How the Nintendo Switch Security was defeated | MVG

  Рет қаралды 512,286

Modern Vintage Gamer

Modern Vintage Gamer

Жыл бұрын

Get Surfshark VPN at surfshark.deals/MVG - enter promo code MVG for 83% off and 3 extra months for free!
The Nintendo Switch released in 2017 as a complete departure from previous Nintendo consoles, however it initially arrived with a serious exploit that was considered unpatchable. In this episode we cover security on the Nintendo Switch and how Nintendo were able to mitigate the damage to just a small percentage of consoles.
Sources/Credits :
► www.slideshare.net/ssuser479f...
► wololo.net/2018/04/24/nintend...
► fail0verflow.com/blog/2018/sh...
► misc.ktemkin.com/fusee_gelee_...
Team Xecuter - The story of the infamous Nintendo Switch Modding Group - • Team Xecuter - The sto...
Social Media Links :
► Check me out on Facebook : / modernvintagegamer
► BandCamp : modernvintagegamer.bandcamp.com/
► The Real MVP Podcast : player.fm/series/the-real-mvp
► Follow me on Twitter : / modernvintageg
#Nintendo #Switch #Hacking

Пікірлер: 1 200
@megacide84
@megacide84 Жыл бұрын
Modding systems is more important than ever before. Especially now... As backwards compatibility is being thrown to the wayside and digital storefronts (3DS, Wii, and Wii U) go permanently offline.
@ThePreciseClimber
@ThePreciseClimber Жыл бұрын
Well, maybe in the case of Nintendo but backwards compatibility on Sony & Microsoft machines is as good as it has ever been, especially with Microsoft.
@Matanumi
@Matanumi Жыл бұрын
Nintendo would be stupid NOT to have backwards compatibility on this next system for the switch family
@xFluing
@xFluing Жыл бұрын
The solution is simple: handheld PCs like the aya neo or even better the steam deck
@matt.willoughby
@matt.willoughby Жыл бұрын
That's the worst thing about paying for digital only content. If the provider goes, you money is lost forever
@hist150project5
@hist150project5 Жыл бұрын
@@ThePreciseClimber Sony is not backwards compatible before PS4 though
@mxck.
@mxck. Жыл бұрын
MISTAKES WERE MADE.
@benjaminstalin1793
@benjaminstalin1793 Жыл бұрын
😂😂😂
@betterthantrash111
@betterthantrash111 Жыл бұрын
HE DIDNT PUT IT
@markusTegelane
@markusTegelane Жыл бұрын
paperclip (trademark)
@shouldihangmyself
@shouldihangmyself Жыл бұрын
🤷‍♂️
@hujznim
@hujznim Жыл бұрын
Mistakes are always made
@TheInternetHelpdeskPlays
@TheInternetHelpdeskPlays Жыл бұрын
Security is one of those amazing things. You can spend millions securing a system and forget the most simple of access points. Like adding bars to windows but having the gap large enough to get through.
@jinxterx
@jinxterx Жыл бұрын
You should be a security consultant.
@internetguy7319
@internetguy7319 Жыл бұрын
@@jinxterx "Nintendo, hire this man!"
@deraile
@deraile Жыл бұрын
Or barricading a door with a mountain of furniture but forgetting the door opens the other way 😅 (shoutouts to oldschool Scooby-Doo!)
@LennyQUMFIF
@LennyQUMFIF Жыл бұрын
Yea... imagine being defeated by Tweezers and a Paperclip lmao. (Yea, it was all by bridging stuff on the Wii and Switch, like bridging something with the Tweezers in Wii to let the hacker have access to the hidden RAM, and on switch bridging the JoyCon rail pins for RCM)
@appliedengineering4001
@appliedengineering4001 Жыл бұрын
This remind me of our house in Idaho. Our cat keep getting into the basement from the outside and we couldn't figure out how. We look everywhere around the house, looking for holes dug around the foundation as well as checking all the air vents and everything was sound. It wasn't until one day that I watched the cat walk into a bunch of bushes at the bottom of a hill and disappeared. A few minutes later, my mother holler at me and said that the cat was in the basement again. It turns out that in those bushes was where the other end of the drain pipe for the basement was hiding. Our cat was crawling up through a hidden drain pipe that was over 200 feet from the house to get into the basement. Securing the pipe was easy. All we had to do was put a piece of chicken wire over the opening. But god it took us months to figure that out.
@3lH4ck3rC0mf0r7
@3lH4ck3rC0mf0r7 Жыл бұрын
Nintendo's security model for the Wii and Switch are actually extremely advanced. The Wii had the Starlet, a dedicated security ARM coprocessor that would moderate all Wii hardware accesses in 2006. For comparison, Intel ME released in 2008, AMD PSP released in 2013, and the Apple T1 chip released in 2016. Unfortunately, their implementation of RSA had a critical bug that completely nullified the security aspects of the Starlet for all intents and purposes. Even when the Trucha Bug was patched, AHBPROT was discovered which made it possible to restore the bug and it was ultimately futile. As for the Nintendo Switch, well, current versions of Horizon OS (that is the internal name of the Nintendo Switch firmware) are the first of Nintendo's to have 100% flawless security on the software side. Unlike other console firmwares which are usually based off of FreeBSD, Nintendo's Horizon OS was fully developed in-house with a microkernel design. Even the hardware drivers run sandboxed as regular userspace programs, massively reducing the attack surface and making it possible to write a kernel that can perfectly maintain core OS security under every scenario, since the range of possibilities have been kept small enough at the core to make testing every single possible input to the security engine in depth (including testing all possible invalid inputs) a reasonable endeavor. This microkernel has been completely reverse-engineered, every single function and instruction has been combed through and deeply analyzed by the community, and there are zero vulnerabilities on it. This isn't zero known vulnerabilities, there are no software vulnerabilities, period. The sandbox simply cannot be broken once established using current available software and hardware methods and technologies. So finding bugs in games and even hardware drivers is useless, because there's no privilege escalation without a bug in privileged code, and no privilege escalation, no full system takeover. Unfortunately (or rather fortunately for us), NVIDIA made three oopsies while designing the Tegra X1 that would go on the Switch and the NVIDIA bootROM Nintendo had to rely on. The first is fusée-gelée. The second is exposing the button pin that gets the bootROM in RCM