Hacking Hykem's 5.5 iosu Exploit

Status
Not open for further replies.

Brandts

Member
Newcomer
Joined
Aug 24, 2010
Messages
20
Trophies
0
XP
141
Country
Netherlands
In case you were afraid to deduce it from the screen I posted, yes, the hack works up to 5.5.1. However, I strongly recommend everyone to start blocking updates. That's why I announced I was working on IOSU in the first place, to raise awareness.
I reached IOSU in 5.5.1 using a different bug (another lame UAF in WebKit) than yellows8's, but the libstagefright one is much more reliable and it's already public. Which means that the release for 5.5.1 will be using yellows8's exploit while I keep the crappy one I used private.

Beware that Nintendo will likely push a big update to the Internet Browser anytime soon (I believe it's logical to deduce that), which will quite likely patch (properly) both the libstagefright bugs and other previously unpatched WebKit bugs (the one I mentioned included).

Marionumber1 also made a solid point about investigating userland bugs in areas not related to the browser (like Mii data, for example), which is something we will likely investigate soon.

Aside from all that, the exploit just needs obfuscation to be released. Like I stated before, the obfuscation layers will be complex which will take time to implement properly. If any delays follow, they will be strictly related to the obfuscation of the exploit.
Also, I mentioned that my "vacations" are extended to the end of February, but that doesn't mean the exploit will only be released by then. I'm guessing it will be done quite before that, but right now it's just a matter of getting it right so Nintendo won't patch it as soon as it comes out.

Am I the only one who's starting to doubt now? I haven't touched my WiiU for a long time (I checked yesterday and I'm still on firmware 3.0.0E :)). Now I'm following the recent activities and I have two options. Buy a game with firmware 5.3.2 on the disk, wait for Hykem to release his exploit and then update to 5.5.1? But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit? Another option is update to 5.5.1 now and wait (maybe even five weeks :O).

I was glad that Hykem was taking his time to do a proper release but now with this information the time starts to tick since yellows8 exploit is publically avaiable, so also patchable by Nintendo. I hope Hykem realises this and releases his exploit soon.
 
Last edited by Brandts,

SonyUSA

We're all mad here
OP
Editorial Team
Joined
May 12, 2006
Messages
1,729
Trophies
2
XP
5,251
Country
United States
Am I the only one who's starting to doubt now? I haven't touched my WiiU for a long time (I checked yesterday and I'm still on firmware 3.0.0E :)). Now I'm following the recent activities and I have two options. Buy a game with firmware 5.3.2 on the disk, wait for Hykem to release his exploit and then update to 5.5.1? But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit? Another option is update to 5.5.1 now and wait (maybe even five weeks :O).

I was glad that Hykem was taking his time to do a proper release but now with this information the time starts to tick since yellows8 exploit is publically avaiable, so also patchable by Nintendo. I hope Hykem realises this and releases his exploit soon.
game fly free trial, use your head ;3
 

Dvdxploitr

Well-Known Member
Member
Joined
May 24, 2008
Messages
705
Trophies
1
XP
1,295
Country
United States
game fly free trial, use your head ;3

GameFly requires a credit card/debit card to sign up even with a free trial. His/her age is not in profile, what if they are not old enough to have a credit card or do not have a bank account? This particular user could be 10 years old.......i'd go with Redbox if you can find one with Wii U games.....although that may be hard to find
 

Brandts

Member
Newcomer
Joined
Aug 24, 2010
Messages
20
Trophies
0
XP
141
Country
Netherlands
Oh no! You might have to buy a game! :ohnoes:
That's not my point so let me rephrase my concerns: "But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit?". (ow wait, that's exactly what I said before)

@DVDxploiter and @SonyUSA
I never heard of Gamefly but I don't believe this service is available in my country.
 
Last edited by Brandts,
  • Like
Reactions: josh87402

Tzuba

Well-Known Member
Member
Joined
Jul 1, 2011
Messages
279
Trophies
0
Age
29
Location
Houston
XP
790
Country
United States
That's not my point so let me rephrase my concerns: "But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit?". (ow wait, that's exactly what I said before)

@DVDxploiter and @SonyUSA
I never heard of Gamefly but I don't believe this service is available in my country.
Uhhh then don't update until its released?? Its really that simple.
 

Brandts

Member
Newcomer
Joined
Aug 24, 2010
Messages
20
Trophies
0
XP
141
Country
Netherlands
Uhhh then don't update until its released?? Its really that simple.
But it would be very unfortunately if Nintendo brings outs it's patch before Hykem releases something and we are not possible to update to 5.5.1 at all anymore
 

xxmasal22xx

Well-Known Member
Member
Joined
Feb 13, 2015
Messages
161
Trophies
0
Age
26
XP
144
Country
United States
But it would be very unfortunately if Nintendo brings outs it's patch before Hykem releases something and we are not possible to update to 5.5.1 at all anymore
if i understand correctly you mean if they release a new update past 5.5.1 we will not be able to get to 5.5.1 any more without going past it because there's no known games with 5.5.1 on disc?
 

