Hacking R.I.P. Public CDNSP Cert. as Nintendo Getting Better

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,038
Trophies
2
Age
29
Location
New York City
XP
13,453
Country
United States
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".
 
  • Like
Reactions: Lacius

KsAmJ

Well-Known Member
OP
Member
Joined
Oct 1, 2015
Messages
249
Trophies
0
Age
40
XP
1,160
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".
source?
 
  • Like
Reactions: DubaiKid83

Conex

Well-Known Member
Newcomer
Joined
Jul 21, 2018
Messages
58
Trophies
0
Age
39
XP
259
Country
Australia
The 6.0 thing is true, however still untested in cdnsp as far as grabbing titles besides Firmware Update, the Switch-Hacks discord is currently obtaining a 6.0 cert for tests.
 

Rikikoo

Member
Newcomer
Joined
Aug 1, 2018
Messages
21
Trophies
0
Age
26
XP
246
Country
France
If you take the current public certificate to try and download a system update, it will work. The only reason its not working is because its not on firmware 6.0
That doesn't mean a thing, a tls cert isn't tied to a specific firmware version.
6.0 could've introduced a cryptographic "challenge" (what dauth really is), or a hardcoded value the server expects to see in a request, etc. Could be anything, but nothing that can't be replicated on desktop.
Or, requests now upload a copy of your ticket (what 3ds was changed to), and in that case it's game over unless Nintendo's private key somehow leaks.
 
Last edited by Rikikoo,
  • Like
Reactions: awtgrduzwt5r9

V-Temp

Well-Known Member
Member
Joined
Jul 20, 2017
Messages
1,227
Trophies
0
Age
34
XP
1,342
Country
United States
So since the last thread was locked, a new development has been discovered. Turns out that the CDN server now only accepts requests for everything except system updates if you're on firmware 6.0 and the only way to be on firmware 6.0 without hacks is by going online and downloading the update. So until someone updates to firmware 6.0 officially and dumps their console's certificate, CDNSP is "dead".

How would a tls-cert be tied to a firmware? That doesn't make much sense.

I was under the impression the change was a token challenge from earlier info?
 

Mr_Pichu

かわいいね!
Member
Joined
Dec 10, 2013
Messages
170
Trophies
0
XP
133
Country
United States
I am sure many of us enjoyed the free ride while it lasted. After all it was on the dime of Nintendo and all those third party developers. It dIdn't hurt Nintendo's stock any, but those poor bastard third party and not to forget indie developers.

Just remember, where there is a hack there is a way.
 

bundat

¿
Member
Joined
Jul 25, 2018
Messages
456
Trophies
0
XP
481
Country
Antarctica
If you take the current public certificate to try and download a system update, it will work. The only reason its not working is because its not on firmware 6.0

Wait, does this mean the public cert isn't even banned?
And that the full protocol for 6.0 CDN requests just hasn't been fully RE'd yet, which is causing the CDN error?

Is it possible to request a system update using the older superbanned certs?
(I'd test it myself, as I have copies of the old certs, but I have no idea how to)

Or did they simply change it so that even superbanned certs are able to ask for FW updates, but nothing else?
 
Last edited by bundat,

Lacius

Well-Known Member
Member
Joined
May 11, 2008
Messages
18,100
Trophies
3
XP
18,347
Country
United States
Is anyone aware of a computer application other than CDNSP that can easily check downloaded NSP files for whether or not updates are available? That's really all I ever used CDNSP for.
 

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,038
Trophies
2
Age
29
Location
New York City
XP
13,453
Country
United States
Wait, does this mean the public cert isn't even banned?
And that the full protocol for 6.0 CDN requests just hasn't been fully RE'd yet, which is causing the CDN error?

Is it possible to request a system update using the older superbanned certs?
(I'd test it myself, as I have copies of the old certs, but I have no idea how to)

Or did they simply change it so that even superbanned certs are able to ask for FW updates, but nothing else?
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0
Is anyone aware of a computer application other than CDNSP that can easily check downloaded NSP files for whether or not updates are available? That's really all I ever used CDNSP for.
I've seen people recommend this site: https://www.perfectly-nintendo.com/nintendo-updates/
 
Last edited by Draxzelex,

bundat

¿
Member
Joined
Jul 25, 2018
Messages
456
Trophies
0
XP
481
Country
Antarctica
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0

Oh, I was just thinking of the possibility that they changed the way atum works, and that even if you're CDN banned, they don't block a FW update request (just cause it's weird that they didn't ban the last cert). But if it's confirmed that nothing changed in that regard... then I guess that they really didn't ban this cert :wtf:

In this case, the people who were saying "CDNSP still works, IF the cert owns the game legally" were wrong (was reading this mostly on reddit).
 