state on the right Joycon rail so people wouldn't have to open up the console and do microsoldering to enter RCM mode. And the third oopsie and final nail in the coffin for Nintendo's security model is the CPU itself being vulnerable to voltage glitching, a physical manipulation of the Switch's power circuit where a very controlled electrical spike can make the CPU skip lines of code much like how an old car CD player would skip when you hit a bump in the road. These were all abused by hackers to skip right past the initial bootloader signature check and load a custom boot manager, breaking the security model extremely early in the Switch's startup sequence, long before any Horizon OS firmware code is ready to execute, and even longer before it could set up its perfect, impenetrable barriers. But the story doesn't end here. And I hate that this next part doesn't get told more often. As it turns out, Horizon OS 5.0.0 would include a hardware exploit from Nintendo themselves, a curveball designed to counter fusée-gelée and prevent its use for piracy. They changed their key derivation processes, and then significantly modified the TSEC firmware code to halt the CPU if a modified version of Horizon OS was detected. It is impossible to run modern versions of Horizon OS without the TSEC or on the old TSEC firmware, because it needs the derived hardware keys the new TSEC firmware provides to decrypt all sorts of data. And hackers wouldn't be able to write a custom TSEC program, since the signature check for its firmware was actually never broken. This wouldn't stop modders from running other operating systems on the Switch with a fully disabled TSEC, but it was an effective patch against the unpatchable that would've stopped people from booting stock firmware > 5.0.0 under fusée completely... If the private Nintendo signature required to sign a Switch TSEC firmware with hadn't leaked to SciresM through an unknown channel. Truly a 'my uncle works at Nintendo' moment. If not for that, the Switch security model would still be fairly rigid on all fronts, and Horizon OS homebrew (not to mention piracy) on the system would still be extremely limited and practically nonexistent. As part of the microkernel research efforts, SciresM has written a reimplementation of the whole thing. This is a testament to both the Nintendo hacker community's stubbornness, and the microkernel itself being small enough for a single person to be able to wrap their head around it in its entirety. This custom kernel, now named mesosphére, is the default kernel used by the Atmosphére custom firmware. Atmosphére by itself doesn't provide any means to override the DRM enforced when running official Switch software. That job is left to the aptly named sigpatches, a set of separate, additional binary patches that the user has to install and which Atmosphére has no involvement with. Modern Nintendo security is less about their own technical failures, and more about the extremely determined nature of their attackers, the obsessive, unstoppable fanbase they have.
@bigtitmaster
@bigtitmaster 11 ай бұрын
That’s an impressive write up
@konatadesuka
@konatadesuka 11 ай бұрын
Worth a read. Great comment.
@nealkashya
@nealkashya 11 ай бұрын
Read through the whole thing, good write up!
@oogabooga1228
@oogabooga1228 11 ай бұрын
Perfect
@sky-zc3uz
@sky-zc3uz 10 ай бұрын
good post
@balika011
@balika011 Жыл бұрын
You forgot a really important aspect of the story. Docs contained in the gigaleak reviled that Nintendo knew about the exploit before the switch was released to the market and was working on a patch with Nvidia.
@ModernVintageGamer
@ModernVintageGamer Жыл бұрын
thanks! i knew about it but thats flying a little too close to the sun
@CraftyTheFox
@CraftyTheFox Жыл бұрын
this is actually really interesting that they chose to release it still with this issue though, but they would lose out on a lot of systems being sold.
@anoncaesar9367
@anoncaesar9367 Жыл бұрын
@@CraftyTheFox having consoles that are exploitable doesn’t really cost Nintendo anything and fixing the already made consoles with razor thin if any margins, likely a money loss. Not to mention, few consoles are getting hacked to begin with, so if there is a concern, few people will ever take advantage of it.
@AdamTheSlave
@AdamTheSlave Жыл бұрын
@AmorMagico666 psst, get a steam deck, they got gzdoom and dsda, and you don't have to fiddle with RCM jigs for your homebrew ^_^ (not serious, here, I just love doom and the open hardware/software of the steam deck)
@dinodin007
@dinodin007 Жыл бұрын
I would also argue the ipatched systems from around mid 2018 before the release of the redbox, lites and oled, which burnt an efuse at factory to stop the rcm exploit
@DETahaX
@DETahaX Жыл бұрын
Previously: Nintendo vs Tweezers Now: Nintendo vs Paperclips
@XenonG
@XenonG Жыл бұрын
Bridge two circuits trick, always works for some reason... oh it's Nintendo.
@DETahaX
@DETahaX Жыл бұрын
@@XenonG The wonders of conductors. =P
@DETahaX
@DETahaX Жыл бұрын
@@paul.1337 Paperclips and tweezers are pretty much the same thing, a simple wire could do the trick. It's just funny how we take a giant company and pit it up against small household items.
@Azazel010101
@Azazel010101 Жыл бұрын
Aaaand the Winner is ...
@themissinfowar6629
@themissinfowar6629 Жыл бұрын
Next… Nintendo vs… the bobby pin 📌! (≖͞_≖
@HarryChengv2
@HarryChengv2 Жыл бұрын
The total cost for adding a modchip has dramatically dropped recently (at least in China) thanks to the recent discovery that PIO on RP2040 (a general purpose chip that's extremely cheap) can reliably glitch the CPU, and open-source firmware has been released.
@DungarooAdventures
@DungarooAdventures Жыл бұрын
Yes but installing the damn thing is next to impossible.
@internetguy7319
@internetguy7319 Жыл бұрын
Modchips aren't a real exploit for 90% of users.
@IngwiePhoenix
@IngwiePhoenix Жыл бұрын
I hope someone makes one of those flex-solder ribbon cables to make installing them much easier and more reliable.
@Nick-ht5yi
@Nick-ht5yi Жыл бұрын
@@internetguy7319 thank you. This is not as accessible as some people frame it to be
@alexlefevre3555
@alexlefevre3555 Жыл бұрын
The hwfly chips have come down dramatically in cost due to this fact. I still prefer the RP2040 method, though. Soldering to the tiny FET pads isn't difficult with the right supplies. It's an interesting time for the Switch homebrew community.