MRJPGames

Pretty great guy
Member
Joined
Aug 17, 2013
Messages
1,198
Trophies
0
Location
The Netherlands
Website
fizazy.com
XP
1,641
Country
Netherlands
Am I the only one who's starting to doubt now? I haven't touched my WiiU for a long time (I checked yesterday and I'm still on firmware 3.0.0E :)). Now I'm following the recent activities and I have two options. Buy a game with firmware 5.3.2 on the disk, wait for Hykem to release his exploit and then update to 5.5.1? But what if Nintendo brings out 5.5.2 which patches yellows8's exploit before the release of Hykem's exploit? Another option is update to 5.5.1 now and wait (maybe even five weeks :O).

I was glad that Hykem was taking his time to do a proper release but now with this information the time starts to tick since yellows8 exploit is publically avaiable, so also patchable by Nintendo. I hope Hykem realises this and releases his exploit soon.
Your 3.0.0 is supported by IOSU, and as iy has acess to kernel as well you will even vr able to update to 5.5.1 manually without using ninty servers.
It will require a separate WebKit exploit first. It's not a problem for firmwares 2.0.0 to 5.3.2, but firmware versions 5.4.0 and 5.5.0 still need to have a proper exploit done. This is being worked on as well (it would be a bit pointless to release a working IOSU exploit without the WebKit entry points for 5.4.0/5.5.0).
In other words, the goal is to release everything at once, giving people more than enough time to prepare themselves. It wouldn't be fair to release the exploit only for up to 5.3.2 and leave 5.4.0/5.5.0 users in the dust.
 

RareKirby

Well-Known Member
Member
Joined
Mar 1, 2011
Messages
567
Trophies
1
XP
958
Country
United States
I been using OpenDNS to block updates and it's been working well. Should I stop using it?

--------------------- MERGED ---------------------------
 

wurstpistole

GBAtemp MVP
Member
Joined
Nov 19, 2015
Messages
4,606
Trophies
1
XP
5,067
Country
United Kingdom
If you don't know what I'm talking about why reply? TubeHax blocks Nintendo update and so does OpenDNS and I wanted to know if I should keep using OpenDNS
Well why in the world would you want to have your console update itself? Stay on whatever firm you are and pray for the exploits.
 
Status
Not open for further replies.
General chit-chat
Help Users
  • No one is chatting at the moment.
  • JuanMena @ JuanMena:
    Will you give me mouth to mouth oxygen if my throat closes?
  • K3N1 @ K3N1:
    Nah the air can do that
  • K3N1 @ K3N1:
    Ask @x65943 he's trained for that stuff
  • JuanMena @ JuanMena:
    Kissing random dudes choking in celery? Really? Need to study for that?
  • K3N1 @ K3N1:
    Yes it requires a degree
  • K3N1 @ K3N1:
    I could also yank out the rest of my teeth but theirs professionals for that
  • x65943 @ x65943:
    If your throat closes, putting oxygen in your mouth will not solve anything - as you will be introducing oxygen prior to the area of obstruction
  • JuanMena @ JuanMena:
    Just kiss me Kyle.
  • x65943 @ x65943:
    You either need to be intubated to bypass obstruction or create a stoma inferior to the the area of obstruction to survive
  • x65943 @ x65943:
    "Just kiss me Kyle." And I thought all the godreborn gay stuff was a smear campaign
  • JuanMena @ JuanMena:
    If I die, tell my momma I won't be carrying Baby Jesus this christmas :sad::cry:
  • K3N1 @ K3N1:
    Smear campaigns are in The political section now?
  • JuanMena @ JuanMena:
    Chary! Chary! Chary, Chary, Chary!
  • Sonic Angel Knight @ Sonic Angel Knight:
    Pork Provolone :P
  • Psionic Roshambo @ Psionic Roshambo:
    Sounds yummy
  • K3N1 @ K3N1:
    Sweet found my Wii u PSU right after I ordered a new one :tpi:
  • JuanMena @ JuanMena:
    It was waiting for you to order another one.
    Seems like, your PSU was waiting for a partner.
  • JuanMena @ JuanMena:
    Keep them both
    separated or you'll have more PSUs each year.
  • K3N1 @ K3N1:
    Well one you insert one PSU into the other one you get power
  • JuanMena @ JuanMena:
    It literally turns it on.
  • K3N1 @ K3N1:
    Yeah power supplies are filthy perverts
  • K3N1 @ K3N1:
    @Psionic Roshambo has a new friend
    +1
  • JuanMena @ JuanMena:
    It's Kyle, the guy that went to school to be a Certified man Kisser.
  • Psionic Roshambo @ Psionic Roshambo:
    Cartmans hand has taco flavored kisses
  • A @ abraarukuk:
    hi guys
    A @ abraarukuk: hi guys