A really, REALLY old browser exploit (for 5.3.2)?

Jediweirdo

Well-Known Member
OP
Newcomer
Joined
Aug 3, 2021
Messages
90
Trophies
0
XP
476
Country
United States
Someone I'm helping got a fatal NAND corruption error on their Wii U and I'm trying to help them homebrew it so they can get RedNAND before their NAND is too far gone. However, they're stuck on 5.3.2U and can't update (a fatal error code happens). So, is there any remaining old exploits they could possibly use, and would bluubomb work? We've already tried a lot of newer exploits like the wifi exploit and the more modern web exploits.

Edit: stupid mistake with the version numbers. Sorry! The are on 5.3.2, not 5.5.X
 
Last edited by Jediweirdo,

xpermian

Member
Newcomer
Joined
Apr 3, 2024
Messages
24
Trophies
0
Age
32
XP
7
Country
United States
Did you try dnspresso?
I'm the person who has this issue

Yeah, I tried DNSpresso, but it didn't work. The connection test just kept loading forever. Although, all the videos I saw on DNSpresso used Wired Connections, but I used a normal network connection cuz I don't have a LAN adapter. Not sure if that was the reason why it failed.

I followed this old browser exploit guide: gbatemp dot net/threads/homebrew-launcher-for-wiiu.416905/
This was able to work for me, and I was able to launch the Homebrew Launcher.

I'm not sure how to proceed with installing ISFShax, however, because I tried rerunning the exploit with the ISFShax files, but it just reopened the Homebrew Launcher instead of the minute main menu.
 

SDIO

Well-Known Member
Member
Joined
Feb 13, 2023
Messages
2,268
Trophies
0
Age
28
XP
1,389
Country
Germany
Try replacing SD:/wiiu/apps/homebrew_launcher/homebrew_launcher.elf with the payload.elf from the fw_img loader.
 

xpermian

Member
Newcomer
Joined
Apr 3, 2024
Messages
24
Trophies
0
Age
32
XP
7
Country
United States
After I launched the exploit, I got a black screen with white text saying:

"Could not load file /wiiu/apps/homebrew_launcher/homebrew_launcher.elf"

BTW, the website I'm using is wiiu dot insanenutter dot com.
 

SDIO

Well-Known Member
Member
Joined
Feb 13, 2023
Messages
2,268
Trophies
0
Age
28
XP
1,389
Country
Germany
The problem is we don't have a IOSU exploit for such an old IOSU, and we would need that for a fw_img loader.

The only option I see, without back porting an exploit to an older IOSU (which I don't see happening anytime soon) would be to update IOSU. Since you say the update isn't working, we could try to install the latest OSv10 using the WUP Installer, which we can launch from the Browser exploit.
If that install works, we can use the 5.5.x IOSU exploit to launch a fw.img.
But this has some risk, since I am not sure if the newer OSv10 title works with the older rest of the firmware. We could also try to update all titles, but that would mean more eMMC writes, which also is a risk.
But even if it can't boot anymore completely with the new OS, we should still be able to use UDPIH.

If you want to do that I can look into WUP Installer later to remove the checks.
 
  • Like
Reactions: Blythe93

xpermian

Member
Newcomer
Joined
Apr 3, 2024
Messages
24
Trophies
0
Age
32
XP
7
Country
United States
The problem is we don't have a IOSU exploit for such an old IOSU, and we would need that for a fw_img loader.

The only option I see, without back porting an exploit to an older IOSU (which I don't see happening anytime soon) would be to update IOSU. Since you say the update isn't working, we could try to install the latest OSv10 using the WUP Installer, which we can launch from the Browser exploit.
If that install works, we can use the 5.5.x IOSU exploit to launch a fw.img.
But this has some risk, since I am not sure if the newer OSv10 title works with the older rest of the firmware. We could also try to update all titles, but that would mean more eMMC writes, which also is a risk.
But even if it can't boot anymore completely with the new OS, we should still be able to use UDPIH.

If you want to do that I can look into WUP Installer later to remove the checks.
Sure, I can try using the WUP Installer once you remove the checks. I'm assuming the checks are for checking your Wii U firmware version.
 

SDIO

Well-Known Member
Member
Joined
Feb 13, 2023
Messages
2,268
Trophies
0
Age
28
XP
1,389
Country
Germany
First You understand there is a Risk with this, and I didn't test this exact scenario. If it goes mildly wrong, you will need to use UDPIH or if it goes really wrong you need to defuse (solder). But It's not like there are many options to chose from...

Use the MLCRestorerDownloader https://github.com/Xpl0itU/MLCRestorerDownloader/releases to download the SLC titles.
Create an install folder on the SD, copy the 000500101000400a (OSv10) title the install folder. It will ask you for a Common Key.. You will need to find that somwhere...

There is already a patched version of the WUP Installer: https://hb-app.store/wiiu/wup_installer_gx2_mod
The original WUP Installer doesn't allow installing system titles.
You should be able to launch it from the Homebrew Launcher.

From the WUP Installer you can then install the 000500101000400a title.

After that is done reboot and hope that it still boots from the browser.

You should then be able to use the CFW Booter: https://hb-app.store/wiiu/cfwbooter to load minute from the Homebrew Launcher. (Use the fw_encrypted.img renamed to fw.img on the SD)
 
  • Like
Reactions: Blythe93

xpermian

Member
Newcomer
Joined
Apr 3, 2024
Messages
24
Trophies
0
Age
32
XP
7
Country
United States
Before I try the exploit, can you verify that my SD card files are correct?

