<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Putting the genie back into bottle? (MIOS)</title>
	<atom:link href="http://hackmii.com/2008/06/genie-into-bottle-mios/feed/" rel="self" type="application/rss+xml" />
	<link>http://hackmii.com/2008/06/genie-into-bottle-mios/</link>
	<description>Notes from inside your Wii</description>
	<lastBuildDate>Thu, 09 Sep 2010 08:22:56 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: shuffle2</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-6262</link>
		<dc:creator>shuffle2</dc:creator>
		<pubDate>Fri, 18 Jun 2010 17:41:18 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-6262</guid>
		<description>The link to the wiimpersonator log needs to have the region dir added to the url :)</description>
		<content:encoded><![CDATA[<p>The link to the wiimpersonator log needs to have the region dir added to the url <img src='http://hackmii.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Korean Wii</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-2984</link>
		<dc:creator>Korean Wii</dc:creator>
		<pubDate>Sat, 13 Sep 2008 22:17:28 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-2984</guid>
		<description>[...] xt5 astutely noted, there is a field in the ticket structure &#8212; byte 0&#215;1f1 &#8212; that is set to 1 in [...]</description>
		<content:encoded><![CDATA[<p>[...] xt5 astutely noted, there is a field in the ticket structure &#8212; byte 0&#215;1f1 &#8212; that is set to 1 in [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bushing</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-2000</link>
		<dc:creator>bushing</dc:creator>
		<pubDate>Thu, 10 Jul 2008 11:58:14 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-2000</guid>
		<description>@Hatchhaker:  Thanks for the nice summary.  As for the OTP -- we don&#039;t know exactly how it&#039;s implemented, but from the boot0 code it appears that it starts out as all zeroes and is selectively flipped to ones (so, like fuses, and opposite of PROM).   If we could flip them all to zeroes, we could change boot1 as much as we want; if we flip them all to ones, I believe the device would become unusable.   Nobody&#039;s actually tested to see if it&#039;s possible to modify that memory;  feel free to be the first. :)

@andoba: I agree that the Chinese market is probably very tempting for Nintendo, and would also be a huge piracy concern.  Unfortunately, I don&#039;t think that changing the common key will really help anything, but ... oh well.</description>
		<content:encoded><![CDATA[<p>@Hatchhaker:  Thanks for the nice summary.  As for the OTP &#8212; we don&#8217;t know exactly how it&#8217;s implemented, but from the boot0 code it appears that it starts out as all zeroes and is selectively flipped to ones (so, like fuses, and opposite of PROM).   If we could flip them all to zeroes, we could change boot1 as much as we want; if we flip them all to ones, I believe the device would become unusable.   Nobody&#8217;s actually tested to see if it&#8217;s possible to modify that memory;  feel free to be the first. <img src='http://hackmii.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>@andoba: I agree that the Chinese market is probably very tempting for Nintendo, and would also be a huge piracy concern.  Unfortunately, I don&#8217;t think that changing the common key will really help anything, but &#8230; oh well.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: andoba</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-1997</link>
		<dc:creator>andoba</dc:creator>
		<pubDate>Thu, 10 Jul 2008 08:57:14 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-1997</guid>
		<description>Well, I have no idea about how does the Wii work, but after reading this post, my thoughts are that all the bug exploiting - bug fixing game that hackers and Nintendo are playing, could be a sandbox for releasing in China a hackfree iQue Wii, as said before.

