XboxHacker BBS
 
*
Welcome, Guest. Please login or register.
Did you miss your activation email?
June 17, 2013, 11:59:10 PM


Login with username, password and session length


Pages: 1 2 3 »
  Print  
Author Topic: is this real ?????????  (Read 10697 times)
funkyfish77
Member
**
Posts: 10


View Profile
« on: October 18, 2009, 04:53:25 PM »

http://forums.xbox-scene.com/index.php?showtopic=694043

so is this the real thing or fake ??
it5 was released by some local folks
Logged
funkyfish77
Member
**
Posts: 10


View Profile
« Reply #1 on: October 18, 2009, 04:58:36 PM »

III. Credits
============

   Writing freeBOOT would not have been possible without the great work done by
   many hackers. Kudoz to arnezami, Redline99, Robinsod, SeventhSon, Tiros,
   tmbinc, xorloser, and anyone else I may have missed.
Logged
B1N4RY
Xbox Hacker
*****
Posts: 790


View Profile
« Reply #2 on: October 18, 2009, 05:23:02 PM »

Looks legit, but highly suspicious.
I'm going to take a look at it...
Who is this "ikari" anyways??

EDIT:

the readme

Quote
                      __               ____   ___   ___ _____
                     / _|_ __ ___  ___| __ ) / _ \ / _ \_   _|
                    | |_| '__/ _ \/ _ \  _ \| | | | | | || |
                    |  _| | |  __/  __/ |_) | |_| | |_| || |
                    |_| |_|  \___|\___|____/ \___/ \___/ |_|
                                    [v0.01 - coded by ikari]



I.  Introduction
================

   Finally, here it is - freeBOOT, a rebooter for the Microsoft Xbox 360. This
   version of freeBOOT allows you to reboot into kernel 2.0.8498 on a Xenon
   or Falcon console, which can be exploited by the JTAG hack. Support for
   Zephyr, Opus, and Jasper consoles will follow shortly.

   As freeBOOT needs a second flash memory to store kernel 2.0.8498 and
   associated data, a Cygnos360 is required at the moment.

   Read through the following instructions carefully. Building your own images
   is yet a complicated task involving many steps. Future versions of freeBOOT
   will be easier to build.



II. Instructions
================

   1. Extract the contents of this archive to a directory of your choice. All
      file and directory names in the proceeding steps will be given relative
      to that directory.

   2. Update your Xbox 360 to kernel 2.0.7371 (Fall 08 Update). If your Xbox 360
      has already been updated to a newer kernel, you can proceed to the next
      step.

      You can download the update from:

      http://www.xbox.com/en-us/support/systemuse/xbox360/console/systemupdates.htm

      Follow the instructions on this site on how to apply the update. The
      update process will not succeed with resistor R6T3 desoldered. Resolder
      resistor R6T3 in that case before starting the update process.

   3. If present, desolder resistor R6T3 to prevent any accidentally applied
      update fixing the JTAG hack vulnerability.

   4. Save an image of your flash memory to the file "bin\7371.bin".

   5. In case you don't already know your Xbox 360's CPU key, retrieve it now.
      There are various ways to accomplish this, but they will not be covered
      here.

   6. Launch the 360 Flash Tool included in this archive. It incorporates the
      fixes proposed by arnezami and thus works with newer dashboard versions.
      Aside from that, it can also extract the SMC configuration block.

      Click on the "Keys" button and enter the generic 1BL key and the CPU key
      matching your "bin\7371.bin" image. Once you have entered the keys, close
      the application and launch it again.

      Open your "bin\7371.bin" image next and click on the "Extract" button.
      Select the options "Cx Sections", "Key Vault", and "Raw File System
      (No Unpacking)" from the "Extract Flash" dialog. Choose "data" as output
      directory.

   7. Delete all files from the "data" directory except:

      - crl.bin
      - extended.bin
      - kv.bin
      - odd.bin
      - secdata.bin
      - smc.bin
      - smc_config.bin

   8. The remaining files necessary to build an image with kernel 2.0.8498 must
      be extracted from an image of an updated Xbox 360, further on referred to
      as "bin\other8498.bin". Please do *NOT* update your Xbox 360 to kernel
      2.0.8498, otherwise you will loose the ability to run the JTAG hack and
      freeBOOT.

