mstdn.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A general-purpose Mastodon server with a 500 character limit. All languages are welcome.

Administered by:

Server stats:

7.2K
active users

#enlbufferpwn

0 posts0 participants0 posts today
ExperiencersInternational :lidl: 🇵🇸<p><span>It is still beyond me how it took 8 months to patch </span><a href="https://lethallava.land/tags/ENLBufferPwn" rel="nofollow noopener" target="_blank">#ENLBufferPwn</a><span> in two </span><a href="https://lethallava.land/tags/WiiU" rel="nofollow noopener" target="_blank">#WiiU</a><span> games, meanwhile for EVERY other </span><a href="https://lethallava.land/tags/3DS" rel="nofollow noopener" target="_blank">#3DS</a><span> and </span><a href="https://lethallava.land/tags/NintendoSwitch" rel="nofollow noopener" target="_blank">#NintendoSwitch</a><span> game affected, it was done before mid December last year.<br><br>It's disappointing honestly, they haven't even made any additional changes, for example to get rid of the hacking issues in both games (I'm not sure how prevalent MK8 hackers are, but I have seen one in the past meanwhile I haven't seen any </span><a href="https://lethallava.land/tags/Splatoon" rel="nofollow noopener" target="_blank">#Splatoon</a><span> hackers and I've seen a lot of videos of them), apart from a useless one in </span><a href="https://lethallava.land/tags/MarioKart8" rel="nofollow noopener" target="_blank">#MarioKart8</a><span> which my best guess is Miiverse related (could have removed the Upload to YouTube button whilst they were at it).<br><br>---<br><br>I'm hoping someone does analyze the updates though and prove my theory wrong, because if that's all they did, it's appalling.</span></p>
Splatoon Unofficial :inkling: 🍉<p><strong>[News / Maintenance]</strong></p><p><a href="https://wetdry.world/tags/WiiU" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WiiU</span></a> warriors, rejoice!</p><p>You no longer need to hook up to <span class="h-card" translate="no"><a href="https://mastodon.pretendo.network/@pretendo" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>pretendo</span></a></span> to play your favourites online, Nintendo has officially announced at 2am BST tomorrow, you will finally be able to play Splatoon 1 and <a href="https://wetdry.world/tags/MarioKart8" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MarioKart8</span></a> tomorrow again online!</p><p>I'm planning to join in on a live stream tomorrow, probably around 7pm, I'll have more information on my main account if you want to join in with me (I'm currently using <span class="h-card" translate="no"><a href="https://lethallava.land/@experiencer" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>experiencer</span></a></span>).</p><p>It looks like to play online, you will need to probably download the 4.1.1 update (might be 4.2.0 idk) for Mario Kart 8 (I'm purely going off of memory for version numbers) and the 2.13.0 update for Splatoon 1, they'll be released at the time stated at the beginning.</p><p>Are you excited to finally play them online for the first time in 5 months? Let us know in the replies below!</p><p>See announcement page in Japanese: <a href="https://www.nintendo.co.jp/support/information/2023/0802.html" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">nintendo.co.jp/support/informa</span><span class="invisible">tion/2023/0802.html</span></a></p><p><a href="https://wetdry.world/tags/%E3%82%B9%E3%83%97%E3%83%A9%E3%83%88%E3%82%A5%E3%83%BC%E3%83%B31" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>スプラトゥーン1</span></a> <a href="https://wetdry.world/tags/%E3%82%B9%E3%83%97%E3%83%A9%E3%83%88%E3%82%A5%E3%83%BC%E3%83%B3" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>スプラトゥーン</span></a> <a href="https://wetdry.world/tags/Splatoon1" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Splatoon1</span></a> <a href="https://wetdry.world/tags/Splatoon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Splatoon</span></a> <a href="https://wetdry.world/tags/Nintendo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nintendo</span></a> <a href="https://wetdry.world/tags/NintendoWiiU" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NintendoWiiU</span></a> <a