3 ms·
The wii hacks were all based on awful implementation of the AES methods, wasn't it?
by profeta 11y ago
The wii hacks were all based on awful implementation of the AES methods, wasn't it?
- beefhash 11y agoWasn't the first main Wii hack (trucha bug) actually a bad implementation of RSA signature verification (strncmp instead of memcmp)? I don't know about the other ones, but I thought they were all pretty much game-local.
- JoshTriplett 11y ago> Wasn't the first main Wii hack (trucha bug) actually a bad implementation of RSA signature verification (strncmp instead of memcmp)? Yes; with that bug, you could select a signature to collide with that had an early NUL and brute-force a signature that matched up to that NUL. > I don't know about the other ones, but I thought they were all pretty much game-local. No, at least two other exploitable issues occurred in the system software: Bannerbomb (http://wiibrew.org/wiki/Bannerbomb http://wiibrew.org/wiki/Bannerbomb) exploited the parsing of banners for data stored on an SD card (running arbitrary code when accessing the SD data management menu), and LetterBomb (http://wiibrew.org/wiki/LetterBomb http://wiibrew.org/wiki/LetterBomb) exploited the parsing of Wii Message Board "letters".