Hacking Apparently the X1 bootrom was leaked

Sephirosu

Well-Known Member
Member
Joined
Jan 28, 2015
Messages
266
Trophies
0
Age
34
Location
Boca Raton, Florida
XP
436
Country
They can do what they want, but not in that way.
At this point it's outrageous how the "twitter celebs" of the switch scene tease us and laugh at the others teams.
We need respect back.


Oh I know that. Trust me I lived it with team FOF in the Wii u era and now im happy that someone is actually releasing stuff to the public. I just don't like that they're throwing dirt to the other teams but again im glad that the flame wars are actually getting things to move along just not too happy about the flaming itself xD
 

ShadowOne333

QVID PRO QVO
Editorial Team
Joined
Jan 17, 2013
Messages
12,272
Trophies
2
XP
35,330
Country
Mexico
Pastebin said:
(Switch needs volume up press and JoyCon pin shorted).
So this is what Kate meant by shorting some things on the Switch.
And the USB-A to USB-C cable seems to be needed to enter the RCM command to smash the Boot ROM stack before signature checks.
Which means that we can potentially have a sigpatched sysnand in the foreseeable future for the Switch, no emunand :D
 

sarkwalvein

There's hope for a Xenosaga port.
Member
Joined
Jun 29, 2007
Messages
8,525
Trophies
2
Age
41
Location
Niedersachsen
XP
11,308
Country
Germany
Just FYI these are the first notes in the leaked IDC, staright out of IDA
!!NOTHING ILLEGAL!!

Code:
// Tegra ROM IDC by G33KAtWork & q3k, 2018/04/23
// rom.bin 1c629af8a34adf21771630822a77ff78f57d0ba3e4953d96f0f68e5ab2b38dec
// Notes:
//  - you will need to have uncompressed IRAM
//  - this does not take into account IPATCH data
//  - some of the structs have _inner members just so that reading hexrays
//    output is less painful
//  - parts of it are certainly wrong
//  - please, for the love of everything that is holy, don't hoard 0days and
//    also boast about it on twitter - you'll only make bad actors throw
//    more resources at the problem to find the bug before you release it
//
Drama queens ride the scene.
 

charlieb

Well-Known Member
Member
Joined
Jan 15, 2016
Messages
317
Trophies
0
Age
49
XP
685
Country
just one of dozen bugs, and joycon stuff been patched latest firmwares, a little tougher now.

So you're saying this "leak" is really easy for people on old FW?. I'm on 1.0.0 on both my consoles so I think I'm lucky but for the majority on 3.0.1 bad news?
 

garyopa

Admin @ MaxConsole
Member
Joined
Apr 25, 2009
Messages
777
Trophies
0
Location
Tropical Island
Website
www.O-P-A.biz
XP
9,537
Country
Canada
https://twitter.com/Mathieulh/status/988430024821886976

--------------------- MERGED ---------------------------

So you're saying this "leak" is really easy for people on old FW?. I'm on 1.0.0 on both my consoles so I think I'm lucky but for the majority on 3.0.1 bad news?

joycon patches didn't start until recently 5.01 and higher series. -- you can still get around that by changing the joycon firmware yourself first via pc to bluetooth connection, just more work. :)
 

Crazy-S

Pessimist
Member
Joined
Jun 18, 2007
Messages
232
Trophies
1
Location
Ask NSA, FSB, or BND
Website
dasbutterschnitzel.com
XP
1,587
Country
Germany
So apparently JOYCONHAX was real...^^
Q: There's been a ton of meme'ing around joyconhax. Do the JoyCons actually have direct kernel access, or do they give you access tosomething you need in Horizon?

The JoyCons definitely do not have direct kernel access. The Switch operating system, Horizon, is based on a microkernel architecture, and thus drivers for most hardware peripherals are run as less-privileged (EL0/userland) system applications called sysmodules. The JoyCon interfacing is mostly handled by the hid sysmodule, though the busand the bluetooth system modules help to ferry data along. None of these play any role in launching Fusée Gelée.

While software modifications to the JoyCon can be fun and useful-- and we do have the capability to arbitrarily hack the JoyCon firmware-- custom JoyCon firmware is currently not involved at all in launching any of the Fusée Gelée variants.

(But, hey-- if you come up with a clever solution that patches JoyCon software to do something exploity, I'd love to hear it.)
 

nWo

The Game Master
Member
Joined
Oct 20, 2016
Messages
1,007
Trophies
0
Website
www.facebook.com
XP
2,950
Country
Mexico
Okay so now what. I´m at work but my head is spinning trying to understand what the hell is going on!!!! So much info in a single slap!! Can´t read the posts with a calm mind right now. Damn I want to go home, like the school days ha!!!
 

Flying Scotsman

Well-Known Member
Member
Joined
Sep 7, 2016
Messages
350
Trophies
0
XP
1,333
Country
United States

ploggy

WAKA! WAKA!
Member
Joined
Aug 29, 2007
Messages
4,867
Trophies
2
XP
8,086
Country
United Kingdom
Things are dropping left and right!!

Failed to fetch tweet 988448011104628736
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    SylverReZ @ SylverReZ: https://www.youtube.com/watch?v=a6v3cT3b59A&t=12s