Lacius

Well-Known Member
Member
Joined
May 11, 2008
Messages
18,100
Trophies
3
XP
18,347
Country
United States
Basically, the cert's not CDN banned at the very least because if it was, it wouldn't be able to download system updates and CDN bans prevent even system updates from downloading. The CDN's protocol has changed but as you said, we don't quite fully understand what's changed; just what are the side effects of these changes. The old CDN banned certs will still not work as explained above. As long as a cert isn't CDN banned, it can still request system updates without being on firmware 6.0 because how else would Nintendo expect people to update? Its just that all other requests now require the console to be on firmware 6.0
I've seen people recommend this site: https://www.perfectly-nintendo.com/nintendo-updates/
That's something, but I'm going to miss the convenience of having my downloaded games/updates scanned for updates without me having to check them one by one.
 
  • Like
Reactions: Draxzelex

Draxzelex

Well-Known Member
Member
Joined
Aug 6, 2017
Messages
19,038
Trophies
2
Age
29
Location
New York City
XP
13,453
Country
United States
Oh, I was just thinking of the possibility that they changed the way atum works, and that even if you're CDN banned, they don't block a FW update request (just cause it's weird that they didn't ban the last cert). But if it's confirmed that nothing changed in that regard... then I guess that they really didn't ban this cert :wtf:

In this case, the people who were saying "CDNSP still works, IF the cert owns the game legally" were wrong (was reading this mostly on reddit).
Yeah it was just a "scare tactic" since none of the certs were no longer working with CDNSP but I guess they didn't actually know why? At the very least, it seems game updates are now held behind dauth so people who were afraid of bans and with the lack of working public certs might have to rethink their ways (at least from a convenience perspective).
 

huma_dawii

Well-Known Member
Member
Joined
Apr 3, 2014
Messages
3,880
Trophies
2
Age
33
Location
Planet Earth
XP
4,277
Country
United States
Yeah it was just a "scare tactic" since none of the certs were no longer working with CDNSP but I guess they didn't actually know why? At the very least, it seems game updates are now held behind dauth so people who were afraid of bans and with the lack of working public certs might have to rethink their ways (at least from a convenience perspective).
Hopefully this means no ban with updates from XCI games xD
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • Xdqwerty @ Xdqwerty:
    or rather, why?
  • K3Nv2 @ K3Nv2:
    I'm about to buy a $200 flash cart
  • Psionic Roshambo @ Psionic Roshambo:
    I think I have a 256GB card in my 3DS lol
  • Psionic Roshambo @ Psionic Roshambo:
    It's a New 3DS XL so it's still under warranty... If it ever breaks gonna make Nintendo fix it lol You said it was new.... For eternity!!!
  • Psionic Roshambo @ Psionic Roshambo:
    But my 3DS is loaded with emulators and 3DS games and DS games and GBA games probably thousands of games in total lol
  • Xdqwerty @ Xdqwerty:
    Brb going with my dad
  • Xdqwerty @ Xdqwerty:
    @Psionic Roshambo, are most of those games shovelware?
    +1
  • K3Nv2 @ K3Nv2:
    Nah gotta buy 3 1tb SD cards for 3ds the entire libraries need archived in my home
    +1
  • SylverReZ @ SylverReZ:
    >buys x3 1TB SD cards
    >stores the entire 3DS library on them
    >installs CFW
    >realised why I wasted loads of money and resources
    +2
  • Psionic Roshambo @ Psionic Roshambo:
    Lol no I clean my sets
  • K3Nv2 @ K3Nv2:
    Cause it's in my home ready to go
  • K3Nv2 @ K3Nv2:
    Like uremum
  • Psionic Roshambo @ Psionic Roshambo:
    But 100 games on SNES and Genesis and GBA then TG16 and NES and GB and GBC then all the other random systems and arcade games it all adds up lol
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Virtual Boy alone has probably 5 games!!! Lol
    +1
  • K3Nv2 @ K3Nv2:
    I won't mention any names in chat but some of us wastes $300 on preloaded hdds :tpi:
    +1
  • SylverReZ @ SylverReZ:
    @Psionic Roshambo, The PS5 had none.
    +2
  • Psionic Roshambo @ Psionic Roshambo:
    Lol I spent more than that on a stuffed 4TB drive lol
  • K3Nv2 @ K3Nv2:
    Honestly I've yet to fill the 1tb internal drive on my ps5
    +1
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, 1) except final fantasy 16. 2) why would I have a console's whole catalogue if most of the games are either shovelware or terrible games?
  • Psionic Roshambo @ Psionic Roshambo:
    Kind of a waste, but the allure of all those games over 100,000
  • Psionic Roshambo @ Psionic Roshambo:
    Some shovel ware with low ratings you might enjoy more than the ratings would sugest
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Cruisn on the Wii is one of my personal examples of that, it's considered one of the worst games of all time, I loved it and completed it several times.
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    The trick for me was to go into the settings and crank up the Wiimote sensitivity to the max and it gets twitchy but you can win that way lol
  • Psionic Roshambo @ Psionic Roshambo:
    Lots of other games I enjoyed that reviews would say otherwise lol
  • btei @ btei:
    lethal company servers are down rn
    btei @ btei: lethal company servers are down rn