Hacking Shadow LAG's WIIU Hacking and Development Thread

  • Thread starter Thread starter Shadow LAG
  • Start date Start date
  • Views Views 29,366
  • Replies Replies 111
  • Likes Likes 24
Status
Not open for further replies.
As long as eMMC is a standard component,reading and writing it shall not be that hard. (nearly the same as on 3DS)
But I read somewhere that eMMC got special boot spaces, so maybe won't be that easy...
If you succeed, when you'll get your eMMC back up what will you do with it ? It must be crypted and untill won't get the key you will do nothing with it.
But you will be able to downgrade if you update your Wii U.
Some peoples did the same with their PS3 and mess up with commands and erase their nands at first attempt instead of dumping it.
Others made an hardware mistake and burned their nand...
Good luck, but be careful !

I have dumped it once already but deleted it as I am doing a new approach I want to make sure the dumps match. Furthermore you should NOT let your operating system initiate the device, instead I use winhex to dump. I do not recommend any other method! It should also run under wine as well but if you are going to attempt this I recommend a Windows host to eliminate emulation or virtualization pass through issues which could cause incomplete dumps or even damage the flash if the software decides to take control of the device.


Beware Static

Static isn't so much an issue any longer to today's standards, when I worked at my IT job almost no one wore static resistance wrist bands and it has been tested by running motherboards against carpet. Either way not recommended and you should always keep it propped under neither a metal plate as I have done.


I have a 32GB WiiU that I wouldn't mind opening up. I have enough skills to solder a cygnos dual NAND chip into my slim Star Trek 360 (the solder points were originally meant for the phat 360's for those who don't know). That's not to mention the trial by fire repairs I have had to perform on the same 360 being it was one of my earlier projects.

Alright, would you by chance have a multimeter? If not that is alright, just be aware you should be using a fine tipped iron if you will be doing testing as this is not like the Xbox 360 (I'm from free60 IRC and have developed for the Xbox 360 in the past as well as publicized devkits so I know all about 360) you will be working with micro surface mount so you must be careful. I recommend the solderless solution I will be providing if you are willing to open your WIIU. You need some trace wire, Bare paint pen, an all in one card reader such as the targus which is $9.99 from target, and you will need some electrical tape. Bare paint pen can usually be picked up at your local hardware store i.e. Radioshack. Let me know when you are ready

 
  • Like
Reactions: Ericthegreat
I am having an issue with a resistor I found on the underside of the board near the I/O ports, if anyone has a multimeter or ohm meter I could use your assistance in cross checking this with me. It is not showing continuity and the +/- leads are showing properties of a diode. I need to check to see if this is it's designed function or if it is burnt out
 
I am having an issue with a resistor I found on the underside of the board near the I/O ports, if anyone has a multimeter or ohm meter I could use your assistance in cross checking this with me. It is not showing continuity and the +/- leads are showing properties of a diode. I need to check to see if this is it's designed function or if it is burnt out
Picture? Only thinking pics help to pinpoint.
 
(I'm from free60 IRC and have developed for the Xbox 360 in the past as well as publicized devkits so I know all about 360)
I'm dubious about the legitimacy of your hacking efforts. I didn't find anything about your previous work on console hacking except this, would you be so kind to give me a short summary about your previous projects?
 
  • Like
Reactions: megazig
I'm dubious about the legitimacy of your hacking efforts. I didn't find anything about your previous work on console hacking except this, would you be so kind to give me a short summary about your previous projects?

Oh good for you, you found an old thread that I made on a website FULL of hacking efforts I have made as well as development work and pinpointed a completely unrelated topic in an off topic general thread. I suppose you think that embarrasses me? That was three years ago. I was 19 at the time and enjoyed the night life like any young adult. I also find it interesting that you seem to know my alternate handle. Lets see what we have here, someone who knows my alternate handle and intentionally ignored any other useful information that my name turns up, unless you aren't registered of course. I was friends with the owner of that site "Assembler" and that place was home to me for a good portion of the time before a couple people of there that wanted to keep certain secrets internal began harassment due to the sharing of discoveries I had even made for myself. In fact I worked with another team that disbanded me due to my reluctance to share dangerous discoveries I had made that would compromise the network of the Xbox 360 much like the PS3 incident which had nothing to do with the work at hand. Needless to say these individuals I used to work and trade with ended up becoming greedy. Only sharing information in the form of closed source applications that "did it for you" with the highest bidder, sometimes even for a limited time with remote server connections to their server host that they could disable at any time. That is not in the interest of healthy community development and I distanced myself from that crowed. Furthermore I went on to work with free60 assisting in building towards the open source lib-xenon project which comprised of Linux development and legal code homebrew that did not need the assistance of copyright code from the SDK. I went on to develop a XBMC auto launch build comprised of a custom kernel and debian base strip down. I also developed for a modified distribution that included netbeans built in, an auto update git from libxenon, and an update feature that could be launched by running a command that had soft links to a script I shipped with the build. I also did work for helping Xell detect the hardware ID's of newly implemented video hardware configurations as well as early versions of xell reloaded. I do not feel as if I should justify myself in any way as I am working for the community not fame or recognition and I could care less about what is thought or assumed of me as long as it furthers research and does not harm or inhibit progress from being gained as well as respecting others work that shares the same interest. However if for what ever reason you require a few examples I will be happy to obliged as long as you also respect my privacy and do not attempt to deter or offset this discussion further.

http://www.pictureshack.us/images/72790_allinone.jpg

R284, right? That gives everyone the exact point. Even the number helps.

That is correct.


Nice project !

Which Firmware is installed? 3.1?

I have not yet had a chance to check my version number but I am behind a few updates.
 
  • Like
Reactions: Ray Lewis
That's quite a nice work so far, well done! Perhaps that question comes too soon but what do you actually think about future RAM manipulations of games? Do you think some hardware modifications are required to dump files? Or would it be possible to run some code to get access via USB like an USB Gecko? If I remember correctly, there's no way to get access to the RAM of games at the moment (Not sure at all, just had that in my mind). Well, still quite interesting and a nice work you do there!
 
Shadowlag said a lot of what I thought. Lol, let he who is without sin cast the first stone. Shadow told me of this months ago and here he is. Relax, he is not asking for a ddonation like 3ds decap project.

Edit: not to say 3ds project is bad but shadow, to my knowledge, has asked for nothing except testers. If anyone checked that piece out maybe post here or pm him.
 
adr9000 was kind enough to verify my suspicions about the resistor on the underside of the board, it seems to behave that way as designed too. Neither one of us could identify it. I will be attempting to continue to repair my trace. It seems that nothing will stick to it even with adhesive. Worse comes to worse I'll roll down to my local gamestop and pick up a spare WIIU. I am a little baffled however that I can find no new 8GB versions. Hopefully I will not have to go that route.
 

Maybe I'm mistaken, but this is the vWii Nand not the Wii U eMMC...
The eMMc is on the other side of the PCB.
I now understand how you manage to do a nand backup, this component as no protection.
But thank to you, I now know that they also use hynix component and not only samsung ones, the same as they did with the Wii.
Watch step 12 : http://www.ifixit.com/Teardown/Nintendo+Wii+U+Teardown/11796/2

The eMMc is the orange one not the black one... You will surely succeed, this as already be done, all tools are already available.
 
I'm dubious about the legitimacy of your hacking efforts. I didn't find anything about your previous work on console hacking except this, would you be so kind to give me a short summary about your previous projects?
Oh good for you, you found an old thread that I made on a website FULL of hacking efforts I have made as well as development work and pinpointed a completely unrelated topic in an off topic general thread. I suppose you think that embarrasses me? That was three years ago. I was 19 at the time and enjoyed the night life like any young adult. I also find it interesting that you seem to know my alternate handle. Lets see what we have here, someone who knows my alternate handle and intentionally ignored any other useful information that my name turns up, unless you aren't registered of course. I was friends with the owner of that site "Assembler" and that place was home to me for a good portion of the time before a couple people of there that wanted to keep certain secrets internal began harassment due to the sharing of discoveries I had even made for myself. In fact I worked with another team that disbanded me due to my reluctance to share dangerous discoveries I had made that would compromise the network of the Xbox 360 much like the PS3 incident which had nothing to do with the work at hand. Needless to say these individuals I used to work and trade with ended up becoming greedy. Only sharing information in the form of closed source applications that "did it for you" with the highest bidder, sometimes even for a limited time with remote server connections to their server host that they could disable at any time. That is not in the interest of healthy community development and I distanced myself from that crowed. Furthermore I went on to work with free60 assisting in building towards the open source lib-xenon project which comprised of Linux development and legal code homebrew that did not need the assistance of copyright code from the SDK. I went on to develop a XBMC auto launch build comprised of a custom kernel and debian base strip down. I also developed for a modified distribution that included netbeans built in, an auto update git from libxenon, and an update feature that could be launched by running a command that had soft links to a script I shipped with the build. I also did work for helping Xell detect the hardware ID's of newly implemented video hardware configurations as well as early versions of xell reloaded. I do not feel as if I should justify myself in any way as I am working for the community not fame or recognition and I could care less about what is thought or assumed of me as long as it furthers research and does not harm or inhibit progress from being gained as well as respecting others work that shares the same interest. However if for what ever reason you require a few examples I will be happy to obliged as long as you also respect my privacy and do not attempt to deter or offset this discussion further.

http://www.pictureshack.us/images/72790_allinone.jpg

It blows my mind as to why someone would someone would do so much digging to make such a deconstructive shit post on the first day of this thread as if anybody else but the community is of benefit, but don't your waste time on dudes like him. People who care actually will find out about your work soon enough, and the more useful your work becomes the more people you'll find ragging on you like this so just ignore them.

Keep up the good work, it's stuff like this that makes me want to go out and get a Wii U almost more than the games do lol
 
Maybe I'm mistaken, but this is the vWii Nand not the Wii U eMMC...
The eMMc is on the other side of the PCB.
I now understand how you manage to do a nand backup, this component as no protection.
But thank to you, I now know that they also use hynix component and not only samsung ones, the same as they did with the Wii.
Watch step 12 : http://www.ifixit.com/Teardown/Nintendo Wii U Teardown/11796/2

The eMMc is the orange one not the black one... You will surely succeed, this as already be done, all tools are already available.

I respectfully regret to inform you that you have overlooked the entire context regarding that picture.

I am having an issue with a resistor I found on the underside of the board near the I/O ports, if anyone has a multimeter or ohm meter I could use your assistance in cross checking this with me. It is not showing continuity and the +/- leads are showing properties of a diode. I need to check to see if this is it's designed function or if it is burnt out

16m6ij6.jpg


Furthermore I would like to state that there is no orange component. eMMC is black not orange.
 
  • Like
Reactions: Ray Lewis
Orange on the link I gave ;)

So why don't you just remove the components to isolate the eMMC ?
 
Status
Not open for further replies.

Site & Scene News

Popular threads in this forum