Hacking R.I.P. Public CDNSP Cert. as Nintendo Getting Better

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,011
Trophies
2
Age
29
Location
New York City
XP
13,379
Country
United States
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".
 
  • Like
Reactions: Lacius

KsAmJ

Well-Known Member
OP
Member
Joined
Oct 1, 2015
Messages
249
Trophies
0
Age
40
XP
1,160
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".
source?
 
  • Like
Reactions: DubaiKid83

Conex

Well-Known Member
Newcomer
Joined
Jul 21, 2018
Messages
58
Trophies
0
Age
38
XP
249
Country
Australia
The 6.0 thing is true, however still untested in cdnsp as far as grabbing titles besides Firmware Update, the Switch-Hacks discord is currently obtaining a 6.0 cert for tests.
 

Rikikoo

Member
Newcomer
Joined
Aug 1, 2018
Messages
21
Trophies
0
Age
26
XP
246
Country
France
If you take the current public certificate to try and download a system update, it will work. The only reason its not working is because its not on firmware 6.0
That doesn't mean a thing, a tls cert isn't tied to a specific firmware version.
6.0 could've introduced a cryptographic "challenge" (what dauth really is), or a hardcoded value the server expects to see in a request, etc. Could be anything, but nothing that can't be replicated on desktop.
Or, requests now upload a copy of your ticket (what 3ds was changed to), and in that case it's game over unless Nintendo's private key somehow leaks.
 
Last edited by Rikikoo,
  • Like
Reactions: awtgrduzwt5r9

V-Temp

Well-Known Member
Member
Joined
Jul 20, 2017
Messages
1,227
Trophies
0
Age
34
XP
1,342
Country
United States
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".

How would a tls-cert be tied to a firmware? That doesn't make much sense.

I was under the impression the change was a token challenge from earlier info?
 

Mr_Pichu

かわいいね!
Member
Joined
Dec 10, 2013
Messages
170
Trophies
0
XP
133
Country
United States
I am sure many of us enjoyed the free ride while it lasted. After all it was on the dime of Nintendo and all those third party developers. It dIdn't hurt Nintendo's stock any, but those poor bastard third party and not to forget indie developers.

Just remember, where there is a hack there is a way.
 

bundat

¿
Member
Joined
Jul 25, 2018
Messages
456
Trophies
0
XP
481
Country
Antarctica
If you take the current public certificate to try and download a system update, it will work. The only reason its not working is because its not on firmware 6.0

Wait, does this mean the public cert isn't even banned?
And that the full protocol for 6.0 CDN requests just hasn't been fully RE'd yet, which is causing the CDN error?

Is it possible to request a system update using the older superbanned certs?
(I'd test it myself, as I have copies of the old certs, but I have no idea how to)

Or did they simply change it so that even superbanned certs are able to ask for FW updates, but nothing else?
 
Last edited by bundat,

Lacius

Well-Known Member
Member
Joined
May 11, 2008
Messages
18,099
Trophies
3
XP
18,338
Country
United States
Is anyone aware of a computer application other than CDNSP that can easily check downloaded NSP files for whether or not updates are available? That's really all I ever used CDNSP for.
 

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,011
Trophies
2
Age
29
Location
New York City
XP
13,379
Country
United States
Wait, does this mean the public cert isn't even banned?
And that the full protocol for 6.0 CDN requests just hasn't been fully RE'd yet, which is causing the CDN error?

Is it possible to request a system update using the older superbanned certs?
(I'd test it myself, as I have copies of the old certs, but I have no idea how to)

Or did they simply change it so that even superbanned certs are able to ask for FW updates, but nothing else?
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0
Is anyone aware of a computer application other than CDNSP that can easily check downloaded NSP files for whether or not updates are available? That's really all I ever used CDNSP for.
I've seen people recommend this site: https://www.perfectly-nintendo.com/nintendo-updates/
 
Last edited by Draxzelex,

bundat

¿
Member
Joined
Jul 25, 2018
Messages
456
Trophies
0
XP
481
Country
Antarctica
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0

Oh, I was just thinking of the possibility that they changed the way atum works, and that even if you're CDN banned, they don't block a FW update request (just cause it's weird that they didn't ban the last cert). But if it's confirmed that nothing changed in that regard... then I guess that they really didn't ban this cert :wtf:

In this case, the people who were saying "CDNSP still works, IF the cert owns the game legally" were wrong (was reading this mostly on reddit).
 