href="https://wetdry.world/tags/ENLBufferPwn" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ENLBufferPwn</span></a> <a href="https://wetdry.world/tags/NintendoNetwork" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NintendoNetwork</span></a> <a href="https://wetdry.world/tags/MK8" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MK8</span></a> <a href="https://wetdry.world/tags/MK8DX" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MK8DX</span></a> <a href="https://wetdry.world/tags/MarioKart8Deluxe" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MarioKart8Deluxe</span></a> <span class="h-card" translate="no"><a href="https://lemmy.world/c/splatoon" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>splatoon@lemmy.world</span></a></span></p>
Mufasa<p><a href="https://betweenthelions.link/tags/Nintendo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nintendo</span></a> takes down game servers impacted by hack</p><p>Nintendo has taken down the <a href="https://betweenthelions.link/tags/WiiU" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WiiU</span></a> Servers for <a href="https://betweenthelions.link/tags/MarioKart8" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MarioKart8</span></a> and <a href="https://betweenthelions.link/tags/Splatoon1" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Splatoon1</span></a>. Officially for temporary Network maintenance, but it's likely they are (finally) looking into the impact of the <a href="https://betweenthelions.link/tags/ENLBufferPwn" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ENLBufferPwn</span></a>, an unpatched exploit on <a href="https://betweenthelions.link/tags/3DS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>3DS</span></a> / <a href="https://betweenthelions.link/tags/Wii" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Wii</span></a> that allows attackers to take remote control of your console simply by joining the same online game as you.</p><p><a href="https://betweenthelions.link/tags/NintendoOnline" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NintendoOnline</span></a><br><a href="https://wololo.net/2023/03/06/nintendo-takes-down-game-servers-impacted-by-hack/" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="ellipsis">wololo.net/2023/03/06/nintendo</span><span class="invisible">-takes-down-game-servers-impacted-by-hack/</span></a></p><p>Nintendo Japan's Tweet:</p><p><a href="https://twitter.com/nintendo_cs/status/1631514260353298434" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="ellipsis">twitter.com/nintendo_cs/status</span><span class="invisible">/1631514260353298434</span></a></p>
Tarnkappe.info<p>📬 Nintendo nimmt Mario Kart 8 und Splatoon auf der Wii U offline<br><a href="https://social.tchncs.de/tags/Gaming" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Gaming</span></a> <a href="https://social.tchncs.de/tags/ITSicherheit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ITSicherheit</span></a> <a href="https://social.tchncs.de/tags/ENLBufferPwn" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ENLBufferPwn</span></a> <a href="https://social.tchncs.de/tags/Exploit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Exploit</span></a> <a href="https://social.tchncs.de/tags/Fehlercode1060811" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Fehlercode1060811</span></a> <a href="https://social.tchncs.de/tags/MarioKart8" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MarioKart8</span></a> <a href="https://social.tchncs.de/tags/Nintendo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nintendo</span></a> <a href="https://social.tchncs.de/tags/OatmealDome" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OatmealDome</span></a> <a href="https://social.tchncs.de/tags/Sicherheitsl%C3%BCcke" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Sicherheitslücke</span></a> <a href="https://social.tchncs.de/tags/Splatoon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Splatoon</span></a> <a href="https://social.tchncs.de/tags/Wartungsarbeiten" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Wartungsarbeiten</span></a> <a href="https://social.tchncs.de/tags/WiiU" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WiiU</span></a> <a href="https://tarnkappe.info/artikel/gaming/nintendo-nimmt-mario-kart-8-und-splatoon-auf-der-wii-u-offline-266359.html" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="ellipsis">tarnkappe.info/artikel/gaming/</span><span class="invisible">nintendo-nimmt-mario-kart-8-und-splatoon-auf-der-wii-u-offline-266359.html</span></a></p>
