Hacking Wii U Hacking & Homebrew Discussion

  • Thread starter Thread starter filfat
  • Start date Start date
  • Views Views 5,122,438
  • Replies Replies 21,104
  • Likes Likes 29
This whole Wii U Homebrew scene really blows. Each time a new exploit is found there's a update patching it. Gee, I wonder how that is possible. It's not like they're publicly discussing the inner workings of it.

I've lost my faith in this "team". I miss the Wii days when people advised AGAINST updating until EVERYTHING was confirmed working.

Then why are you even here or on this thread? If you feel that it lost, then by all means, you really shouldn't feel obligated to follow it.
 
This whole Wii U Homebrew scene really blows. Each time a new exploit is found there's a update patching it. Gee, I wonder how that is possible. It's not like they're publicly discussing the inner workings of it.

You are correct, we're not publicly discussing the inner workings of it. Aside from the leak of a few minor details from an untrustworthy team member (who has been long gone), and the fact that it's a race attack, I doubt anyone could have described what it was. And given how obvious the bug is (especially when you have your kernel's source), a simple audit at Nintendo would have likely revealed the bug. Did I mention that there is another kernel exploit that has probably not been patched, and a recent new kernel bug found?

I've lost my faith in this "team". I miss the Wii days when people advised AGAINST updating until EVERYTHING was confirmed working.

We've never suggested that you update. And it should be common sense that your best chance of stuff working is to stay on lower versions, so even if we did, you should know better.
 
so, is anyone talking about this?
http://pastie.org/10358027
@Marionumber1 mentioned it in naehrwert's twitter :)
i don't know, since i don't follow the majority of the conversations in here and only keep myself up with what Hykem is doing(since it's most of the times the most interesting stuff )

Pretty sure it's a patched kernel exploit.
 
  • Like
Reactions: Margen67
so, is anyone talking about this?
http://pastie.org/10358027
@Marionumber1 mentioned it in naehrwert's twitter :)
i don't know, since i don't follow the majority of the conversations in here and only keep myself up with what Hykem is doing(since it's most of the times the most interesting stuff )

That's naehrwert's pseudocode of OSDriver_CopyToSaveArea(), as it was in 5.4.0 and below when it had a vulnerability. The bug is that the spinlock protecting the driver list (driver_ctxt_lock) is released before data is copied to the save area (with the copy_in function). This means that the driver can be deleted while the copy is still going on, and then something else can be allocated in its place, allowing a kernel data structure to be overwritten.
 
  • Like
Reactions: pelago and Margen67
That's naehrwert's pseudocode of OSDriver_CopyToSaveArea(), as it was in 5.4.0 and below when it had a vulnerability. The bug is that the spinlock protecting the driver list (driver_ctxt_lock) is released before data is copied to the save area (with the copy_in function). This means that the driver can be deleted while the copy is still going on, and then something else can be allocated in its place, allowing a kernel data structure to be overwritten.
So that's why you said the kernel exploit for 5.3.2 would work on 5.4? What is needed now is just the webkit exploit, right?
Do you know if exploits patched on the new firmware can be used on the 5.4?
 
So that's why you said the kernel exploit for 5.3.2 would work on 5.4? What is needed now is just the webkit exploit, right?
Do you know if exploits patched on the new firmware can be used on the 5.4?

Yes, the kernel exploit works fine on 5.3.2 and 5.4.0, you just need a way of running userspace code first (through the browser exploit). I don't know what you mean for your second question; any exploit we have right now is most likely working on 5.3.2 or 5.4.0.
 
  • Like
Reactions: Margen67
Yes, the kernel exploit works fine on 5.3.2 and 5.4.0, you just need a way of running userspace code first (through the browser exploit). I don't know what you mean for your second question; any exploit we have right now is most likely working on 5.3.2 or 5.4.0.
but there's no public Kernel exploit or userland exploit for 5.4.0 out, right?
 
  • Like
Reactions: Margen67
@Marionumber1:
Does it make sense to buy a Wii U with an older firmware to get the browser and kernel exploit working if one is on 5.4.0 or higher or will there be "full" support publicly on 5.4.0 too very soon?

If not, it seems that 5.3.2 is the best firmware to be on currently (is that right?) so I would also buy a game that has this firmware on the disk to make sure that I will be on the correct firmware in case the Wii U starts off lower for best compatibility.

Thank you :)
 
  • Like
Reactions: Margen67
I know,but i just post that because i'm surprised.

and it is possible to create homebrew with the libwiiu source code or not?

for the kexploit,it is the cafe OS exploit ho is patched.
 
@Marionumber1:
Does it make sense to buy a Wii U with an older firmware to get the browser and kernel exploit working if one is on 5.4.0 or higher or will there be "full" support publicly on 5.4.0 too very soon?

If not, it seems that 5.3.2 is the best firmware to be on currently (is that right?) so I would also buy a game that has this firmware on the disk to make sure that I will be on the correct firmware in case the Wii U starts off lower for best compatibility.

Thank you :)

The 5.4.0 browser exploit may not be out for a while, since it's still very unreliable, and the 5.5.0 exploit will be using the same bug. I would suggest 5.3.2 as the best version if you want access to hacks in the near future.

--------------------- MERGED ---------------------------

and it is possible to create homebrew with the libwiiu source code or not?

Yes, but it's not exactly easy. FIX94 is working on an ELF loader, which is a first step to making the process easier.

for the kexploit,it is the cafe OS exploit ho is patched.

One exploit is confirmed patched, one is unconfirmed.
 
Hi,

is it possible to delete the information of existing updates via the exploits on 5.3.2?
Didn't find anything while doing a quick search.
I would like to start Sm4sh but my U knows that there is an update available for download but also that it needs to update the system to download it :[
 
Hi,

is it possible to delete the information of existing updates via the exploits on 5.3.2?
Didn't find anything while doing a quick search.
I would like to start Sm4sh but my U knows that there is an update available for download but also that it needs to update the system to download it :[
If you remove all internet connections Smash will start without begging for an update.
 
  • Like
Reactions: Margen67 and max-m

Site & Scene News

Popular threads in this forum