Go Back   TehSkeen.com > TehSkeen Newz > Nintendo Wii News

Mini Skeen Menu
Main News Page Online Discussion Forums Downloads Database Console Modification Reviews IRC Chat Information Contests
Network Links
Network Links
Active Threads
52 soft mod and neogamma problem
Last Post: steplay29
Posted On: Today
Replies: 0
Views: 15
102 Theater Room, Nintendo’s Video On Demand Service Launches Tomorrow
Last Post: kgonepostl
Posted On: Today
Replies: 21
Views: 533
102 WODE vs. NSMB
Last Post: R3dfaction
Posted On: Today
Replies: 3
Views: 180
0 I have a problem
Last Post: R3dfaction
Posted On: Today
Replies: 31
Views: 601
0 NTSC to PAL Patch or Tool?
Last Post: Cheerethync
Posted On: Today
Replies: 35
Views: 3,517
255 Supercard DSTWO announced
Last Post: R3dfaction
Posted On: Today
Replies: 2
Views: 128
0 Wii gives no signal....
Last Post: cobleman
Posted On: Today
Replies: 2
Views: 211
0 any reviews on this
Last Post: cobleman
Posted On: Today
Replies: 5
Views: 316
0 can u help plz?
Last Post: cobleman
Posted On: Today
Replies: 5
Views: 295
0 USA NTSC Gamecube without a Power Supply , can i use a PAL PSU ?
Last Post: sanlink
Posted On: Today
Replies: 7
Views: 465
0 SDL MAME Wii
Last Post: lettuce
Posted On: Today
Replies: 241
Views: 16,739
0 load from other media
Last Post: 101sparky
Posted On: Today
Replies: 6
Views: 542
0 Alcohol (Isopropyl) to clean pins on Official GC Mem Card ?
Last Post: 101sparky
Posted On: Today
Replies: 5
Views: 473
0 Problems with SD-BOOT 0.4F on Gamecube
Last Post: 101sparky
Posted On: Today
Replies: 7
Views: 851
0 Best GCM shrinker
Last Post: 101sparky
Posted On: Today
Replies: 7
Views: 1,372
203 Crap 2.4b Released
Last Post: dorm3nt
Posted On: Today
Replies: 3
Views: 215
0 GCN/Wii SD Media Launcher , one for all regions ?
Last Post: 101sparky
Posted On: Today
Replies: 4
Views: 906
0 So I burnt some working backup discs, but...
Last Post: 101sparky
Posted On: Today
Replies: 2
Views: 321
0 Odd pot settings.
Last Post: 101sparky
Posted On: Today
Replies: 2
Views: 367
More...

Zelda Exploit - Run Unsigned Code w/o Modchip
  #1  
Old 01-27-2008, 01:48 AM
brakken's Avatar
brakken brakken is offline
Brakkenator
 
Join Date: Jul 2005
Location: USA
Posts: 18,097
Send a message via AIM to brakken Send a message via MSN to brakken
Exclusive Release Zelda Exploit - Run Unsigned Code w/o Modchip



Here is a screen shot of an error in Zelda for the Nintendo Wii. So, what's so important about this particular error? Well, let's compare this to the GTA Exploit for the Sony PSP. Yes, that's right.

Bushing along with Segher have been able to modify a save game from Zelda to crash the machine and to run their own code on it. Note that you won't even need to "mod" your Nintendo Wii to run this exploit.


Last edited by brakken; 01-27-2008 at 01:51 AM..
Reply With Quote

  #2  
Old 01-27-2008, 01:51 AM
brakken's Avatar
brakken brakken is offline
Brakkenator
 
Join Date: Jul 2005
Location: USA
Posts: 18,097
Send a message via AIM to brakken Send a message via MSN to brakken
Exclusive Release

Yes, that's right - an exploit for the Nintendo Wii has been discovered and it allows you to run custom code. The method is pretty simple. Copy over a save file for Zelda, load it and the code runs. Don't get too excited yet. They have only been able to run 4 lines of code, but this is in a days work.

Segher was the one to find the exploit and Bushing has been testing it out with the aid of the USB Gecko. The process is far from simple as once you modify a save game it requires it be to signed with 3 keys. Here's some info from Bushing.

"Once the Wii decrypts the save game, it checks its signature. Every Wii has its own private key which is used to sign save games, and when you save a game, the Wii actually saves three bits of data:

* The encrypted save game
* The signature for the save game (using your console's private key)
* A copy of your console's public key, signed by Nintendo."

