1. 20,364

    83
    Front-page
    PicsArt_06-02-03.40.55.jpg
    With the discovery of the TegraRCM exploit that allowed homebrew enthusiasts to run unsigned code on it, Nintendo responded by releasing new Nintendo Switch units codenamed 'Mariko'. While at first glance this newer model is barely distinguishable from the older one (save for the flashy all-in-red box), it features a better battery life and slightly altered CPU instructions to help with power management and consumption.

    However this was at a cost as the boot ROM bug that allowed homebrew enthusiasts and tinkerers to tamper with their switches was fixed for good. This of course upset many owners of the newer Switch iterations, and left people wondering whether or not they could ever enjoy homebrew on their 'Mariko' Switches in the future.

    That future might not be too far away as developer @SciresM has successfully managed to dump the keys of the firmware on said units. In his YouTube video he showcases how this process was achieved:



    Even if slim, these early developments show that there is a possibility of running homebrew on the Nintendo Switch 'Mariko' units, and getting TrustZone access on the system.

    :arrow: Source
     
    Cryo16, x65943, Charli and 52 others like this.
  2. Discussion (83 replies)

  3. AveSatanas
    This message by AveSatanas has been removed from public view by T-hug, Jun 3, 2020, Reason: Off topic nonsense.
    Jun 3, 2020 Show
  4. Hambrew

    Hambrew GBAtemp Fan
    Member

    Joined:
    Oct 9, 2018
    Messages:
    457
    Country:
    United States
    My Switch V2 is one step closer to actually being a fully-worthwhile device that I wouldn't regret throwing my New 2DS XL out for.
     
    XAIXER, MicmasH_W, hug0-a7x and 3 others like this.
  5. veenx0704

    veenx0704 GBAtemp Regular
    Member

    Joined:
    Nov 29, 2016
    Messages:
    120
    Country:
    United States
    What's the advantage of this?
     
    MetoMeto likes this.
  6. ChicoPancho

    ChicoPancho GBAtemp Regular
    Member

    Joined:
    Dec 1, 2019
    Messages:
    139
    Country:
    United States
    One step closer to it being hacked?
     
    Daniel72, MicmasH_W, hug0-a7x and 4 others like this.
  7. huma_dawii

    huma_dawii GBAtemp Psycho!
    Member

    Joined:
    Apr 3, 2014
    Messages:
    3,672
    Country:
    United States
    Okay so... i wonder how we will use this in the future....
     
  8. codezer0

    codezer0 Gaming keeps me sane
    Member

    Joined:
    Jul 14, 2009
    Messages:
    2,980
    Country:
    United States
    For an end user? Probably not immediately useful. But for the likes of those making atmosphere and similar for homebrew and game loading, this is probably a big deal, since it means there will be a lot more eligible consoles able to run this stuff and be jailbroken.
     
    Silent_Gunner and yoyoyo69 like this.
  9. huma_dawii

    huma_dawii GBAtemp Psycho!
    Member

    Joined:
    Apr 3, 2014
    Messages:
    3,672
    Country:
    United States
    But they atill need to find an exploit for Mariko units right? Cause the jig stuff wont work I'm assuming.
     
  10. Xzi

    Xzi GBAtemp's Resident Plok Expert
    Member

    Joined:
    Dec 26, 2013
    Messages:
    10,161
    Country:
    United States
    Nice. At some point once Switch hardware gets real cheap I'll have to pick up a second unit.
     
  11. Ryccardo

    Ryccardo watching Thames TV from London
    Member

    Joined:
    Feb 13, 2015
    Messages:
    7,121
    Country:
    Italy
    RCM works fine on new bootrom consoles (as long as you have a signed payload)

    It's unlikely a way to sign them will be found, but
    1- you only need to win the lottery once if you do it right
    2- there may well be another entrypoint (as the existence of the new """TX""" chips provides supporting evidence for)
     
  12. CaptainSodaPop

    CaptainSodaPop GBAtemp Regular
    Member

    Joined:
    Aug 10, 2012
    Messages:
    200
    Country:
    Croatia
    What about patched Switches?
     
  13. DbGt

    DbGt GBAtemp Fan
    Member

    Joined:
    Jul 28, 2004
    Messages:
    388
    Country:
    Mexico
    At 2:45:10, he says he expects the Mariko to have no software vulnerabilities, so probably you will still need a modchip

    Plus if there was a software vulnerability, then why tx, who had this keys way before and for much longer is instead releasing a modchip over some soft solution?
     
