Hacking NFC exploits?

  • Thread starter Thread starter Shuji1987
  • Start date Start date
  • Views Views 4,809
  • Replies Replies 5
  • Likes Likes 1
Joined
Jul 20, 2011
Messages
381
Reaction score
73
Trophies
0
XP
204
Country
Netherlands
Let me start by saying that I am not a hacker, nor a rocket scientist, but this is something I would like to see discussed.

When our country introduced chipcards (NFC) for public transport, they were hacked a few days/weeks after. Apparently the encryption is so poor it can be dumped within an hour. Even smartphones can read and rewrite them (granted they have NFC of course).

That's what got me thinking about the Wii U's NFC chip. Again, I am no hacker nor a cum-biologist, but how about we abuse that chip? Can we even abuse it? My take on this was to use a game which supports NFC (aka spyro), copy and alter the spyro chip (which you can send then out through your phone or any other NFC medium) to let it run unsigned code or let-it-do-what-U-want-thingy on the Wii U. Maybe a reference to the SD-card or HDD to a program which it can execute?

Again, I am not a hacker nor a shoe-salesman, and I am not even sure if you can even send that kind of data over NFC, but would it be worth something?
 
  • Like
Reactions: ieatpixels
IIRC NFC doesn't come with encryption, but it is up to the person who uses the technology to create their own kind of data protocol and encryption scheme.
If I'm right, Nintendo could have made a better encryption scheme then these people who got hacked really easily.

Though I could be wrong.
 
Even if we could break the encryption (and this is a big if as I assume Nintendo is using a non-crappy encryption schema), it likely wouldn't provide an exploit. If there was an exploit, we would still need the Wii U common key and a decrypted dump of an exploitable game that uses NFC to find it. Basically, we can look at NFC as just another method of data input, and it is harder to exploit than others (such as save data) as it has an extra layer (or several depending on how NFC data is sent from the pad to the console) of security.
 
This is like saying "well the 360 has ethernet and ethernet isn't encrypted, so maybe there's some ethernet exploit!"

Anything along the lines of "hey there's some communication method, let's shove a hack into it" doesn't mean anything.
How about "the Wii U has a touch screen, let's try and hack it by touching the right combination of pixels in a specific order to boot homebrew code from the SD card"?

This is exactly why the 3DS hacking section has its craptacularawesome theories thread stickied.
 

Site & Scene News

Popular threads in this forum