1110°

Xbox Hackers Have Managed To Dump NAND of Xbox One

It's closing in on to being nearly a week since the Xbox One was officially launched by Microsoft. Facing a lot of hiccups and bumpy roads leading to the launch, Microsoft still managed to sell one million units to the customers within 24hours but keep in mind that it is a total of selling units in 13 key countries.

Hackers confirm that they have successfully managed to dump Xbox One's NAND.

Read Full Story >>
gearnuke.com
dedicatedtogamers3840d ago (Edited 3840d ago )

PSP: The Console.

I remember reading an article a bit ago which postulated that the security for Xbox One was going to be weak. After all, the original form of security was always-on DRM and registering your game discs with a mandatory install.

And in less than a year, the XBox team has had to gut that system, start all over, and develop a new method of copyright protection, online security, account verification, anti-hacking methods, etc. And now that you don't HAVE to be online, there is no way to prevent it. Anyone who works with computers or network security knows that you can't create an infrastructure that is

1) Stable
2) Fast
3) Widespread, and
4) Secure

in less than a year. If you have less than a year, pick one from that list. If you're lucky, pick two.

What is more worrying is that if hackers have been able to do that ALREADY, what will they unlock in 6 months? A year? Is your account information safe? How about your credit-card info? Will there be hackers and cheaters in online multiplayer games?

pete0073840d ago

Not long ago i prophetized that this generation of consoles will be the EASIEST of all to reverse engeneer. why? you ask! X86 architecture for 30 years on the hands of modders, pirates and university guys that hack sometimes just for fun or to prove their skills.
dont tell me the semi custom bullshit and all those specific chips. a good ivy bridge, not to go haswell+ a capable Gpu with some good ram to keep bandwidt sky high ( guess what... ddr4 is coming soon!!)
and thats all. a flahed firmware and fire your guns.
the only good thing is that the most hacked one is the best seller.... aka ps2......

ginsunuva3840d ago

This has nothing to do with credit card info.

But everything else is true

Omegasyde3840d ago (Edited 3840d ago )

I work in Network security and your statement of "Anyone who works with computers or network security knows that you can't create an infrastructure that is ...less than a year is" is far away from the truth.

Network security is all about resource management. Microsoft could of improved security and could of changed the system security protocols in a month if they wanted too.

The reason the Xbox is getting modded, is because of piss poor management and or policies. Let alone the fact Xbox1 OS also uses a windows kernel + x86, which modders have been playing with for years.

I will agree with your statement that the this was a horrible insight since the system's proprietary features originally relied on always-on DRM.

dedicatedtogamers3840d ago (Edited 3840d ago )

@ Omegasyde

So you're saying that Microsoft could've made a network from the ground up (after scrapping the original X1 DRM) in less than a year that was fast, widespread, reliable, and secure?

I don't think so. Like I said, pick one. Pick two if you're lucky. I agree that, yes, you COULD scrape together working protocols for a nation-wide network - heck, maybe even a worldwide network - in a month or two. But it will have serious flaws, security being one of them.

Let's hope PS4 doesn't also have these sort of security problems.

EDIT @ inveni0

Okay, let's not waste time arguing about semantics. The point is that Microsoft didn't have enough time to add enough proper layers of security to the Xbox One. Simple. Any questions?

mark134uk3840d ago

i think ms will allow it to be hacked as it will boost sales like it did with the 360

nveenio3840d ago

@dedicatedtogamers

"Secure" doesn't exist in reality. THAT'S what every network security professional knows. There is always a hole. Rushed networks are less secure than established networks, but that doesn't mean they fall within the scope of the broad generalization the term "secure" provides.

3840d ago
4Sh0w3840d ago

I heard this all before with the 360 launch and how it was doomed, 360 did fine, Xbox most stable, console and games sales did quite well. In other words who cares= I buy games and enjoy my console like most good citizens.

KiLLeRCLaM3840d ago

They are gonna hack our accounts and steal our passwords/credit card info and all that good stuff..

Eonjay3840d ago

I used to hack my PS3 but I gave in and decided to support the developers. I didn't do it for Sony, I did it because I wanted to show my appreciation to the developers that put their time and effort into playing the games I loved. After I updated, I went out and bought the same games I used to pirate. The only way to keep the good games coming is to support the people who create them.

