Any Xbox 360 can now be hacked in less than one minute (www.youtube.com)
from Aielman15@lemmy.world to games@lemmy.world on 12 Aug 06:27
https://lemmy.world/post/34321000

#games

threaded - newest

Truscape@lemmy.blahaj.zone on 12 Aug 06:52 next collapse

MVG finally lands on lemmy, let’s go!

daggermoon@lemmy.world on 12 Aug 08:32 collapse

I like his videos a lot.

banause@feddit.org on 12 Aug 08:16 next collapse

I have one at home and it’s still not hacked.

Spuddlesv2@lemmy.ca on 12 Aug 08:50 collapse

I’ve got three. All RROD’d.

Aielman15@lemmy.world on 12 Aug 08:34 next collapse

Tangentially related: how do I make YT thumbnails (or any thumbnail, for that matter) show on Lemmy posts?

any1th3r3@lemmy.ca on 12 Aug 08:39 next collapse

The thumbnail shows up just fine on Voyager FWIW.

Aielman15@lemmy.world on 12 Aug 11:06 next collapse

Uh. I never see thumbnails on my posts on either my app (Lemmy) or pc (either the standard lemmy site or Alexandrite). Maybe Voyager has a built-in functionality that allows it to fetch the thumbnails frok YT when they are missing in the post itself?

leavemealone@sh.itjust.works on 12 Aug 11:06 collapse

Same on Boost

drspod@lemmy.ml on 12 Aug 14:05 collapse

You can get the URL of the thumbnail from the youtube page and then enter that URL in the “thumbnail URL” text-box when creating/editing your post.

CallMeAnAI@lemmy.world on 12 Aug 08:59 next collapse

(x) doubt.

I’m not watching this dumb video to find out about every edge case is being exploited.

Aielman15@lemmy.world on 12 Aug 10:58 next collapse

It’s not a dumb video and it’s not an edge case. It’s a great video that goes straight to the point, has timestamps, explains in detail how the exploit works and how consistently, and showcases it.

The exploit is BadUpdate v1.2, an evolution of the previously known BadUpdate, which was great as a proof of concept but not very useful in practice, as it required an average of 30 minutes to work, had a success rate of about 30%, and needed to be applied every time the console was rebooted (on a console with no sleep mode, may I add).

By comparison, as shown in the dumb video, the new version of BadUpdate works flawlessly in about a minute (10 max), and has a far greater success rate of about 80%, according to the creator. It can be launched from a USB stick and requires no additional software or hardware modification to the console, and most importantly, works on all X360 and not just earlier editions.

If you’re too lazy to click on a link, fine, but I’d suggest at least not acting so confidently when saying things you know nothing about.

AnUnusualRelic@lemmy.world on 12 Aug 11:26 next collapse

It’s strange that console exploits wouldn’t work consistently on identical hardware with identical firmware. What is it that makes it fail so often?

Aielman15@lemmy.world on 12 Aug 11:36 next collapse

Quoting from the GitHub’s page:

The exploit is a race condition that requires precise timing and several other conditions to be met for it to trigger successfully. As such it can take a while for that to happen.

Which means that, sometimes, you run the code but it simply fails. When it happens, you can turn off the console and try again.

AnUnusualRelic@lemmy.world on 12 Aug 11:48 collapse

Oh, ok. That makes sense.

DevCuber@sh.itjust.works on 12 Aug 11:39 collapse

If i remember correctly, some memory address that needs to be overridden by the exploit is randomized on startup. The only way to find it is to just write to a random address, which often fails

CallMeAnAI@lemmy.world on 13 Aug 05:13 collapse

Relies on USB. Edge case, not happening in the wild.

Aielman15@lemmy.world on 13 Aug 07:55 collapse

You should re-read the discussion, because I’m pretty positive you didn’t even get the topic.

We are talking about being able to play pirated games and homebrew apps on the X360. Of course that doesn’t happen in the wild. Unless you think that I woke up one day with a modded PS1.

NOT_RICK@lemmy.world on 12 Aug 12:07 next collapse
Buddahriffic@lemmy.world on 12 Aug 16:50 collapse

I find your pride in your skepticism confusing. Why even bother commenting?

ramble81@lemmy.zip on 12 Aug 12:51 next collapse

Got everything ready to try. Just need to pull out my 360. Would I use it long term? Probably not, but this is too cool of a test to pass up.

Cort@lemmy.world on 12 Aug 19:01 collapse

Pulled my 360 out of storage a couple years ago and it instantly red ringed when I tried to power on. Hopefully you have better luck

Glitterbomb@lemmy.world on 12 Aug 19:56 collapse

Its a shame it doesn’t persist through a reboot. I thought I was finally going to have a hacked 360, but I’m not reapplying this thing every time it turns on…

Psythik@lemmy.world on 12 Aug 20:26 next collapse

Dude it’s less than a minute. My Ryzen 7000 machine with a 7300MB/s sequential read speed takes longer than that to boot.

Glitterbomb@lemmy.world on 12 Aug 20:36 collapse

I’ve seen estimates between 30-70% failure rate for the race condition, even on this updated 1.2 version.

And then ok, the exploit is successful. Now you have to install the custom launcher. Hope you like the default theme otherwise you’re now configuring that each and every time too. I didn’t get this far in the guide but now I imagine you also need to install the ISO manager that launches the games. Whoops, there’s always some weird collection of dependencies that you’ll probably have to tweak. Remember wii ios’s? God, what the heck was that. Then you lose power and have to do all of this over again?

Have you ever modded a console? The exploit is only step one.

Psythik@lemmy.world on 12 Aug 20:43 collapse

Oh I thought it was a live USB kind of a thing. Like just boot your custom OS off a flash drive and all your settings are already there.

Shit like this is why I should read the article first before commenting (TBF, most people don’t).

Glitterbomb@lemmy.world on 12 Aug 20:57 collapse

To be fair there’s no article, just a video of a guy off camera talking about his Xbox, not exactly engaging.

I dug through the start of some guide on github, and nothing jumped out at me that the stuff remains configured. Maybe there are pieces stored on the jump drive afterward, but if it does they aren’t saying it very loudly. That’d definitely help convince me to try it.

Who am I kidding, I’m trying it the first time I come across a 360. I just don’t see myself using it regularly

Wispy2891@lemmy.world on 13 Aug 05:29 collapse

At least doesn’t literally take 20 minutes like the previous Winchester exploit 😂