ROM Hack eMMC hacking for patched switch ?

  • Thread starter Thread starter Jandy123
  • Start date Start date
  • Views Views 8,845
  • Replies Replies 16

Jandy123

Member
Newcomer
Joined
Jan 10, 2019
Messages
6
Reaction score
1
Trophies
0
Age
46
XP
100
Country
Netherlands
I have a patched switch with FW 4.1. Since for now there is no software way to hack it, I was wondering if it's possible with a hard mod, much like the xbox 360: dumping the NAND, extracting keys, decrypting, modifying it etc.

Would this work on a switch ? I understand custom bootloader, firmware, tools for reading/mounting/modifying the eMMC image are all available. Has anyone attempted this ?

Thanks !
 
Right, thanks for you reply, but would this be possible ? I mean from what I read the tools are just there...
 
You already have your answer, at the moment this is not possible as there is no publicly available method of hacking patched switches.

Once the method(s) is/are made public then yes, this should be possible. Until then just sit tight.
 
This wont work. If you somehow got the keys, you would need some exploit anyway. And you cant inject games with the keys like that because of sigpatches.
 
I've been reading up on the Trinket M0 mod and I haven't seen any confirmation that it doesn't work on ipatched units.
You are not able to enter rcm / send payload on patched units.. So it will not work because you need that to launch cfw
 
This wont work. If you somehow got the keys, you would need some exploit anyway. And you cant inject games with the keys like that because of sigpatches.

Can the keys be extracted from a nand dump ? If this cannot be done, then, yes I can understand why it won't work.
 
I've been reading up on the Trinket M0 mod and I haven't seen any confirmation that it doesn't work on ipatched units.
That mod is literally just a payload injector slapped inside the Switch. It is the same as injecting the payload with a dongle or a PC and won't work on ipatched units.
 
  • Like
Reactions: Tumoche
There is NO PUBLICLY AVAILABLE METHOD for patched units

It doesn't matter how many times you ask the question. The answer doesn't change.

I understand that there is no public method available. This I already knew.

My question is if such an attempt would be possible. More specifically, can one extract the keys and decrypt/modify rom starting from a rom dump obtained by a hardware mod (i.e. remove the emmc and read it elsewhere).
 
I understand that there is no public method available. This I already knew.

My question is if such an attempt would be possible. More specifically, can one extract the keys and decrypt/modify rom starting from a rom dump obtained by a hardware mod (i.e. remove the emmc and read it elsewhere).
You just dont understand how encryption works. You NEED the keys in order to read the raw dump. You can't get them .
 
  • Like
Reactions: MyconMama
You just dont understand how encryption works. You NEED the keys in order to read the raw dump. You can't get them .

Ok, so if I read the nand with a different device, all I get is an encrypted image, which I cannot decrypt since I don't have the keys. Is this what you are saying ? If this is so, then I understand why this won't work.
 
  • Like
Reactions: Jayro

Site & Scene News

Popular threads in this forum