XboxHacker BBS
 
*
Welcome, Guest. Please login or register.
Did you miss your activation email?
May 24, 2013, 11:48:25 PM


Login with username, password and session length


Pages: « 1 2 3
  Print  
Author Topic: RGH Explained  (Read 12440 times)
RnRdude
Member
**
Posts: 43


View Profile
« Reply #40 on: June 14, 2012, 11:18:33 AM »

New System Update 2.0.15572.0

XOR hack has been patched, RC4 crypto has been changed.. this is the moment of truth is the RGH hack going to survive.
Logged
peshkohacka
Master Hacker
****
Posts: 276


View Profile
« Reply #41 on: June 14, 2012, 03:28:26 PM »

Guess 1BL glitching would be the way to go, if the crypto is solid this time.
Logged
miki4
Member
**
Posts: 44


View Profile
« Reply #42 on: June 14, 2012, 05:10:16 PM »

What would be 1BL glitching good for when we cannot alter it?
Logged
peshkohacka
Master Hacker
****
Posts: 276


View Profile
« Reply #43 on: June 14, 2012, 05:33:31 PM »

You don't need to alter it, you need to pass its verification system. If MS chose to encrypt CB_A with the cpukey then you'll have to bring back zero-paired mode to get successfully to CB_B init, but i failed to see the interest at new consoles, there are currently millions of consoles running pre 15XXX and soon all of them (to be precise - Coronas) will be glitchable.
Logged
RnRdude
Member
**
Posts: 43


View Profile
« Reply #44 on: June 14, 2012, 07:33:40 PM »

If i remember correctly the rc4 encryption starts at cb_b so yeah 1bl glitching would bypass it maybe,, because cb_a is starting the rc4 encyption and if you glitch 1bl you can simply patch cb_a so that it will accept a non rc4 crypted cb_b.
« Last Edit: June 14, 2012, 07:41:32 PM by RnRdude » Logged
RnRdude
Member
**
Posts: 43


View Profile
« Reply #45 on: June 15, 2012, 09:45:50 AM »

What would be 1BL glitching good for when we cannot alter it?

RGH hack glitches now CB_A so CB_B can be patched but CB_A not, IF 1bl is glitched patching CB_A would be possible.

Logged
Repoman 108
Newbie
*
Posts: 1


View Profile
« Reply #46 on: August 25, 2012, 12:53:23 AM »

Does anybody know anything about the new Corona v3? Irrespective of the new 15574 dashboard, I heard from a friend that it has a redesigned CPU to prevent the RGH. Thoughts?
Logged
RnRdude
Member
**
Posts: 43


View Profile
« Reply #47 on: October 30, 2012, 08:30:23 AM »

CR3PRO & CR3-DGX addon defeats new rc4 encryption. dashboards 15** are glitchable now.
« Last Edit: October 30, 2012, 08:37:01 AM by RnRdude » Logged
MastaG
Master Hacker
****
Posts: 343


What have you done for me lately?


View Profile
« Reply #48 on: October 30, 2012, 12:05:47 PM »

Lets wait for these changes to be included in xeBuild then Smiley

EDIT: After reading TX's frontpage, they'll be releasing special CR3-DGX addon for their new CR3 Pro glitcher that will be able to extract the cpu-key from 15xxx and newer consoles.
After you have the key, you can use it to build a freeboot image.
Too bad the addon only works with their CR3 Pro, must be a pricey deal.
I'd rather see a stand-alone addon for extracting the cpu-key, so I can use a cheaper board for glitching..
« Last Edit: October 31, 2012, 05:03:58 AM by MastaG » Logged

I understand. You found paradise in America, you had a good trade, you made a good living.
The police protected you and there were courts of law.
And you didn't need a friend like me.
But, uh, now you come to me, and you say: "Don Corleone, give me justice."
But you don't ask with respect.
You don't offer friendship.
You don't even think to call me Godfather.
Instead, you come into my house on the day my daughter is to be married, and you ask me to do murder for money.
RnRdude
Member
**
Posts: 43


View Profile
« Reply #49 on: October 31, 2012, 06:09:39 AM »

Who cares you only need 1 cr3pro and 1 dgx.. after you retrieved your cpukey you can install whatever chip you like.. anybody here an clue in how TX did it destroying the new crypto ? probably an different glitch point ?
Logged
peshkohacka
Master Hacker
****
Posts: 276


View Profile
« Reply #50 on: October 31, 2012, 12:49:22 PM »

If hardware is involved and high-precision is required, might be something like the Infectus bruteforcer that was released in the early days, im not sure thought, but i doubt we'll see something never seen-before.
Logged
RnRdude
Member
**
Posts: 43


View Profile
« Reply #51 on: November 02, 2012, 09:49:47 AM »

from tx forum

1. You can extract your CPU KEY from any version console regardless of dashboard version. You don't even need to have a full NAND dump or even a working NAND to do it. We expect this to work on all future releases (you should know that the method was designed on 15574 before 16XXX came out and worked first time). Game over.


They say that its unpatchable would be cool if true Smiley
Logged
peshkohacka
Master Hacker
****
Posts: 276


View Profile
« Reply #52 on: November 02, 2012, 02:17:01 PM »

Sounds like a 1BL memcmp vuln, but we'll see.
Logged
SOWA_PL
Master Hacker
****
Posts: 113



View Profile
« Reply #53 on: November 04, 2012, 05:53:27 AM »

Did they say that there will be possible to RGH it or only just get CPU Key?  Smiley
Logged
RnRdude
Member
**
Posts: 43


View Profile
« Reply #54 on: November 04, 2012, 08:11:30 AM »

Did they say that there will be possible to RGH it or only just get CPU Key?  Smiley

yeah ofcourse you have to install cr3pro +the dgx addon after you have the cpu key you can install different chip or leave the cr3pro in place.
Logged
RnRdude
Member
**
Posts: 43


View Profile
« Reply #55 on: November 04, 2012, 10:04:47 AM »

Sounds like a 1BL memcmp vuln, but we'll see.

It seems so indeed.
Logged
Pages: « 1 2 3
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.11 | SMF © 2006-2009, Simple Machines LLC

Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM