Mufasa · @ne1for23
478 followers · 3077 posts · Server betweenthelions.link

takes down game servers impacted by hack

Nintendo has taken down the Servers for and . Officially for temporary Network maintenance, but it's likely they are (finally) looking into the impact of the , an unpatched exploit on / that allows attackers to take remote control of your console simply by joining the same online game as you.


wololo.net/2023/03/06/nintendo

Nintendo Japan's Tweet:

twitter.com/nintendo_cs/status

#nintendo #wiiu #mariokart8 #splatoon1 #enlbufferpwn #3ds #wii #nintendoonline

Last updated 1 year ago

Tarnkappe.info · @tarnkappeinfo
1981 followers · 4252 posts · Server social.tchncs.de

Just thinking a bit more about for , and I actually just went back to wondering why the Mario Kart 8 exploit video was privated, and this could be possibly having no plans to patch it?

The authors seem like nice people (I've had a few conversations with one of the authors), and I could see them removing it because Nintendo has no plans to patch it, and to protect users who play these games.

Purely nothing factual rn, but it would make sense.

#Nintendo #wiiu #enlbufferpwn

Last updated 2 years ago

I'm giving Nintendo until January 10th. If they don't patch the ENLBufferPwn vulnerability on Wii U, then I will release this video.

1drv.ms/w/s!AgNafXziV9SskkkIVF

I'm currently trying to work with PabloMK7, and I hope it ends up happening, but if not, I'd appreciate it if someone with a good knowledge of coding could help me explain this better to those who don't, I'd be happy to leave attribution.

#bufferoverflow #enlbufferpwn #pretendo #switch #3ds #wiiu #Coding #vulnerability #cve #rce

Last updated 2 years ago

Marco Ivaldi · @raptor
1501 followers · 619 posts · Server infosec.exchange

ENLBufferPwn (CVE-2022-47949)

// by @Pablomf6@twitter.com

"The vulnerability exploits a buffer in the C++ class NetworkBuffer present in the network library enl (Net in Mario Kart 7) used by many first party games. This class contains two methods Add and Set which fill a network buffer with data coming from other players. However, none of those methods check that the input data actually fits in the network buffer. Since the input data is controllable, a buffer overflow can be triggered on a remote console by just having an online game session with the attacker."

github.com/PabloMK7/ENLBufferP

#enlbufferpwn #overflow #nintendo

Last updated 2 years ago

Tarnkappe.info · @tarnkappeinfo
1732 followers · 3973 posts · Server social.tchncs.de