|
lasonnette
|
 |
« Reply #20 on: August 10, 2007, 10:20:21 AM » |
|
I don't know how many burned fuses I have...but my version is pre 4552...something in the 2xxx I have an infectus and eval board for a3p250...no problem in testing..my usb core works also  today I'll at least try to get japanese games working on my console WITHOUT flashing.
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
growlley
|
 |
« Reply #21 on: August 11, 2007, 02:44:51 AM » |
|
Sorry if its a really stupid question Ive not had a morning coffee yet, but am I correct in thinking this method could allso be used to recover boxes with a lost key?
ie use timming attack to run earlier kernel as mention, upgrade to a kk exploitable kernel and then use linux to dump the key and fuses?
thanks
|
|
|
|
|
Logged
|
|
|
|
|
arnezami
|
 |
« Reply #22 on: August 11, 2007, 03:36:54 AM » |
|
Sorry if its a really stupid question Ive not had a morning coffee yet, but am I correct in thinking this method could allso be used to recover boxes with a lost key?
ie use timming attack to run earlier kernel as mention, upgrade to a kk exploitable kernel and then use linux to dump the key and fuses?
thanks
This attack would allow you to downgrade. If you have a completely working xbox it essentially allows you to do all kinds of stuff (because you can extract the cpu key and decrypt the keyvault) like running linux, changing region etc (probably more to come). This is because you can downgrade to an exploitable kernel and extract the important stuff. However right now extracting the keyvault (which also contains the dvd key, i'm presuming thats the "lost key" you are referring to) can only be done using the one and only exploit found so far in early kernel versions (4532, 4548). But you need a working dvd to run the King Kong exploit! Without a dvd key this KK exploit won't work (its a bit of a chicken and egg problem). So if you are referring to the dvd key being lost then this attack alone won't revive your xbox. However if a new exploit is found in any of the early kernel versions that doesn't require a working dvd then this downgrading attack combined with that new exploit will probably do the trick  . Regards, arnezami PS. @lasonnette: sounds like a plan. First trying to get the nand emulator to get to work properly  .
|
|
|
|
« Last Edit: August 11, 2007, 03:47:26 AM by arnezami »
|
Logged
|
|
|
|
|
lasonnette
|
 |
« Reply #23 on: August 11, 2007, 06:20:49 AM » |
|
Do you have enough money to buy 16MB of SRAM? I don't 
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
arnezami
|
 |
« Reply #24 on: August 11, 2007, 06:31:38 AM » |
|
Do you have enough money to buy 16MB of SRAM? I don't  I was referring to you going to change the kv on-the-fly (I assume thats were you were talking about when you said you want to change the region without flashing). Since the kv is quite small (and the CB-auth page even smaller) there is no need for 16 MB of SRAM. So what I meant was not a full NAND emulator but only a partial one (with FIFO)  Regards, arnezami
|
|
|
|
« Last Edit: August 11, 2007, 07:17:38 AM by arnezami »
|
Logged
|
|
|
|
|
lasonnette
|
 |
« Reply #25 on: August 11, 2007, 06:44:29 AM » |
|
In the evening I will post results...
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
growlley
|
 |
« Reply #26 on: August 11, 2007, 08:57:54 AM » |
|
Arnezami, thanks for the reply it was dvd key from the key vault I ment. To avoid the 'Chicken and egg' situation, could you downgrade the kernel and then upgrade to the exploitable version and run the KK exploit off a modified kiosk disk?
|
|
|
|
|
Logged
|
|
|
|
|
arnezami
|
 |
« Reply #27 on: August 11, 2007, 09:06:26 AM » |
|
Arnezami, thanks for the reply it was dvd key from the key vault I ment. To avoid the 'Chicken and egg' situation, could you downgrade the kernel and then upgrade to the exploitable version and run the KK exploit off a modified kiosk disk?