Of course, the end user wouldn't have to go through this process unless they were wanting to inject their own code into the save game, but that shouldn't be necessary because when I asked Bushing what his goal was he answered:

"Assuming we don't run into a wall, it should be able to lead to a homebrew loader. I hope. No promises. :)"



- (Digg It!) -

Last edited by brakken; 01-27-2008 at 02:01 AM..
Reply With Quote

  #3  
Old 01-27-2008, 02:43 AM
smurfro smurfro is offline
new member
 
Join Date: Aug 2005
Posts: 23
Default

Is it possible to see a video of this buffer overflow? Or better... a savegame that we can use to see with our eyes?
Reply With Quote

  #4  
Old 01-27-2008, 04:09 AM
fagmaster fagmaster is offline
Banned
 
Join Date: Feb 2007
Posts: 35
Default

That is just awesome. Good work Bushing + Others, hope to see some more soon!
Reply With Quote

  #5  
Old 01-27-2008, 05:37 AM
PalmPal PalmPal is offline
new member
 
Join Date: Apr 2007
Posts: 23
Default

The Zelda exploit (using the GameCube Epona buffer overflow) is in the early
stages, but they managed to get access to the VI buffer
http://www.flickr.com/photos/2321848...7603803895873/
Reply With Quote

  #6  
Old 01-27-2008, 06:03 AM
nehe32 nehe32 is offline
new member
 
Join Date: Oct 2007
Posts: 24
Default

hey guys, just was kinda made a link maybe between those public wii tools Segher released and the save game editing

http://git.infradead.org/?p=users/segher/wii.git

there are some makefiles and savegame decrypters there but i havent downloaded or tested any yet
Reply With Quote

  #7  
Old 01-27-2008, 06:30 AM
gth44331 gth44331 is offline
new member
 
Join Date: Jul 2007
Posts: 2
Default


Why does it all have to be so damn hard to UNDERSTAND!? :'( I can't make head nor tail of that infradead.org link. All I know is that it's source code. Why can't someone release binaries as well?
Reply With Quote

  #8  
Old 01-27-2008, 07:17 AM
Auyx3636's Avatar
Auyx3636 Auyx3636 is offline
new member
 
Join Date: Sep 2007
Posts: 20
Default

Wow this looks like it could be very promising. There has been a lot of development towards a full homebrew loader over the last month or so. I cant wait to see what happens next.
Reply With Quote

  #9  
Old 01-27-2008, 07:39 AM
brakken's Avatar
brakken brakken is offline
Brakkenator
 
Join Date: Jul 2005
Location: USA
Posts: 18,097
Send a message via AIM to brakken Send a message via MSN to brakken
Default





Nice work, eh? :)

Last edited by brakken; 01-27-2008 at 08:42 AM..
Reply With Quote

  #10  
Old 01-27-2008, 07:45 AM
azeazezar azeazezar is offline
mad poster
 
Join Date: Jan 2008
Posts: 208
Default

Yes, exectly wat we are all waiting for.
Thank you for yer hard work so far.
Running homebrew on an unmodded wii, i just hope this will work with a pal wii.
Reply With Quote

  #11  
Old 01-27-2008, 01:12 PM
bowmessage bowmessage is offline
new member
 
Join Date: Jan 2008
Posts: 2
Default

that flickr pic is from the gamecube version.. does that matter?
Reply With Quote

  #12  
Old 01-28-2008, 02:29 AM
azeazezar azeazezar is offline
mad poster
 
Join Date: Jan 2008
Posts: 208
Default

The quest log pic is from wii version (up 3 post).
But watever, i dun care if its wii or gc version, as long as wii is hacked...

EDIT: The other pics in this threat are wii as well,
you can see that little fairy that sits where you aim yer wiimote.

Last edited by azeazezar; 01-28-2008 at 02:37 AM..
Reply With Quote

  #13  
Old 01-28-2008, 12:22 PM
GandalfTheWhite GandalfTheWhite is offline
member
 
Join Date: Dec 2005
Posts: 40
Default


I'm hoping you won't need an actual copy of zelda to get the loader going (once they code one). I already have it for GC.
Reply With Quote

  #14  
Old 01-29-2008, 03:45 AM
Don Giovanni Don Giovanni is offline
mad poster
 
Join Date: Nov 2005
Posts: 102
Smile

For now, likely you will need the Wii version to get homebrew going in wii mode, but with the info we have can't really say. GC homebrew will likely be launchable with the wii game in time.

Using the overflow from GC mode and trying to reset the wii hardware so the other components would turn on could be overly complicated (or not possible since it seems to involve a reset of sorts to go back to wii mode)...but then again you never know. For now it just seems like staying in wii mode from the start is the best route.

Anyways, its amazing to see the progress that has been made in the past few months. Keep up the good work guys!

*edit* of course if you have a modchip backups will work for this (thinking now that's probably what you were getting at)
Reply With Quote

  #15  
Old 01-29-2008, 02:27 PM
Jaymes Jaymes is offline
new member
 
Join Date: Jan 2008
Posts: 1
Default

Wait. So once this is further in development will it work on the Wii and GC version or just one of them?
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On

Forum Jump



All times are GMT -4. The time now is 03:03 PM.


vBulletin skins developed by: eXtremepixels
Powered by vBulletin® Version 3.8.3
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
All Original Content (C) 2005-2008 brakken, All Rights Reseverd