Oner3840d ago

@ mark134uk "i think ms will allow it to be hacked as it will boost sales like it did with the 360"

Not always true, look at what happened to the Dreamcast. Having a hacked system may increase sales of said console but at the cost of the system being sold at a loss to the manufacturer i.e. no profit, as well as no profit for the games that are available.

In a situation like that you may think it's good as you are getting "free" games but what happens when devs dont make money? They don't make games. Then what? You can't download games that aren't being made.

Now CFW and Homebrew that is a different story and is completely fine. But we all know that is not the main intent/use by the vast majority of users do so.

indysurfn3840d ago

Okay I'm calling total Bull. booo hoo, woe is us now we will get hacked without DRM. If being connected would save systems from being hacked then why is there currently hacked xbox360 machines that sign on, and get updates ALL THE TIME! Every single day, and they do not get banned!

This sounds like a article that is paid for by Microsoft. They are hiding behind you giving up your freedom, so they can police you!

Remember 85% of all news articles are paid for by a sponsor!

TOTAL BS I for one am not falling for it.
First ban the xbox360's that sign in to get updates so they can run there games. Then make that stupid claim!

GribbleGrunger3840d ago (Edited 3840d ago )

Can they access your Kinect camera?

DatNJDom813840d ago (Edited 3840d ago )

False Flag Ops. DRM will return.

badz1493840d ago

all I can say is...This is why we can't have nice things!

on the other hand, x86 architecture and Windows on top of it? it's no longer a "come at me, bro" situation with the hackers, it's more like "please be gentle" kinda thing!

iChii3839d ago

Wow, the comments on that article are just horrible... o.e

Kushan3839d ago

It's amusing how many of you don't know what you're talking about.

Xbone NAND was dumped using methods similar to the current 360 dumping methods, that's why it was so easy - they've had years of practice.

NAND is encrypted, key is unknown.

Contents of NAND are digitally signed, key will almost certainly never be known.

NAND dumps are incredibly common as a first step, they're not a vector for attack by themselves though as the digital signatures prevent any kind of modification to them (unless a system HAS no Digital signature enforcement, but rest assured this will).

In other words, this doesn't mean anything, they still need other exploits to do anything with the console. The 360's NAND was dumped and even decrypted years before they could do something with it (The JTAG hack) and even that was patched, another attack had to be used (the glitch attacks).

user55757083839d ago

explains why they originally wanted to implement DRM

gear3839d ago

"Will there be hackers and cheaters in online multiplayer games?"
YES! and I will be the first one to cheat

SilentNegotiator3839d ago (Edited 3839d ago )

That reminds me; I need to dust off the ol' PSP and hack it. PSP doesn't even support the latest wifi standards, so I can't even play my PS+ games on it anymore.

On topic, even with the 24-hour DRM, they should have been prepared with more basic security.

abzdine3839d ago

i could really feel the DRM u-turn would have had consequences cause it was thought from the beginning to counter the piracy.

making a u-turn 3months before release is impossible to do without bad consequences, especially when we know how terrible are MS in protecting their products from being hacked.

it's their own fault and i really hope this isn't true this early in the process because on top of the not so overwhelming sales they could lose the third party support as well.

The_Con-Sept3839d ago

Wait until they find out how to change the serial numbers for the units. You will never be able to get rid of the cheaters and random consoles will get banned if the numbers match.

+ Show (21) more repliesLast reply 3839d ago
PSX043840d ago

just now I can say ... welcome to xbone

cleft53840d ago

Not surprising considering they are using Windows 8 operating system with the console. Nothing against Microsoft but Windows 8 is hardly the most secure platform. Just be glad they got rid of the DRM otherwise there would be whole teams of hackers working everyday to figure out how to take apart the system. This is just typical stuff right here.

r1sh123840d ago (Edited 3840d ago )

this isnt really a hack.. Hes dumped the nand, the only time its 'hacked' is when the nand can be modified and put back into the console.

Removing the DRM would have made no difference to this, the DRM was related to games and this is related to the OS/ xbox itself.

