Hacking Question about trucha bug restorer ?

Cecilmax

Well-Known Member
OP
Member
Joined
Mar 7, 2015
Messages
451
Trophies
0
Age
44
XP
1,196
Country
Canada
Hi guys,

I just found there is a possibility to use trucha bug restorer to be able to install bootmii on boot2..

But I have wii with serial 7xx on 4.2u softmodded, can someone confirm I can use that tool to restore the bug ?

Thanks :)
 

Litle_Bird

Well-Known Member
Member
Joined
Jan 1, 2017
Messages
134
Trophies
0
Age
28
XP
1,444
Country
Sweden
Long answer, it is not possible to modify boot2 and replace it with bootmii on newer Wiis and here's why.

The Wiis boot process consist of boot0, boot1 and boot2. When you press the power button on the Wii, boot0 is initiated, this bootrom is hardcoded inside the GPU. Boot0 does some things, and verifies boot1 through a hash control, one hash value is programmed inside boot0 and one hash in on the go, meaning boot0 calculates it. This means, if you modified boot1 the hash would be different compared to what boot0 expects. If the hashes match boot1 is launched, it does more things before initiating boot2, boot2 is verified by boot1, and is only launched if the it is signed by nintendo. However early wiis had the trucha bug (string comparison bug) which let things be fake signed yet the wii would still believe the signature to be correct.

This is what bootmii exploited, since bootmii, a substitute for boot2 could be fake signed making boot1 think that bootmii was properly signed and execute it. So why can't you restore the trucha bug in boot1 then? As I said earlier, boot0 has a stored hash value of boot1, and at each start the boot1 located nand is hashed, and if the hashes match, boot0 proceds to execute boot1. If you would reintroduce the trucha bug, you would change the hash value of boot1 and thus boot 0 would not execute it, essentially hardbricking your console.
 
  • Like
Reactions: Cecilmax

Cecilmax

Well-Known Member
OP
Member
Joined
Mar 7, 2015
Messages
451
Trophies
0
Age
44
XP
1,196
Country
Canada
Thanks for the informations :) I think my only hope to protect from brick then it is to install priiload :)
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
  • Xdqwerty @ Xdqwerty:
    @AncientBoi, gonna block you for real if you keep being like that
  • AncientBoi @ AncientBoi:
    Well.... Go ahead my "friend". If it makes you happy :mellow:
  • BigOnYa @ BigOnYa:
    Really, blocking him will only hurt you, we will see his messages, but you wont
  • Xdqwerty @ Xdqwerty:
    @BigOnYa, ok i'm not blocking him
  • BigOnYa @ BigOnYa:
    You just got to have thick skin and ignore people online if you don't agree or dislike. The internet is full of clowns.
    +2
  • AncientBoi @ AncientBoi:
    and an 👴 just having fun.
    +1
  • Xdqwerty @ Xdqwerty:
    Brb
  • Xdqwerty @ Xdqwerty:
    Going to the beach
  • AncientBoi @ AncientBoi:
    Cool :D Wait :unsure::unsure::unsure: Did you say Bleach? :O
  • Xdqwerty @ Xdqwerty:
    @AncientBoi, without the l
    +1
  • AncientBoi @ AncientBoi:
    Enjoy
  • SylverReZ @ SylverReZ:
    Enjoy wacking yourself off, old man?
    +1
  • AncientBoi @ AncientBoi:
    Always :D
  • K3Nv2 @ K3Nv2:
    Man bought a $20 a gauge at Amazon that was all fancy digital went to hook it up did t detect shit, then went back and bought an analog worked right away
    +1
  • ZeroT21 @ ZeroT21:
    @K3Nv2 Happens all the time when ordering these iffy things
  • ZeroT21 @ ZeroT21:
    watching xbox direct but the feed keeps getting dc'd, oh well
  • ZeroT21 @ ZeroT21:
    back to MH rise
  • K3Nv2 @ K3Nv2:
    It's AC Pro which is reputable but more a reason why I don't trust digital in cars
    K3Nv2 @ K3Nv2: It's AC Pro which is reputable but more a reason why I don't trust digital in cars