Support

Forums

Contact Me

Xbox 360 is running Linux?

From XBOX-SCENE forums

" An anonymous person at the German 23C3 Hacker Congress showed what could be an Xbox360 hack/exploit during one of the 'Lightning Talks'. Lightning Talks is a daily event at Chaos Communication Congress (C3/CCC). It consists in one hour of several short (limited to 5mins) talks.

In a very short presentation a masked 'hacker' showed an Xbox 360 booting up King Kong (the game, by ubisoft). After loading the game a screen pops up showing an Xbox 360 logo, a Mac logo and Tux (the Linux Penguin) and the words "coming soon...". I also noticed a small PCB is hanging out of his Xbox360 and he's using a laptop (Apple Macbook pro?), but it's not really clear what he's doing with it.
Those who followed hacking discussions might remember hackers did some research around the vector shaders in the King Kong demo on the Xbox 360 Kiosk Disc (that ran from recordable media). The demo (and final game too) allow to modify the shaders (they are not checked/signed). However no exploit to take control of the machine was found back then ... so either this hacker found something here, or he's just showing us his custom modified shaders ;)
That's all the details we got for now.

If you don't believe the presentation was really given at 23C3, you can download the +560MB WMV video of the complete 'Lightning Talks' Day4 from the CCC mirrors (direct: mirror1, mirror2, mirror3, mirror4, mirror5, mirror6, mirror7). Forward to the 5th presentation and you'll find it there. However note that the video encoding is far from perfect and the audio seems to be broken/missing. The youtube video below shows just the Xbox 360 presentation, with audio:

UPDATE1! Here are some updates from stuff people posted on our forums.
Here's another footage of the presentation filmed by someone in the public.

Some high-res pictures of the presentation. A bit easier to see that small PCB here. Pictures by Darkman at c3f2m.de:
23C3 23C3 23C3

Also interesting is the official description of the presentation on the CCC schedule site:
[QUOTE]
Title: Consolen Hacking Suprise (XBox360)
Language: German
Speaker(s): Anonym
Description: The XBox360 was live hacked in front of the audience - running Linux and Mac OS coming soon. Stay tuned - a Linux kernel is already booting..
[/QUOTE]
"

XBOX360 DVD Firmware Hack release

As state by  Xbox-scene.com
The hack is a modified firmware of the (original) Xbox Samsung SDG-605B/616T/616F DVD-ROM drive.
As you (should) know, all Xbox executables (XBE files) are signed by Microsoft (with a private key only MS has). This means that if you try to change anything to the XBE file, the signature will be wrong and the file will not boot.
You will need to combine this hack with
  • KeyDrive Xtractor/Patcher: tool that will allow you to easily extract and write the unique DVD key to/from an Xbox 360 DVD firmware file (so no need to hex-edit it manually anymore)...
You will then be able to copy genuine game DVD and fake the system with using self burned DVD. Great but not as great as seing Linux booting on it ;-)

Good security but human errors may break it

From http://www.bunniestudios.com/wordpress/?p=74 the man wo break the first XBOX.

At any rate, some very interesting things are afoot. Much of it stems from the discovery of an all-media bootable kiosk demo disk. Many hackers will instantly recognize the value of this, but it’s still interesting to reflect on the significance of this find. Like the original Xbox, the Xbox360 uses a media flag on its executables.

The media flag tells the OS what type of media it should be on; typically, games are released with the flag set to Microsoft’s proprietary secure Xbox DVD format (which is in itself not that secure…). Significantly, only the executable is signed for a game; the data sections typically are not signed (presumably for performance reasons). Thus, one has the ability to fuzz the executable by corrupting the data sections, potentially invoking a buffer overrun or some other unintentional behavior–if one could effectively modify the data sections. Remember that this is normally not possible, since modifying the data segment requires making a copy to a writeable media, and this contradicts the signed media flag.

Thus, the run-anywhere demo disk now enables software hackers to create and test the interaction of signed executables with modified game data using no tool other than a DVD-RW drive (and an Xbox360 console, still considerably rare and difficult to obtain in the US). Some of the more interesting modifiable data regions include Shockwave Flash movies, and the pixel shaders executed by the GPU (more info can be found on the xboxhacker.net website). Of particular interest is the MEMEXPORT shader command in the 360, which could enable people to dump physical memory to the screen (where it can be digitized or extracted with a sniffer upstream of the ANA chip), or to some other peripheral function. Presuming plaintext kernel code can be extracted this way, it bootstraps further efforts in vulnerability analysis of the code running in the Xbox…and so forth. Of course, its quite possible that this hole is plugged, since Microsoft’s NGSCB spec calls for the Northbridge to limit DMA access from the graphics card to main memory. Furthermore, buffer overrun exploits have questionable applicability since each process runs as its own virtual machine and rumors has it that the no-execute bit is used on heap space. Still, I’m very surprised that such a media was even released into the wild by Microsoft…their own worst enemy is their own haste to get to the market and carelessness; security is for naught without consideration of human factors. Very exciting! Perhaps the Xbox360 will be opened without the need for significant hardware hacking.

I have my XBOX premium

Some things that are still missing:

  • Dead or Alive 4
  • a Modchip, Teamxecuter is well place to ship the first one in weeks or months....
  • a way to use it as a media center with an open source software
  • samba share and not proprietary protocol which require XP/MCE

Annoying

  1. noise
  2. size of alimentation

but I am able to support it when I play in 720pp on a 5 meters display :-)

some sites on hacking:

Not related to hacking but some good news on games, mods http://www.xbox360fanboy.com/

Donations

Thank You for supporting my work