WiiLi Wiki frontpage Include your post in the News Get links Hoteles Quito
WiiLi.org Forum Index WiiLi.org
a new revolution
 
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister 
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 

Wii Maintenance Mode ftp connection possible
Goto page 1, 2, 3  Next
 
Post new topic   Reply to topic    WiiLi.org Forum Index -> WiiLi General Discussion
View previous topic :: View next topic  
Author Message
revolt



Joined: 21 Nov 2007
Posts: 8

Digg It
PostPosted: Wed Nov 21, 2007 9:31 pm    Post subject: Wii Maintenance Mode ftp connection possible

hi guys. i found that when my wii is in maintenance mode and i go check for an update it connects to the internet. then i get "new update found" and i have to possibility to accept or not.. but when i leave it on this screen i did a port scan and found that port 21 (ftp) is on??? does the update come from an ftp server or is this becouz of the maintenance mode ?

i tryed to bruteforce a little on the ftp but i didnt get enywhere with that

revolt
Back to top
View user's profile Send private message Visit poster's website MSN Messenger
GizmoTheGreen



Joined: 14 Nov 2006
Posts: 121

Digg It
PostPosted: Thu Nov 22, 2007 9:33 am    Post subject:

i dont know how well this has been dug into, but i will make some tests when i get home.

dont know anythng specific about bruteforcing though.

if we can get FW dumps, crack the encryption, or maybe sniff it unecrypted somewhere, we can modify it and set up an ftp server with mac spoof to make the wii think its a leguit update?

i dunno, just a thought.

we lack real hackers... you know, those poeple that really know how to do stuff, all im good for i testing and ideas Sad
_________________
Project starter/leader of TrueLoveDS
Back to top
View user's profile Send private message
revolt



Joined: 21 Nov 2007
Posts: 8

Digg It
PostPosted: Thu Nov 22, 2007 8:10 pm    Post subject:

if did some scanning on the port 21 and the only thing i could find is that it is possible to crash the wii using a rapid attack.

after doing this i can still click on "update" and then it crashes.

looks like this isnt of any use unless there would be a way to find the username and password, if it is even a real ftp server.

when trying a bruteforce attack the wii blocks multiple guesses from the same ip adres so if this would be a way it would take forever.

the only thing i can think of right now would be to find stuff in GC linux mode, but i dont know how much of the hardware would be accessable

revolt
Back to top
View user's profile Send private message Visit poster's website MSN Messenger
PsiCoLeO



Joined: 27 Nov 2007
Posts: 9

Digg It
PostPosted: Tue Nov 27, 2007 4:48 am    Post subject:

How were you able to do bruteforce attack.. if we can“t even see a login message? or where you able to get a login screen?
Back to top
View user's profile Send private message
revolt



Joined: 21 Nov 2007
Posts: 8

Digg It
PostPosted: Tue Nov 27, 2007 1:03 pm    Post subject:

thats what is said in my last post.... i wasnt able to bruteforce because the wii blocks multiple guesses from the same ip..

only thing possible is to make the wii crash with a rapid attack. but for all i know this is only usefull to get the server down. it doesnt open any xtra stuff

revolt
Back to top
View user's profile Send private message Visit poster's website MSN Messenger
PsiCoLeO



Joined: 27 Nov 2007
Posts: 9

Digg It
PostPosted: Tue Nov 27, 2007 10:32 pm    Post subject:

what do you mean with a rapid attack? could you give some instructions? sorry if thats a stupid question...

talking about another topic.. have you seen Datels Power Saves? those are modified saves, that allow you start a game with extra ammo or special items or stuff like that. Sorry posting it here but I didnt find a decent place to post this. So if datel is able to modify those saves, they might have broken the crypto behind those saves, as far as i know is an elliptic curve algorithm that is almost imposible to crack (nothing is imposible). If we can find a way to modify those saves, maybe we found a way to get homebrew/linux on the wii

Maybe we can find an exploit that really works..

PsiCo
Back to top
View user's profile Send private message
revolt



Joined: 21 Nov 2007
Posts: 8

Digg It
PostPosted: Wed Nov 28, 2007 3:07 am    Post subject:

for what i know the datel saves are just savegames from people who fully unlocked all options in the game and uploaded their saves for people who are to lazy to play the game them selves... there is no actual cracking of the save encryption..

and a rapid attack is basicly a attack that just sends all kind of usernames and password verry fast whitch lets it crash becouse it cant handel all the info at one..

if we could mod the savegames there could be an exploit but before we could do that i think we would first need to have some unencrypted ram dumps from the wii which would give us the info about the encryption becouse i dont think that bruteforcing the saves will get us anywhere within the next 10 years trying..

revolt

p.s. from what i know there is a group of hackers trying to read out unencrypted ram by booting the wii en than powering it off with an external power source to the ram to read it out...
Back to top
View user's profile Send private message Visit poster's website MSN Messenger
Display posts from previous:   
Post new topic   Reply to topic    WiiLi.org Forum Index -> WiiLi General Discussion All times are GMT
Goto page 1, 2, 3  Next
Page 1 of 3

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB © 2001, 2005 phpBB Group