xboxscene.org forums

Xbox360 Forums => Xbox 360 Hacking Forums => General Technical Hacking Discussion => Topic started by: Xbox-Scene on December 28, 2007, 08:50:00 AM

Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: Xbox-Scene on December 28, 2007, 08:50:00 AM
24C3 Xbox360 Secuirty Lecture Live!
Posted by XanTium | December 28 10:14 EST | News Category: Xbox360
 
Here's a live stream of Felix Domke's (alias Tmbinc) and Michael Steil's (alias Mist) Lecture at the 24th Chaos Communication Congress in Berlin, Germany.
"Why Silicon-Based Security is still that hard: Deconstructing Xbox 360 Security

The Xbox 360 probably is the video game console with the most sophisticated security system to date. Nevertheless, is has been hacked, and now Linux can be run on it. This presentation consists of two parts.
"

*update* The lecture is over now. They fully explained the HyperVisor and Shader (King Kong) Exploit and how these could be used to boot Linux. They also talked a bit about the Timing Attack. At the end they talked about native Wii homebrew, but we're no Wii site so let's pass ;p
We'll try to offer you a on-demand stream of this lecture as soon as possible.



Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: Morninglight on December 28, 2007, 09:25:00 AM
Euhm, do I miss something? or is there no link or video playing?
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: troyBORG on December 28, 2007, 09:36:00 AM
We must of missed it.  I can't get it to play.  

Onlything I could get to play was the 2nd Saal and there were talking about "linguistic hacking".
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: mlapaglia on December 28, 2007, 09:37:00 AM
/me pulls out translator dictionary
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: Sirusdv on December 28, 2007, 09:46:00 AM
Yeah, I can't get it play for me either. Someone please link a mirror if they find one post-talk.
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: SkiFreak on December 28, 2007, 09:51:00 AM
Mirrors can be found here:

http://events.ccc.de/congress/2007/Streaming
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: SkiFreak on December 28, 2007, 09:34:00 AM
Wowza; native wii homebrew.. they found encryption/decryption keys in the a running wii's flash memory dump and were able to access all of the wii's hardware (wiimote data, bluetooth, etc) smile.gif coolness. (Sorry for being a bit off topic; they just ended the presentation with a short bit on the wii and presented an app they got working "about an hour ago")...
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: MysticalMagnet on December 28, 2007, 10:22:00 AM
are they going to have videos that we can just watch then really interested in this stuff
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: thomas2099 on December 28, 2007, 10:47:00 AM
Nothing really new what i saw at the 24c3. They "just" showed how the security system works an how they hacked it and what they've done to make Linux work and showed an customized king kong disc and make linux boot. They said that new 65nm xboxes don't work with this hack but not because microsoft fixed it (IMG:style_emoticons/default/smile.gif) but because of the new hardware which the old dashboard doesnt work on (needs some dashboard patches). I can confirm that they showed an early Wii hack (IMG:style_emoticons/default/smile.gif)

This post has been edited by thomas2099: Dec 28 2007, 06:50 PM
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: CHdude on December 28, 2007, 10:49:00 AM
U guys won't understand anything it is GERMAN!!! CCC is a german!!
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: thomas2099 on December 28, 2007, 10:54:00 AM
you are wrong it was in english! like every year.
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: thund3rstruck on December 28, 2007, 10:59:00 AM
QUOTE(thomas2099 @ Dec 28 2007, 06:54 PM) View Post

you are wrong it was in english! like every year.


No it's not. Did you even click the link? It's in Dutch or German. Also for those complaining about not getting the video to run, it only works in Internet Explorer.
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: thomas2099 on December 28, 2007, 11:47:00 AM
I'm on the 24c3 and i saw it. IT WAS IN ENGLISH! I'm not talking about the homepage.

This post has been edited by thomas2099: Dec 28 2007, 07:48 PM
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: dustcrazy on December 28, 2007, 01:35:00 PM
Since this is over, is there any chance that I'll be able to watch this? I ove sleep....
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: lightsp33d on December 28, 2007, 01:27:00 PM
Does anybody know where we can expect some video feeds about 360 itself uhh.gif
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: erexx on December 28, 2007, 03:11:00 PM
If the Xbox360 is supposed to be such an "elite" secure system,
(and it probably still would be if the DVD firmware had been secured)

Why then no mention of the PS3's security, which has yet to see a successful hack on it primary IP?
(Not including the minor http proxy <1.6 and linux <2.01 rsx push hacks)

So far, the PS3 has the most secure IP delivery system in the home console market.
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: thomas2099 on December 28, 2007, 03:36:00 PM
Sony was very clever because they didn't start a "war" against linux guys. Mostly Linux Hackers combined with "play pirated game" hackers bring a hack very quickly. Like it was on the XBox 1. Thats exactly what they told in the first part of the presentation. They didnt show anything about the PS3 but it sounds like "hey it runs linux, why should we be interested of hacking this damn thing".
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: angrypond on December 28, 2007, 04:33:00 PM
anyone know of a recording of this lecture?

will they be uploaded onto the ccc website do ya think?.
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: bucko on December 28, 2007, 04:07:00 PM
<hoping for a divx version so we can watch it on our 360  sleep.gif wow and we don't have to hack our 360 to watch divx biggrin.gif
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: ssj4android on December 28, 2007, 04:58:00 PM
I see the small Wii portion was posted on YouTube. Anyone have a video of the whole thing? Do these people have a public website?
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: ssj4android on December 28, 2007, 05:26:00 PM
Video link, apparently. I'm still downloading it.
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: angrypond on December 28, 2007, 06:12:00 PM
hmmm cant connect ahhh
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: erexx on December 28, 2007, 07:34:00 PM
QUOTE(thomas2099 @ Dec 28 2007, 10:36 PM) *

Sony was very clever because they didn't start a "war" against linux guys. Mostly Linux Hackers combined with "play pirated game" hackers bring a hack very quickly. Like it was on the XBox 1. Thats exactly what they told in the first part of the presentation. They didnt show anything about the PS3 but it sounds like "hey it runs linux, why should we be interested of hacking this damn thing".


True, but unfortunately the latest firmware 2.10, with full DivX support, blocks the current RSX hack for linux.
Linux without graphics acceleration is really a waste.
Title: 24C3 Xbox360 Secuirty Lecture Live!
Post by: ssj4android on December 28, 2007, 10:08:00 PM
BTW, you have download that link. It's 739 MB, I got interrupted part way through with Firefox and am going to try it with a download manager.