Hacking Hack SXOS

Reacher17

Well-Known Member
OP
Member
Joined
Sep 18, 2019
Messages
128
Trophies
0
XP
741
Country
France
I hijacked sxos codes to extract the keys

--------------------- MERGED ---------------------------

Curious have you been successful to use it on a Switch without a SXOS license?
I mean if someone got a proper backup with Hekate, a SXOS brick is not a big issue.

i used their own codes lol
 
  • Like
Reactions: HollowGrams
Joined
Sep 9, 2019
Messages
878
Trophies
1
Location
Switch scene
Website
github.com
XP
2,487
Country
Korea, North
Curious have you been successful to use it on a Switch without a SXOS license?
I mean if someone got a proper backup with Hekate, a SXOS brick is not a big issue.
The way SXOS use to brick was by locking the nand with junk data so even with a backup you'd need a new emmc unless you can get the key to unlock it. Iirc they removed that "feature" but someone in the AtlasNX discord told me it's still in the code, it's just never executed.

Also they posted mega links to parts of SXOS' payload. Isn't that against the rules since it contains illegal numbers?

To op: wouldn't it be easier to just use debug SVCs to patch their mips vm? That seems like it is the weakest link in the chain.
 
  • Like
Reactions: Julie_Pilgrim

The Catboy

GBAtemp Official Catboy™: Big Smug
Member
Joined
Sep 13, 2009
Messages
26,668
Trophies
4
Location
Making a non-binary fuss
XP
33,641
Country
Antarctica
Personally I have nothing to prove to you especially to you
It shouldn't really be too much to ask for proof. The Temp has had threads like this in the past and the vast majority just ended up being junk, so it's pretty reasonable to expect skepticism.
 
  • Like
Reactions: Julie_Pilgrim

linuxares

The inadequate, autocratic beast!
Global Moderator
Joined
Aug 5, 2007
Messages
11,036
Trophies
2
XP
14,442
Country
Sweden
The way SXOS use to brick was by locking the nand with junk data so even with a backup you'd need a new emmc unless you can get the key to unlock it. Iirc they removed that "feature" but someone in the AtlasNX discord told me it's still in the code, it's just never executed.

Also they posted mega links to parts of SXOS' payload. Isn't that against the rules since it contains illegal numbers?

To op: wouldn't it be easier to just use debug SVCs to patch their mips vm? That seems like it is the weakest link in the chain.
As far as I know those scripts only unlock the payload, no illegal numbers. But I might be wrong, but would look odd if hekxyz would publish something like that.

Yes, as far as I know the code is there as well but dormant/deactivated. That's why I got so scared when I heard it was a new coder on the last firmware. One mistake and hundreds of switch might gotten bricked.
 

BaamAlex

UDE GA NARU ZE!
Member
Joined
Jul 23, 2018
Messages
5,664
Trophies
1
Age
28
Location
Lampukistan
Website
hmpg.net
XP
5,397
Country
Germany
Another script kiddie outbreak thread, just like that German guy that tried to unban his switch by messing around with system time and fuses, mixing up mV and mA from Hekate menu. And now this person, posting some meaningless stuff without explaining anything. To me this thread looks like another kiddie showoff.
Don't forget the "Zeitkonstante" xD
 

Reacher17

Well-Known Member
OP
Member
Joined
Sep 18, 2019
Messages
128
Trophies
0
XP
741
Country
France
It shouldn't really be too much to ask for proof. The Temp has had threads like this in the past and the vast majority just ended up being junk, so it's pretty reasonable to expect skepticism.

tonight I will tell you all that

--------------------- MERGED ---------------------------

I gave the encryption keys, I will also give the spoof
 
  • Like
Reactions: HollowGrams

BaamAlex

UDE GA NARU ZE!
Member
Joined
Jul 23, 2018
Messages
5,664
Trophies
1
Age
28
Location
Lampukistan
Website
hmpg.net
XP
5,397
Country
Germany
tonight I will tell you all that
Why not now? Dude, what do you expect? Really. You start a thread with the title "Hack SX OS". And with a bunch of code (where i don't know what that means). You post a link from mega where you uploaded a payload. What the fuck do you really expect? This thread should be closed because it is a plain crap.
 
  • Like
Reactions: Alexander1970

mikefor20

Well-Known Member
Member
Joined
Jan 12, 2009
Messages
1,716
Trophies
2
Location
Mushroom Kingdom ( o Y o )
XP
3,234
Country
United States
Happy bricking xD

That code was deactivated ages ago.

Not saying he's done this yet, but keep in mind we've been reverse engineering stuff / breaking encryption for a looong time now, so if brick code is there, it can be removed.

Voice of reason.

if you're not providing any believable, proper proofs, We'll just assume that this thread is just a prank.