No. The kiosk disc is revoked for 4532 and 4548.
|
|
|
|
« Last Edit: August 11, 2007, 09:22:00 AM by arnezami »
|
Logged
|
|
|
|
|
lasonnette
|
 |
« Reply #28 on: August 11, 2007, 02:21:59 PM » |
|
bloody f****** hell, I still haven't managed to retrieve my CPU key...this console hates me... first I burned King Kong, fully stealthed, and then it wouldn't boot (It showed the microsoft logo and then it just blocked at that...) now I'm burning it again...if it doesn't work then screw this. and I burned the 4548 update a dozen times on cd-r, still doesn't work...shows as mixed media disc  gears of war plays good though. I give up. I'm frustrated. I have 1 DL left. Screw this.
|
|
|
|
« Last Edit: August 11, 2007, 03:16:03 PM by lasonnette »
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
Ellex80
Guest
|
 |
« Reply #29 on: August 11, 2007, 03:28:27 PM » |
|
im not sure , but i only know about the hd-dvd update cd . this update is kernel 4532 . burn the cd with xp ( default.xex + system update) but first check the md5sum http://www.free60.org/wiki/Kernelhttp://www.free60.org/wiki/First_Stepsand i recommend to flash your drive with "non stealth" firmware . i.e. xtreme5.3 works fine , and linux boots fine , too . sorry for bad english.
|
|
|
|
|
Logged
|
|
|
|
|
lasonnette
|
 |
« Reply #30 on: August 11, 2007, 04:18:18 PM » |
|
I've tried 59 1.7, 59 2.4, 78 2.4, 78 1.7... (Hitachi) also the ixtremes...I found ONE more DL, let's just hope it'll work... (btw, it's Mediarange...I hear they're really good...) wish me luck...
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
arnezami
|
 |
« Reply #31 on: August 12, 2007, 03:00:22 AM » |
|
bloody f****** hell, I still haven't managed to retrieve my CPU key...this console hates me... first I burned King Kong, fully stealthed, and then it wouldn't boot (It showed the microsoft logo and then it just blocked at that...) now I'm burning it again...if it doesn't work then screw this. and I burned the 4548 update a dozen times on cd-r, still doesn't work...shows as mixed media disc  gears of war plays good though. I give up. I'm frustrated. I have 1 DL left. Screw this. To isolate your problem you might wanna burn the unpatched KK iso onto a disc and see if it works. Then you can better determine whats causing the problem: media / iso / patch / fw. Assuming you wanna get your cpu key at some time anyway... Regards, arnezami
|
|
|
|
« Last Edit: August 12, 2007, 03:04:12 AM by arnezami »
|
Logged
|
|
|
|
|
lasonnette
|
 |
« Reply #32 on: August 12, 2007, 04:50:59 AM » |
|
It's my burner. I tried burning a perfect copy of GOW and it didn't work (ripped correctly!)...it still said "write overburn" in CloneCD...
Ohwell, we'll have to wait until I get a Pioneer burner...
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
tumba
|
 |
« Reply #33 on: August 16, 2007, 09:01:16 PM » |
|
no updates for a long time, what is going on ?
|
|
|
|
|
Logged
|
|
|
|
|
lasonnette
|
 |
« Reply #34 on: August 17, 2007, 09:03:32 AM » |
|
erm, today I found a company that sells DVR-112D in my country and I travelled the long way to get one  so HOPEFULLY news this evening (that is if it burns perfectly and I can retrieve my CPU key)
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
lasonnette
|
 |
« Reply #35 on: August 17, 2007, 06:03:53 PM » |
|
OK, so I've been able to boot Gentoo Linux (yay), but still haven't retrieved my fuseset... Tomorrow I'll build that serial cable and then we'll see...
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
jas0nuk
|
 |
« Reply #36 on: August 18, 2007, 05:22:09 AM » |
|
You could use XeLL which prints it to screen on boot 
|
|
|
|
|
Logged
|
|
|
|
|
parasven
|
 |
« Reply #37 on: August 18, 2007, 05:42:59 AM » |
|
@lasonette does this mean that you were able to downgrade via the timing attack ? 
|
|
|
|
|
Logged
|
|
|
|
|
lasonnette
|
 |
« Reply #38 on: August 18, 2007, 09:10:46 AM » |
|
not yet...I have yet to confirm if my idea of on-the-fly patching works... and I don't know how besides changing something in the keyvault (like region) to prove it works... my problem now is that I can't access my usb stick or ipod...no root = no mount  anyone know the root password for the newest gentoo live cd?
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|
lasonnette
|
 |
« Reply #39 on: August 18, 2007, 10:13:18 AM » |
|
alright, got my 1BL, fuseset and the nand flash dump (thanks arnezami!) trying region change now! laters
|
|
|
|
|
Logged
|
Big party tonight! Where? Your mouth! Who's coming? Everybody!
|
|
|
|