xbox-scene.com - your xbox news information source
Quick Links: Main Forums | Xbox360 Forums | Xbox1 Forums | PS3 Forums
Xbox-Scene Forum Help  Search Xbox-Scene Forums   Xbox-Scene Forum Members   Xbox-Scene Calendar

Giganews Usenet Offers: +1150 days binary retention, 99%+ Completion, and Unlimited Speed/Access!

360 ODD Emulators: X360 Key $99 | Wasabi360 FAT $99 | Wasabi360 Slim $99
C4E's iXtreme Burner MAX Drive: LiteOn iHAS124 DROPPED TO JUST $17


Welcome Guest ( Log In | Register )

 Forum Rules Rules
 
Reply to this topicStart new topic
> Could One Intentionally Burn An Efuse?
mrkleen340
post Jul 23 2011, 01:27 AM
Post #1


X-S Enthusiast


Group: Members
Posts: 3
Joined: 23-July 11
Member No.: 455660
Xbox Version: v1.4
360 version: v1 (xenon)



Is it possible to burn the eFuses holding the CPU key? If we were to burn all of them we would then know what the CPU key was without xell and if we had a decrypted nand couldn't we now use this key and write that nand to the console after getting the DVD key by other means? In theory we could uncripple a whole bunch of consoles or mismatched dvd/mobo (for offline play of course)
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
kkdd
post Jul 23 2011, 12:32 PM
Post #2


X-S Member
*

Group: Members
Posts: 103
Joined: 26-May 06
From: London, UK
Member No.: 283755
Xbox Version: v1.3
360 version: v4.0 (jasper)



You want to protect efuses, and not burn them. With post-7371 consoles they're already burnt so no-go.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
mrkleen340
post Jul 23 2011, 04:29 PM
Post #3


X-S Enthusiast


Group: Members
Posts: 3
Joined: 23-July 11
Member No.: 455660
Xbox Version: v1.4
360 version: v1 (xenon)



For the most part I would agree with you, but if you target only the fuses holding the CPU key you could (in theory) manually set your key to all F then alter a donor nand to work with this key? This would obviously only be for consoles where CPU key recovery is impossible.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
No_Name
post Jul 23 2011, 04:59 PM
Post #4


X-S Freak
*****

Group: Members
Posts: 1154
Joined: 28-January 03
Member No.: 21640



There is more than likley checks to check that a CPU key is valid before allowing the system to boot to prevent this type of hack.

Also you run the risk of burning the wrong fuse lines and rather than compromising the system locking the console down even further.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
JJTag83
post Aug 8 2011, 09:08 PM
Post #5


X-S Enthusiast


Group: Members
Posts: 4
Joined: 8-August 11
Member No.: 456137



QUOTE(No_Name @ Jul 23 2011, 04:59 PM) *

There is more than likley checks to check that a CPU key is valid before allowing the system to boot to prevent this type of hack.

What if burn part of them like 31 of 32?
And then try to guess last one? 256 NAND writes.
If last byte is already FF and FF...FF blocked in 1BL then console bricks.
Or new 2BL doesn't allow JTAG anyway?
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
No_Name
post Aug 8 2011, 09:45 PM
Post #6


X-S Freak
*****

Group: Members
Posts: 1154
Joined: 28-January 03
Member No.: 21640



You still will be burning blind and will end up having a brick for a console.

The CPU is locked down tight, its a fortress within a fortress.

Forget the fuses and instead look for holes in the hypervision as its the only logical way to get the right level of access to run unsigned code, but good luck with that..
Its also a fortress which to date has only had one small chink in the armor.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
JJTag83
post Aug 9 2011, 07:16 PM
Post #7


X-S Enthusiast


Group: Members
Posts: 4
Joined: 8-August 11
Member No.: 456137



QUOTE(No_Name @ Aug 8 2011, 09:45 PM) *

You still will be burning blind

What if send command via pins on CPU to blow fuse and then somehow check use of R6T3 but do not allow voltage come through this resistor?

If voltage used only in case of fuse blow then we can determine fuse state without blowing it.
Of cause it's a long shot and may be totally stupid.

Prerequisites:
1. Can blow fuse through pins on CPU.
2. Voltage from R6T3 used only in case of blow of un-blown eFuse, but not in case of blow blown eFuse.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
No_Name
post Aug 9 2011, 11:47 PM
Post #8


X-S Freak
*****

Group: Members
Posts: 1154
Joined: 28-January 03
Member No.: 21640



Honestly.. I am not sure if you can blow a fuse through the pains, but you still are blowing blind.

You wont know what fuse gets blown as you have no control over the process and could fry the CPU instead of blowing a fuse.

Seriously, this is newbie type questions and no suited for this forum.

Like I said the CPU is a fortress, the EFuse system is very very secure and its pointless attacking them as you will do more damage rather than find an exploit.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
JJTag83
post Aug 29 2011, 10:59 AM
Post #9


X-S Enthusiast


Group: Members
Posts: 4
Joined: 8-August 11
Member No.: 456137



QUOTE(No_Name @ Aug 9 2011, 11:47 PM) *

Like I said the CPU is a fortress

Fortress, huh? Reset glitch hack! biggrin.gif
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
No_Name
post Aug 29 2011, 08:25 PM
Post #10


X-S Freak
*****

Group: Members
Posts: 1154
Joined: 28-January 03
Member No.: 21640



QUOTE(JJTag83 @ Aug 29 2011, 02:59 AM) *

Fortress, huh? Reset glitch hack! biggrin.gif

*Rolls eyes* Context FTW there.

Read the whole sentence I posted, here it is again

QUOTE
Like I said the CPU is a fortress, the EFuse system is very very secure and its pointless attacking them as you will do more damage rather than find an exploit.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
ichigo1234
post Sep 20 2011, 09:50 PM
Post #11


X-S Enthusiast


Group: Members
Posts: 25
Joined: 20-September 11
Member No.: 457462
Xbox Version: unk
360 version: unknown



Simple answer no lolol.

Long answer Reset Glitch.
User is offlineProfile CardPM
Go to the top of the page
+Quote Post
clt42
post Jan 26 2013, 06:43 AM
Post #12


X-S Enthusiast


Group: Members
Posts: 5
Joined: 25-January 13
Member No.: 467051
Xbox Version: unk
360 version: v1 (xenon)



QUOTE(No_Name @ Aug 9 2011, 03:47 PM) *

Honestly.. I am not sure if you can blow a fuse through the pains, but you still are blowing blind.

You wont know what fuse gets blown as you have no control over the process and could fry the CPU instead of blowing a fuse.

Seriously, this is newbie type questions and no suited for this forum.

Like I said the CPU is a fortress, the EFuse system is very very secure and its pointless attacking them as you will do more damage rather than find an exploit.

Time to find a leaking function in the hv lol
User is offlineProfile CardPM
Go to the top of the page
+Quote Post





Reply to this topicStart new topic

 

Lo-Fi Version Time is now: 21st May 2013 - 06:32 PM