These are two separate items that are being put together.
DRM would have needed to be authenticated by something, most likely a hashcheck md5- checksum (i reckon).That would be authenticated via the network so this is not related to the nand dump.

This does mean homewbrew - modded nands might find a way into the Xbone, which could lead to Jtag style mods. For the time being we have to wait and see what happens and how the nand is analysed.

the most worrying thing - why are xbox 360 nand dumping tools working on the Xbone?

I wonder how the PS4 compares?

Edit: Just to add remember when the ps3 finally got hacked Sony left the Pseudo Random Number Generator? (PRNG)in the code (LOL).
I wonder if MS have been stupid enough to do that?
or Hopefully SOny learned.

Without being able to break those keys theres not much to that can be modded. Running unsigned games etc..

wheresmymonkey3839d ago

I agree by itself this is nothing. Problem is that now people can go through it with a fine tooth comb looking for loopholes and exploits and figures out what realtes to what.

THe biggesst problem is that between this and the discs that got dumped the other week hackers have all they need to figure out how to reverse engineer pretty much everything.

Coupled with the fact that the 360 piracy scene has some pretty dedicated and tenacious people in it and you have the potential for all kinds of trouble.

Blaze9293840d ago

this thing runs parts of windows...are we really surprised that it was this quick and easy?

Darrius Cole3840d ago

I don't speak advanced-computer-nerd'ese . Could someone translate the article? And could someone tell me what a "NAND" is?

UnholyLight3840d ago (Edited 3840d ago )

Yeah, just like I was before, I'd be perfectly fine with Microsoft implementing their DRM policies again.

I really don't like what I'm hearing here with how easy it's going to be for hackers to get into the system. Is our account information safe? What about my PS4? How long before the same happens with that console as well?

Like I said, I'd much rather have those security checks than have to be worried about this for the next ~5 years before the next gen arrives. Thanks for ruining what could have saved us from this, all you who got upset at Microsoft!

T23840d ago

whos worried use playstation cards or don't save your c.c online....

3839d ago
thisismyaccount3840d ago (Edited 3840d ago )

And piracy will make it a "successful" console....again.

Sometimes i wonder if the companies behind, do this on purpose, knowing that their console is not selling well (lets leave a "door" open in our system)....

Seriously... not even 1 month old and we have seen:

XB1 BluRay Disc .iso of Ghost or copied (what ever the term is, dont rem.)
And now the Console or parts of it too.

How much longer until the console is fully "hacked" ?

sweendog3840d ago

First I have heard that DRM on xbox was to stop pyracy. It hasnt worked on PC only controlled the innocent. I think that is why DRM was put forward

Finch3839d ago

All due respect to both companies, but I would of thought the ps4 would be cracked first. Now this is still early on both sides Xbox may get nodded first the way it's going now. Yet I still would not be surprised if the ps4 is still fully cracked first. I know they both will be cracked, just wondering what one first.

Shnazzyone3839d ago

Only 1 week. Surprised this hasn't happened to ps4, it's just an x86 system too. The second both the consoles announced basic pc arcitecture at their core I knew this was going to happen. How long until people find a way to play the exclusives on their pc's?

3839d ago
illizit3839d ago

LOL.. You can really tell this site is made up of little script kiddies that have no idea what is going on.

The dumping of the NAND means nothing. Is it a first step? Sure.. but there is so much more that needs to occur. It has nothing to do with x86 architecture nor having a windows kernel.

Carry on..

+ Show (9) more repliesLast reply 3839d ago
inf3cted13840d ago

Same security probably, not impressed.

Moz3840d ago

It's what happens when you have to put the copy protection in with less then 6 months to work on it. They just didn't have the time to implement anything different. They were probably expecting this but when the choice was between weak copy protection and no one buying your console they didn't have much choice.

iamnsuperman3840d ago

The only other choice would be to delay the launch. That could have been disastrous for Microsoft but at the same time it might have eliminated this issue

svoulis3840d ago (Edited 3840d ago )

If you're wondering what that means.

Hacked Lobbies, Homebrew, Piracy, and the possibility of Microsoft putting the ON switch for DRM. (cause they can)

@MasterCornholio

Not exactly, but upon signing into your Xbox One you agree on the EULA to not sue them for anything including changing in service and their policy. If they feel this is a real threat the only retaliation would be to re-enable always online. Which would suck for everyone.

MasterCornholio3840d ago (Edited 3840d ago )

"possibility of Microsoft putting the ON switch for DRM. (cause they can)"

Thats what they found out?

Well i hope it doesnt happen because we dont need that DRM crap back.

@Svoulis

"Which would suck for everyone."

This would be bad for Xbox One owners but not PS4 owners. So im not worried about DRM at all.

Blackdeath_6633840d ago

knowing what microsoft are like they will probably end making a knee-jerk reaction that will harm its regular consumers in some way the best way for them to deal with it is via updates the same way apple does on IOS

OrangePowerz3840d ago (Edited 3840d ago )

Would be interesting to see what the Anonymous guys would do if DRM comes back given how pissed hackers got when Sony removed the little option to install Linux.

user95970823840d ago

People who use online functions with stolen game isos always got banned/consolebanned. It's no different than it's always been.

famoussasjohn3840d ago

Shinymasonite - I've known multiple people with modded xbox's and they haven't been banned in years.

KiLLeRCLaM3840d ago

Microsoft knew all along that this was going to happen and a good reason to re-enable always online again..That is what they wanted from the beginning..

+ Show (4) more repliesLast reply 3840d ago
falviousuk3840d ago

@blackdeath A knee jerk reaction, you mean like removing the other OS option from their console .... oh wait that wasnt on the xbox was it.

svoulis3840d ago

Yes, thats right. Lets talk about Other OS. Which I am sure all of 3% of PS3 owners used. It was a vulnerability and it was taken away. How exactly is that Sonys fault that someone decides to ruin it for everyone? Just like in this case if Microsoft enables DRM again, it wouldn't be our fault or theirs it would be forcing their hand because of hackers.

so yes harp on the Other OS drama, cause that proves how insanely intelligent you are.

Drekken3840d ago

A feature no one used on a console you never owned.

T23840d ago (Edited 3840d ago )

wow you built a time machine, welcome to 2010 sir!

ziggurcat3840d ago

1. Less that 1% of the user base even used otherOS

2. It would still be there if idiots had left well enough alone.

Pope_Kaz_Hirai_II3840d ago

falviousuk + 9h ago
@blackdeath A knee jerk reaction, you mean like removing the other OS option from their console .... oh wait that wasnt on the xbox was it.

Facepalm.

+ Show (2) more repliesLast reply 3840d ago
calis3840d ago

What exactly is the NAND and what does it do?

Blackdeath_6633840d ago

its a type of flash memory that doesn't require power. the info stored on there is what makes and xbox an xbox and not just a piece of hardware that you can manipulate if i am not mistaken by dumping NAND you can modify the OS and have custom firmware this will basically allow the hackers to do as they please pirate games, homebrew software and pretty much anything they want. from the limited experience i have hacking the PSP.

i wonder if said hacker can use the kinect for his own evil desires that would be creepy

RDF3840d ago

The thought that hackers could rewrite Kinect into their personal Webcam and spy on ppls is quite scary.

sloth4urluv3840d ago

As already stated NAND is a non volatile memory (same stuff in a USB stick/SSD).
Dumping the memory is not difficult, all it requires is un-soldering the memory and connecting it to a test board that can interface to it.

(I don't know anything about the xbox one architecture, but the same would be true for the PS4 if it uses NAND as well.)
If the controller for the flash (a device that remaps the addresses for the data and performs wear leveling to prevent certain frequently used addresses from being worn out) is a discrete external part, it can easily be lifted and moved as well. This would provide a perfect copy of the OS since all the addresses would be mapped in the correct order. If the memory controller is embedded, then dumping the NAND flash would dump all the data but you would have no idea what order it is in.

http://www.micron.com/~/med...

esemce3840d ago (Edited 3840d ago )

By having access the the 360's nand and hacking/modding it this was acheived.

http://www.youtube.com/resu...

It does not mean the Xbone is hacked but is just 1 step closer to it.

