Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

25C3: Console Hacking 2008: Wii Fail - Part 4

Loading...

Sign in or sign up now!
Alert icon
Upgrade to the latest Flash Player for improved playback performance. Upgrade now or more info.
10,227
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Dec 30, 2008

Console Hacking 2008: Wii Fail

Fourth part.

"Is implementation the enemy of design?

The Nintendo Wii game console has been one of the most popular of all time, selling almost as many units as all of its competitors combined. Despite being cheaper than the PS3 and Xbox360, it contains a sophisticated security architecture that withstood over a year of concerted effort to hack the device. The design itself is impressive; unfortunately, flaws in the implementation (both subtle and severe) render the device easily hacked, with little chance of recovery."

http://events.ccc.de/congress/2008/Fahrplan/events/2799.en.html

Category:

Gaming

Tags:

License:

Standard YouTube License

  • likes, 2 dislikes

Link to this comment:

Share to:

Uploader Comments (Scarjka)

  • So does this mean if you use the bomb banner hack you don't have to do this cus they are the same thing?

  • Yeah, bannerbomb and the Twilight Hack essentially do the same thing; allow you to run unsigned code.

Top Comments

  • That's.....FAIL!!!!!!!!!!! Pwnage mates, fucking pwnage you dudes rule.

  • this is where the discussing gets really interesting

see all

All Comments (23)

Sign In or Sign Up now to post a comment!
  • "so if your signature has 00 anywhere, it stops comparing there."

    Wow, for a milti-million dollar company they could have done better than that.

    whoever designed that "security" must be fired by now.

    Also, thanks for the upload, really interesting!

  • WHAT THE FUCK IS THIS SHIT!?!?!?!?!?!?

  • these are some smart mother fuckers, holy shit.

  • The actual formula is 0^65537 mod (some really huge number), where the 0 is supposed to be (some other really huge number) if this were a real signature. The public exponent is the constant, 65537, and the huge mod number is the public modulus (i.e. the public key, a product of two huge prime numbers). The result of the exponentiation is just 0, and the mod does nothing because it only changes numbers that are greater than the modulus to begin with, so you get 0 as a result.

  • dolls cant get singd but wads can

  • Thanks

  • Thanks for this - I knew the TP hack was a stack smash but I never understood the sign-bug. Good lesson for any software professional working on security.

  • iNo it's not 0 ^ 0 it's. ^_^

Loading...

Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more