@EastyyBlogspot
@EastyyBlogspot Жыл бұрын
With Nintendo being backwards with preservation this was a good thing
@mdihero
@mdihero Жыл бұрын
backwards incompatible
@applehazeva2739
@applehazeva2739 Жыл бұрын
If the Switch 2 isnt Backwards Compatible, I could see Yuzu Ports in the first year
@luizansounds
@luizansounds Жыл бұрын
​@@applehazeva2739 dude, the devs may straight up make an interpreter to play them, because probably it will be a close architecture to the current switch
@indask8
@indask8 Жыл бұрын
With Nintendo being backwards with preservation this is *ALWAYS MORALLY CORRECT*
@3dgelord187
@3dgelord187 Жыл бұрын
Gaining root access to Nintendo's hardware via hacking is exactly in part why Nintendo doesn't do b/c. Thanks, hacker scum. 🙃
@cedwardsmedia
@cedwardsmedia Жыл бұрын
Absolutely love these kinds of videos from you. Love seeing how companies locked down their systems and how the fanbase blew the doors wide open again.
@Chris-yc3mm
@Chris-yc3mm Жыл бұрын
Pitty they have not been so quick to resolve the pro controller and joy con drift
@ninetozero920
@ninetozero920 Жыл бұрын
Congrats you got lucky kid, I've bought 4 pairs of original joycons, played puzzle games, left them sitting, switched off to prevent wear, and always washed my hands. No kids in the house. Ridiculous hardware from Nintendo these days. Meanwhile my N64 and original N64 controllers are working almost like new even after 20+ years of abuse.
@lindsaymobil22
@lindsaymobil22 Жыл бұрын
You can try cleaning the analog sticks on the joycons with some electrical contact cleaner, as that should help to remove the dirt that's likely causing the drift. There's been quite a bit of reported success with doing this, and I've had good luck with this on other systems with dirty, glitchy controllers.
@TruFilmProductions
@TruFilmProductions Жыл бұрын
They did. You buy a new one. Problem resolved. 🤣
@jh302
@jh302 Жыл бұрын
pity the real way to solve joycon drift only started existing this year because nobody made hal effect sticks small enough in that form factor til now and nintendo were never actually responsible for the design of the sticks as theyre an off the shelf part made by the same company who makes sticks for every console
@Tersudo
@Tersudo Жыл бұрын
i fixed my joycons myself for like 2€ each and it took me 10 mins yeah no im not paying 80 bucks for a pair that will last like one year before dying aigan
@diegoamv
@diegoamv Жыл бұрын
3DS has a VERY interesting hacking history. I hope I see it one day in this channel!
@fgfhjfhjfbhfghf5771
@fgfhjfhjfbhfghf5771 Жыл бұрын
You could make a full length documentary on 3DS hacking
@noa670
@noa670 Жыл бұрын
I was there
@teknixstuff
@teknixstuff Жыл бұрын
I'd like that too!
@theunicornenthusiast7194
@theunicornenthusiast7194 10 ай бұрын
Tech Rules has a really nice video about it, highly recommend.
@Tommy-zh8ko
@Tommy-zh8ko Жыл бұрын
"All the way back in April 2016"... Still feels like yesterday tho. 7 years and counting😮
@salsaandbrwx1449
@salsaandbrwx1449 Ай бұрын
hello old.
@Tommy-zh8ko
@Tommy-zh8ko Ай бұрын
8 years now, Old indeed....@@salsaandbrwx1449
@Electriksoda
@Electriksoda Жыл бұрын
The first 5 seconds of an MVG video hit so nostalgic. Like an oldschool keygen song that's blasting max volume out of your speakers
@gfrewqpoiu
@gfrewqpoiu Жыл бұрын
He actually has the song on his Bandcamp, linked in the description.
@Jdbye
@Jdbye Жыл бұрын
A small inaccuracy - Mariko/Red Box Switches were not the first time the RCM exploit was patched. It was patched soon after release by including an updated bootrom from the factory that simply disabled USB access in RCM. (so called iPatched switches) But it was Mariko that fixed it properly, by fixing the vulnerability that allowed unsigned code to be ran in the first place. Still, both variants of patched units have yet to have their RCM mode exploited so it seems both are equally secure.
@gudenau
@gudenau Жыл бұрын
I love how the Wii was compromised with a pair of tweezers and the Switch with a paperclip.
@bloodsuckinflea
@bloodsuckinflea Жыл бұрын
I dont tend to mod my systems until they've reached the end of their life cycle. Generally too much hassle for not enough pay off, at least for me. The mini consoles were a nice change of pace because there were no system updates and they provided a nice hardware organization for my backup ROMs. 😊
@WackoMcGoose
@WackoMcGoose Жыл бұрын
Exactly, now that the 3DS (and Wii U) are _officially_ EOL with the closing of their stores, there are no ethical quandries whatsoever about modding them and downloading games. Like Arlo said... _you can't "steal" from a shop if the shop no longer exists._
@ThroneViI
@ThroneViI Жыл бұрын
To be honest I feel like the switch is nearly at its end cycle anyways so I don’t think we’ll be waiting that long now
@FlamingSkyess-ni6ri
@FlamingSkyess-ni6ri Жыл бұрын
I mod for free games
@WackoMcGoose
@WackoMcGoose 11 ай бұрын
@@ThroneViI Mmh... I wouldn't bet on it. Nintendo hasn't announced a Switch successor yet (the Switch itself was arguably the successor to both Wii U and 3DS simultaniously), and it's their only actively supported console. I highly doubt they would, even internally, make plans for its EOL until the next console is on the market...
@Xandergre
@Xandergre Жыл бұрын
the best series returned!! i simply love these security/mistakes were made series!! keep it up mate!
@ModernVintageGamer
@ModernVintageGamer Жыл бұрын
Glad you like them!
@AniviaS
@AniviaS Жыл бұрын
If I got a nickel every time a Nintendo console was cracked using a paperclip I would have 2 nickels. Which isn't a lot, but it's funny that it happened twice
@creeperizak8971
@creeperizak8971 Жыл бұрын
Whats that second console that was cracked?
@logsupermulti3921
@logsupermulti3921 Жыл бұрын
@@creeperizak8971 The Wii.
@creeperizak8971
@creeperizak8971 Жыл бұрын
@@logsupermulti3921 but that was done with tweezers, wasn't it?
@applehazeva2739
@applehazeva2739 Жыл бұрын
haha lmao
@LennyQUMFIF
@LennyQUMFIF Жыл бұрын
@@creeperizak8971 yea but it still involves bridging, technically the same, just with a different tool (Tweezers instead of Paperclip)
@SimX9000
@SimX9000 Жыл бұрын
Finally a new security video. Please make more of these and piracy videos too. They are the best!