You know what kind of proofs we're looking forward to see here. you have not fullfilled it yet. if those aren't getting uploaded, everyone's just gonna keep laughing at you.

be praised or be the clown. you choose.

Then don't read the thread. It happens or it doesn't still fun to read.

It shouldn't really be too much to ask for proof. The Temp has had threads like this in the past and the vast majority just ended up being junk, so it's pretty reasonable to expect skepticism.

It is what it is.. It's like the skeptics juat want to hear themselves type.

Why not now? Dude, what do you expect? Really. You start a thread with the title "Hack SX OS". And with a bunch of code (where i don't know what that means). You post a link from mega where you uploaded a payload. What the fuck do you really expect? This thread should be closed because it is a plain crap.

There you go again. Just leave. You need to stop whining about closing threads. Juat leave if you don't like it. Your approval isn't necessary.
 
  • Like
Reactions: HollowGrams

Reacher17

Well-Known Member
OP
Member
Joined
Sep 18, 2019
Messages
128
Trophies
0
XP
741
Country
France
my modification is on the switch identification which is used for the license

--------------------- MERGED ---------------------------

when it is put in memory I modify it before it is compared to the license
 
  • Like
Reactions: HollowGrams

mikefor20

Well-Known Member
Member
Joined
Jan 12, 2009
Messages
1,716
Trophies
2
Location
Mushroom Kingdom ( o Y o )
XP
3,234
Country
United States
my modification is on the switch identification which is used for the license

Righty oh Man, Righty Oh. Will porting XCI/USB functionality be possible? Did you get to the loader code or just the verification code?

Sounds like you're just running it without a license. Oh well.
 
Last edited by mikefor20,

Foxi4

Endless Trash
Global Moderator
Joined
Sep 13, 2009
Messages
29,911
Trophies
3
Location
Gaming Grotto
XP
28,340
Country
Poland
The OP needs to demonstrate their work, otherwise it's just talk and a healthy dose of skepticism is not only predictable, it's advisible. A claim without evidence is all talk and no follow-through. Thread's been cleaned, if I have to come in here again anyone involved in behaviour that goes against our community standards will walk out of it with an extra notch on their warn count. Trolling and flaming won't be tolerated.
 

Reacher17

Well-Known Member
OP
Member
Joined
Sep 18, 2019
Messages
128
Trophies
0
XP
741
Country
France
The OP needs to demonstrate their work, otherwise it's just talk and a healthy dose of skepticism is not only predictable, it's advisible. A claim without evidence is all talk and no follow-through. Thread's been cleaned, if I have to come in here again anyone involved in behaviour that goes against our community standards will walk out of it with an extra notch on their warn count. Trolling and flaming won't be tolerated.

Thanks....
 
  • Like
Reactions: HollowGrams

Reacher17

Well-Known Member
OP
Member
Joined
Sep 18, 2019
Messages
128
Trophies
0
XP
741
Country
France
I personally hope you succeed. Bewarey that the brick code apparently still exist but is dormant.

i can delete it

if you have a license i can prove to you that it will be invalid

<Sorry don't link directly, post it on a Pastebin and leave hints how to find it>

if it freezes you have to relaunch several times
 
Last edited by linuxares,
Joined
Sep 9, 2019
Messages
878
Trophies
1
Location
Switch scene
Website
github.com
XP
2,487
Country
Korea, North
As far as I know those scripts only unlock the payload, no illegal numbers. But I might be wrong, but would look odd if hekxyz would publish something like that.

Yes, as far as I know the code is there as well but dormant/deactivated. That's why I got so scared when I heard it was a new coder on the last firmware. One mistake and hundreds of switch might gotten bricked.

I was reffering to this. File has been deleted from Mega now anyway though.


Edit: The comment right above me lmao. Smh my head.

Edit 2: Funny you should say that thing about one mistake and hundreds of Switches might get bricked. Doesn't really matter because you can use the ofw option but SXOS has been writing a pointer value to the e-fuses on Eristas with SX Cores haha. Doesn't happen with Mariko or Fusee-Gelee and it doesn't happen with every Erista. Again, it makes no difference at all because you can bypass the fuse checks with a custom boot loader but if you were to remove the SX Core the Switch would be non-functional.
 
Last edited by CompSciOrBust,
  • Like
Reactions: Julie_Pilgrim

linuxares

The inadequate, autocratic beast!
Global Moderator
Joined
Aug 5, 2007
Messages
11,036
Trophies
2
XP
14,442
Country
Sweden
Why not now? Dude, what do you expect? Really. You start a thread with the title "Hack SX OS". And with a bunch of code (where i don't know what that means). You post a link from mega where you uploaded a payload. What the fuck do you really expect? This thread should be closed because it is a plain crap.
Settle down a bit, s/he might not be home at the moment.
 
  • Like
Reactions: Julie_Pilgrim
General chit-chat
Help Users
    K3N1 @ K3N1: I love it when people instigate things