  • fw.img
  • ios.img
  • superblock.img
  • superblock.img.sha
  • wiiu
    • apps
      • cfwbooter
        • cfwboot.elf
        • icon.png
        • meta.xml
      • homebrew_launcher
        • homebrew_launcher.elf
        • icon.png
        • meta.xml
      • wup_installer_gx2_mod
        • wup_installer_gx2.elf
        • icon.png
        • meta.xml
    • ios_plugins
      • wafel_core.ipx
      • wafel_isfshax_patch.ipx
  • install
    • 000500101000400a
      • all files downloaded from the MLCRestorerDownloader
 

SDIO

Well-Known Member
Member
Joined
Feb 13, 2023
Messages
2,268
Trophies
0
Age
28
XP
1,389
Country
Germany
looks good to me.
Inside the 000500101000400a folder, you just have the app and other files and no subfolders, right?
 

xpermian

Member
Newcomer
Joined
Apr 3, 2024
Messages
24
Trophies
0
Age
32
XP
7
Country
United States
Yeah, it's just the app and files.

I tried the Browser exploit with this SD card, but I got an error saying:

"FSGetMountSource failed."

edit: it was FSGetMountSource, not FSGetMountExploit
 

SDIO

Well-Known Member
Member
Joined
Feb 13, 2023
Messages
2,268
Trophies
0
Age
28
XP
1,389
Country
Germany
Make sure it is FAT32 formatted. For Now you can also just use the card that worked with the Browser exploit
 

xpermian

Member
Newcomer
Joined
Apr 3, 2024
Messages
24
Trophies
0
Age
32
XP
7
Country
United States
The card I'm using rn is the one that worked with the Browser exploit. I formatted it to FAT32 a couple of days ago with GUIFormat.
 

xpermian

Member
Newcomer
Joined
Apr 3, 2024
Messages
24
Trophies
0
Age
32
XP
7
Country
United States
Yeah, you were right. I replugged the SD card in and the browser exploit worked.

I ran the WUP installer, and installed 000500101000400a to the NAND.

However, after I rebooted and retried the browser exploit, the Browser exploit is now stuck on the wiiu.insanenutter.com/payload532.html website, without going to the Homebrew Launcher.
 

SDIO

Well-Known Member
Member
Joined
Feb 13, 2023
Messages
2,268
Trophies
0
Age
28
XP
1,389
Country
Germany
Then now maybe try the u.wiidb.de one.
But it will look for a wiiu/payload.elf. Make sure you place the fw.img loader payload.elf there https://github.com/wiiu-env/fw_img_payload/releases

If we can't get a browser exploit to work, you could try DNSpresso again. And if that doesn't work maybe bluuebomb. And after that we would need to resort to UDPIH. Do you have a modded switch or a raspberry pi pico?
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • BigOnYa @ BigOnYa:
    Is it a free to play bs, pay to get any good weapon/gear
  • K3Nv2 @ K3Nv2:
    Not free to play but $35
  • K3Nv2 @ K3Nv2:
    Inb4 kiiwii gives it a 0/10
  • BigOnYa @ BigOnYa:
    6/10 rating on steam
  • Psionic Roshambo @ Psionic Roshambo:
    I would like a Predator game "Kill Team" it takes place in the Jungle of the first movie, your team is sent to hunt the predator, using current tech drones and a trained team. Set traps use strategy to hunt and trap or kill the predator.
  • BigOnYa @ BigOnYa:
    Ill stick with my Battlefield. Yea a predator hunting game like that would be cool. Esp if you can be Arnold and say "Get to da choppa"
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Maybe Arnold could do a cameo voice acting, he is the one briefing you on the mission
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Honestly surprised they didn't make a tie in game for Predators that movie was awesome
  • Psionic Roshambo @ Psionic Roshambo:
    I was kinda sad the Yakuza guy died sword fighting a predator lol
  • Psionic Roshambo @ Psionic Roshambo:
    The Russian guy went out like a boss
  • Psionic Roshambo @ Psionic Roshambo:
    Double claymores to the face definitely kill a predator lol
  • BigOnYa @ BigOnYa:
    I went today and looked at a motorcycle someone was selling. I get there and the battery on it was dead, so the guy grabbed a battery charger and hooked it up. He plugged it into the wall, and the motorcycle sparked and started smoking. Come to find out the bike uses a 6 volt battery and the guy had the charger set to 12v. I said sorry to the dude and walked away. I felt bad for him tho.
  • Psionic Roshambo @ Psionic Roshambo:
    Sounds like it would be an exciting ride....
  • Psionic Roshambo @ Psionic Roshambo:
    Not sure I would want something on fire between my legs
  • BigOnYa @ BigOnYa:
    He ruined it basically. Sad cause it was a decent old bike. It would take more money to rewire the bike than it was worth tho.
  • Psionic Roshambo @ Psionic Roshambo:
    Yeah I'm sure at minimum the starter was fried
  • Psionic Roshambo @ Psionic Roshambo:
    Alternator and battery
  • BigOnYa @ BigOnYa:
    Prob alot of fried parts. It was still smoking when I left.
  • K3Nv2 @ K3Nv2:
    I would've said show me how it rides
  • Psionic Roshambo @ Psionic Roshambo:
    I always wanted one of those Smart Cars with a Hyabusa motor in it.
  • K3Nv2 @ K3Nv2:
    I'm getting sick and tired of cheap ass baking pans now
  • BigOnYa @ BigOnYa:
    I think it be cool to have one that would fit in my pickup truck bed, then I could put down ramps n drive it off.
    BigOnYa @ BigOnYa: I think it be cool to have one that would fit in my pickup truck bed, then I could put down...