Hacking Suggestion [IMPORTANT] Possible Nintendo server changes to block web applets from working

  • Thread starter Deleted-442439
  • Start date
  • Views 56,821
  • Replies 183
  • Likes 21
D

Deleted-442439

Guest
OP
There have been several reports of users not being able to use the web applets without updating regardless of FW, DNS settings and several other factors, making it impossible to use the HBL and SwitchbruDNS.

This has now been investigated by devs over at the Reswitched discord and we know the following:


NeedsUpdateVulnerability is a function in the ns:vm service in the NS module.

It seems that in systems with the issue it is set to 1, while "normal" systems have the value 0.

When any of the web applets open they will check that value, if it is set to 1 a update will be needed, this update prompt can't be cleared by going into recovery mode making it impossible to launch the browser, and seems to be a issue on all FW.

We do not yet know how this value was changed, but as the DNS servers don't block all servers it is suspected that Nintendo have made a undocumented server to change this value. (this is speculation) regardless it would be smart to now completely disable internet (airplane mode) until the cause is found. (If you still plan to block updates).

What we do know: This issue is standard on all new Switches shipping on FW 4.1.0+ (see image 2)

Is it patcheble?

Yes, but right now Fusee does not have sdMMC support, so the only way now is to patch it through running Linux on the Switch and then applying a patch from there. Obviously that is not a easy solution, but until more is understood we have to wait.

upload_2018-4-30_0-22-41.png
upload_2018-4-30_0-23-5.png
 

Taffy

jdfiehgvrhfvhfjkvgrjhfejvgrjkbjvr
Member
Joined
Mar 3, 2017
Messages
622
Trophies
0
Age
20
Location
Student
XP
1,120
Country
United States
Will current non-affected users get affected by this? Or are we safe?

I mean, as long as we don't update

Also I'm posting this from my switch, which is actually my internet lifeline (long story)

Should I disconnect for a while?
 
Last edited by Taffy,

Leonidas87

Well-Known Member
Member
Joined
Jul 15, 2014
Messages
652
Trophies
0
Location
Toronto, Ontario
Website
www.youtube.com
XP
950
Country
Canada
Will current non-affected users get affected by this? Or are we safe?

I mean, as long as we don't update

Also I'm posting this from my switch, which is actually my internet lifeline (long story)

Should I disconnect for a while?

I was not effected today and then as of about an hour ago I'm having this issue with no solution as of yet. Hoping we get something not as difficult as setting up Linux because I have not gotten Linux running.
 

The3rdknuckles

Well-Known Member
Member
Joined
Dec 30, 2015
Messages
479
Trophies
0
XP
1,785
Country
United States
Well it’s a good thing I haven’t tried to run any HB in a while on my 3.0.0 switch. So no update for me to clear. I hope devs are able to help out those who aren’t as lucky or we get the soft mod CFW soon as everyone can enjoy HB again.
 
D

Deleted-442439

Guest
OP
Will current non-affected users get affected by this? Or are we safe?

I mean, as long as we don't update

Also I'm posting this from my switch, which is actually my internet lifeline (long story)

Should I disconnect for a while?

You should disconnect, we don't know how this works, but it seems more and more users are having the issue, if you don't you will be forced to use a hardmod.

--------------------- MERGED ---------------------------

Well it’s a good thing I haven’t tried to run any HB in a while on my 3.0.0 switch. So no update for me to clear. I hope devs are able to help out those who aren’t as lucky or we get the soft mod CFW soon as everyone can enjoy HB again.

The problem is softmod CFW will be impossible without being able to use the browser, so everyone must turn of all wifi until we know more, even if u are on lower fw.
 

Rune

Well-Known Member
Member
Joined
Feb 15, 2017
Messages
682
Trophies
0
XP
2,202
Country
United Kingdom
The problem is softmod CFW will be impossible without being able to use the browser, so everyone must turn of all wifi until we know more, even if u are on lower fw.
So as things stand, is every OFW version on the same boat now?

And is the HBL unusable on all OFWs at this stage?
 
D

Deleted-442439

Guest
OP
So as things stand, is every OFW version on the same boat now?