      Launch 360 Flash Tool included in this archive and click on the "Keys"
      button again. Now enter the CPU key corresponding to the "bin\other8498.bin"
      image. Afterwards, close the application and launch it again.

      Open the "bin\other8498.bin" image next and click on the "Extract" button.
      Select the options "Cx Sections", and "Raw File System (No Unpacking)"
      from the "Extract Flash" dialog. Choose "tmp" as output directory.

   9. Copy the following files from the "tmp" to the "data" directory:

      - aac.xexp[1,2]
      - bootanim.xex
      - bootanim.xexp[1,2]
      - cb_1940.bin
      - cd_8453.bin
      - ce_1888.bin
      - cf_8498.bin
      - cg_8498.bin
      - createprofile.xex
      - createprofile.xexp[1,2]
      - dash.xex
      - deviceselector.xex
      - deviceselector.xexp[1,2]
      - gamerprofile.xex
      - gamerprofile.xexp[1,2]
      - hud.xex
      - hud.xexp[1,2]
      - huduiskin.xex
      - mfgbootlauncher.xex
      - mfgbootlauncher.xexp[1,2]
      - minimediaplayer.xex
      - minimediaplayer.xexp[1,2]
      - signin.xex
      - signin.xexp[1,2]
      - updater.xex
      - updater.xexp[1,2]
      - vk.xex
      - vk.xexp[1,2]
      - xam.xex
      - xam.xexp[1,2]
      - xenonclatin.xtt
      - xenonclatin.xttp[1,2]
      - xenonjklatin.xtt
      - xenonjklatin.xttp[1,2]
      - ximecore.xex
      - ximedic.xex
      - ximedic.xexp[1,2]

      "[1,2]" means the file name contains either "1" or "2" at that position.

   10. Rename the following files in your "data" directory:

      - aac.xexp[1,2]              -->   aac.xexp
      - bootanim.xexp[1,2]         -->   bootanim.xexp
      - createprofile.xexp[1,2]    -->   createprofile.xexp
      - deviceselector.xexp[1,2]   -->   deviceselector.xexp
      - gamerprofile.xexp[1,2]     -->   gamerprofile.xexp
      - hud.xexp[1,2]              -->   hud.xexp
      - mfgbootlauncher.xexp[1,2]  -->   mfgbootlauncher.xexp
      - minimediaplayer.xexp[1,2]  -->   minimediaplayer.xexp
      - signin.xexp[1,2]           -->   signin.xexp
      - updater.xexp[1,2]          -->   updater.xexp
      - vk.xexp[1,2]               -->   vk.xexp
      - xam.xexp[1,2]              -->   xam.xexp
      - xenonclatin.xttp[1,2]      -->   xenonclatin.xttp
      - xenonjklatin.xttp[1,2]     -->   xenonjklatin.xttp
      - ximedic.xexp[1,2]          -->   ximedic.xexp

      You can easily rename the files by entering "ren *p1 *p" or "ren *p2 *p"
      at the command prompt.

   11. Now you can build your kernel 2.0.8498 image with ibuild. To do so,
       launch ibuild with the following parameters:

       Xenon:

       ibuild -console xenon -dir data\ -1blkey <1BL key>
           -cpukey <CPU key> bin\my8498.bin bin\fuses.bin

       Falcon:

       ibuild -console falcon -dir data\ -1blkey <1BL key>
           -cpukey <CPU key> bin\my8498.bin bin\fuses.bin

       Enter both 16 byte keys as hexadecimal numbers without leading "0x". The
       CPU key in this case is the one matching your "bin\7371.bin" image. When
       ibuild completes successfully, you will find two new files in the "bin"
       directory. The file "bin\my8498.bin" contains your newly build kernel
       2.0.8498 image, that will be booted by freeBOOT. The file "bin\fuses.bin"
       contains the virtual fuse settings used by freeBOOT. Please do not mix
       images and virtual fuses of different ibuild runs, it won't work
       otherwise.

   12. In order to build the freeBOOT image, Python is needed. If you already
       have Python installed, you can proceed to step 13.

       The easiest way to run Python scripts under Windows is to install Cygwin.
       You can download the Cygwin setup from here:

       http://www.cygwin.org/cygwin/

       Install Cygwin to any directory of your choice along with the these
       packages:

       - python
       - python-crypto

   13. Open "build.py" with a text editor and look for these two lines:

       # you need to fill in this
       secret_1BL = None

       Replace "None" with the 1BL key. This example shows you the format
       in which the key has to be entered. The key itself is wrong.

       secret_1BL = "\x01\x0F\x0E\x0C\x0E\xD6\x69\xE7\xB5\x67\x94\xFB\x68\x56\x3E\xFA"

   14. The freeBOOT image can now be built. Open a Cygwin shell and change to the
       directory where you extracted the contents of this archive into. Launch
       the Python build script with the following parameters:

       Xenon:

       python build.py bin/xenon_hack.bin

       Falcon:

       python build.py bin/falcon_hack.bin

       The "bin\xenon_hack.bin" and "bin\falcon_hack.bin" images are standard
       JTAG hack images and can be found at the usual places.

   15. Program "bin\my8498.bin" to the Cygnos360 flash memory and "bin\hack.bin"
       to the Xbox 360 flash memory.

   16. Power on your Xbox 360. If everything went correctly, you should see the
       blue LED light up a few seconds later, followed by the usual boot
       animation. If you power on your Xbox 360 with the DVD tray eject button,
       XeLL will be loaded instead.



III. Credits
============

   Writing freeBOOT would not have been possible without the great work done by
   many hackers. Kudoz to arnezami, Redline99, Robinsod, SeventhSon, Tiros,
   tmbinc, xorloser, and anyone else I may have missed.



IV. What's next
===============

   Features planned for the next release(s):

     - support for all consoles
     - update to the latest kernel



-----
ikari, 2009/10/15

Here's a mirror, in case if you didn't get the chance to take a look before the links were removed:
http://www.megaupload.com/?d=23DU4NP0
« Last Edit: October 19, 2009, 02:24:17 PM by B1N4RY » Logged
insaciable
Member
**
Posts: 12


View Profile
« Reply #3 on: October 18, 2009, 06:48:29 PM »

Kudoz to arnezami, Redline99, Robinsod, SeventhSon, Tiros, Tmbinc, Xorloser

Someone can confirm that this is real??
Logged
Redline99
Global Moderator
Xbox Hacker
*****
Posts: 774


View Profile
« Reply #4 on: October 18, 2009, 09:49:43 PM »

congrats to whomever the coders are, I didn't have any direct involvement.
Logged

Where's Waldo
damox
Master Hacker
****
Posts: 484


View Profile
« Reply #5 on: October 18, 2009, 10:55:23 PM »

This is going to be a whole new can of worms.

What I really want to know is if the 8498 kernel that is being booted is in signed mode.

Will this method even support booting kernels that are modified.

Quote from: Cygnos360 V2
-We have added the possibility to communicate from "Xell" to Cygnos360 V2, for example to switch kernel via software command. (hotswap)

I was wondering how long it would take for someone to do this.
« Last Edit: October 19, 2009, 12:21:25 AM by damox » Logged
jester
Master Hacker
****
Posts: 192


View Profile
« Reply #6 on: October 19, 2009, 12:35:06 AM »

I took a crack at this, but I don't have any LPT/USB'd consoles with 8498 to get a good dump, and the 8498.rar on xbins doesn't work, ibuild asks for cb_5771.bin. If anyone has 8498 dump/cpu key, PM me so I can let everyone know if this is working. Cheesy
Logged
damox
Master Hacker
****
Posts: 484


View Profile
« Reply #7 on: October 19, 2009, 12:46:25 AM »

I took a crack at this, but I don't have any LPT/USB'd consoles with 8498 to get a good dump, and the 8498.rar on xbins doesn't work, ibuild asks for cb_5771.bin. If anyone has 8498 dump/cpu key, PM me so I can let everyone know if this is working. Cheesy

I also went through the build process, and I also used the 8498.rar on xbins, my build (as far as I can tell without flashing) has worked.

Make sure you are actually following the guide!

Here's a modified solution for you.

*Modified to work with XBINS dump rather than self dump*

  8. The remaining files necessary to build an image with kernel 2.0.8498 must
      be extracted from  8498.rar available on XBINS.
      Please do *NOT* update your Xbox 360 to kernel
      2.0.8498, otherwise you will loose the ability to run the JTAG hack and
      freeBOOT.

      Extract 8498.rar and choose "tmp" as output directory.
      Delete smc.bin from "tmp"

   9. Copy all the files from the "tmp" to the "data" directory, which include the following:

      - aac.xexp
      - bootanim.xex
      - bootanim.xexp
      - cb_1940.bin
      - cd_8453.bin
      - ce_1888.bin
      - cf_8498.bin
      - cg_8498.bin
      - createprofile.xex
      - createprofile.xexp
      - dash.xex
      - deviceselector.xex
      - deviceselector.xexp
      - gamerprofile.xex
      - gamerprofile.xexp
      - hud.xex
      - hud.xexp
      - huduiskin.xex
      - mfgbootlauncher.xex
      - mfgbootlauncher.xexp
      - minimediaplayer.xex
      - minimediaplayer.xexp
      - signin.xex
      - signin.xexp
      - updater.xex
      - updater.xexp
      - vk.xex
      - vk.xexp
      - xam.xex
      - xam.xexp
      - xenonclatin.xtt
      - xenonclatin.xttp
      - xenonjklatin.xtt
      - xenonjklatin.xttp
      - ximecore.xex
      - ximedic.xex
      - ximedic.xexp

   10(11). Now you can build your kernel 2.0.8498 image with ibuild. To do so,
       launch ibuild with the following parameters etc.:
« Last Edit: October 19, 2009, 12:48:00 AM by damox » Logged
jester
Master Hacker
****
Posts: 192


View Profile
« Reply #8 on: October 19, 2009, 12:51:39 AM »


Quote
D:\Xbox360\Cygnos\freeBOOT-0.01>ibuild -console falcon -dir data\ -1blkey *** -cpukey *** bin\my8498.bin bin\fuses.bin
ibuild 0.03 - coded by ikari

ERROR: File "data\cb_5771.bin" could not be opened.
ERROR: I/O error.

I did copy over all the files from the xbins rar (except smc.bin, you use the one from 7371!), and I still get this error. Wink

Edit: The dump from my falcon is indeed 2.0.7371.0 - but it only has CB 5770, not 5771.
Edit: xbins dump seems to be from a xenon, which is why building for a xenon will work, but a falcon will not. Still need falcon 8498 dump it seems. PM me!
« Last Edit: October 19, 2009, 01:11:43 AM by Redline99 » Logged
damox
Master Hacker
****
Posts: 484


View Profile
« Reply #9 on: October 19, 2009, 12:57:27 AM »

Quote
D:\Xbox360\Cygnos\freeBOOT-0.01>ibuild -console falcon -dir data\ -1blkey *** -cpukey *** bin\my8498.bin bin\fuses.bin
ibuild 0.03 - coded by ikari

ERROR: File "data\cb_5771.bin" could not be opened.
ERROR: I/O error.

I did copy over all the files from the xbins rar (except smc.bin, you use the one from 7371!), and I still get this error. Wink

Oh, your doing a falcon, mines a xenon, you will need a different 8498 dump. One that has cb_5771.bin in it lol.
Logged
jelle2503
Xbox Hacker
*****
Posts: 1686


elitist prick


View Profile
« Reply #10 on: October 19, 2009, 05:10:24 AM »

this may very well be the end of Xell + libxenon; the little hobby programming club at saturdaynight

finally some real progress.. the kind of progress for homebrew to Splode!
Logged

*
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #11 on: October 19, 2009, 05:33:55 AM »

hmm.. anyone know if this would work with a dual nand/xd card setup? or does it send some sort of command to the cygnos that makes it switch?
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
jester
Master Hacker
****
Posts: 192


View Profile
« Reply #12 on: October 19, 2009, 05:37:00 AM »

hmm.. anyone know if this would work with a dual nand/xd card setup? or does it send some sort of command to the cygnos that makes it switch?
It is indeed a cygnos-exclusive.

Quote
-We have added the possibility to communicate from "Xell" to Cygnos360 V2, for example to switch kernel via software command. (hotswap)
-We have added the functionality to enable switching between kernels having different SMC versions. It is not necessary to unplug the console for kernel switching, which is the case on current homebrew nand switchers and XD card solutions.

I heard a certain someone was working on a solution that would run an alternate image from the disk drive, or possibly flash drive, instead of the NAND. Not sure how that's shaping up, or if it's true.
Logged
tmbinc
Global Moderator
Master Hacker
*****
Posts: 286


View Profile
« Reply #13 on: October 19, 2009, 05:47:21 AM »

this may very well be the end of Xell + libxenon; the little hobby programming club at saturdaynight

finally some real progress.. the kind of progress for homebrew to Splode!
Given that you're probably right, I better stop will all this $#!t now, and let the real hackers go on from here. Was a nice time, but this seems to be the moment where my interactions aren't required anymore. Good Luck, everyone!
Logged

Please don't copy/quote full text outside this board. Instead, summarize and link to this post. Thanks! This lets me keep information updated and doesn't pull things out of context.
jester
Master Hacker
****
Posts: 192


View Profile
« Reply #14 on: October 19, 2009, 05:49:08 AM »

this may very well be the end of Xell + libxenon; the little hobby programming club at saturdaynight

finally some real progress.. the kind of progress for homebrew to Splode!
Given that you're probably right, I better stop will all this $#!t now, and let the real hackers go on from here. Was a nice time, but this seems to be the moment where my interactions aren't required anymore. Good Luck, everyone!

I'd like to add my personal thanks for everything you've done - you have been especially helpful when needed. Hope to see you on IRC. Grin
Logged
funkyfish77
Member
**
Posts: 10


View Profile
« Reply #15 on: October 19, 2009, 05:59:02 AM »

well does it still need xell to run or just the exploit Huh
what could be done with this linux run unsigned code games from harddrive?
has anyone got this running yet
Logged
jacksback
Master Hacker
****
Posts: 117



View Profile
« Reply #16 on: October 19, 2009, 06:30:34 AM »

this may very well be the end of Xell + libxenon; the little hobby programming club at saturdaynight

finally some real progress.. the kind of progress for homebrew to Splode!
Given that you're probably right, I better stop will all this $#!t now, and let the real hackers go on from here. Was a nice time, but this seems to be the moment where my interactions aren't required anymore. Good Luck, everyone!


I think an apology is in order jelle2503  Angry but this time choose your words wisely
Logged
tmbinc
Global Moderator
Master Hacker
*****
Posts: 286


View Profile
« Reply #17 on: October 19, 2009, 06:51:29 AM »

No, no. It's not just him. Everybody here is good at just a single thing: waiting. And this really applies to almost anyone in this forum, so I'm talking to everyone on this forum, *especially* the people being able to code:

You've been waiting for an xbox 360 hack. Then there was a hack, and you started waiting for a better xbox 360 hack. Then there was a better hack, and you've waiting for code to run. Then there was code to run, but the hack worked only for xenon, so you've been waiting again. Then the hack worked on the other consoles, but you've been waiting for more ports. There have been more ports, but you're waiting for a way to run a dashboard. Now there is a way to run a dashboard, and you've been waiting AGAIN. For a patched kernel. For a launcher. For a development kernel. For more ports. You've always had excuses why something fundamental is still missing. And let me predict: this will never change.

I'm sick of this "let's wait until stuff arrives" attitude. I'm so sick of it that I don't want to be part of it anymore. I had my fun with the 360, and now it's time to let other people have fun with it.

Additionally, this isn't going into the direction I was hoping for, but that's really just something personal. I thought we could do a better job than on original xbox, where people just used the microsoft code to work upon, instead of actually writing own code from scratch. I was wrong. It wasn't possible, not with the people here. That, however, is not your fault, it's just a different set of my goals vs. your goals.
Logged

Please don't copy/quote full text outside this board. Instead, summarize and link to this post. Thanks! This lets me keep information updated and doesn't pull things out of context.
sandungas
Master Hacker
****
Posts: 212



View Profile
« Reply #18 on: October 19, 2009, 07:08:43 AM »

The rebooter uses the hacked smc... and the hacked dump image with xell and smc "injected"... and the king kong exploit... so a lot of hacks are involved
Is a work of lot of people

You all are respected by this
Logged
jester
Master Hacker
****
Posts: 192


View Profile
« Reply #19 on: October 19, 2009, 07:13:01 AM »

That, however, is not your fault, it's just a different set of my goals vs. your goals.
Very true. But do you think this will completely stop developers with the same mindset as you from continuing to develop? You think there will be no more ELF launchers and emulators? I think the development will branch off, not end completely.  Lips Sealed
Logged
Pages: 1 2 3 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC

Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM