XboxHacker BBS
 
*
Welcome, Guest. Please login or register.
Did you miss your activation email?
May 21, 2013, 09:40:14 PM


Login with username, password and session length


Pages: « 1 2 3 4 »
  Print  
Author Topic: If you have updated to dash 8XXX or above - what can you do - read HERE !  (Read 55709 times)
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #40 on: January 24, 2010, 10:59:45 AM »

Yes, something DID change in hardware. They blew efuses. And it's not about money.. people have been working on this for years.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
n00bpwner360
Xbox Hacker
*****
Posts: 615


View Profile
« Reply #41 on: January 24, 2010, 11:03:46 AM »

The existing hack methods do not work on 8xxx consoles simply because of this. 8xxx updates install a new bootloader which will only boot 8xxx kernels. The current JTAG hack at some point in the boot process loads a 4xxx kernel because 2 of the 4xxx kernels were exploitable (4532 was it? 4548? I always forget)

Without the ability to boot a 4xxx kernel, you can't run the hack. And the new 8xxx bootloader does just that, restricts booting to anything but 8xxx and above.

Why can't we downgrade the bootloader to the old one? The one that boots any kernel? Well because an efuse is burned to prevent any lower bootloader from booting.

Basically

console does this

get efusevalue;
If(efusevalue == newbootloadervalue && bootloaderinnand==oldbootloader )
{do not boot;}
If(efusevalue == newbootloadervalue && bootladerinnand==newbootloader)
{boot;}

However the old consoles that haven't been updated to 8xxx, the efuse value that the Xbox retrieves, isn't == newbootladervalue, its == oldbootloadervalue, and the oldbootladerinnand will boot;

Am I making any sense? I tried to make it as simple and dumbed down as I could.

Рубить существующие методы не работают на 8xxx консоль просто из-за этого. 8xxx обновлений установите новый загрузчик которая будет загружаться только 8xxx ядер. Нынешний JTAG рублю в определенный момент в процессе загрузки нагрузок 4xxx ядра, поскольку 2 из 4xxx орехов были Пригодный (4532 это было? 4548? Я всегда забывают)

Без способности к загрузке 4xxx ядра, вы не можете запустить рубить. А новые 8xxx загрузчик делает как раз то, ограничивает загрузку ни к чему, но 8xxx и выше.

Почему мы не можем понизить загрузчик в старый? Тот, что любое ядро сапогах? Ну так efuse сжигается для предотвращения любой загрузчик из нижней загрузкой.

Основной

Консоль это

получить efusevalue;
Если (efusevalue == newbootloadervalue & & bootloaderinnand == oldbootloader)
(DO NOT загрузкиWink
Если (efusevalue == newbootloadervalue & & bootladerinnand == newbootloader)
(BOOT;)

Однако старые приставки, которые не были обновлены до 8xxx, efuse значение, которое извлекает Xbox, не == newbootladervalue, его == oldbootloadervalue и oldbootladerinnand будет загружаться;

Я каких-либо смысл? Я попытался сделать его максимально простым и упрощенных вниз, как только мог.
Рубить, звучит сочень смешно в переводе с англиского на руский, наверно также и я писал с русского на англиский))))
Thanks Wink
сегодня сниму прошивку с Xbox kernel 8xxx (нужно идти к другу, так как у меня notebook) и буду ее смотреть, моя цель вытащить DVD key, так как привод у меня умер. Спасибо всем большое больше не буду беспокоить. Если что-то получиться напишу

If I'm understanding you correctly you want to extract your DVD key from your 8xxx firmware? That's not possible because the DVD key is encrypted using the CPU key. Unless you know the CPU key you cannot decrypt the DVD key from the flash.
Logged

yeah lowering the default reading speed from 12x to let's say 5x, would really let GTA4 (or any of your games) benefit from way less popups and loading times.
ZerOneX
Master Hacker
****
Posts: 255



View Profile
« Reply #42 on: January 29, 2010, 02:59:14 PM »

So guys... just to simplify

- Original Dash and R6T3 - no problem

- Original Dash and no R6T3 - Error E80

- XBReboot and R6T3 - no problem, but efuses can blow with "true" updates.

- XBRebbot and no R6T3 - no problem and eFuses will not blow with "true" updates.


Am I right??

Thanks.
Logged

Just a noob in search of knowledge!
makemebad
Newbie
*
Posts: 1


View Profile
« Reply #43 on: January 29, 2010, 04:45:54 PM »

Guys, i have few boxes from 2006 with 2859 and few with new update. How can i help you?
Logged
Joka Macer
Member
**
Posts: 37


View Profile
« Reply #44 on: January 29, 2010, 04:53:31 PM »

Makemebad,

can you send 1 to me ?

regards,

Joka Macer
Logged
ZerOneX
Master Hacker
****
Posts: 255



View Profile
« Reply #45 on: February 02, 2010, 01:42:49 PM »

Anyone could answer my question please?

Thanks folks.
Logged

Just a noob in search of knowledge!
ReverseAffect
Xbox Hacker
*****
Posts: 1345

360Reball


View Profile WWW
« Reply #46 on: February 02, 2010, 07:28:15 PM »

So guys... just to simplify

- Original Dash and R6T3 - no problem

- Original Dash and no R6T3 - Error E80

- XBReboot and R6T3 - no problem, but efuses can blow with "true" updates.

- XBRebbot and no R6T3 - no problem and eFuses will not blow with "true" updates.


Am I right??

Thanks.

XBRebbot and no R6T3 - no problem and eFuses will not blow with "true" updates

correct...the only update it might ask for is for the avatars...so not a problem there
your safe...
Logged

sick like a mofo..not reballing for a while...
ReverseAffect
Xbox Hacker
*****
Posts: 1345

360Reball


View Profile WWW
« Reply #47 on: February 02, 2010, 07:29:51 PM »

Guys, i have few boxes from 2006 with 2859 and few with new update. How can i help you?

help us with what?Huh

you can jtag them boxes and have fun with homebrew...that's helping...lol
Logged

sick like a mofo..not reballing for a while...
psybersoma
Member
**
Posts: 11


View Profile
« Reply #48 on: February 17, 2010, 08:36:24 AM »

The existing hack methods do not work on 8xxx consoles simply because of this. 8xxx updates install a new bootloader which will only boot 8xxx kernels. The current JTAG hack at some point in the boot process loads a 4xxx kernel because 2 of the 4xxx kernels were exploitable (4532 was it? 4548? I always forget)

Without the ability to boot a 4xxx kernel, you can't run the hack. And the new 8xxx bootloader does just that, restricts booting to anything but 8xxx and above.

Why can't we downgrade the bootloader to the old one? The one that boots any kernel? Well because an efuse is burned to prevent any lower bootloader from booting.

Basically

console does this

get efusevalue;
If(efusevalue == newbootloadervalue && bootloaderinnand==oldbootloader )
{do not boot;}
If(efusevalue == newbootloadervalue && bootladerinnand==newbootloader)
{boot;}

However the old consoles that haven't been updated to 8xxx, the efuse value that the Xbox retrieves, isn't == newbootladervalue, its == oldbootloadervalue, and the oldbootladerinnand will boot;

Am I making any sense? I tried to make it as simple and dumbed down as I could.


so if someone got crafty enough to write a new 8XXX bootloader that looked like 8XXX and was 8XXX, but booted up everything that was thrown at it, wouldn't that work??

I guess the next stage in this XBOX 360 hacking is to figure out what M$ is doing to build these updates and create a modified one that looks just like a legit update, but is custom code and then once flashed it blows some efuses as well sothat any future updates from M$ will be denied..

anything is possible..

not sure if there will be a 360 emulator out for those of us who have highend gaming rigs...  I'm sure if there was, then that would be quite interesting.. running homebrew in a virtual instance of a xbox360 on a quad-core rig with a ATI 5870 or Nvidia GTX 300 series...  Roll Eyes
Logged
Joka Macer
Member
**
Posts: 37


View Profile
« Reply #49 on: February 17, 2010, 09:02:56 AM »

Quote from: globolizator on January 16, 2010, 03:01:50 AM
The existing hack methods do not work on 8xxx consoles simply because of this. 8xxx updates install a new bootloader which will only boot 8xxx kernels. The current JTAG hack at some point in the boot process loads a 4xxx kernel because 2 of the 4xxx kernels were exploitable (4532 was it? 4548? I always forget)

Without the ability to boot a 4xxx kernel, you can't run the hack. And the new 8xxx bootloader does just that, restricts booting to anything but 8xxx and above.

Why can't we downgrade the bootloader to the old one? The one that boots any kernel? Well because an efuse is burned to prevent any lower bootloader from booting.

Basically

console does this

get efusevalue;
If(efusevalue == newbootloadervalue && bootloaderinnand==oldbootloader )
{do not boot;}
If(efusevalue == newbootloadervalue && bootladerinnand==newbootloader)
{boot;}

However the old consoles that haven't been updated to 8xxx, the efuse value that the Xbox retrieves, isn't == newbootladervalue, its == oldbootloadervalue, and the oldbootladerinnand will boot;

Am I making any sense? I tried to make it as simple and dumbed down as I could.


so if someone got crafty enough to write a new 8XXX bootloader that looked like 8XXX and was 8XXX, but booted up everything that was thrown at it, wouldn't that work??

