the next application launch.

regionfree.bin
Applies IOSU patches to temporarily remove region restrictions.
This should be helpful if you've locked yourself out of your applications due to permanent region modifications.

wupserver.bin
Launches a wupserver instance directly after using bluubomb.
This gets you full system access remotely via wupclient (replace the IP in line 29 with the one of your Wii U).
This works without having to leave the controller pairing screen.

Check out the repository for additional instructions:
https://github.com/GaryOderNichts/bluubomb

The write-up and technical details can be found here:
https://github.com/GaryOderNichts/bluubomb/blob/master/WRITEUP.md

Credits
  • GaryOderNichts - bluUbomb
  • rnconrad for the WiimoteEmulator
  • dimok789 and everyone else who made mocha possible
 
Last edited by GaryOderNichts,

MikaDubbz

Well-Known Member
Member
Joined
Dec 12, 2017
Messages
3,849
Trophies
1
Age
36
XP
7,305
Country
United States
This is great, to have an entrypoint that doesn't require the internet browser means the system should be future-proof to hacking should all internet services on the Wii U one day be shut down.
 

Edgarska

Conjurer of cheap tricks
Member
Joined
Oct 24, 2011
Messages
797
Trophies
0
Age
34
XP
2,084
Country
United States
This is great, to have an entrypoint that doesn't require the internet browser means the system should be future-proof to hacking should all internet services on the Wii U one day be shut down.
That's not really a concern, is it?

Even if all internet services on the Wii U are shut down, your browser still works.
 
  • Like
Reactions: Seriel

GaryOderNichts

Well-Known Member
OP
Member
Joined
Aug 9, 2018
Messages
792
Trophies
1
XP
5,495
Country
Germany
I pushed a small update, which should fix pairing on Intel Bluetooth chips.
https://github.com/GaryOderNichts/bluubomb/releases/tag/v2

--------------------- MERGED ---------------------------

Does this mean I won't have to buy a certain DS game on the eshop to hack my wii u?
You never had to buy a DS game to hack your Wii U.
You can just use the browser exploit without installing haxchi.
But as I already said, BlueBomb won't do any permanent modifications.
 
  • Like
Reactions: ShadowOne333

ShadowOne333

QVID PRO QVO
Editorial Team
Joined
Jan 17, 2013
Messages
12,200
Trophies
2
XP
33,918
Country
Mexico
Well the Wii browser doesn't work anymore, seems feasible the Wii U browser could one day become useless as well.
Not really.
As long as you can setup a localhost that the U browser can read, you're golden.
The only way in which the U browser would "stop working" would be because most web pages get updated with new SSL encryption keys or some other new stuff security based, but that's dependant on each webpage you visit, not really the WiiU browser at fault.

Many pages don't work on WiiU anymore due to the browser not being updated to recent versions, and the SSL stuff being outdated.
 
Last edited by ShadowOne333,
  • Like
Reactions: GaryOderNichts

godreborn

Welcome to the Machine
Member
Joined
Oct 10, 2009
Messages
38,471
Trophies
3
XP
29,138
Country
United States
you can self-host, but I don't know if post 5.5.1 requires new files. I have the 5.5.1 and below files on my computer, and you can host them with kws on an android phone or with the pc and xampp, which is where the files are now. I discovered that kws even works with android 11+, which is what I'm on.

--------------------- MERGED ---------------------------

yep, still works (this is via my android phone to the computer with kws):

upload_2021-5-16_20-18-54.png
 
  • Like
Reactions: E1ite007

raxadian

Well-Known Member
Member
Joined
Nov 10, 2018
Messages
4,361
Trophies
1
Age
41
XP
4,574
Country
Argentina
I've already had to replace my left joycon analogue and only had it for 4 months aswel. And now my right joycon stick keeps saying its detached while playing in handheld mode... I don't even know what that issue could be considering i can't find anyone else having the same thing happening

Try switching the right and left joycons to see what happens.

Not really.
As long as you can setup a localhost that the U browser can read, you're golden.
The only way in which the U browser would "stop working" would be because most web pages get updated with new SSL encryption keys or some other new stuff security based, but that's dependant on each webpage you visit, not really the WiiU browser at fault.