@Gamefreak924
@Gamefreak924 Жыл бұрын
^man who definitely pirates everything
@ponivi
@ponivi Жыл бұрын
@@Gamefreak924 ^man who doesnt understand that piracy is morally correct when stealing from nintendo
@98SE
@98SE Жыл бұрын
@@ponivi I agree with this, piracy has allowed me to play/use so much old software/games that I would of never been able to play otherwise.
@SuperM789
@SuperM789 Жыл бұрын
@@ponivi i only pirate indie games personally
@ponivi
@ponivi Жыл бұрын
@@SuperM789 so you *only* pirate games from the people who have low sales and actually deserve the money instead of from companies that can sustain themselves from a thousandth of their current sales with no changes? Awful.
@johndododoe1411
@johndododoe1411 Жыл бұрын
The nVidia Tegra family bootroms were part of the chip designs. Each would read some on chip fuse bits (PROM) to decide if and what digital signature to require on the first off-chip code loaded into on chip boot RAM . The details were never properly documented, thus making it difficult to do recovery repairs on Tegra based phones and tablets from LG, Acer etc. I remember struggling for days to work around damaged flash sectors in a friends Acer tablet (even though the formula for converting its hardware serial number into the secret boot key had been published years earlier).
@mattb9664
@mattb9664 Жыл бұрын
I'll deal with the Switch the same way I did for Wii U- and it will depend on whether Nintendo provides forward compatibility support for their next Switch console. I have like a mini Steam collection of paid for games on Switch- if they jerk us around like they did for Wii U (expecting us to rebuy launch games again during the transition period at full price instead of offering an actual discount), I'll go ahead and defeat the security during my next winter break and download everything else I haven't purchased yet.
@natryamar
@natryamar Жыл бұрын
this kind of uncertainty is why i never personally bought many 3rd party games for my switch. I was happy to see the steam deck come out later and provide me with a way to have a unified library of games.
@Gamefreak924
@Gamefreak924 Жыл бұрын
Just say you're going to pirate.
@SoberAddiction
@SoberAddiction Жыл бұрын
@@natryamar I buy Nintendo games for my Switch and pretty much everything else on Steam/GoG for my PC. Hell, I didn't even mind buying BotW twice. Once for the Wii u and again for the Switch. I even did it again for Mario Kart 8. I know what I'm going to get from Nintendo, and I buy their systems for Zelda/Metroid mainly.
@bxnwxghxrn
@bxnwxghxrn Жыл бұрын
Interesting fact: Most people exploit with jigs and paperclips, but apparently it's doable with tinfoil (aluminium foil) which ironically is the name of a piece of homebrew software which allows for the installation of NSP and XCI files.
@johndanielwood
@johndanielwood Жыл бұрын
It’s funny how absolutely brutal Nintendo are on the homebrew and preservation community, in frankly unwarranted way, how easy they make exploiting each of their systems.
@Gamefreak924
@Gamefreak924 Жыл бұрын
Most of the brutality has been on people who seek to provide definite means to pirate their current hardware. Can't say I blame em. At least wait until the console generation is over.
@serraramayfield9230
@serraramayfield9230 Жыл бұрын
@@Gamefreak924 if they stopped giving valid reasons for people to do it, that would be a nice start
@alessandromazzini7026
@alessandromazzini7026 Жыл бұрын
A study showed that pirates are the One that spend the most on games, if companies would allow us to buy the games we want, we wouldn't hack their devices.
@alessandromazzini7026
@alessandromazzini7026 Жыл бұрын
​@@Gamefreak924 no? Give us the games we want to play and we ask, otherwhise we would crack open you. Pirates are the ones that spend the most in games
@jimhultqvist2539
@jimhultqvist2539 Жыл бұрын
@@alessandromazzini7026 I don't think so. Pirates would always find some reason why Nintendo's way of doing business is not good enough for them.
@Kenjitsuka
@Kenjitsuka Жыл бұрын
Security and piracy: definitely my favourite MVG subjects!
@Immortalangel14
@Immortalangel14 Жыл бұрын
I love the impossible port
@DrJams
@DrJams Жыл бұрын
I call it backups or game preservation
@KenniCrazy
@KenniCrazy Жыл бұрын
Security and priacy
@purebaldness
@purebaldness Жыл бұрын
0/10 - not enough unnecessary clickbait
@castor9907
@castor9907 Жыл бұрын
The secret ingredient is crime
@makuIa
@makuIa 9 ай бұрын
as someone who isn’t tech savy at all & doesn’t understand a lot of terms in each video it fascinates me how smart people are with devices & able to work around any parameters in their way. I just know if I was educated more in it I would appreciate that much more
@Pavelwsad
@Pavelwsad Жыл бұрын
Such a great security video as always! Makes me feel like lucky one having unpatches switch.
@spaceshipnayib
@spaceshipnayib Жыл бұрын
The Nintendo Switch security measures are fascinating. I wish you had spoken more about the anti-hombrew measures within the OS and online. My first hacked Switch got banned from accessing any Nintendo servers online, and therefore I was banned from making purchases on the eShop. Seems counterintuitive to me, but clearly effective as a deterrent.
@IdiotRace
@IdiotRace Жыл бұрын
This is why if I use atmosphere I've got exosphere configured so every nintendo sever is blocked. Although my unpatched switch spends most of the time in standard mode anyway.
@repeekyraidcero
@repeekyraidcero Жыл бұрын
Could've circumvented with a single .ini file upon booting atmo. But Playstation bans PS4s for less silly reasons...
@spaceshipnayib
@spaceshipnayib Жыл бұрын
@@repeekyraidcero Well yes I know that NOW 😅 I had this happen to me around 2018 hahaha
@Jrasta111
@Jrasta111 9 ай бұрын
Problem: Modded console means potential piracy or piracy adajacent shenanigans meaning potential lack of legitimate online purchases and/or conduct. Solution: Screw potential let's make it outright impossible for it to legitimately purchase/participate in any of our online products ever again. That'll show 'em! Outcome: You may lose what you already purchased if you were silly enough to get an account you actually used banned which either seems fair or stupid depending on your point of view but I think actively stopping a person you claim you want to be making purchases, a claim you backup with ludicrous levels of security and DRM facilities what one might even call those themselves of outright questionable legitimacy to my mind at least, from making said purchases indefinitely again basing this action itself on the strength of said initial claims is just fundamentally stupid or what one might say a fundamentally stupid person thinks smart, tough, but fair looks like.
@BoyProdigyX
@BoyProdigyX 8 ай бұрын
So basically they put you in a position where you _COULDN'T_ give them your money anymore, and *HAD* to sideload your roms... genius?
@qactustick
@qactustick Жыл бұрын
I'll be interested to see how the hacking scene develops for the later hardware revisions. It's unfortunate that there seems to be little effort going towards hacking those simply because the launch model exists.
@borisyeltsin6606
@borisyeltsin6606 Жыл бұрын
There are physical modchips that use voltage glitching to hack all of the subsequent models, but Nintendo has DMCA'd and sued most popular mentions of it.
@Zardif
@Zardif Жыл бұрын
I really wish the oled was soft moddable. The brightness on my OG switch is so bad, but also I don't want to give up it's modability.
@sarkerabrarlabib2342
@sarkerabrarlabib2342 11 ай бұрын
It's simply not just because of the launch model exists, the guy who made atmosphere says he reversed the kernel and other stuff many times he did not find any vulnerability in it so it is a waste of time to look into it.
@qactustick
@qactustick 11 ай бұрын
@@sarkerabrarlabib2342 I don't doubt the guy tried, but I find it kinda hard to believe that the Switch is truly unhackable without the hardware vulnerability. I mean, that's what the assertion here is, right?
@reidjcsn
@reidjcsn 3 ай бұрын
@@qactustick the kernel is made to be so simple that the attack vector would be incredibly small, allowing Nintendo to fully test for any sort of exploit which they've done. Modders have a full understanding of the kernel to its most intricate aspects and they have no way of getting in.
@Riyakuya
@Riyakuya Жыл бұрын
I do secretly still hope that one day there will be a software based exploit for the Switch Lite even though that seems like a far away dream. That device just begs to be an amazing retro emulator.
@Nbomber
@Nbomber 11 ай бұрын
tbh its begging to be anything other than a glorified online store. I mean, its cool and all, but the greed is insane, things have gotten marginally better recently, but for the most part, their online service is basically a total scam.
@zethcader6478
@zethcader6478 11 ай бұрын
There will be one day, no form of security is 100% fool proof. I remember hearing about how the 3DS was unhackable and it would never be jail broken. But here we are today, where you can do it in under 2 hours. Someone will find a way :P
@TheIronMelon
@TheIronMelon 11 ай бұрын
​@@zethcader6478here's hoping. I was under the impression that this was possible before buying my switch lite
@josheeb
@josheeb 7 ай бұрын
​@@zethcader6478"under 2 hours"? in my lifetime I've added homebrew to 11 different times and the longest it's ever took for me was 20 minutes? What's taking you so long Not trying to be rude but 2 hours is embarrassing
@kuzadupa185
@kuzadupa185 Жыл бұрын
Im always more interested not only HOW the exploit works but WHY & how did they FIND the exploit? If possible could you try including the path taken to finding various console exploits? Im just curious of the mentality of the hackers who search for these treasures.
@aaabucus3104
@aaabucus3104 Жыл бұрын
Even though I've heard this of course before along with every other mod that has happened throughout the years hearing you tell it, especially when you do a video on it, I always learn something new you have the best console mod KZbin channel out there man. Im always thoroughly entertained by your descriptions! 🎉
@DmitryPuffin
@DmitryPuffin Жыл бұрын
It's always interesting to watch security related videos. Thanks for this one! 👌
@skelleytor
@skelleytor 10 ай бұрын
Then the Atmosphere became clear
@Sir_Uncle_Ned
@Sir_Uncle_Ned Жыл бұрын
I happened to get one of those RCM vulnerable units, and it’s served me very well with all the homebrew ports and emulation I could ever want in a tablet. Of course, I do have switch games on cartridges because I had this unit before the exploit was disclosed, but thanks to a decently sized MicroSD card I have gone more digital thanks to the eShop and retro community
@nickvenema8312
@nickvenema8312 Жыл бұрын
the background music fits really well in all of these types of videos. great video overall well done MVG!
@dmoehling
@dmoehling Жыл бұрын
Any chance you could do a mini-update to this video and talk about Nintendos “software fix” to their hardware issue with their use of e-fuses? I initially thought this is what you were going to chat about. These exploits are always a game of cat and mouse. Don’t want you to risk your channel as I know how Nintendo can be. Would just love your impression on their attempt to software patch the hardware issue. Lots of groups gave Nintendo massive props for even being able to do it! 😊
@repeekyraidcero
@repeekyraidcero Жыл бұрын
M$ used eFuses first, so yeah...
@mskiptr
@mskiptr Жыл бұрын
Users should never need to hack their own hardware. What you own shouldn't be locked nor controlled by the manufacturer
@AlphaNeon
@AlphaNeon 11 ай бұрын
Steam Deck moment
@lilyounggamer
@lilyounggamer Жыл бұрын
crazy you can emulate switch this early getting 1400p over 60 on pc
@RetroJack
@RetroJack Жыл бұрын
It's been six years since the Switch came out - how is that "early"?
@oqo3310
@oqo3310 Жыл бұрын
​@@RetroJack iirc 2 years after the switch was out, there was good emulators on pc.
@flintfrommother3gaming
@flintfrommother3gaming Жыл бұрын
​@@RetroJack Believe me it's early, also look: PS3 emulations
@lilyounggamer
@lilyounggamer Жыл бұрын
@@RetroJack rpcs3 still cant fully emulate like yuzu can
@RetroJack
@RetroJack Жыл бұрын
@@lilyounggamer True.
@artvandelayimports
@artvandelayimports Жыл бұрын
Been waiting for this one for a while, great vid!
@DungarooAdventures
@DungarooAdventures Жыл бұрын
The original unpatched Switches will forever hold a special place in homebrewing history.
@Akab
@Akab Жыл бұрын
Yeah, I wish mine wasnt patched... Sadly i got one of those "potentially patched" ones (tried it, it's patched in my case) and unpatched ones are ridiculously expensive now 🙃
@DungarooAdventures
@DungarooAdventures Жыл бұрын
@@Akab I'm sorry to hear that...the unpatched ones are getting more rare seeing the Switch is getting close to being 6 years old one but if you look hard enough and are quick you can still find some in the wild get good prices.