China is a very, very potential market, many potential users if launched at the right price. Also there is a huge problem with piracy, you can buy pirate iQue DS games which are inside GBA carts; I have no idea about how do they do it, but chinese have a huge industry into piracying and possibly Nintendo want a firm ground before launching it.</description>
		<content:encoded><![CDATA[<p>Well, I have no idea about how does the Wii work, but after reading this post, my thoughts are that all the bug exploiting &#8211; bug fixing game that hackers and Nintendo are playing, could be a sandbox for releasing in China a hackfree iQue Wii, as said before.</p>
<p>China is a very, very potential market, many potential users if launched at the right price. Also there is a huge problem with piracy, you can buy pirate iQue DS games which are inside GBA carts; I have no idea about how do they do it, but chinese have a huge industry into piracying and possibly Nintendo want a firm ground before launching it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Hatchhaker</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-1993</link>
		<dc:creator>Hatchhaker</dc:creator>
		<pubDate>Wed, 09 Jul 2008 17:27:33 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-1993</guid>
		<description>So, to sum up there&#039;s a bunch of possible reasons for this update:

1) if the keys for Korean wiis are different, that could stop them from getting the keys or at least for them to spread,
2) having two keys, one for old games and one for new games,
3) so that versions for future regions use a different key,
4) hoping that the keys are not widespread enough as to get &quot;popular&quot; (last time I checked I couldn&#039;t find them online), so they eventually &quot;die&quot; after some time and noone else can retrieve them again,
5) as a message to hackers that they&#039;re covering the holes,
6) it&#039;s a security bug anyway; fixing it makes no harm and leaving it open is slightly more risky.

#46&#039;s points sound fairly valid to me as well (not to maintain two separate versions, plus the possible new storage).

Now that I&#039;m here, out of curiousity, can&#039;t an OTP be totally zeroed (or &quot;oned&quot;) out? If they are like fuses, which is the concept I have of an OTP, that should be possible (without any possibility to roll back, of course.)</description>
		<content:encoded><![CDATA[<p>So, to sum up there&#8217;s a bunch of possible reasons for this update:</p>
<p>1) if the keys for Korean wiis are different, that could stop them from getting the keys or at least for them to spread,<br />
2) having two keys, one for old games and one for new games,<br />
3) so that versions for future regions use a different key,<br />
4) hoping that the keys are not widespread enough as to get &#8220;popular&#8221; (last time I checked I couldn&#8217;t find them online), so they eventually &#8220;die&#8221; after some time and noone else can retrieve them again,<br />
5) as a message to hackers that they&#8217;re covering the holes,<br />
6) it&#8217;s a security bug anyway; fixing it makes no harm and leaving it open is slightly more risky.</p>
<p>#46&#8217;s points sound fairly valid to me as well (not to maintain two separate versions, plus the possible new storage).</p>
<p>Now that I&#8217;m here, out of curiousity, can&#8217;t an OTP be totally zeroed (or &#8220;oned&#8221;) out? If they are like fuses, which is the concept I have of an OTP, that should be possible (without any possibility to roll back, of course.)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: etc</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-1897</link>
		<dc:creator>etc</dc:creator>
		<pubDate>Tue, 01 Jul 2008 23:26:26 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-1897</guid>
		<description>[...] Wii:  We believe that the new Korean Wiis have a new common key, and we won&#8217;t be able to use our tweezer attack to recover it.  I&#8217;d like to take a look at one and see what other avenues of attack there [...]</description>
		<content:encoded><![CDATA[<p>[...] Wii:  We believe that the new Korean Wiis have a new common key, and we won&#8217;t be able to use our tweezer attack to recover it.  I&#8217;d like to take a look at one and see what other avenues of attack there [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-1895</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Tue, 01 Jul 2008 19:33:00 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-1895</guid>
		<description>@Kieran: Well, i live in Europe, got SSBB, and did have to update.</description>
		<content:encoded><![CDATA[<p>@Kieran: Well, i live in Europe, got SSBB, and did have to update.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kieran</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-1883</link>
		<dc:creator>Kieran</dc:creator>
		<pubDate>Sun, 29 Jun 2008 06:04:12 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-1883</guid>
		<description>@ linkinworm

I just got the PAL version of SSBB; it didn&#039;t make me update anything (I have whatever is the version before 3.3).</description>
		<content:encoded><![CDATA[<p>@ linkinworm</p>
<p>I just got the PAL version of SSBB; it didn&#8217;t make me update anything (I have whatever is the version before 3.3).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bushing</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-1866</link>
		<dc:creator>bushing</dc:creator>
		<pubDate>Fri, 27 Jun 2008 14:07:22 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-1866</guid>
		<description>I don&#039;t think that the new common key / MIOS / whatever is related to the alledged future &quot;storage solution&quot;.  It&#039;s a red herring.</description>
		<content:encoded><![CDATA[<p>I don&#8217;t think that the new common key / MIOS / whatever is related to the alledged future &#8220;storage solution&#8221;.  It&#8217;s a red herring.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anonymous coward</title>
		<link>http://hackmii.com/2008/06/genie-into-bottle-mios/comment-page-2/#comment-1853</link>
		<dc:creator>Anonymous coward</dc:creator>
		<pubDate>Thu, 26 Jun 2008 11:59:39 +0000</pubDate>
		<guid isPermaLink="false">http://hackmii.com/?p=55#comment-1853</guid>
		<description>It depends if it&#039;s proprietary or not. The problem is nobody knows what it is.

If it&#039;s not proprietary it can&#039;t store a key or firmware upgrade on the device itself and as it stands both the SD card slot and the USB ports are very slow and limiting for storage. Are we sure that the SD card slot is limited by hardware to 2Gb and the USB port is limited by hardware to 1.1 or can this be fixed with a system software upgrade?

If it&#039;s proprietary then it could carry some firmware upgrade or key on the device itself which could be read by the Wii.

If the device is large enough to store an ISO, Nintendo may also want a new key in an effort to prevent ISO loaders.

They&#039;ve also stated that it won&#039;t be a hard drive. So this means one of the following...

a) It&#039;s proprietary and therefore could contain some firmware or a key or both which can be read by the Wii on connecting for the first time, pairing the device to that Wii.

B) It&#039;s an SD card which is currently limited to 2Gb unless this can be fixed with a firmware upgrade.

c) It&#039;s a USB mass storage device with support for hard drives deliberately removed (or possibly with an artificial upper limit for storage, e.g. assuming that everything larger than e.g. 8Gb is a hard drive).

For options b) and c) it may require formatting to a non-FAT filesystem first, a filesystem which may be encrypted with a new key.

Streaming by wifi could be done via SMB but it adds a whole new support nightmare for routers, networking, etc...

These are just ideas, until we know more we can only guess.</description>
		<content:encoded><![CDATA[<p>It depends if it&#8217;s proprietary or not. The problem is nobody knows what it is.</p>
<p>If it&#8217;s not proprietary it can&#8217;t store a key or firmware upgrade on the device itself and as it stands both the SD card slot and the USB ports are very slow and limiting for storage. Are we sure that the SD card slot is limited by hardware to 2Gb and the USB port is limited by hardware to 1.1 or can this be fixed with a system software upgrade?</p>
<p>If it&#8217;s proprietary then it could carry some firmware upgrade or key on the device itself which could be read by the Wii.</p>
<p>If the device is large enough to store an ISO, Nintendo may also want a new key in an effort to prevent ISO loaders.</p>
<p>They&#8217;ve also stated that it won&#8217;t be a hard drive. So this means one of the following&#8230;</p>
<p>a) It&#8217;s proprietary and therefore could contain some firmware or a key or both which can be read by the Wii on connecting for the first time, pairing the device to that Wii.</p>
<p>B) It&#8217;s an SD card which is currently limited to 2Gb unless this can be fixed with a firmware upgrade.</p>
<p>c) It&#8217;s a USB mass storage device with support for hard drives deliberately removed (or possibly with an artificial upper limit for storage, e.g. assuming that everything larger than e.g. 8Gb is a hard drive).</p>
<p>For options b) and c) it may require formatting to a non-FAT filesystem first, a filesystem which may be encrypted with a new key.</p>
<p>Streaming by wifi could be done via SMB but it adds a whole new support nightmare for routers, networking, etc&#8230;</p>
<p>These are just ideas, until we know more we can only guess.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
