Hacking TrustZoneHax on 3.x and below

methamz

Well-Known Member
Member
Joined
Jul 1, 2013
Messages
171
Trophies
0
Age
30
XP
1,080
Country
United States
Thanks, I saw that Im at 4.0.1 unfortunately. Should I update or is it good to be stay at 4.0.1? There is hope for 4.x?
 

subcon959

@!#?@!
Member
Joined
Dec 24, 2008
Messages
5,848
Trophies
4
XP
10,128
Country
United Kingdom
Thanks, I saw that Im at 4.0.1 unfortunately. Should I update or is it good to be stay at 4.0.1? There is hope for 4.x?
There is hope for every firmware, it's all a matter of how patient you are. There will always be people saying it's never gonna happen but for all we know the golden firmware for the Switch ends up being 8.1 or something.

If piracy is important to you then wait for the TX modchip.
 
  • Like
Reactions: machinoman

8BitWonder

Small Homebrew Dev
Member
Joined
Jan 23, 2016
Messages
2,489
Trophies
1
Location
47 4F 54 20 45 45 4D
XP
5,359
Country
United States
I've read everything about it,
I got really curious how did Nintendo patched it in 4.0?
Someone correct me if I'm wrong please, but I believe the TrustZone exploit used between 2.X-3.X isn't known for sure to be patched on 4.X (So maybe it works, maybe it doesn't). Since it relies on kernel, and the kernel bug was fixed in 4.X.
 

Sephirosu

Well-Known Member
Member
Joined
Jan 28, 2015
Messages
266
Trophies
0
Age
34
Location
Boca Raton, Florida
XP
436
Country
Someone correct me if I'm wrong please, but I believe the TrustZone exploit used between 2.X-3.X isn't known for sure to be patched on 4.X (So maybe it works, maybe it doesn't). Since it relies on kernel, and the kernel bug was fixed in 4.X.


From my limited understanding, the backdoor hax for 2-3.x works on 4.x as well but since a memory controller was patched it's harder to get into TZ. Again that's my understanding on the 4.x situation. Could be wrong.
 

Stellar

Well-Known Member
Member
Joined
Jul 20, 2014
Messages
200
Trophies
0
XP
1,784
Country
Portugal
Someone correct me if I'm wrong please, but I believe the TrustZone exploit used between 2.X-3.X isn't known for sure to be patched on 4.X (So maybe it works, maybe it doesn't). Since it relies on kernel, and the kernel bug was fixed in 4.X.

cK14lTj.png
 

Soluble

Well-Known Member
Member
Joined
Mar 12, 2017
Messages
609
Trophies
0
Age
39
XP
588
Country
After a 4 hour Odyssey session last night. I'm quite happy to be on 3.0.2. Game is awesome. Pretty sure it(and mk8) will keep me entertained long enough to wait for homebrew.

While 1.0 may get it first, followed by 2.x and onto 3.0 then 3.x, by the time that comes around there should be some good developments
 

ThisIsDaAccount

Well-Known Member
Member
Joined
Apr 8, 2016
Messages
1,158
Trophies
0
XP
944
Country
United States
Correct me if I'm wrong, but they didn't even bother targeting the kernel, since TrustZone gives them access to everything.
They need kernel access to get to TrustZone. Think of swtich hacking like a ladder, the first ladder step is userland homebrew, the second ladder step is kernel access, the third ladder step is the trustzone. When Nintendo made 4.0, they effectively sawed off the kernel ladder step, leaving a gaping hole in our ladder. This means that that the trustzome ladder step is still there, but we have no way to get to it since we first hsve no way to get through the hole in the middle of the ladder.

--------------------- MERGED ---------------------------

Super excited about this! Although my Switch was 3.0.2 out of the box :s
This seems like it work on 3.0.2, just hang on tight without updating.
 

Jiro2

Well-Known Member
Member
Joined
Mar 28, 2011
Messages
781
Trophies
1
XP
752
Country
United States
If we don't know if Trustzone can be hacked on 4.x, they really shouldn't release the hack for 2.x-3.x. Because if it exists on 4.x, once it's released Nintendo will patch it--and Nintendo doesn't need to find an entry point first before they can do that.
 
  • Like
Reactions: DMG

snoofly

Well-Known Member
Member
Joined
Aug 18, 2015
Messages
1,012
Trophies
0
Age
54
XP
2,133
Country
United Kingdom
They need kernel access to get to TrustZone. Think of swtich hacking like a ladder, the first ladder step is userland homebrew, the second ladder step is kernel access, the third ladder step is the trustzone. When Nintendo made 4.0, they effectively sawed off the kernel ladder step, leaving a gaping hole in our ladder. This means that that the trustzome ladder step is still there, but we have no way to get to it since we first hsve no way to get through the hole in the middle of the ladder.

--------------------- MERGED ---------------------------


This seems like it work on 3.0.2, just hang on tight without updating.
Nice analogy.

People should simply check out the pyramid diagram in the 34c3 slides to understand the basic levels of security and how exploiting one can lead to another.
 

Deleted member 381889

Guide Writer
OP
Member
Joined
Jan 29, 2016
Messages
2,035
Trophies
1
XP
4,420
If we don't know if Trustzone can be hacked on 4.x, they really shouldn't release the hack for 2.x-3.x. Because if it exists on 4.x, once it's released Nintendo will patch it--and Nintendo doesn't need to find an entry point first before they can do that.
TrustZoneHax isn't toing to be released anytime soon lol
Also it does work on 4.x, just there are a few complications stopping it working(?).
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    K3Nv2 @ K3Nv2: https://youtube.com/shorts/fRENPoVaZHk?si=0xgCyaSVzuc5GD5F