Hacking Wii U Hacking & Homebrew Discussion

  • Thread starter Thread starter filfat
  • Start date Start date
  • Views Views 5,123,345
  • Replies Replies 21,104
  • Likes Likes 29
Webkit is a much better attack vector imo anyways, because anyone with the ability to set up a webserver can host an exploit and the end user just has to point their wii u web browser at the right url to run it. Not to mention the webkit is open source and buggy as ever ;)

I'm not shafting you from behind with this reply by the way TSK :P but yes much agreed, the webkit is the only way forward for the exploit entry also if an e-shop game was a possible method Nintendo could just simply take it off e-shop with immediate effect, if that was the case so it ends up being a useless way for everyone. :)
 
  • Like
Reactions: TeamScriptKiddies
I'm not shafting you behind with this reply by the way TSK :P but yes much agreed, the webkit is the only way forward also if an e-shop game was a possible method Nintendo could just simply take it off e-shop with immediate effect if that was the case so it ends up a useless way for everyone. :)
*cough*Cubic Ninja*cough*
 
*cough*Cubic Ninja*cough*

Nice one atNWP, sorry my bad I forgot about CN for a minute there but it was soon stopped by Niti unless of course you stayed on 9.2x so again Nintendo put the block on that one in the end so it does sort of refer to my comment in a fashion :)
 
Nice one atNWP, sorry my bad I forgot about CN for a minute there but it was soon stopped by Niti unless of course you stayed on 9.2x so again Nintendo put the block on that one in the end so it does sort of refer to my comment in a fashion :)

I know, I was just saying it could be something like that where it's on both physical copies and downloads so you can sort of fix it but not really.
 
I know, I was just saying it could be something like that where it's on both physical copies and downloads so you can sort of fix it but not really.
Game exploits on wii u are difficult though to gain kernel access from because of NX.

Userland is (like cubic ninja) is much more likely to happen from a game based exploit on the U. Nothing crazy though....
 
probably related to the timing of the spin lock that is released too early in coreinit.OSDriver_CopyToSaveArea
https://gbatemp.net/goto/post?id=5156281#post-5156281


If one wanted to dissemble that function or memory area in a disassembler.....where in memory does that function exist as to dump it with the rpc tool.


Is it possible at this time to dump the IOSU functions? I gotta rewatch failoverflow again.
 
I'm currently chipping away at the browser, hopefully I can find something :)
Does anyone know if it is possible to malform a video file so that it does more than that boring "cannot play" error? I'm investigating crashes using video files sent over usendmii.

Why try something with the video? Why not look in webkit itself? There's no reason to take the long path when there are much easier to access holes. And crashmybroswer.com doesn't count, lol.
 
  • Like
Reactions: VinsCool
It was an exploit though.
Anyways, I'm back to webkit bug hunting. So far I have tried like 15 html files with "-crash" in their filename, but nothing's worked yet.

If you ever do find a crash, please keep it private instead giving it to nintendo on a silver plater.
 
  • Like
Reactions: TeamScriptKiddies
OOH! UPDATE!
I didn't find a freeze, but I finally got something to do something:
QoXqWJ6.jpg

That's a very very simple error, not anything worth investigating as it is clearly handled.
 

Site & Scene News

Popular threads in this forum