My job lies in network security and packet analysis, catching hackers/stopping them etc. Most of this is though monitoring and analysing network traffic and packets.
Maybe it would be a good idea to run ethereal/wireshark off a hub or a spaning port on a switch or router when connecting to Live and seeing what the hell is actually sent to M$. I doubt its a SSH/SSL connection and Live is just a Network that uses TCP/IP so the traffic should be able to be analysed. If anyone wants to have a bash and send me the packets - IM me for my email address and I'll / we can try to work it out.
I imagine it will be a simple 3 way handshake followed by sending an "hash" of the console. If this doesnt match - ban the console (probably done via the MAC address - which can be spoofed btw)
I think the answer to bannings on Live lies in finding out whats sent to M$ on both a normal and a moddified xbox. Then we can work on the packets potentially crafting/spoofing legitimate ones and then connect to Live.
I've checked the Assigned ports from IANA and both TCP and UDP ports 3074 are assigned to XBOX...
I dont agree with hacking - but if it didnt happen I wouldnt have a job! however, I've hacked my iPod touch using the TIFF image buffer overflow and now I can install 3rd part applications. this is done by a simple buffer overflow and creating a Putty session into the iPod using wireless from a PC. Now onto my point....
Imagine if you could do the same to an XBOX. e.g connect it to your PC, throw some network traffic at it, crash the stack and gain full read writes to the machine... how kool would that be?!
Ive just checked on the search engine begining with a G and found NO results for "wireshark/ethereal xbox traffic" - it looks like this kind stuff hasnt been done yet!
Obviously Live doesnt let you browse the internet or view images but (and im sorry if im getting "geeky") somewhere there must be an unchecked boundary where you can cause an overflow. This could allow you to modify the dashboard - install your own apps - connect to live using spoofed credentials and play away etc etc etc
some of you might understand all that / some might not. I think there could be some massive scope though.
Remember, Im not on about hacking each other xbox's whilst on live im talking about a similar method to the iPod touch Jailbreak hack and getting the most out of your console.
Thoughts...
H04X
