As posted in the Xbox One Research Wiki Kernel level code execution is possible on Xbox Consoles via the Game Script UWP App.
At the moment things are in their infancy, however given the Xbox One is over a decade old it this point its exciting to have a kernel exploit for the modern Xbox family of consoles that could lead to some good things in the near future.
This exploit is compatible with the Xbox One, Xbox One X, Xbox Series S and Xbox Series X, all Xbox consoles after the Xbox 360 share the same OS.
This will likely be patched in the next system update for Xbox consoles, so if you are interested in messing about with the Xbox you should prepare your console ASAP.
As posted by Xbox One Research to prepare, do the following:
Proof of concept exploit carrot_c4k3 has released on Github.
- Ensure your Xbox Live account Login-Type is configured as “No barriers” aka. auto-login with no password prompt
- Set your console as “Home Console” for this account
- Download the App Game Script
- Start the app (to ensure license is downloaded/cached)
- Optional: Download Notepad T' as you can copy + paste txt files from a USB drive with this app, meaning you don't need to type a lot of code manually in the future.
- Take your console offline! To make extra sure it cannot reach the internet, set a manual primary DNS address of 127.0.0.1
The Xbox OS version you should be on is 10.0.25398.4478, if you are currently higher than this your console could be enrolled in the inside preview. If you leave the preview program from the insider app you should currently end up on system update 10.0.25398.4478 as of the time of writing. This does factory reset the Xbox which is something to keep in mind.
It's certainly nice to see something happen with the Xbox One after been out in the wild for over a decade and even on the newer series Xbox consoles also. Hopefully this is the start of the Xbox Scene for more modern Xbox consoles.
Xbox Kernel Code Execution In SystemOS POC Exploit Released
Discussion in 'News' started by InsaneNutter, Jun 9, 2024.
Comments
Discussion in 'News' started by InsaneNutter, Jun 9, 2024.
XenPorta 2 PRO
© Jason Axelrod from 8WAYRUN.COM