xboxscene.org forums

Author Topic: Not Going To Include The Detaiiil 2 That Xtent.  (Read 85 times)

XtrordinarY

  • Archived User
  • Newbie
  • *
  • Posts: 3
Not Going To Include The Detaiiil 2 That Xtent.
« on: April 22, 2006, 09:22:00 AM »

Just Found an exploit in X360 similar to P.C(also works in a P.C.) .
Most big companies like M$ were mostly concerned on common methods used for EXPLOITING.
But forgot abt this...

The mp3 files ID3 tag.  [malformed header]. muhaha.gif
forget abt Firmware for sometime... [this is easy]
No more details...`
Logged

MaTiAz

  • Archived User
  • Full Member
  • *
  • Posts: 220
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #1 on: April 23, 2006, 08:42:00 AM »

QUOTE(XtrordinarY @ Apr 22 2006, 04:29 PM) View Post

Just Found an exploit in X360 similar to P.C(also works in a P.C.) .
Most big companies like M$ were mostly concerned on common methods used for EXPLOITING.
But forgot abt this...

The mp3 files ID3 tag.  [malformed header]. muhaha.gif
forget abt Firmware for sometime... [this is easy]
No more details...`

Have you tested this? Hypervisor blocks buffer overflows, so that shouldn't work. (BTW, has anyone actually tested a buffer overflow on a 360?)
Logged

PedrosPad

  • Archived User
  • Hero Member
  • *
  • Posts: 1277
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #2 on: April 24, 2006, 02:23:00 AM »

QUOTE(MaTiAz @ Apr 23 2006, 03:49 PM) View Post

(BTW, has anyone actually tested a buffer overflow on a 360?)

Fuzzing inputs into the X360 can cause it to crash/freeze.  So not every exception is gracefully handled.
Logged

XtrordinarY

  • Archived User
  • Newbie
  • *
  • Posts: 3
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #3 on: April 26, 2006, 02:52:00 PM »

Unlike what my thread says,
I'm back.  muhaha.gif
Xbox 360 Goes to black/corrupt screen and gets struck, Needs to reboot!
Argghh.. Hypervisor, Gives me hyper anger.


Trying to port this to Orig XBOX:
.CDA format [actually works in Winamp 5 on a P.C. small executable can be executed by playing it, not available in the wild any where...]
( if done, simply play a [Jakaaas - not english] music file from a Raw Evil - crafted Audio CD,
Voila - Evo-X boots up and mod up the orig XBOX with out a Mem Card or a 007/SC/MA.  sleeping.gif
Logged

deadparrot

  • Archived User
  • Hero Member
  • *
  • Posts: 1252
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #4 on: April 27, 2006, 08:59:00 AM »

And how do you propose we write the executable this loads?  And, do you really think that a buffer overflow will get past the hypervisor and allow us to patch the public key again?  That's what MS worked hardest on to prevent.
Logged

XtrordinarY

  • Archived User
  • Newbie
  • *
  • Posts: 3
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #5 on: April 27, 2006, 01:47:00 PM »

Try links in my sig.. ph34r.gif
Logged

lordvader129

  • Archived User
  • Hero Member
  • *
  • Posts: 5860
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #6 on: April 27, 2006, 03:13:00 PM »

QUOTE(XtrordinarY @ Apr 27 2006, 02:54 PM) View Post
Reg the above post, I think the only possible thing would be a Hardware Bypasser(u know what i mean?[the usual things])
Awright, I decided to change platform away 4m 360.

Now regarding Code Execution in .Cda (Audio CD) > Has any one ever tried this before on a orig XBOX?
I'm sure i will suceed becz the same Code execution embedded in .Cda(not exactly this file, the audio actual data), runs well in a WinXP SP2(winamp 5) p.c.! [Audio playback is only d possible sport to fancize the XBOX, unlike 360, which plays mp3 too]

 ph34r.gif Try links in my sig.. ph34r.gif

it wont work, the cda simply says "go execute this code" and windows does it

in an xbox (or xbox 360) the cda will say "go execute this code" and the bios will look at it and say "no way, its not signed"
Logged

Wolves

  • Archived User
  • Sr. Member
  • *
  • Posts: 327
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #7 on: May 04, 2006, 12:20:00 AM »

QUOTE(PedrosPad @ Apr 24 2006, 02:30 AM) View Post

Fuzzing inputs into the X360 can cause it to crash/freeze.  So not every exception is gracefully handled.



QUOTE(lordvader129 @ Apr 27 2006, 03:20 PM) View Post

it wont work, the cda simply says "go execute this code" and windows does it

in an xbox (or xbox 360) the cda will say "go execute this code" and the bios will look at it and say "no way, its not signed"

LOL
Logged

lordvader129

  • Archived User
  • Hero Member
  • *
  • Posts: 5860
Not Going To Include The Detaiiil 2 That Xtent.
« Reply #8 on: May 30, 2006, 05:36:00 PM »

im getting sick of seeing this useless thread at the top of the forum all the time
Logged