  14. Bullseye

    Bullseye GBAtemp Advanced Fan
    Member

    Joined:
    Feb 22, 2016
    Messages:
    524
    Country:
    Great news. It becomes a waiting game then! Bring it on!
     
  15. invwar

    invwar Member
    Newcomer

    Joined:
    Jul 13, 2018
    Messages:
    20
    Country:
    Singapore
    I didn't watched the 3h video, but I have a simple question.
    Did SciresM used TXs Modchip to get the keys or was he able to hack it without?
     
  16. xbmcuser

    xbmcuser GBAtemp Regular
    Member

    Joined:
    Sep 8, 2007
    Messages:
    148
    Country:
    United Kingdom
    How about this?
    Fix a modchip in run sxos and then add some app to introduce a new sw solution to glitch on boot from sd.

    Remove modchip, your patched switch then is permanently able to run cfw, say Atmosphere etc.

    Would this work,?

    This saves on cost of mod chip and sxos.

    This will be run by installers.
     
    ModderFokker619 likes this.
  17. Deleted User
    This message by Deleted User has been removed from public view by DinohScene, Jun 3, 2020, Reason: one word post.
    Jun 3, 2020 Show
  18. CompSciOrBust

    CompSciOrBust GBAtemp Regular
    Member

    Joined:
    Sep 9, 2019
    Messages:
    180
    Country:
    United Kingdom
    It is hacked with the mod chip.

    Since pretty much everyone with a lot knowledge of the Switch OS like SciresM, Hexkyz, and presumably the TX engineers (otherwise why waste a hardware solution on a smaller userbase when they can wait?) agrees the firmware has no useful bugs currently the only way to run CFW will be through the SX chips or clones of them.

    The SX Core works on all models (F-G, ipatched, and V2 / lite)

    One possible reason is that TX is a business and it's a lot harder to add DRM to a software solution, although a counter argument is that if they released a SW solution they could keep their chips and sell them to a larger userbase later.

    I haven't had a chance to look at the video either but the things he said on twitter strongly suggests that he used a TX chip.

    This won't work because any code you add will be unsigned so the console won't boot, the same reason you can't just add code to a fusee-gelee hackable console to boot without a usb payload. If a software bug is found that requires editing data on the nand that is possible but unlikely to be the case.
     
    Last edited by CompSciOrBust, Jun 3, 2020
    Ryccardo and xstationbr like this.
  19. RedBlueGreen

    RedBlueGreen GBAtemp Advanced Maniac
    Member

    Joined:
    Aug 10, 2015
    Messages:
    1,736
    Country:
    Canada
    It should drop again soon enough. Won't be cheap, but people on eBay won't be able to ask $300+ USD for just the tablet anymore once Nintendo can get more out. Nintendo sells refurbs for $260 USD (with joycons, dock, and everything).

    — Posts automatically merged - Please don't double post! —

    Nice. Can't wait till we can hack the new ones. Then people won't be charging extra for older Switch models.
     
  20. linuxares

    linuxares I'm not a generous god!
    Moderator

    Joined:
    Aug 5, 2007
    Messages:
    7,766
    Country:
    Sweden
    Nice!
    @mattytrog we need your guidance how to make an opensource modchip :3
     
    Bst22322, MicmasH_W, E1ite007 and 3 others like this.
  21. legoinventeor

    legoinventeor GBAtemp Regular
    Member

    Joined:
    Oct 12, 2017
    Messages:
    240
    Country:
    Spain
    Could this apply to switch lites?
     
    Silent_Gunner likes this.
  22. 64bitmodels

    64bitmodels GBAtemp Advanced Fan
    Member

    Joined:
    Aug 1, 2019
    Messages:
    646
    Country:
    United States
    the hell??? why did you do that???







    why the hell did you get a new 2ds xl over a 3ds xl?? the 3d effect is really nice yknow!
     
  23. BlastedGuy9905

    BlastedGuy9905 where's the updated autopsy report
    Member

    Joined:
    Apr 13, 2017
    Messages:
    2,299
    Country:
    United States
    Isn't it, though? There's SX Core.
     
    Shalashaska98, kg2 and Switch_Maniac like this.
Draft saved Draft deleted
Loading...

Hide similar threads Similar threads with keywords - Nintendo, firmware, Switch