Hacking Launch CFW without going into RCM?

smf

Well-Known Member
Member
Joined
Feb 23, 2009
Messages
6,647
Trophies
2
XP
5,884
Country
United Kingdom
People are splitting hairs.

OP is asking if CFW can be accessed without going through RCM at bootup. The answer is no, not at this point.

If you add a button to a joycon and can launch a payload from your phone, then it's way more convenient than deja vu.

Where you need to tether your switch to a device running a custom server, go into eshop, push some buttons, turn the switch off and on.
 

Kubas_inko

"Something funny goes here."
Member
Joined
Feb 3, 2017
Messages
6,324
Trophies
1
Age
24
Location
I gues on earth.
XP
5,210
Country
Czech Republic
If you add a button to a joycon and can launch a payload from your phone, then it's way more convenient than deja vu.

Where you need to tether your switch to a device running a custom server, go into eshop, push some buttons, turn the switch off and on.
Do you know what is even more convenient? Modchip...
 

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,012
Trophies
2
Age
29
Location
New York City
XP
13,396
Country
United States
are you saying that is possible to charge the switch after drain battery on RCM?
Did i miss something in this thew days or im a dump understanding this?

from what i know, with autoRCM i cant charge the switch untill i open it and charge the battery manually (?). Am i correct?
The switch can charge during RCM. However with AutoRCM installed, the charge rate is diminished in RCM compared to without AutoRCM installed. Keep in mind I'm only referring to RCM charge rate. Charge rates remain the same everywhere else, AutoRCM or not
 

eoinzy

Active Member
Newcomer
Joined
Dec 26, 2015
Messages
31
Trophies
0
Age
41
XP
473
Country
If there's a way of bypassing RCM on <4.1.0, then that means it's patched in 4.1.0, yes?

So I wonder if it's already patched out, why they haven't released it publicly.

I thought they only kept it private so Nintendo don't find it, which leaves a known security hole in future FW versions. But if its patched out in 4.1.0, then there must be another reason its kept secret.
 

RHOPKINS13

Geek
Member
Joined
Jan 31, 2009
Messages
1,355
Trophies
2
XP
2,629
Country
United States
This answered my question most clearly, thank you all for your input!

If you install AutoRCM, you will be able to launch RCM mode without a jig, but you will still need to send the payload using a dongle, phone, tablet, or computer.

If you install AutoRCM and solder a chip, most commonly the Trinket M0 right now, in your Switch, you can make it send the payload for you. This means you can boot CFW without using a jig, holding volume up, or using anything external to send a payload. You can just turn your console on like you normally would, and you'd be in CFW.

If you are running on older firmware, or upgraded your firmware but took measures to prevent your eFuses from burning so you could downgrade in the future, there are exploits that will allow you to load CFW without RCM mode. Those are Deja vu and jamais vu, they have been developed but they haven't been released to the public yet. It's advisable to avoid updating your system so that in the future there may be an exploit released that you can use to avoid requiring RCM mode.

--------------------- MERGED ---------------------------

I thought they only kept it private so Nintendo don't find it, which leaves a known security hole in future FW versions. But if its patched out in 4.1.0, then there must be another reason its kept secret.

Partially patched, we don't know the details.
 

smf

Well-Known Member
Member
Joined
Feb 23, 2009
Messages
6,647
Trophies
2
XP
5,884
Country
United Kingdom
If there's a way of bypassing RCM on <4.1.0, then that means it's patched in 4.1.0, yes?

So I wonder if it's already patched out, why they haven't released it publicly.

An exploit chain is made up of multiple parts to get from unhacked to complete taking over of the device. Nintendo stopped the current implementation of one of those parts from working & everybody with the exploit is too busy on other things to look at whether it's possible to easily make it work again.

Releasing it would be like saying "my car stopped, so I scrapped it" without checking it you had run out of fuel.

They want to hold on to as much as possible until mariko is released. There are plenty of exploitable switches in the meantime, with even more when mariko is exploited because the current switches will all end up on ebay as everyone tries to offload them.
 

ZachyCatGames

Well-Known Member
Member
Joined
Jun 19, 2018
Messages
3,398
Trophies
1
Location
Hell
XP
4,209
Country
United States
How? I thought it was possible only on 1.0.0 atm
https://github.com/pixel-stuck/nereba/ for 1.0.0 and https://github.com/liuervehc/caffeine for 3.0.0 (dunno if it works on 3.x)

Nereba is working only on 1.0.0. This has nothing to do with PegaSwitch which works currently on 1.0.0-4.1.0 (yes, hbmenu is already working on 4.x, but it's in closed beta).
There's a public pegaswitch branch with 4.x support https://github.com/noahc3/pegaswitch
 
  • Like
Reactions: Bumblecito

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • K3Nv2 @ K3Nv2:
    I'll reformat and have a 3tb raid0 m. 2 at least
    +1
  • K3Nv2 @ K3Nv2:
    Lmao that sold out fast
    +1
  • Veho @ Veho:
    Yeet the cat.
    +1
  • K3Nv2 @ K3Nv2:
    Good idea
    +1
  • The Real Jdbye @ The Real Jdbye:
    i thought everybody knew cocktails are like 75% ice
  • Veho @ Veho:
    Yeah but not like this.
  • Veho @ Veho:
    It's not like they're complaining that their Slurpee is 99% ice or something, but if the cocktail calls for "shot of vodka, shot of vermouth, shot of gin, shot of Campari, three shots of juice, squirt of lemon" and ends up being a thimbleful of booze, that's a problem.
  • The Real Jdbye @ The Real Jdbye:
    the funny thing is cocktails in norway are only allowed to have 1 20ml shot of booze
  • The Real Jdbye @ The Real Jdbye:
    so..... yeah
  • The Real Jdbye @ The Real Jdbye:
    we're used to only having a thimbleful of booze
  • Veho @ Veho:
    Booo.
  • The Real Jdbye @ The Real Jdbye:
    same thing if you want whisky on the rocks or something, you can't get a double
  • The Real Jdbye @ The Real Jdbye:
    but you could buy as many shots of whisky (or anything else) as you want and ask for a glass of ice and pour them in
  • The Real Jdbye @ The Real Jdbye:
    it's dumb
  • Veho @ Veho:
    Maybe.
  • Veho @ Veho:
    There was a comparison of the number of Ibuprofen poisonings before and after they limited the maximum dosage per box or per pill (i'll look that up). No limit on the number of boxes you can still buy as many as you want, so people argued it was pointless.
  • Veho @ Veho:
    But the number of (accidental) poisonings dropped because drinking an entire package of ibuprofen pills went from "I need a new liver" to "I need a new box of Ibuprofen".
  • Veho @ Veho:
    Here we have ketoprofen that used to be prescription-only because of the risk of toxic dosages, but then they halved the dose per pill and sell them in bottles of six pills apiece instead of twenty and it doesn't need a prescription any more. Yes you can buy more than one bottle but people simply don't.
  • Psionic Roshambo @ Psionic Roshambo:
    Usually accidentally overdose of ibuprofen here is from people taking like cold medicine then ibuprofen for a headache and the combination is over what they need
    Veho @ Veho: https://imgur.com/gallery/QQkYnQu