@Lively_1185
@Lively_1185 Жыл бұрын
I've bought mine as a refurbished one, and it's been patched as well according to a website checker. Not that I have any intention to do anything outside of it's range anyway.
@DungarooAdventures
@DungarooAdventures Жыл бұрын
@@Lively_1185 Try running cfw - you never know your luck
@NatetheNintendofan
@NatetheNintendofan Жыл бұрын
​@@DungarooAdventures I'ma December 2018 I should have begged my mom even more for a switch😢
@3rdalbum
@3rdalbum Жыл бұрын
The process for jailbreaking Nintendo consoles reminds me of the Lockpicking Lawyer breaking into his hotel room using nothing but a "Do Not Disturb" card.
@solidfrog
@solidfrog Жыл бұрын
Great Video MVG! Video game preservation is becoming so important as physical copies of games are going by the wayside. Digital backup is an absolute must.
@MrPete1985
@MrPete1985 Жыл бұрын
Always enjoy your videos about console security
@universeindex6651
@universeindex6651 Жыл бұрын
To protect your privacy, you should willingly route all of your internet traffic through a random company's proxy servers. That way, you can have peace of mind that your ISP isnt spying on you, instead, we are.
@userbernd
@userbernd Жыл бұрын
I think just morons buy vpn anyway
@0Synergy
@0Synergy Жыл бұрын
Only reason to have a vpn is for pirating so you dont get angry letters
@MateuLeGrillepain
@MateuLeGrillepain Жыл бұрын
We both saw the Tom Scott video?
@isaac10231
@isaac10231 Жыл бұрын
@@MateuLeGrillepain and yet, Tom Scott's recent videos have VPN sponsorships. I wonder why he changed his mind 🤔
@MateuLeGrillepain
@MateuLeGrillepain Жыл бұрын
@@isaac10231 iirc because the VPN ads agreed to start focusing on geoblocked content more than privacy
@draconic5129
@draconic5129 Жыл бұрын
I hope he covers the Modchip glitch hack for the switch in detail in the future, I know you mentioned it in passing but it might be interesting to showcase how it works in detail like how you did with describing the original Bootrom exploit.
@manoftherainshorts9075
@manoftherainshorts9075 Жыл бұрын
Nintendo attempts to silence this video in 3... 2... 1...
@DungarooAdventures
@DungarooAdventures Жыл бұрын
I think so too
@iceicebearbear
@iceicebearbear Жыл бұрын
And why would they?
@JohnSmith-xq1pz
@JohnSmith-xq1pz Жыл бұрын
Wouldn't surprise me even 0.01%
@rodchan1
@rodchan1 Жыл бұрын
Brilliant presentation on this. Thank you again for dropping the knowledge! ❤
@JoeSantini
@JoeSantini Жыл бұрын
Great video man. I saw that stick of Palo Santo wood resting on your desk.
@DeemienX
@DeemienX Жыл бұрын
It may only be a small part of the sold systems, but the fact that 15 million consoles are exploitable and with hackers being able to understand the hardware, lead to some brilliant emulators such as Yuzu or Ryujinx which makes hacking the real Nintendo Switch hardware more or less obsolete, with devices around such as the Steam Deck. I still own a Switch OLED, but the fact it propably never gets software exploited doesn't matter that much to me as long as I can use said devices to upscale and get more out of my games library... anyway, great video!
@E.B._Tech
@E.B._Tech Жыл бұрын
It’s so crazy to me that something as simple and small as a paper clip got past the switch security
@bigtitmaster
@bigtitmaster 11 ай бұрын
That’s just a very small part of the puzzle. It’s like checkm8 on iPhones, entering DFU mode. It didn’t break any security by itself
@Curtis-Randall
@Curtis-Randall Жыл бұрын
Very informative. Thank you! I learned a lot
@Darkhalo314
@Darkhalo314 Жыл бұрын
I love this series. I hope we continue to get videos like these.
@trinitybingham2406
@trinitybingham2406 Жыл бұрын
Finally!! I really love all your videos on security. The old school strange anti piracy all the way up to the most "secure" heavy handed DRM methods. Thanks for finally covering the switch. Now let's pray Nintendo doesn't try to crap on it.
@sagkit6326
@sagkit6326 Жыл бұрын
modchip
@GozuTennai
@GozuTennai Жыл бұрын
A return to form with this mate. nice one!
@Halberder84
@Halberder84 Жыл бұрын
This was a fantastic video. Extremely interesting and informative. Have a thumbs up 👍
@cannon9009
@cannon9009 Жыл бұрын
The only reason I haven't traded in my near-first-release Nintendo Switch is for this very reason, even though it's starting to show its age by having the right joycon fail to dock sometimes. If I ever get one of those OLED Switches, the old reliable is getting the modded treatment through and through.
@MusicFromAnotherTime
@MusicFromAnotherTime Жыл бұрын
Should've called it Operation Paperclip.
@RetroJack
@RetroJack Жыл бұрын
Boom! 🤣
@aleccoughcool7951
@aleccoughcool7951 Жыл бұрын
I love this channel so much, I do not know why I wasnt already subbed even though I follow you on twitter and have watched most of these style videos from you
@DTronicsUK
@DTronicsUK 11 ай бұрын
i can remember buying a first gen switch about a year ago. i asked the poor guy in the shop to bring out all the switch they had in stock and i was stood there, checking all the serial numbers of each switch till a found one that was unpatched, and to this day i still have that switch and wont be selling it any time soon. its my portable retro gaming console, runs retroarch and thats about it
@ygordreyer
@ygordreyer Жыл бұрын
I still highly believe we are going to find a software exploit again in the future. We just haven’t found it yet.
@rakdos36
@rakdos36 Жыл бұрын
​@Obscure Gun If i remember correctly about 3ds software exploits some of them only revealed the exploits they had after nintendo patched them already.
@Nashtoon_
@Nashtoon_ Жыл бұрын
@Obscure Gun I feel like this is the case tbh, i dont blame them though.
@SpacedogD
@SpacedogD Жыл бұрын
What I learned from doing some software security testing previously is that your security is only as strong as your weakest link.
@leojanney3605
@leojanney3605 Жыл бұрын
Been waiting for this video for too long
@roberthernandez7564
@roberthernandez7564 Жыл бұрын
Great info! Thank you for the insights!