And is the HBL unusable on all OFWs at this stage?

Yes. If the value has been changed it will be, if not HBL will still work, but could be patched any second you are using the DNS... so stay offline.
 

Resaec

Well-Known Member
Member
Joined
Dec 19, 2017
Messages
409
Trophies
0
XP
875
Country
Germany
So as things stand, is every OFW version on the same boat now?

And is the HBL unusable on all OFWs at this stage?
Yes. If the value has been changed it will be, if not HBL will still work, but could be patched any second you are using the DNS... so stay offline.
That is, if you use a DNS that blacklists... Using a whitelist DNS would solve this problem
 
D

Deleted-442439

Guest
OP
That is, if you use a DNS that blacklists... Using a whitelist DNS would solve this problem

In theory, but as I said we don't know what is triggering it, and there are no whitelist DNS's live right now, so offline is the only option.
 

Resaec

Well-Known Member
Member
Joined
Dec 19, 2017
Messages
409
Trophies
0
XP
875
Country
Germany
In theory, but as I said we don't know what is triggering it, and there are no whitelist DNS's live right now, so offline is the only option.
You are right... It might use an IP instead of a hostname and circumvent the DNS completely, too.
Offline is the best choice, second is an offline network for the switch only hosting HBL.
 
  • Like
Reactions: Maximilious

Deleted member 191657

Well-Known Member
Newcomer
Joined
Aug 10, 2009
Messages
87
Trophies
0
XP
1,315
Country
Italy
If all of this is true, I would advise everyone to use PegaSwitch with an Access Point with no internet access.

For example if you own a Wi-Fi USB dongle you could forward it to a VMWare VM and create an access point from there and unlink the VM from your main connection
 
Last edited by Deleted member 191657,
  • Like
Reactions: BL4Z3D247
General chit-chat
Help Users
  • No one is chatting at the moment.
  • SylverReZ @ SylverReZ:
    That sums it up right.
  • Megadriver94 @ Megadriver94:
    I am not it the loop on this, why take it so personally, though? Its just a video game and a work of fiction, at the end of the day.
  • K3N1 @ K3N1:
    I'm sure the devs don't mind refunding my .torrent for it
  • K3N1 @ K3N1:
    @Megadriver94, because these devs take child hood movies and make them look like shit expecting to profit off it
  • SylverReZ @ SylverReZ:
    @K3N1, That's what happens to every movie franchise.
  • Megadriver94 @ Megadriver94:
    Oh alright then, I can see what you are getting at.
  • Sonic Angel Knight @ Sonic Angel Knight:
    Sunday.... sunday dessert night :ninja:
  • K3N1 @ K3N1:
    With unreal engine their should be no excuse to make any animated figure look like complete shit whent hey have rights to it
  • K3N1 @ K3N1:
    The voice actor sounds like he didn't get casted for a tim Burton movie
  • linuxares @ linuxares:
    but you got to pay for the elvish voices
  • linuxares @ linuxares:
    and emotes... in a singleplayer game...
  • K3N1 @ K3N1:
    Damn the rights to LOTR is like all over the place lol
  • SylverReZ @ SylverReZ:
    Deserved
  • SylverReZ @ SylverReZ:
    At least we can point and laugh to an indie game that is not worth playing.
  • K3N1 @ K3N1:
    Last I read Amazon owns some rights you'd think a billion dollar company could fork more over for a decent game but their last game bricked GPUs so theirs that
    +1
  • linuxares @ linuxares:
    Be an e-commerce. Build a game that destroy the GPUs. Sell new GPUs. PROFITS!
  • K3N1 @ K3N1:
    Don't forget your 4090 we promise the next LOTR MMO will make it work for more than a year
  • K3N1 @ K3N1:
    Yay for user end replacement parts
  • SylverReZ @ SylverReZ:
    If your graphics card doesn't work with your game then don't blame us for shitty game performance.
  • K3N1 @ K3N1:
    At least @AncientBoi can run games released in his childhood
    +1
  • K3N1 @ K3N1:
    Marbles and pick up sticks 10/10
    SylverReZ @ SylverReZ: @K3N1, DOOM