I guess the next stage in this XBOX 360 hacking is to figure out what M$ is doing to build these updates and create a modified one that looks just like a legit update, but is custom code and then once flashed it blows some efuses as well sothat any future updates from M$ will be denied..

anything is possible..

not sure if there will be a 360 emulator out for those of us who have highend gaming rigs...  I'm sure if there was, then that would be quite interesting.. running homebrew in a virtual instance of a xbox360 on a quad-core rig with a ATI 5870 or Nvidia GTX 300 series...  Roll Eyes

For psybersoma,

i came here to see "what i can do in F&%%¨&&&¨%$ dash 8xxx"!!!

no for more and more speculation!!!


I think everyone is like me...

i tired of this, then so if you have serious idea, or something real to do, post here...otherwise NO!!!
« Last Edit: February 17, 2010, 09:44:49 AM by Joka Macer » Logged
ReverseAffect
Xbox Hacker
*****
Posts: 1345

360Reball


View Profile WWW
« Reply #50 on: February 17, 2010, 09:10:03 AM »

i came here to see "what i can do in F&%%¨&&&¨%$ dash 8xxx"!!!

no for more and more speculation!!!


I think everyone is like me...

i tired of this, then so if you have serious idea, or something real to do, post here...otherwise NO!!!

you can't do a dam thing with it, as in jtagging and homebrew....
can't you read or what?
speculation? it's a fact....hardware stops you, software stops you... it ain't speculation..
« Last Edit: February 17, 2010, 09:11:58 AM by ReverseAffect » Logged

sick like a mofo..not reballing for a while...
dtrmad2004
Master Hacker
****
Posts: 138


View Profile
« Reply #51 on: February 17, 2010, 11:54:36 AM »

@psybersoma To do such things you would need the MS private key as everything is signed with it.

If you had that then you would not need to hack the dash, you could sign your own Xex's
Logged
readerfeifei
Newbie
*
Posts: 2


View Profile
« Reply #52 on: February 22, 2010, 01:56:30 PM »

As I am in 8498 ,Something I have to do and I can only do is to remove the r6t3?
Logged
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #53 on: February 22, 2010, 02:02:29 PM »

What for? you can't do the jtag hack on it, no point in preventing updates and keeping new games from working.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
readerfeifei
Newbie
*
Posts: 2


View Profile
« Reply #54 on: February 22, 2010, 02:15:56 PM »

Because,you just said that "With some luck this may get read and understood by people who have just updated their vulnerable consoles to 8xxx or beyond.The simplest solution if you want to keep an exploitable console, is to remove the R6T3 resistor which permanently disables efuse blowing."
So forgive me,if there are some misunderstandings,I have bought my xbox three days ago,I'm a green hand  .
Logged
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #55 on: February 22, 2010, 04:31:04 PM »

Your console isn't exploitable anymore, so there is no point in removing the resistor. It's meant to keep the consoles that are still exploitable from accidently being updated.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
cfw34683
Newbie
*
Posts: 1


View Profile
« Reply #56 on: April 05, 2010, 01:41:29 AM »

I'll bet 20 bucks that the dude GeoHot, the guy that hacked the PS3 after 3.6 years of being called UNHACKABLE. Could do it. Hell, he hacked the unhackable Iphone.
Logged
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #57 on: April 05, 2010, 02:23:07 AM »

Yeah, he also hacked a great photoshopped screenshot. You'd lose those 20 bucks verrrry quickly.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
tsvetko
Newbie
*
Posts: 3


View Profile
« Reply #58 on: June 20, 2010, 08:25:30 AM »

How about:
1. Applying an old update e.g. 2241 to get the old dashboard
2. desoldering R6T3 to stop all eFuses from burning
3. compiling one really old kernel with proper cb/cd, etc. (e.g. 2241). This update does not blow a eFuse as far as I know, so it should not check for blown ones I suggest
4. then flashing this kernel to the console nand (a whole 16MB image I mean).
5. then if the console bootts normally, put a 10k resistor at R6T3 to restore its functioning
6. Applying regular update (e.g. 7371 kernel)
7. Do the JTAG?

Is this going to work?


Logged
Arakon
Administrator
Xbox Hacker
*****
Posts: 6925


View Profile
« Reply #59 on: June 20, 2010, 09:26:03 AM »

Did you even bother to read ANYTHING? You can't get the old dashboard. If it was that easy, everyone would be doing that already. Old Dashboards no longer run. Also, in order to compile a new kernel, you'd need the CPU key, which you can't get.
Logged

I do NOT give support by email, PM, ICQ or whatever. Anyone annoying me that way will have his balls removed. With a rusty butterknife. Slowly. And I'll enjoy doing it.
Pages: « 1 2 3 4 »
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC

Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM