Tony Hawk's Pro Strcpy

Поділитися
Вставка
  • Опубліковано 25 гру 2024

КОМЕНТАРІ • 651

  • @novelezra
    @novelezra 4 місяці тому +1858

    Finally, a way to softmod my PC.

    • @renakunisaki
      @renakunisaki 4 місяці тому +179

      This comment will be fun to look back at in 10 years.

    • @FauxFaFox
      @FauxFaFox 4 місяці тому +41

      I'm looking for a good hard mod so it can't be patched out by Microsoft.

    • @RadikAlice
      @RadikAlice 4 місяці тому +13

      @@renakunisaki SecureBoot: So I took that personally

    • @RadikAlice
      @RadikAlice 4 місяці тому +44

      Imagine someone uses this to do a fully automated Linux install on someone else's PC🤣

    • @generallyunimportant
      @generallyunimportant 4 місяці тому +6

      @@RadikAlice theoretically you could run a bunch of checks to see if the machine is uefi or not to determine what boot loader to use, and then overwrite the entire first partition (ie C:\ drive under windows) with a live cd esque thing that unpacks an image over itself on boot, like a ramdisk or smth

  • @choonky
    @choonky 4 місяці тому +1422

    died 2006 born 2024 welcome back king kong exploit

    • @luxploit
      @luxploit 4 місяці тому +75

      this is honestly better then King Kong because it required a patched shader and a flashed dvd drive, this on the other hand is basically no clicks required, only copy a save file via usb

    • @paliszarok
      @paliszarok 4 місяці тому +40

      close enough, welcome back king kong exploit

    • @choonky
      @choonky 4 місяці тому +6

      @@luxploit yeah i know lol, awesome stuff for being the first of a kind for the 360. Hope this can in some way aid in making a more accessible softmod in the future

    • @renakunisaki
      @renakunisaki 4 місяці тому +2

      @@luxploit potentially even just join a networked game... can you still do that?

    • @qwertykeyboard5901
      @qwertykeyboard5901 4 місяці тому +1

      @@renakunisakiBelieve it's been shut down.

  • @MixMastoras
    @MixMastoras 4 місяці тому +403

    You're the guy that brought us exFAT support on PS2? God bless you hackerman!

    • @drcatjailofficial3735
      @drcatjailofficial3735 4 місяці тому +46

      Yeah seriously. With that and the memcard pro 2 this thing is a lot more usable

  • @blakegriplingph
    @blakegriplingph 4 місяці тому +670

    The greatest trick Tony pulled off since the 900.

    • @sheikhspeare6637
      @sheikhspeare6637 4 місяці тому +16

      The greatest trick Tony pulled was to convince the world an exploit didn't exist

    • @spv420
      @spv420 3 місяці тому +1

      christ, you're like my shadow

    • @blakegriplingph
      @blakegriplingph 2 місяці тому

      @@spv420 lmao

  • @psudobuddha
    @psudobuddha 4 місяці тому +793

    People who loved the PS2: Players.
    People who hated the PS2: Programmers.

    • @MrDmoney156
      @MrDmoney156 3 місяці тому +4

      very true 🤣

    • @Vandius24
      @Vandius24 3 місяці тому +27

      And audio enthusiasts loved the PS2 as it was the only console that supported surround at the time and xbox never supported it until the 360. I had family members that obsessed about audio and bought a PS2 because it had optical audio ports and played DVDs and CDs with no issue in full 5.1 surround.

    • @remingtonjensen2231
      @remingtonjensen2231 3 місяці тому +4

      @@Vandius24Still is a half decent cd reader

    • @slarbiter
      @slarbiter 2 місяці тому +3

      @@remingtonjensen2231 lasers don’t live so long though. My ps1 is a more solid CD player

    • @remingtonjensen2231
      @remingtonjensen2231 2 місяці тому +3

      @@slarbiter oh whoops yea I meant ps1 lol

  • @tcscomment
    @tcscomment 4 місяці тому +661

    the PS2 was a nightmare for devs especially at the start, because Sony thought "devs can just use our vector units to do tons of fast data transfers via DMA so they don't need much memory and we can flex the power of our hardware lol"
    too bad they never said this to devs and they had to eventually figure that out on their own

    • @tisaconundrum
      @tisaconundrum 4 місяці тому +83

      I guess RenderWare came into the picture to try and save they day with all the BS that is messing with Vector Units and CPU management.
      ---
      RenderWare was one of the most widely used game engines during the PS2 era. Originally developed by Criterion Software, RenderWare was a cross-platform graphics engine that provided a higher-level abstraction over the hardware, making it easier for developers to create games without needing to dive into the low-level complexities of the PS2.
      RenderWare handled many of the tasks that would otherwise require developers to manually program the VUs, such as 3D rendering, physics, and animation. It became popular for its ease of use and was employed in many high-profile games, including the Grand Theft Auto series, Burnout, and Tony Hawk's Pro Skater.

    • @MichaelPohoreski
      @MichaelPohoreski 4 місяці тому +124

      I shipped a couple of PS2 games. The VU0 and VU1 weren't TOO bad. Yes, people were using Excel spreadsheets for scheduling (to minimize latency / maximize throughput) but you would transfer data from the EE -> VU0 -> VU1 -> GS for rendering.
      What _really_ made the PS2 challenging was managing all of its SEVEN processors: EE, VU0, VU1, IOP, GS, SPU, and IPU. It was a PITA to get (especially managing DMA transfers) but once you had everything working it was magic.
      RenderWare was a god send for PC developers who didn't want to waste time learning idiosyncrasies of the system.

    • @DGTelevsionNetwork
      @DGTelevsionNetwork 4 місяці тому +13

      Thing is, that's how most mips hardware works though...

    • @RealCheesyBread
      @RealCheesyBread 4 місяці тому +7

      @@MichaelPohoreski In other words... the PS2 was literally a piece of shit.

    • @qwertykeyboard5901
      @qwertykeyboard5901 4 місяці тому +2

      @@DGTelevsionNetwork Many routers and Chinese Special media players/consoles use MIPS but are NOTHING like the PS2.

  • @revolverocelot3741
    @revolverocelot3741 3 місяці тому +60

    i thought this was about a obscure polish tony hawk game nobodys ever heard of but i wasnt disappointed

  • @InsaneNutter
    @InsaneNutter 4 місяці тому +179

    Amazing work! Fantastic to see the Xbox 360 been exploited truly in software, without having to flash the DVD drive or Jtag / RGH it after all this time.

    • @luzroja29AKApeyo
      @luzroja29AKApeyo 4 місяці тому +2

      EHHH ERES EL DE DIGIEX!!!! SALUDOOOS!!!!

    • @chriswy697
      @chriswy697 4 місяці тому +6

      I think you'd still need to JTAG / RGH to get the needed keys and flash the nand, no?

    • @KingKrouch
      @KingKrouch 4 місяці тому +24

      This only works for the old Blade dashboard versions, which means you can't play a lot of older games, and it severely limits what systems you can use. Sadly

    • @MisterChief711
      @MisterChief711 4 місяці тому +1

      yo i recognize you from some 360 forums

    • @AROAH
      @AROAH 4 місяці тому +15

      @@KingKrouchIf a hypervisor exploit can be found for newer dashboard versions, which is much more of a desirable target with this exploit existing, then that would change. I imagine no one’s been looking all that much since everyone’s just been doing RGH for so long.

  • @saruhankarademir9806
    @saruhankarademir9806 4 місяці тому +459

    If PS2 has million haters, then Grimdoomer is one of them.
    If PS2 has one hater, then Grimdoomer is THAT ONE.
    If PS2 has no haters, that means Grimdoomer is dead.

    • @izBrnDD
      @izBrnDD 4 місяці тому +31

      Hating the ps2 is wild

    • @tcscomment
      @tcscomment 4 місяці тому +54

      ​@@izBrnDDfrom a programmer's perspective it is indeed a real piece of garbage

    • @izBrnDD
      @izBrnDD 4 місяці тому +7

      @@tcscomment i'll look into it

    • @Quaker763
      @Quaker763 4 місяці тому +24

      ​@tcscomment Overly complex? Maybe. As with all SONY hw, the designers went a bit nuts with SIMD, and in this case, Toshiba did certain things to save space die space and thus $$$.
      Piece of Garbage? I definitely can't see that. The VUs allow you to do a lot of cool things, especially in 1999/2000.
      I suppose that making the hardware impossible for anyone outside of the SONY engineers to grasp would constitute "garbage", however hahaha

    • @FoxyllAkora
      @FoxyllAkora 4 місяці тому +26

      @@Quaker763 If the PS2 is overly complex then the PS3 is purely alien with its cell processor. But I do agree that Sony was on a bit of demon time when designing their earlier consoles

  • @chupathingy5862
    @chupathingy5862 4 місяці тому +134

    Sleep deprived coder, 2006: I don't need to sanitize the input for a gap, it'll be fine
    Modders, 2024: you FOOL

  • @MrMario2011
    @MrMario2011 4 місяці тому +208

    Stellar work, dude!

    • @luzroja29AKApeyo
      @luzroja29AKApeyo 4 місяці тому +2

      ey tu tutorial me brickeo la xbox 360

    • @FSSHetPDGE
      @FSSHetPDGE 4 місяці тому +7

      @@luzroja29AKApeyo unlucky bro

    • @luzroja29AKApeyo
      @luzroja29AKApeyo 4 місяці тому

      @@FSSHetPDGE si cierto. Me quiero comprar una ps3

    • @IDontModWTFz
      @IDontModWTFz 4 місяці тому +1

      ​@@luzroja29AKApeyo what tutorial did you follow? It's extremely hard to brick a 360 bud

    • @luzroja29AKApeyo
      @luzroja29AKApeyo 4 місяці тому

      @@IDontModWTFz un tutorial de actualizar los avatares con rgh. Es que mi xbox tenia una nand dañada, pero funcionaba, y al parecer, como actualize esa nand, se corrompio aun peor y ahora, cuando la enciendo, se apaga inmediatamente

  • @carbonatedmilk1
    @carbonatedmilk1 4 місяці тому +58

    clicked this expecting a ytp, now i'm intrigued

  • @gg-gn3re
    @gg-gn3re 4 місяці тому +104

    7:52 just a friendly reminder warranty seals are illegal in usa, have been for like 30 years. There's also a ftc lawsuit out right now.

    • @tissuepaper9962
      @tissuepaper9962 4 місяці тому +30

      1974 was 50 years ago partner. Sorry if that makes you feel old lol.

    • @hypnotised-clover
      @hypnotised-clover 17 днів тому

      Really? Are they legal elsewhere?

    • @gg-gn3re
      @gg-gn3re 8 днів тому

      @@hypnotised-clover africa

    • @gg-gn3re
      @gg-gn3re 8 днів тому +1

      @@tissuepaper9962 thanks, I know the date

  • @dirty_tuna
    @dirty_tuna 4 місяці тому +70

    For those wondering, yes, you do need the XBOX 360 version of American Wasteland for exploiting the 360, not OG version.

  • @RDJ134
    @RDJ134 4 місяці тому +50

    Great work and find.
    Hating the PS2 and still you gave us Exfat support for the PS2 HDD.

    • @poudink5791
      @poudink5791 4 місяці тому +5

      Nah, cursing the console with exfat is entirely appropriate.

  • @MKULTRAVOLUNTEER1984
    @MKULTRAVOLUNTEER1984 4 місяці тому +14

    Wonderful broadcast thank you for sharing. As a Tony Hawk Veteran and console modder this video killed two of my weird niches with one stone. This is incredible stuff.

  • @daioxide
    @daioxide 4 місяці тому +8

    The 360 exploit in this is particularly impressive. Love your work man - as someone who has utilized every single one of these softmods mentioned, this would've made life easier back in the day. Keep it up!

  • @yaketyyakumo3315
    @yaketyyakumo3315 4 місяці тому +222

    if i had a nickel for every exploit that worked on multiple tony hawk games i’d have two nickels

    • @gerardgeer642
      @gerardgeer642 4 місяці тому +8

      Wait what’s the other nickel

    • @Echomemes
      @Echomemes 4 місяці тому

      ​@@gerardgeer642 TonyHax

    • @yaketyyakumo3315
      @yaketyyakumo3315 4 місяці тому

      @@gerardgeer642 tonyhax for the ps1

    • @IanNewYashaTheFinalAct
      @IanNewYashaTheFinalAct 4 місяці тому +11

      Are you Chad Kroeger because I want my nickelback

    • @phutureproof
      @phutureproof 4 місяці тому

      is this a meme i am seeing this phrase on a ton of videos

  • @thepwrtank18
    @thepwrtank18 4 місяці тому +60

    so that's why Visual Studio tells me that strcpy is cringe

  • @caws
    @caws 4 місяці тому +46

    My dude only appears when he's got solid stuff to show.
    Congrats.

  • @vectrony
    @vectrony 4 місяці тому +3

    I just downloaded a backup copy of my pro skater 4 few minutes ago and now I get your video in my recommendations.
    dude, you rock

  • @SPVLaboratories
    @SPVLaboratories 4 місяці тому +8

    I was super into all of this stuff in 2012-2013 and then just stopped playing video games altogether. Almost like the unrestricted availability of all of these old games annihilated scarcity and made me lose interest. Coming back a decade later I don’t even know if I really like video games at all but the software side of this fascinates me. Very cool vid

    • @HartsfieldSpotting
      @HartsfieldSpotting 3 місяці тому +1

      I have to agree with you, I used to game a lot, now I only care to get on GTA V-SP and FSX

  • @LxftRxght
    @LxftRxght 2 місяці тому

    Absolutely stellar work.
    ACE / RCE videos absolutely blow my mind. I was 13 years old when THPS4 came out - I played it to death on PS2.
    Who would have thought this opportunity would be exploited 22 years later?! It's just fantastic how mind-bogglingly clever some people are!
    Outdone yourself here!

  • @mortenkake
    @mortenkake 4 місяці тому +102

    Congrats on the release and the nice write-up! Just wanted to clarify that when we were made aware of this exploit years ago, it was patched promptly. Saying that we weren't interested in fixing it is a bit misleading and unfair.

    • @somebonehead
      @somebonehead 4 місяці тому +22

      Was that swiftness ever communicated?

    • @jrn_v1
      @jrn_v1 4 місяці тому +3

      Thanks for confirming this!

    • @abriction
      @abriction 4 місяці тому +3

      I was wondering if now we'd have to be worried about joining created park servers on tpro

    • @bongjovi4928
      @bongjovi4928 4 місяці тому +7

      Gay

    • @slghtmedia
      @slghtmedia 4 місяці тому

      @@bongjovi4928brain rot detected. get off internet

  • @GoTeamScotch
    @GoTeamScotch 4 місяці тому +30

    Your hatred for PS2 is palpable. xD
    Great job as always!

  • @ScratchMyAnchor
    @ScratchMyAnchor 4 місяці тому +280

    "it has 2 cpus that have to reboot multiple times and there's almost no RAM" we just played the games man

    • @SaenGaems
      @SaenGaems 4 місяці тому +8

      what games? ive always heard playstation has no games.

    • @kellymountain
      @kellymountain 4 місяці тому +60

      ​@@SaenGaems you're thinking of the ps5

    • @redhel
      @redhel 4 місяці тому +18

      @@kellymountain surely you mean the ps3

    • @kellymountain
      @kellymountain 4 місяці тому +20

      @@redhel the PS3 has game. singular
      the ps5 has no games

    • @qwertykeyboard5901
      @qwertykeyboard5901 4 місяці тому +12

      @@redhelThe PS3 has an absolutely god awful hardware architecture, but it has quite few games on it.
      Great console tbh.

  • @wool1701
    @wool1701 4 місяці тому +16

    "Because strcpy is not safe, we can craft a malicious gap name" 💀

  • @etansivad
    @etansivad 4 місяці тому +13

    whoa, hold on, I was promised an exploit for the N64. (j/k. Very enjoyable video. Thank you for posting this. I can't imagine the time it took to put this together.)

    • @kneesnap1041
      @kneesnap1041 4 місяці тому +1

      haven't actually confirmed, but it probably does work on N64. it's just the N64 has no way of doing anything useful since there's no hard drive or USB port or way to load anything. if you're going as far as to make a custom cartridge.... then well you've already just made a flashcart

    • @etansivad
      @etansivad 4 місяці тому

      @@kneesnap1041 Or going the route of TASbot and making a serial I/O that sends data over the controller port(s) to load up a simple pong game, and then you've just built a very lowgrade network adapter (Cool as heck, but a lot of engineering.). Just saying, you toss out a cartridge like that, someone in the audience is going to ask for it ;)

  • @ItsChamp
    @ItsChamp 4 місяці тому +82

    god i hope the xbox 360 gets an easy softmod one day

    • @MrDmoney156
      @MrDmoney156 3 місяці тому

      we're getting close 🙏

  • @agarmash_
    @agarmash_ 4 місяці тому +13

    Truly amazing stuff!
    I can't even imagine what you had to go through to get a 360 without burned bootloader efuses. Hope you didn't forget to remove the R6T3!
    Speaking of the PC version, IMO no one should play the version where strcpy isn't replaced with strncpy, the consequences can be quite severe.
    Also, the shellcode at 0:49 looks heartwarmingly familiar (I'm the guy behind the publicly available Frogger Beyond exploit :D)

    • @rawbmar1166
      @rawbmar1166 4 місяці тому +1

      I used to have my 360 soft modded and it was insanely easy. I can't remember the exact process I used but it enabled me to download 360 games to a flash drive and play them for free from the flash drive. They eventually caught me and my account was banned until 9999 lol

    • @Mr_Twiglesworth
      @Mr_Twiglesworth 3 місяці тому

      What are the consequences?

    • @agarmash_
      @agarmash_ 3 місяці тому +1

      @@Mr_Twiglesworth it's an open door for remote code execution on your computer, which allows the attacker to do virtually anything: plant a malware / steal your data / etc

  • @squiddygoat2493
    @squiddygoat2493 4 місяці тому +154

    WHY IS IT ALWAYS THE TONY HAWK GAMES

    • @noyes.
      @noyes. 4 місяці тому +19

      Best games

    • @RadikAlice
      @RadikAlice 4 місяці тому +37

      Even when played normally, you can see and feel the jank Neversoft had to contend with in their own work

    • @BoleDaPole
      @BoleDaPole 3 місяці тому +3

      Bc Tony hawk was great at skateboarding but a terrible coder.

  • @__unaffiliated
    @__unaffiliated 4 місяці тому +2

    Congrats on the find! This is just what we needed to get some people interested in hypervisor exploit research.

  • @MasonH24
    @MasonH24 4 місяці тому +4

    Wow. What a blast from the past.
    Softmodded many Xboxes with Agent Under Fire for friends, this would have been huge back in the day!

  • @mifffalden9225
    @mifffalden9225 4 місяці тому +21

    Another fine example of closed versus open platforms:
    Console version: This exploit that lets you get arbitrary code execution is cool. Here's how to use it to run whatever you'd like on your console.
    PC version: This exploit that lets you get arbitrary code execution is scary. Don't play it online, and if you must, take these precautions.

  • @sersoft_corp
    @sersoft_corp 4 місяці тому +3

    I already jailbroke my PS2 and installed free mcboot using my gran turismo 3 game disc but this is still insanely cool, keep up the great work!

  • @ExtremelyBurntToast
    @ExtremelyBurntToast 3 місяці тому +1

    finally a good explanation for not having gaps in the 1+2 CAP

  • @waroftheworlds3173
    @waroftheworlds3173 4 місяці тому +14

    Whatever effort Nintendo put on the GameCube architecture, they did get a return with the Wii. They didn't try the switch after the Wii because of the familiarity with PowerPC and cost to manufacture of something similar to the switch would be very prohibitive in 2013

    • @No-mq5lw
      @No-mq5lw 4 місяці тому +2

      I really think the Switch wasn't attempted earlier because there really wasn't an industry standard port that Nintendo could use to create a proper dock until like 2015-2016 with USB C. Every other solution before USB C sucked.

    • @renakunisaki
      @renakunisaki 4 місяці тому +7

      @@No-mq5lw Nintendo didn't give a damn about industry standard ports. Even when they do use them, they rarely use them correctly. (See: Switches being bricked by third-party chargers; GameCube controller adapter/Wiimote not being standard HID protocols...)

    • @No-mq5lw
      @No-mq5lw 4 місяці тому +1

      @@renakunisaki Proprietary USB C power delivery protocols weren't uncommon in the early days, and neither does Sony for their controllers.

    • @tissuepaper9962
      @tissuepaper9962 4 місяці тому +1

      ​@@No-mq5lwswitch was released after USB-C PD standard, and Nintendo is one of the biggest companies on the planet. They can afford to implement the standard correctly.

  • @notexactlysiev
    @notexactlysiev 4 місяці тому +2

    Oh nice. I saw the blog post on HN and put it on my reading list. But it's nice to see there's a video too!

  • @ggallin69
    @ggallin69 2 місяці тому

    You’re a LEGEND! Thank you for what you’ve done for the PS2 community

  • @elcapitano9823
    @elcapitano9823 4 місяці тому +2

    Pro Skater 2 on PC with offbrand controller was the best,
    Highlights of childhood!

  • @Willowposting
    @Willowposting 17 днів тому +1

    As a lifelong THPS fan this is absolutely hilarious and insane, and only somewhat surprising

  • @twisted5576
    @twisted5576 4 місяці тому +1

    I understood about half of this but it was still interesting. I think it's well presented. Nice video

  • @TroyVault
    @TroyVault 4 місяці тому

    Really cool video and excellent work, I can’t begin to pretend i understand how this stuff works, but it’s incredibly entertaining to see it being pulled off, especially on 360, as particular as this exploit is

  • @sjoer
    @sjoer 4 місяці тому +4

    Tony Hawk exploits led to so many great things in the past :D

  • @memes_gbc674
    @memes_gbc674 4 місяці тому +5

    god i love these goofy titles on technical videos

  • @OrangeHarrisonRB3
    @OrangeHarrisonRB3 4 місяці тому +25

    The biggest advantage of the PS2 was the controller, since Hawk games were native to Playstation and the other versions were ports. Playing THPS with a stick is like eating pizza with a fork.

    • @ianmoore5502
      @ianmoore5502 4 місяці тому +1

      Pc Keyboard gang

    • @cheaterman49
      @cheaterman49 4 місяці тому

      I never thought about this, but having played the original THPS on PS1 and THUG on GC, I can now see why it seemed to me that the learning curve was steeper!

    • @wheedler
      @wheedler 4 місяці тому +1

      Are you implying Playstation controllers don't have sticks?

    • @RadikAlice
      @RadikAlice 4 місяці тому +2

      @@wheedler His comment makes sense to me when we look at an N64 controller's layout in comparison

    • @cheaterman49
      @cheaterman49 4 місяці тому +3

      @@wheedler Oh no just it's way easier to do tricks that require diagonals on a D-pad IMHO - and again I never realized this before reading the comment but it's true!

  • @ThaLiquidEdit
    @ThaLiquidEdit 3 місяці тому

    What an awesome channel! Also like your blog! Please continue making such content

  • @iPlaySEGA
    @iPlaySEGA 4 місяці тому +8

    Awesome AND scary AF at the same time!

  • @josh1234567892
    @josh1234567892 4 місяці тому

    Your presentation ability is great. I love it, and hope you keep making videos!

  • @web3twon
    @web3twon 4 місяці тому +1

    Dang, Tony keeps delivering!
    Appreciate your work

  • @JaredAF
    @JaredAF 4 місяці тому +2

    dude i spent so much time in the create a park as a kid

  • @willm4891
    @willm4891 4 місяці тому +1

    I remember seeing you do your live demo of this on the xbox original in College! I hope you're doin well, man!

  • @SkratchersOtherWorseChannel
    @SkratchersOtherWorseChannel 4 місяці тому +1

    Taking your PS2 slander on the chin and thanking you for giving me another reason to love THPS4. (also this exploit suits the specific situation i got with my ps2 right now very well so again thank you)

    • @kanesmith8271
      @kanesmith8271 3 місяці тому

      Now that’s how you knows he’s a real gamer, he hates games 😂

  • @Zinxme
    @Zinxme 4 місяці тому +8

    Wait what about the PSP games? didnt it have 2 tony hawk games that could be affected by this?

    • @LiEnby
      @LiEnby 4 місяці тому +1

      oh cool can potentially hack the vita with it too then right?

    • @tcscomment
      @tcscomment 4 місяці тому +4

      ​@@LiEnbyPSP games on the Vita run in a sandbox, plus there are already ways to mod a PSVita

  • @Vandius24
    @Vandius24 3 місяці тому +8

    The PS2 is always going to be in a league of it's own, and some of it's features are overlooked by people trying to code for the device. PS2 had a full Linux OS you could buy and use on an unhacked console. PS2 was marketed towards audio enthusiasts as it was the only console that supported 5.1 surround with it's optical audio port (xbox didn't have surround audio like PS2 supported, no optical audio on Xbox). PS2 was marketed as a device for adults with it's more mature style of looks and features. It'll fit nicely next to an audio receiver with how it looks. There's a lot more about the PS2 that made it king of the consoles, but marketing towards the music and movie industry really solidified it's position, and at the time DVD players were over $200 a piece. You could even buy a remote that looked very professional/sleek to control a PS2 playing DVDs and CDs.

    • @Vandius24
      @Vandius24 3 місяці тому +2

      No other game console supported high quality audio or 5.1 surround until xbox 360 came out. Want the best audio/game music of that generation, get a PS2.

    • @dakota9821
      @dakota9821 21 день тому +1

      certified glazer

  • @retractingblinds
    @retractingblinds 4 місяці тому +2

    Nice work! Can't wait to see what other fun work you'll do on the PS2 especially ;)

  • @jcber34
    @jcber34 4 місяці тому +1

    Played so much tony hawk proskater 4 as a kid always new this game held something special lol. Great work & research!

  • @Uglier.
    @Uglier. 5 днів тому +1

    what are some other string copy bugs in video games? no way string copy and text overflow manips are so rare

  • @term-827
    @term-827 4 місяці тому +2

    1:58* the Endgame usb exploit exists, which streamlines the process to just plugging a usb in and reading from it, so while its cool that a new softmod exploit is available for the og xbox, its reccomended to use endgame for ease of use.

  • @alextalker5979
    @alextalker5979 2 дні тому +1

    I expected this to be an elaborate metaphor on the nature of buffer overflow and how you can *jump* from it to places or something but man, the shite's literal 😂😂😂

  • @butterless96
    @butterless96 4 місяці тому

    2 vids and theyre both bangers. subbed

  • @Latin00032
    @Latin00032 4 місяці тому

    I subscribed. You only have two videos on your channel but their both awsome. Hope to see more. Thanks.

  • @natr0n
    @natr0n 4 місяці тому

    Everything I wondered about you explained. Excellent video.

  • @XBLXxR1fleManxX
    @XBLXxR1fleManxX 4 місяці тому +3

    Some game creators hacked the ps2 to make the games function better.
    Pretty sure that racing game was one of them, it was like Mario Kart but was that fox looking character.
    I think it was Crash Team Racing or whatever, watched a interview with the creator and it was super interesting.

    • @XBLXxR1fleManxX
      @XBLXxR1fleManxX 4 місяці тому

      MAYBE was Crash Bandicoot..

    • @koraku8519
      @koraku8519 4 місяці тому +2

      Yeah youre thinking of Crash Bandicoot on PS1

    • @XBLXxR1fleManxX
      @XBLXxR1fleManxX 4 місяці тому +1

      @@koraku8519 ahh yeah it was PS1 wasn't it

  • @Vinlegren
    @Vinlegren 4 місяці тому

    I used to love this game back in the day, and now it can be used to mod consoles? Awesome!

  • @qwertykeyboard5901
    @qwertykeyboard5901 4 місяці тому +1

    Getting a ROP chain on the 360 is still damn impressive!
    I do wonder, with the OG Xbox emulator on the 360 employing a JIT machine code translator, I wonder if the hypervisor enforces code signing on that end.

    • @NodokaHanamura
      @NodokaHanamura 4 місяці тому

      That's a good question. Honestly I wonder if there's any possibly exploits in the Hypervisor itself.

  • @perli216
    @perli216 4 місяці тому +2

    What causes this CRT-like picture offset for a short time when Nyan cat is loaded at 2:22?

    • @jckf
      @jckf 4 місяці тому +8

      The OG Xbox only has analog outputs, so the TV needs to sync to the signal before it can know what is supposed to be the top left of the image. This is not unique to CRTs, but is a requirement of the analog video signal.

  • @RadicalGaming1000
    @RadicalGaming1000 4 місяці тому +2

    0:00 Intro
    1:36 Xbox
    4:05 PS2
    5:42 GameCube
    6:35 Xbox 360
    8:53 PC

  • @HamStar_
    @HamStar_ 3 місяці тому +1

    remember, if you ever think "I know it's unsafe, but I know what input it's going to get" no you don't.

  • @hyperteknoman6602
    @hyperteknoman6602 4 місяці тому +2

    Wow, great work, the true full exploit.

  • @c.n.crowther438
    @c.n.crowther438 4 місяці тому +1

    can you do a video detailing exactly why you don't like the PS2 and its shortcomings please?

  • @Ulta_Nagenki
    @Ulta_Nagenki 4 місяці тому +2

    Nyan cat just took me back.
    Also realized my pronunciation of both are different. "Nanya - to Nya"

  • @omicron0mega
    @omicron0mega 4 місяці тому +5

    The fat PS2 had persistent storage, the network adapter add-on had an IDE interface.

    • @banguseater
      @banguseater 4 місяці тому +1

      yea but It doesnt come with it stock so it’s not really the case

    • @omicron0mega
      @omicron0mega 4 місяці тому

      @@banguseater All the newer model fats came with one, slim ditched it, thou you could still use a USB hard drive as plug and play. Thou I would like to correct myself, most functions of the hard drive were locked out of most games Socom 2 used it for DLC I think that's like the only game to every utilize it. With a mod chip, or FreeMcBoot and some other loaders, you can store whole games on it and read them from the hdd.

    • @banguseater
      @banguseater 4 місяці тому +1

      @@omicron0mega no what im saying is that the harddrive and the network adapter didnt come with it, you had to buy them. xbox OG came with it stock . thats why not too many PS2 games used the HDD way before the slim model came out. including the networking.

  • @ludokresh05
    @ludokresh05 Місяць тому

    I have no idea what you just said to me little kid, but it hit me right me here!

  • @sbakchensauce5286
    @sbakchensauce5286 4 місяці тому

    I don't care for ACDC at all but hearing TNT will always give me a wild nostalgia rush

  • @dragozillasaur813
    @dragozillasaur813 3 місяці тому +1

    CVan this work on an xbox 360?

  • @arsouilleur5779
    @arsouilleur5779 4 місяці тому +2

    "A game console that doesn"t suck" "Gamecube"
    The PS2 was, is, and will forever be the best console ever made

    • @Southized
      @Southized 3 місяці тому

      Gamecube was so trash lol no games more people had xbox than gamecube everyone and their mom had a ps2

  • @visvge4934
    @visvge4934 4 місяці тому

    Badass breakdown and never knew this was in the games

  • @HybridizedGaming
    @HybridizedGaming 4 місяці тому +1

    Isn't this same C function what took down the Wii? Nice find.

    • @visvge4934
      @visvge4934 4 місяці тому +1

      It's in C, so it's taken down many things haha

  • @iamyashraj
    @iamyashraj 4 місяці тому +2

    Can a xb 360 Winchester be modded?

  • @playgame38
    @playgame38 4 місяці тому +2

    Did you have to pay a lot for that Xbox 360 copy of the game?

  • @samuelbanya
    @samuelbanya 4 місяці тому +1

    So what do you get out of the exploit? The ability to mod the console for homebrew completely without needing a soft mod to load each time like Tony Hax?

  • @kyleheaney3734
    @kyleheaney3734 4 місяці тому

    Damn hearing T.N.T at the start of this video put me in a great mood

  • @Littlefighter1911
    @Littlefighter1911 4 місяці тому +2

    You mentioned Xbox 360, but I have no idea how that would work.
    Not only do you need to defeat the security cookie,
    you will also have to find a way to find and execute the kernel function from the stack, because of the page protection and encryption the Xbox has.
    If there was a way, the LEGO games also have a cross-platform strcpy vulnerability (although not networked), that was at least present in the Wii and PS2 version (where I could create a POC exploit) and likely is in the Xbox 360 version as well.

    • @tcscomment
      @tcscomment 4 місяці тому +5

      the exploit is still there in the Xbox 360 version, but the hypervisor prevents memory pages to be both readable, writable and executable at the same time. that's why a dashboard from like 2006 is needed: that specific version contains a bug in the hypervisor that's used to get full code execution

    • @Littlefighter1911
      @Littlefighter1911 4 місяці тому

      @@tcscomment I need to admit I wrote that comment, only skimming through the timeline and not finding the "Xbox360" screen and watched the video afterwards. It appears as if there is no security cookie in the first place on that game, which surprises me a lot, but also explains a lot. I thought the Xbox360 toolchain forces that to be on by default.
      Thinking of that, what prevents someone from writing entirely stack-based code other than being confined to the stack size? You could surely look for utility functions within the game, that when combined do the side effects you were looking for. If one was dedicated enough, surely you could create a universal Xbox360 "userspace" homebrew toolchain (including exploit)

    • @tcscomment
      @tcscomment 4 місяці тому

      @@Littlefighter1911 that could be a way, yes, but I'm still afraid the hypervisor would catch that

    • @Littlefighter1911
      @Littlefighter1911 4 місяці тому

      @@tcscomment Why do you think so? Assuming, the compiler doesn't save valid return addresses and the hypervisor doesn't track them otherwise (for example through a hardware register with a list of last used jump targets), there's no way for the hypervisor to track "abused" code.
      You'd "only" need to find code inside the game that's small enough and allows for manipulation of the most important registers.
      I imagine the hardest part would be to find utility functions, that push elements to the stack without popping them. (You'd need to find a function that executes at least two push, before popping the return address).
      None of my code would need to be mapped as executable, because it will only point the return address into pages already mapped as executable.
      This would be entirely CPU-sided and to the supervisor it would look like only the game code is being used.
      The hypervisor could only tell through probing the PC and heuristics if the game is behaving abnormally.
      And for stability sake that's unlikely to be the case.
      Tbh, given the knowledge, that Tony Hawk's at least doesn't feature a stack cookie, I'm very intrigued about giving it a shot. Well at least depending on if I can test that in Xenia or not.

    • @Littlefighter1911
      @Littlefighter1911 4 місяці тому

      @@tcscomment Never mind, grimdoomer himself said, that a stack software only exploit is possible on his git repo for Xbox360.
      I might still try to make a nice demo out of it. By creating stack only based code using utility functions.

  • @len0reth.hazeee
    @len0reth.hazeee 4 місяці тому +1

    "Moving on to a game console that doesn't suck." 😂 Gotta love the GC

  • @Herotruth
    @Herotruth 4 місяці тому +1

    Did you try Original Xbox Tony Hawk in the 360?

  • @darbysauter6875
    @darbysauter6875 4 місяці тому

    this is my type of community. keep it up!

  • @augustdahlkvist3998
    @augustdahlkvist3998 4 місяці тому +1

    It's insane how much damage a single strcpy can cause. Really makes you think.

  • @deusexmaximum8930
    @deusexmaximum8930 4 місяці тому +1

    Whats the song at the very beginning

    • @acedia_media
      @acedia_media 10 днів тому

      Dirty Deeds Done Dirt Cheap - AC/DC

    • @acedia_media
      @acedia_media 10 днів тому

      Sorry no, it's TNT - AC/DC.

  • @xbright0976
    @xbright0976 4 місяці тому

    Cool to see soft mod community still around i soft modded my PS2 fat since i had badk from 02 back in 2010 with agent under fire

  • @Chaos-gaming2010
    @Chaos-gaming2010 Місяць тому +1

    hi grimdommer could you please help me with this mod i cant run the park file or it just doesn't show up. please give us a video tutorial on how to do this.

  • @FlergerBergitydersh
    @FlergerBergitydersh 4 дні тому

    How is the 360 exploit not useful? If you DO have a 360 with an older dashboard, no soldering is a huge plus. Aren't certain older 360's only hardmoddable with an older dashboard anyway? I would love to use this on one that I have once I get it from storage. A streamlined version of the instructions would be helpful though. I may be misinterpreting the intructions, but it doesn't seem to include instructions for how to turn this into a permanent softmod.

  • @Steambolt_
    @Steambolt_ Місяць тому

    the lime green xbox is such a flex

  • @BB-848-VAC
    @BB-848-VAC 4 місяці тому +2

    say what you will about the ps2 but its never red ringed of death on me, thing still works like 20 years later lol

  • @ret2libc0x90
    @ret2libc0x90 4 місяці тому +1

    Where do you learn this stuff? i would love to learn how to learn this and reverse games and find exploits like this.

    • @kneesnap1041
      @kneesnap1041 4 місяці тому +1

      It's a long journey to learn, but absolutely doable! I'd recommend checking out LiveOverflow. Read blogs, watch talks like recorded Defcon talks. Do CTF challenges, starting with the basics and tutorials. If this stuff interests you it won't be hard to find your own goals. I think letting your goals guide you is a really great motivator

    • @williamdrum9899
      @williamdrum9899 День тому +1

      First you need to learn why this works, and for that I suggest learning an assembly language. Most of the exploits use C library functions but C is too high level to explain why this happens

    • @ret2libc0x90
      @ret2libc0x90 День тому

      @@williamdrum9899 okay thank you man i appreciate it :)

  • @wasd-ft5vc
    @wasd-ft5vc 4 місяці тому +4

    Dude, I have that same green skulls Xbox decal on my modded Xbox that also has the Xecutor 3CE & dipswitch bank on the front corner there. Maybe it's the video and lighting but my skulls look darker. Just wild seeing someone else with the same decals and Xecutor in their box these days. This is the first I'm hearing of the Strcpy RCE.

    • @obeseperson
      @obeseperson 4 місяці тому

      The skulls decal goes crazy hard

  • @AamitMorthos
    @AamitMorthos 4 місяці тому +1

    Can you also use the original Xbox version of American wasteland to pull off the 360 exploit?

    • @nonci6
      @nonci6 4 місяці тому +4

      I doubt it considering that the XBOX 360 runs emulation to run OG XBOX games, worst you can do is compromise that virtualization layer that's still locked away from the actual OS on the 360.
      OG Xbox game exploitation on the 360 yields no useful results.

  • @LiEnby
    @LiEnby 4 місяці тому +1

    what about the original PS1 tony hawks pro skater?

    • @tcscomment
      @tcscomment 4 місяці тому +3

      IIRC there already exists an exploit on the PS1 versions that's used to unlock the CD drive to play backups. MVG talked about it a few years ago

  • @enzolong9085
    @enzolong9085 2 місяці тому

    This popped up in my recommended even though i dont really understand it lol. What kinds of things can you do with a hacked console?

  • @JamieCrookes
    @JamieCrookes 4 місяці тому

    Solid effort and video man!