+ Show (1) more replyLast reply 3840d ago
Show all comments (155)
150°

10 Biggest Xbox Mistakes of All Time (So Far)

The Xbox brand has done a lot of good over the years, but their various blunders are pretty wild to look back on in their magnitude.

Read Full Story >>
culturedvultures.com
piroh8d ago (Edited 8d ago )

Ironically number 9 can save them at this point (releasing games on multiple platforms)

ChasterMies7d ago

By “save them” you mean make more profit for Microsoft. Xbox will still be a dying hardware platform.

OtterX7d ago

You could add the naming scheme for the consoles, it just confuses customers. I know they wanted to avoid traditional numbering bc it would always be lower than their competitor, but this whole 360 then One then Series thing is confusing af. Imagine a Soccer Mom trying to figure this stuff out. I still mistakenly call the Series X the One from time to time on accident.

RNTody7d ago

Don't forget about the Xbox One, Xbox One X and Xbox Series X! Good luck to Soccer moms around the world.

S2Killinit7d ago (Edited 7d ago )

They did that on purpose to confuse and direct attention away from the generational numbering.

MS doesn’t like reminding people that they joined the industry after others had already been involved in gaming.

For instance, they called the xbox “360” to combat PlayStation “3” because they wanted to seem like “more” than “3”, so instead of xbox 2, they opted for xbox 360. Also this had the additional benefit of selling consoles to uninformed parents who might purchase a “360” instead of a “3” by mistake, or because they thought 360 was more than 3. Kind of a disingenuous move.

They have been continuing with their confusing naming patterns for pretty much the same reasons. Frankly, it fits with who and what they are as a brand.

FinalFantasyFanatic6d ago

I can understand their reasoning, but whoever came up with that naming scheme should be fired, bad naming schemes have killed consoles (I'm pretty sure it was the major reason for the downfall of the WiiU). They should have had unqiue names like Nintendo and Sega have had for their consoles, far less confusing for the consumer.

rob-GP3d ago

@FinalFantasyFanatic "They should have had unqiue names like Nintendo..."

lol, you mean:

NES, SNES
GameBoy, GameBoy Advanced, GameBoy Colour, GameBoy SP
DS, DSi, DSXL
3DS, 3DS XL, New 3DS, New 3DS XL
Wii, Wii U
Switch, Switch OLED

+ Show (1) more replyLast reply 3d ago
Cacabunga7d ago (Edited 7d ago )

Phil Spencer is the worst that has happened to Xbox.
They built a respectable brand up to Xbox one. Then this guy took over and things became a joke

Reaper22_7d ago

He still has his job. Something you can't say about Jim Ryan.

Cacabunga7d ago

Both bad execs. One is on job and one thankfully retired.

FinalFantasyFanatic6d ago (Edited 6d ago )

I didn't like either person, both people damaged their respective brands and produced worse outcomes, but Phil did save the Xbox brand from being retired by Microsoft. Although in hindsight, he should have just let it die, rather than languish in limbo like it is now.

Rainbowcookie5d ago

Yeah but the one that was "bad" didn't even affect sales.

bunt-custardly7d ago

Phil Spencer was also on the team back when 360 was around, alongside Shane Kim, Peter Moore etc. I think the damage that did the most harm was the Don Mattrick "Always Online" console (ahead of its time basically). They handed Sony and Nintendo a free-pass when that was revealed. It went downhill from there. Then the corporate machine went into full swing to try and recover. They have to a degree as a games company for the masses, and less so for the core gamer. Outside USA, the Xbox brand does not sell as well as Japanese based consoles (citation needed).

Cacabunga7d ago

Want a decision maker. The always online and TV plans was a disaster yes, but they caught up by announcing 1st party games that gamers actually kept the hype going.. until this moron took over and introduced the PC day one release.. e all know where that ended..

S2Killinit7d ago

I dont think they were ever a respectable brand, not since the beginning, when their goal was never to be involved and share in the gaming space. I think the OG xbox was an exception because MS as a brand was still getting its foot in and so the people behind that were people of the gaming industry.

