Hacking Atmosphere-NX - Custom Firmware in development by SciresM

tiliarou

Well-Known Member
Member
Joined
Feb 4, 2018
Messages
163
Trophies
0
XP
592
Country
France
They know how their software works and the atmosphere source code tells them exactly where the bug is, there is no reverse engineering required.

They just need to think of an extra layer they can add to prevent it, each time we go through this the greater the chance they come up with a really good way of hiding the key.



What law do you think allows the CFW to derive it but makes it illegal to post it?

The key is not copyrightable, but the DMCA probably makes posting the key or software to derive it illegal.
That's not really how it works but deriving is not publishing copyrighted content.
Yes, numbers can be illegal and copyrighted, so sharing them can be illegal. Hence why BYOK now, and derived later.
 

smf

Well-Known Member
Member
Joined
Feb 23, 2009
Messages
6,647
Trophies
2
XP
5,884
Country
United Kingdom
That's not really how it works but deriving is not publishing copyrighted content.
Yes, numbers can be illegal and copyrighted, so sharing them can be illegal. Hence why BYOK now, and derived later.

Numbers can be illegal under the DMCA, but they lack originality to be copyrighted. They fail both the artistic and sweat of the brow tests, as the number will have been randomly generated by a computer.

en.m.wikipedia.org/wiki/Feist_Publications,_Inc.,_v._Rural_Telephone_Service_Co

The DMCA violation affects any method or information. So the code to derive the key at runtime is also a violation.
 
Last edited by smf,

tiliarou

Well-Known Member
Member
Joined
Feb 4, 2018
Messages
163
Trophies
0
XP
592
Country
France
The most important is not the forum but the actual dkp and pacman repo.
+ most of the discussions are happening on irc discord AFAIK.
So short answer is no.
 

cucholix

00000780 00000438
Member
Joined
Jan 17, 2017
Messages
3,246
Trophies
1
Age
44
XP
6,289
Country
Chile

jorgesd

Well-Known Member
Member
Joined
Dec 28, 2018
Messages
208
Trophies
0
Age
44
XP
521
Country
East Timor

ZachyCatGames

Well-Known Member
Member
Joined
Jun 19, 2018
Messages
3,398
Trophies
1
Location
Hell
XP
4,209
Country
United States
according to SciresM you can custom reboot/power off to rcm, payload or normally right? does this means the end of autorcm? if i stick with atmoshpere of course.
Yea, you can choose what the restart option does with an option in system_settings.ini. autoRCM is still useful, because sometimes the system can hard freeze and if that happens you can’t reboot to payload/rcm
 

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,012
Trophies
2
Age
29
Location
New York City
XP
13,396
Country
United States
according to SciresM you can custom reboot/power off to rcm, payload or normally right? does this means the end of autorcm? if i stick with atmoshpere of course.
Not really as the whole point of AutoRCM is to remove the need for a jig which is useful if you're turning off the console. This just lets you switch payloads and CFW without having to manually re-enter RCM.

And contrary to popular belief, AutoRCM is actually useful if your system runs out of battery since that would mean you wouldn't need a jig to reboot back into RCM. It was also immediately debunked the system wouldn't charge with AutoRCM and an empty battery so AutoRCM has plenty of reason to stick around. A jig can always fail but never AutoRCM.
 

jorgesd

Well-Known Member
Member
Joined
Dec 28, 2018
Messages
208
Trophies
0
Age
44
XP
521
Country
East Timor
Yea, you can choose what the restart option does with an option in system_settings.ini. autoRCM is still useful, because sometimes the system can hard freeze and if that happens you can’t reboot to payload/rcm
Not really as the whole point of AutoRCM is to remove the need for a jig which is useful if you're turning off the console. This just lets you switch payloads and CFW without having to manually re-enter RCM.

And contrary to popular belief, AutoRCM is actually useful if your system runs out of battery since that would mean you wouldn't need a jig to reboot back into RCM. It was also immediately debunked the system wouldn't charge with AutoRCM and an empty battery so AutoRCM has plenty of reason to stick around. A jig can always fail but never AutoRCM.

Oh i see, got it wrong. I thought once you setup the power off/reboot button, it would work even if you power off the console. I mean you power off the console and with the power off button you would be able to load hekate or rcm. So it is like the "reboot to payload" thingy but no need to .nro or the uso of homebrew menu right?
 