Lacius

Well-Known Member
Member
Joined
May 11, 2008
Messages
18,099
Trophies
3
XP
18,338
Country
United States
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0
I've seen people recommend this site: https://www.perfectly-nintendo.com/nintendo-updates/
That's something, but I'm going to miss the convenience of having my downloaded games/updates scanned for updates without me having to check them one by one.
 
  • Like
Reactions: Draxzelex

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,011
Trophies
2
Age
29
Location
New York City
XP
13,379
Country
United States
Oh, I was just thinking of the possibility that they changed the way atum works, and that even if you're CDN banned, they don't block a FW update request (just cause it's weird that they didn't ban the last cert). But if it's confirmed that nothing changed in that regard... then I guess that they really didn't ban this cert :wtf:

In this case, the people who were saying "CDNSP still works, IF the cert owns the game legally" were wrong (was reading this mostly on reddit).
Yeah it was just a "scare tactic" since none of the certs were no longer working with CDNSP but I guess they didn't actually know why? At the very least, it seems game updates are now held behind dauth so people who were afraid of bans and with the lack of working public certs might have to rethink their ways (at least from a convenience perspective).
 

huma_dawii

Well-Known Member
Member
Joined
Apr 3, 2014
Messages
3,880
Trophies
2
Age
33
Location
Planet Earth
XP
4,270
Country
United States
Yeah it was just a "scare tactic" since none of the certs were no longer working with CDNSP but I guess they didn't actually know why? At the very least, it seems game updates are now held behind dauth so people who were afraid of bans and with the lack of working public certs might have to rethink their ways (at least from a convenience perspective).
Hopefully this means no ban with updates from XCI games xD
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • The Real Jdbye @ The Real Jdbye:
    they don't really taste like cotton candy but i guess they don't need to
  • K3Nv2 @ K3Nv2:
    So negative
  • S @ salazarcosplay:
    hello everyone
  • S @ salazarcosplay:
    @BakerMan what systems do you have
  • S @ salazarcosplay:
    what are your favorite games
  • S @ salazarcosplay:
    what are you currently playing?
  • Mondooooo @ Mondooooo:
    Just started God of War 2 on the PS2
  • Mondooooo @ Mondooooo:
    why we saying hello again for?
  • Xdqwerty @ Xdqwerty:
    @Mondooooo, cuz you both werent here
    +1
  • Mondooooo @ Mondooooo:
    oh btw, did you know that the teenage mutant ninja turtles is having an r rated live action movie?
  • S @ salazarcosplay:
    I did not know that
  • S @ salazarcosplay:
    but it would make sense
  • Mondooooo @ Mondooooo:
    just look it up
  • S @ salazarcosplay:
    from the perspective that the original audience that saw it as kids are now grown adults
  • Xdqwerty @ Xdqwerty:
    I heard the original comic books were as dark as that
  • Mondooooo @ Mondooooo:
    it's called the last ronin
  • Mondooooo @ Mondooooo:
    while that was a kid-friendly endeavor, this new take will adapt the story Teenage Mutant Ninja Turtles: The Last Ronin. The outlet notes that this new iteration is being written by “Tyler Burton Smith, who co-wrote the upcoming R-rated action movie Boy Kills World and who wrote the 2019 iteration of Chucky horror franchise Child’s Play.”
  • Mondooooo @ Mondooooo:
    The film, titled ‘The Last Ronin,’ will be targeted at adults and promises a high-body count tale
  • Xdqwerty @ Xdqwerty:
    I grew up with the 2012 show
  • Mondooooo @ Mondooooo:
    so yeah, they're will be lots of kills
  • S @ salazarcosplay:
    so kinda like how they went r rated in the Loan movie for wolverine
    S @ salazarcosplay: so kinda like how they went r rated in the Loan movie for wolverine