@Lu-Die-MilchQ
@Lu-Die-MilchQ Жыл бұрын
Still waiting for a Switch OLED Jailbreak. Would be awesome to run Homebrew apps on it, as the screen is just gorgeous.
@isaiahkern9434
@isaiahkern9434 Жыл бұрын
Hardmod is possible on it.
@calebfox1584
@calebfox1584 Жыл бұрын
I remember seeing people in Facebook groups installing modchips in the OLED before/around when the system was first publicly available (If you recall, somehow lots of systems got out early before the official launch).
@bitelaserkhalif
@bitelaserkhalif Ай бұрын
Picofly/hwfly modchip
@markusTegelane
@markusTegelane Жыл бұрын
the paperclip exploit was such a lucky mistake hackers exploited
@emanueleborghini3186
@emanueleborghini3186 Жыл бұрын
No such thing as luck in the IT field
@nahimgudfam
@nahimgudfam Жыл бұрын
@@emanueleborghini3186 Not true at all
@Matanumi
@Matanumi Жыл бұрын
I mean it was in the notes for rcm
@markusTegelane
@markusTegelane Жыл бұрын
@@Matanumi yes, but loading unsigned code definitely wasn’t
@heisenbergwhite00
@heisenbergwhite00 Жыл бұрын
It wasn't lucky, this was made on purpose
@spk_eze
@spk_eze Жыл бұрын
Looking forward to this one!
@ghostmopreal
@ghostmopreal Жыл бұрын
Excited for the Datel video in the future too
@Anas7ergun
@Anas7ergun Жыл бұрын
Joined this cannel because of the history of videogames security have been breaken, and here we are again. Without doubt this is the best content of the channel.
@davidt3563
@davidt3563 Жыл бұрын
Still rocking my launch switch! Don't plan on breaking it until the next Console is on the way.
@jaguar4120
@jaguar4120 Жыл бұрын
Yup same here. I mod the WiiU and 3DS once Nintendo stop caring about the system.
@ronny332
@ronny332 Жыл бұрын
Love these topics, thank you!
@RipeStories
@RipeStories Жыл бұрын
When you hear that music in the intro .. you know the video is gonna be legendary.
@MrGEOGames
@MrGEOGames Жыл бұрын
I held a presentation of this topic in my it class and got an A+ for it
@RetroJack
@RetroJack Жыл бұрын
🥇
@ThatJoshGuy327
@ThatJoshGuy327 Жыл бұрын
If I knew without a shadow of a doubt I wouldn't get banned I'd do this to my switch in a heartbeat. Certain things like backing up Pokemon Scarlet/Violet save data in the event of a corrupted save are huge benefits.
@brandonnesfan
@brandonnesfan Жыл бұрын
Emunand is a thing my guy. The best of both worlds, clean sysnand and homebrew/roms on sd
@bigtitmaster
@bigtitmaster 11 ай бұрын
As long as you don’t install pirated games, there’s nothing to worry about.
@bitelaserkhalif
@bitelaserkhalif Ай бұрын
CFW on SYSNAND must be careful, if you INSTALL WAREZ=unit ban (any NSZ NSP XCI XCZ) EMUNAND with dns mitm and exosphere, no problem
@TravisStamper
@TravisStamper Жыл бұрын
Thanks for the information. I have a modded one myself I overclock to get better performance. Thanks for the video MVG
@MajWoody
@MajWoody Жыл бұрын
been waiting for this one!!!
@demonic-deadbeat3212
@demonic-deadbeat3212 Жыл бұрын
Nintendo hates piracy but does nothing to better their consoles to fight against it.
@sgamerbro4943
@sgamerbro4943 Жыл бұрын
It's insane the amount of effort Nintendo put into the security of the Switch. If only I could say the same about Joycon drifting...
@xmine08
@xmine08 Жыл бұрын
They recently announced that they'll fix drifting joycons for the forseeable future if i heard correctly. but yeah, i mean, why can't nintendo of all companies fix this ..
@jh302
@jh302 Жыл бұрын
@@xmine08 because the solution is hll effect sensors and small enough modules didnt exist til recently?
@xmine08
@xmine08 Жыл бұрын
@@jh302 small hall effect sensors have been around for quite some time already
@jh302
@jh302 Жыл бұрын
@@xmine08 yes but no company produced them in the form factor the switch uses
@qlum
@qlum Жыл бұрын
Would have been nice if you went more into detail on how the modchips work as that is kind of newer less known information. But cool that you mention it.
@gyrenrockz
@gyrenrockz Жыл бұрын
Been waiting for this story
@tron0150
@tron0150 Жыл бұрын
Can't wait to play new Zelda at 4k 120 fps , on emulator day one.
@flintfrommother3gaming
@flintfrommother3gaming Жыл бұрын
It's literaly possible right now, if you own an 4090.
@ChiruKobra
@ChiruKobra Жыл бұрын
While a lot of people are happy keeping their launch Switch consoles and working homebrew on them, I feel like in the future people are going to find a soft mod method for all Switch revisions. Don't know how or if it's even actually going to happen (I'm not knowledgeable enough to say "yes" for certain), but people are stubborn enough to find a backdoor.
@AbdAbdAbdAbd
@AbdAbdAbdAbd Жыл бұрын
it's a nintendo console, there WILL be a softmod. i bet when nintendo abandons the switch and starts working on their new console that a team is gonna work to find some sort of vulnerability (probably with the incredibly out of date switch web browser)
@booky6275
@booky6275 Жыл бұрын
well i heard that dude that made atmosphere spend 500 hours looking for a bug and didnt find anything
@NatetheNintendofan
@NatetheNintendofan Жыл бұрын
​@@booky6275 😮😢 😔
@Cee_Nelly
@Cee_Nelly Жыл бұрын
I recently got a Switch OLED and put my launch model switch into retirement. I'm thinking about using it to experiment with homebrew stuff and will be revisiting some of your older videos, MVG.
@yinepuiwhite3955
@yinepuiwhite3955 Жыл бұрын
Yo, the rare MVG Video that isn't at that magical monetization 10-minute mark, and the highlight only goes to the five minute marker? We take those, I miss when MVG put out content in a vein like this. Good video too after watching, was worth the watch.
@user-er6gt6hv6g
@user-er6gt6hv6g Жыл бұрын
Okay, if nintendo name is in a video talking about security and home brew, This means I will download this video before it gets deleted. 😂😂
@magolol3056
@magolol3056 Жыл бұрын
funny how almost every major security issue on the switch is the fault of nvidia
@penepleto1210
@penepleto1210 Ай бұрын
Kinda funny to think about how the amount of stock Nintendo Switch units and Wii U units that are softmod-ready are roughly the same (~15 million Switches vs. all 13.56 million Wii Us)
@danialonderstal3564
@danialonderstal3564 Жыл бұрын
Love these videos, always top quality
@orlandofurioso7329
@orlandofurioso7329 Жыл бұрын
The real scare came from hoping you did not ruin your joycon rail with the tinfoil
@westenlane5147
@westenlane5147 Жыл бұрын
if i had a nickel for every time a nintendo consoles security was bypassed by a small piece of metal , i would have two nickels, which isnt alot but its weird its happened twice
@Roosader
@Roosader Жыл бұрын
Yessss this is one I've been waiting for
@Zerbey
@Zerbey Жыл бұрын
Always my favorite videos, very interesting!
@XP9724
@XP9724 Жыл бұрын
The Switch OLED would be an emulation dream whenever they find an easier way to hack it
@Markimark151
@Markimark151 Жыл бұрын
Nintendo doesn’t focus on game preservation is why there’s lots of motivation for hackers to mod their consoles since Nintendo is limiting their ability to play old games legally! My friend was to mod the Switch lite because he wants to add more games like from the GameCube that never got rereleased!
@Akab
@Akab Жыл бұрын
They don't just "not focus" on it, they're actively fighting it...
@Markimark151
@Markimark151 Жыл бұрын
@@Akab they’re like the Disney of video game companies, they’re trying to hard to protect their IPs and not let people have access to their classic content!
@jh302
@jh302 Жыл бұрын
@@Akab have... you never seen nintendos archive? this statement is idiotic if you have. nintendo archives and preserves literally EVERYTHING every single protoype every single asset every single piece of hardware and random ass doodad they prototype
@Akab
@Akab Жыл бұрын
@@jh302 and how do we play them again? how is keeping them in a centralized place a good way to preserve that data? What's your point? This makes it even worse as they literally keep their games in their basement and do nothing with them. Please just stop bootlicking your favorite companies for no particular reason, they won't thank you anyways.
@jh302
@jh302 Жыл бұрын
@@Akab you assume they are centralized but they have multiple backups of software on tape real they are by the very definition preserved and maintained. preservation does not mean you get to touch them or use them it means they are preserved
@adrianturner9170
@adrianturner9170 Жыл бұрын
Educational as always!! TY
@mehoynoy8560
@mehoynoy8560 Жыл бұрын
ive been waiting on this video for a long time
@Patrick77001
@Patrick77001 Жыл бұрын
How I've missed Mistakes Were Made!
@FatManJerry
@FatManJerry Жыл бұрын
YEAH UNPATCHED V1 SWITCHS AND ATMOSPHERE CFW ON TOP!
@pirriu
@pirriu Жыл бұрын
This is the best series in your channel
@HAXAHAX
@HAXAHAX Жыл бұрын
Been waiting for this
@findantu
@findantu Жыл бұрын
I think the game card slot is the angle of attack honestly. I keep seeing game cards that have exposed tracers and wonder what it would take to rig something like a game genie then card that pretends to be legit then whatever card is plugged into that . I'm sure youd need some sig key or some shit.
@override7486
@override7486 Жыл бұрын
Game cards on swithc doesn't work like cartridges on older game consoles, like NES/SNES. It's not full bus to the CPU and the rest of the hardware.
@NatetheNintendofan
@NatetheNintendofan Жыл бұрын
​@@override7486 I know this is kind of expensive but I don't think it's even possible but it if it is just buy a bunch of cheap Nintendo switch games and then make flashcarts out of them because the switch for think it's the correct game ID
@override7486
@override7486 Жыл бұрын
@@NatetheNintendofan What are you talking about? Switch has been hacked and open for years now, you don't need game cart, cartridge slot or any of that to play games you don't own, run homebrew software and unsigned code in general.
How a USB key defeated security on the Sony PlayStation 3 | MVG
12:20
Modern Vintage Gamer
Рет қаралды 956 М.
Team Xecuter - The story of the infamous Nintendo Switch Modding Group | MVG
14:17
I PEELED OFF THE CARDBOARD WATERMELON!#asmr
00:56
HAYATAKU はやたく
Рет қаралды 35 МЛН
Тяжелые будни жены
00:46
К-Media
Рет қаралды 2,7 МЛН
N64 recompilation is here - and its looking good!
12:50
Modern Vintage Gamer
Рет қаралды 163 М.
How the Sony PlayStation PS4 Security Was Defeated | MVG
12:23
Modern Vintage Gamer
Рет қаралды 795 М.
Nintendo Switch Piracy & Hacking - Did You Know Gaming Ft. Dazz
12:17
DidYouKnowGaming
Рет қаралды 1,5 МЛН
Making The Nintendo Switch Run FASTER And COOLER With This NEW Mod!
18:55
Macho Nacho Productions
Рет қаралды 589 М.
How a pair of Tweezers defeated security on the Nintendo Wii | MVG
11:40
Modern Vintage Gamer
Рет қаралды 5 МЛН
The most important Nintendo 3DS Game Ever Made...
8:37
Modern Vintage Gamer
Рет қаралды 259 М.
How Old-School Computers Played Sound Samples | MVG
14:25
Modern Vintage Gamer
Рет қаралды 110 М.
How the Nintendo GameCube Security was defeated | MVG
11:49
Modern Vintage Gamer
Рет қаралды 1,7 МЛН
How Graphics worked on the Nintendo DS | MVG
13:27
Modern Vintage Gamer
Рет қаралды 838 М.
СТЁР ДРУГА в РОБЛОКС! Roblox #roblox #роблокс
0:28
ВЛАДУС ИГРАЕТ
Рет қаралды 3,1 МЛН
Who Is The Most Suitable To Be The Owner Of The Dog Zoonomaly
0:41
Mischief time
Рет қаралды 13 МЛН
Когда разрабы пофиксят это
0:56
Garga
Рет қаралды 2,3 МЛН
Самый СТРАННЫЙ ЧИТЕР | CLEX #shorts
0:54
CLEX
Рет қаралды 4,4 МЛН
Baby Tvman Passes Mrbeast'S Test And The End 👍️
0:37
BigSchool
Рет қаралды 2,7 МЛН