DollyWhipDoll

Royalty & Unbothered. LMFAO!!! ;)
Member
Joined
May 18, 2018
Messages
451
Trophies
0
XP
991
Country
United States

Lacius

Well-Known Member
Member
Joined
May 11, 2008
Messages
18,099
Trophies
3
XP
18,338
Country
United States
This was addressed earlier with a question about why @SciresM doesn't just release the new key (answer: it's illegal). I thought I'd throw in my two cents.

When the 6.2.0 update broke CFW, one of the dilemmas was getting the new master key out to the public. SciresM talked about this dilemma a lot on Discord, coming to the conclusion that there was no legal way to do so. This was resolved by updating Atmosphere to legally generate the key using the Switch itself, but that had the downside of revealing the exploit to Nintendo. This caused them to patch the exploit in 7.0.0.

Now, the same dilemma is likely happening. He has the new key, but there's no way to get the key to the public without revealing the exploit to Nintendo. This is apparently what he's doing with the upcoming Atmosphere update.

I'm concerned that, unless the exploit is unpatchable, this might be a bad idea. One possible solution, since releasing the key is illegal, would be to only release the exploit privately to those who may or may not leak just the key. That way, SciresM doesn't break any laws, and the key becomes public in a way that doesn't reveal the exploit.

Edit: See below about how he's neither releasing the key nor the exploit.
 
Last edited by Lacius,

hippy dave

BBMB
Member
Joined
Apr 30, 2012
Messages
9,889
Trophies
2
XP
29,439
Country
United Kingdom
Mind sending me a PM of what he said? O:
I'll just put it here.

Screen Shot 2019-02-08 at 01.42.54.png
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • K3Nv2 @ K3Nv2:
    I'll reformat and have a 3tb raid0 m. 2 at least
    +1
  • K3Nv2 @ K3Nv2:
    Lmao that sold out fast
    +1
  • Veho @ Veho:
    Yeet the cat.
    +1
  • K3Nv2 @ K3Nv2:
    Good idea
    +1
  • The Real Jdbye @ The Real Jdbye:
    i thought everybody knew cocktails are like 75% ice
  • Veho @ Veho:
    Yeah but not like this.
  • Veho @ Veho:
    It's not like they're complaining that their Slurpee is 99% ice or something, but if the cocktail calls for "shot of vodka, shot of vermouth, shot of gin, shot of Campari, three shots of juice, squirt of lemon" and ends up being a thimbleful of booze, that's a problem.
  • The Real Jdbye @ The Real Jdbye:
    the funny thing is cocktails in norway are only allowed to have 1 20ml shot of booze
  • The Real Jdbye @ The Real Jdbye:
    so..... yeah
  • The Real Jdbye @ The Real Jdbye:
    we're used to only having a thimbleful of booze
  • Veho @ Veho:
    Booo.
  • The Real Jdbye @ The Real Jdbye:
    same thing if you want whisky on the rocks or something, you can't get a double
  • The Real Jdbye @ The Real Jdbye:
    but you could buy as many shots of whisky (or anything else) as you want and ask for a glass of ice and pour them in
  • The Real Jdbye @ The Real Jdbye:
    it's dumb
  • Veho @ Veho:
    Maybe.
  • Veho @ Veho:
    There was a comparison of the number of Ibuprofen poisonings before and after they limited the maximum dosage per box or per pill (i'll look that up). No limit on the number of boxes you can still buy as many as you want, so people argued it was pointless.
  • Veho @ Veho:
    But the number of (accidental) poisonings dropped because drinking an entire package of ibuprofen pills went from "I need a new liver" to "I need a new box of Ibuprofen".
  • Veho @ Veho:
    Here we have ketoprofen that used to be prescription-only because of the risk of toxic dosages, but then they halved the dose per pill and sell them in bottles of six pills apiece instead of twenty and it doesn't need a prescription any more. Yes you can buy more than one bottle but people simply don't.
  • Psionic Roshambo @ Psionic Roshambo:
    Usually accidentally overdose of ibuprofen here is from people taking like cold medicine then ibuprofen for a headache and the combination is over what they need
    Veho @ Veho: https://imgur.com/gallery/QQkYnQu