Hacking Question Help with bricked Switch [Advanced]

DBOA

Active Member
OP
Newcomer
Joined
Apr 11, 2019
Messages
37
Trophies
0
Age
37
XP
259
Country
Brazil
If prodinfo is buggered, you are snookered. The only possible way to get the console r to boot would be to get the device key (think it's in ECC form) from the borked prodinfo and then you can probably create a blank one.

You can remove certs, serials etc, recompute the hashes (there are two that need to be generated) and make one that will boot as long as your device key is intact. Think it's at 0x480 offset in prodinfo

I think lockpick/ or is it that tool that blahblah made that does a similar thing.

I'm trying to recall this from memory, as I'm sat in a hotel in Spain, about 1500 miles away from home.

So double check everything I say as I'm a simpleton.

Though alas, looks like you are snookered forever if your prodinfo is completely unencryptable.

Unless atmosphere can somehow patch out the device key check? Maybe?

I got the device key from lockpick or another key extracting payload.

There is an example prodinfo that I could open and analise? such thing exists?

I have a patched switch, can I used it for anything?

I'll start to look at how all the fields are written to see If I can make my own PRODINFO.
 

mattytrog

You don`t want to listen to anything I say.
Member
Joined
Apr 27, 2018
Messages
3,708
Trophies
0
Age
47
XP
4,316
Country
United Kingdom
I got the device key from lockpick or another key extracting payload.

There is an example prodinfo that I could open and analise? such thing exists?

I have a patched switch, can I used it for anything?

I'll start to look at how all the fields are written to see If I can make my own PRODINFO.
You won't do it mate. It's encrypted with a signing key afaik.

If anyone can create an ECC / RSA signed / encrypted device key is be interested to know!

My knowledge is limited on the subject. T
im thick and probably wrong
 
  • Like
Reactions: DBOA

DBOA

Active Member
OP
Newcomer
Joined
Apr 11, 2019
Messages
37
Trophies
0
Age
37
XP
259
Country
Brazil
You won't do it mate. It's encrypted with a signing key afaik.

If anyone can create an ECC / RSA signed / encrypted device key is be interested to know!

My knowledge is limited on the subject. T
im thick and probably wrong
Scratch all that, just managed to get PRODINFO decrypted, and seems OK (although serial number is XAW00000000000) .

Now I'm at a loss again. maybe it's hardware.
 
Last edited by DBOA,

DripZ

Active Member
Newcomer
Joined
Nov 2, 2019
Messages
35
Trophies
0
Age
26
XP
89
Country
Panama
Scratch all that, just managed to get PRODINFO decrypted, and seems OK (although serial number is XAW00000000000) .

Now I'm at a loss again. maybe it's hardware.
Hi, just wanted to know if you have fix your problem? I'm on the same issue that you. Please let me know
 
General chit-chat
Help Users
  • No one is chatting at the moment.
    K3N1 @ K3N1: https://youtube.com/shorts/PArWUK0WyDQ?feature=share