FinalFantasyFanatic6d ago

The 360 was the brand in its prime though, everything went downhill towards the end of that generation. Its staple games like Halo, Forza and Gears are what kept the console relevant and afloat for so long.

MaximusPrime_7d ago

Really good video.

I remember the days with RRoD was big news on here, N4G.

Microsoft had it turbulence number of years.

Looking at the success of Sea of Thieves despite being 6 years old, time to release Halo, Forza horizon 4 & 5 on PS5. It'll help their revenue

shinoff21837d ago (Edited 7d ago )

2 of the 4 games they did already sold really well. So it's definitely going down. Idk about halo or forza but I feel those studios they've bought in the last 5 years, their coming

ChasterMies7d ago

I found this video painful to watch. Can someone list them out?

Top 10 for me from are:
1. 2013 reveal presentation
2. Bundling Kinect 2 with Xbox One
3. RRoD or why rushing to market with hardware is always a bad idea.
4. Buying studios only to close them.
5. Ads on the Home Screen
6. Letting Halo die.
7. Letting Geard of War die.
8. Every console name
9. Charging for Xbox Live on Xbox 360 when Sony let PS3 players play online for free.
10. Cancelling release of OG Xbox games after the Xbox 360 launched.

Show all comments (31)
150°

Microsoft to Add Copilot AI to Video Games

Microsoft recently revealed its plans to incorporate Copilot directly into video games, with Minecraft being the first showcased example.

Read Full Story >>
xpgained.co.uk
Fishy Fingers12d ago (Edited 12d ago )

F*** AI

"Hey Copilot, what's a good meme to prove I dislike AI".... https://giphy.com/clips/sou...

Einhander197212d ago

Two trillion dollar company that just can't wait to put as many people possible out of work as fast as possible.

It feels like every single thing they do is making gaming worse and destroying the industry.

12d ago
12d ago
12d ago
darthv7211d ago

....you know it takes people to program the AI.... right? It isnt like it is sentient. We haven't reach skynet level of situation or anywhere close to the matrix just yet.

That's next Thursday.

Einhander197211d ago (Edited 11d ago )

It takes a people to program the AI then that AI is used for who knows how many games eliminating countless jobs which only grows as AI is used for more and more game creation functions.

What you're saying is so ridiculously short sighted and truly larking any kind of understanding and foresight.

+ Show (1) more replyLast reply 11d ago
CaptainFaisal11d ago

Why all the hate? Im actually excited about this! Always wanted this kind of immersion, and an AI companion with me all the time helping me out knowing the status of my skills/inventory/progress and giving me tips on the best approach or how to craft something specific is game changing for the industry.

Hate all you want about AI, but this is just the start and I can see the potential already. You wont be complaining in the next 5-10 years about this, but rather complain if a game hasn’t implemented it.

MrDead11d ago

Yes we can't wait for the work of others to be used without the need to pay them so that MS can profit even more from the people they fire.

I_am_Batman11d ago (Edited 11d ago )

There is no chance I'd ever use something like this, especially if it's not part of the core game design, but a layer on top of it. It's way too much handholding. Many games already feel like busy work, because they don't let the player figure things out on their own. Having a real-time interactive guide defeats the purpose of playing the game in the first place in my opinion.

If this were to become the standard like you predict, we'll see more and more video games get away with bad design, because people will just be used to ask for help from the AI companion anyway.

Number1TailzFan11d ago

Well Nintendo don't need this with some of their games these days, with invincible characters, items, easy bosses etc.. they do the hand holding built in

helicoptergirl11d ago

Takes "hand holding" in games to a whole new level.

BlackDoomAx10d ago

Because human nature xD Almost every new technology had these kind of comments.

+ Show (1) more replyLast reply 10d ago
Show all comments (19)
70°

Activision team is opening a new game studio in Poland 'Elsewhere Entertainment' to build new AAA IP

Microsoft's Activision subsidiary announced today that it is opening a new game development studio to take advantage of the huge talent pool growing in Poland. It'll be the second Activision studio based in the region, joining Infinity Ward Krakow, although this studio is, in fact, not working on Call of Duty.

Read Full Story >>
windowscentral.com
Psychonaut8515d ago

They’re not working on Call of Duty? Give it time.