Many pages don't work on WiiU anymore due to the browser not being updated to recent versions, and the SSL stuff being outdated.

This may help:

https://www.textise.net
 
Last edited by raxadian,

CafeCentralUI

Member
Newcomer
Joined
May 9, 2021
Messages
8
Trophies
0
XP
93
Country
Mexico

BluUBomb exploits the Wii U's bluetooth stack to gain IOSU kernel access via bluetooth.

Not to be confused with BlueBomb for the Wii and Wii Mini.

What does this mean?
This means you can get IOSU code execution by only pairing an emulated Wii Remote to the system.

This should be useful to fix a few softbricks on the Wii U side.
You don't need a working browser or Mii Maker.
if you've messed up with regionhax and can no longer access the browser, BluUBomb should be able to fix this as well.

The BluUBomb repository contains a few different kernel binaries for different purposes:
arm_kernel_loadfile
Launches a launch.rpx from the root of your SD card on the next application launch.

arm_kernel_fw_launcher
Launches a fw.img from the root of your SD card on the next OS relaunch (for example when exiting System Settings).

arm_kernel_region_free
Applies IOSU patches to temporarily remove region restrictions.
This should be helpful if you've locked yourself out of your applications due to permanent region modifications.

Check out the repository for additional instructions:
https://github.com/GaryOderNichts/bluubomb

The write-up and technical details can be found here:
https://github.com/GaryOderNichts/bluubomb/blob/master/WRITEUP.md

Credits
  • GaryOderNichts - bluUbomb
  • rnconrad for the WiimoteEmulator
  • dimok789 and everyone else who made mocha possible
upload_2021-5-16_21-13-51.png


My network card seems to have a problem when running the exploit, the errors appear in the screenshot
 

MikaDubbz

Well-Known Member
Member
Joined
Dec 12, 2017
Messages
3,849
Trophies
1
Age
36
XP
7,305
Country
United States
Not really.
As long as you can setup a localhost that the U browser can read, you're golden.
The only way in which the U browser would "stop working" would be because most web pages get updated with new SSL encryption keys or some other new stuff security based, but that's dependant on each webpage you visit, not really the WiiU browser at fault.

Many pages don't work on WiiU anymore due to the browser not being updated to recent versions, and the SSL stuff being outdated.
Well I only mentioned it because I've seen others worry about the Wii U losing the browser entry point in the future. So I'm just saying this extra one just gives us all the more comfort moving forward, knowing that there are alternatives.
 

urherenow

Well-Known Member
Member
Joined
Mar 8, 2009
Messages
4,777
Trophies
2
Age
48
Location
Japan
XP
3,678
Country
United States
haven't read through the rest of the thread yet, but this looks like your bluubomb is not an executable file. You're on wsl? You extracted this from a .zip file? When you right-click on that .zip file and look at properties, is there a checkbox near the bottom that gives you the option to "unblock" it?

chmod +x bluubomb

EDIT: ok, I see someone got you there already.
 
Last edited by urherenow,

driverdis

I am Justice
Member
Joined
Sep 21, 2011
Messages
2,867
Trophies
2
Age
31
Location
1.048596β
XP
2,838
Country
United States
Sadly not, you can't pair a Wii Remote on the error screen.

There is one way to pair a Wii Remote to a Wii U without the Wii U syncing working, and that is to pair it to a PC using a bluetooth adapter with a spoofed MAC address set to the MAC address of the Wii U's bluetooth module.

I softbricked my Wii Mini when i had it autoboot the homebrew channel and used my Wii Remotes on other systems. This made it so i had no way to navigate the homebrew channel and was stuck. As a last ditch effort I disassembled the Wii Mini, wrote the bluetooth adapter's MAC address down, then spoofed it using a USB bluetooth adapter.

unfortanately this does no good for CHBC bricks unless the emulated remote could have the Wii U Bluetooth MAC address manually specified vs. relying on syncing.
 
Last edited by driverdis,

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    K3Nv2 @ K3Nv2: https://www.ebay.com/itm/386617469929?mkcid=16&mkevt=1&mkrid=711-127632-2357-0&ssspo=2T8UwYf_Qse&...