Experiencer (Mastodon)<p>Just thinking a bit more about <a href="https://mstdn.social/tags/ENLBufferPwn" class="mention hashtag" rel="tag">#<span>ENLBufferPwn</span></a> for <a href="https://mstdn.social/tags/WiiU" class="mention hashtag" rel="tag">#<span>WiiU</span></a>, and I actually just went back to wondering why the Mario Kart 8 exploit video was privated, and this could be possibly <a href="https://mstdn.social/tags/Nintendo" class="mention hashtag" rel="tag">#<span>Nintendo</span></a> having no plans to patch it?</p><p>The authors seem like nice people (I&#39;ve had a few conversations with one of the authors), and I could see them removing it because Nintendo has no plans to patch it, and to protect users who play these games.</p><p>Purely nothing factual rn, but it would make sense.</p>
Experiencer (Mastodon)<p>I&#39;m giving Nintendo until January 10th. If they don&#39;t patch the ENLBufferPwn vulnerability on Wii U, then I will release this video.</p><p><a href="https://1drv.ms/w/s!AgNafXziV9SskkkIVF1e2zgoSdFs" target="_blank" rel="nofollow noopener" translate="no"><span class="invisible">https://</span><span class="ellipsis">1drv.ms/w/s!AgNafXziV9SskkkIVF</span><span class="invisible">1e2zgoSdFs</span></a></p><p>I&#39;m currently trying to work with PabloMK7, and I hope it ends up happening, but if not, I&#39;d appreciate it if someone with a good knowledge of coding could help me explain this better to those who don&#39;t, I&#39;d be happy to leave attribution.</p><p><a href="https://mstdn.social/tags/rce" class="mention hashtag" rel="tag">#<span>rce</span></a> <a href="https://mstdn.social/tags/cve" class="mention hashtag" rel="tag">#<span>cve</span></a> <a href="https://mstdn.social/tags/vulnerability" class="mention hashtag" rel="tag">#<span>vulnerability</span></a> <a href="https://mstdn.social/tags/coding" class="mention hashtag" rel="tag">#<span>coding</span></a> <a href="https://mstdn.social/tags/wiiu" class="mention hashtag" rel="tag">#<span>wiiu</span></a> <a href="https://mstdn.social/tags/3ds" class="mention hashtag" rel="tag">#<span>3ds</span></a> <a href="https://mstdn.social/tags/switch" class="mention hashtag" rel="tag">#<span>switch</span></a> <a href="https://mstdn.social/tags/pretendo" class="mention hashtag" rel="tag">#<span>pretendo</span></a> <a href="https://mstdn.social/tags/enlbufferpwn" class="mention hashtag" rel="tag">#<span>enlbufferpwn</span></a> <a href="https://mstdn.social/tags/bufferoverflow" class="mention hashtag" rel="tag">#<span>bufferoverflow</span></a></p>
Marco Ivaldi<p>ENLBufferPwn (CVE-2022-47949)</p><p>// by @Pablomf6@twitter.com</p><p>"The <a href="https://infosec.exchange/tags/ENLBufferPwn" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ENLBufferPwn</span></a> vulnerability exploits a buffer <a href="https://infosec.exchange/tags/overflow" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>overflow</span></a> in the C++ class NetworkBuffer present in the network library enl (Net in Mario Kart 7) used by many first party <a href="https://infosec.exchange/tags/Nintendo" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nintendo</span></a> games. This class contains two methods Add and Set which fill a network buffer with data coming from other players. However, none of those methods check that the input data actually fits in the network buffer. Since the input data is controllable, a buffer overflow can be triggered on a remote console by just having an online game session with the attacker."</p><p><a href="https://github.com/PabloMK7/ENLBufferPwn" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/PabloMK7/ENLBufferP</span><span class="invisible">wn</span></a></p>
Tarnkappe.info<p>📬 ENLBufferPwn macht Nintendo 3DS, Wii U und Switch angreifbar<br><a href="https://social.tchncs.de/tags/Gaming" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Gaming</span></a> <a href="https://social.tchncs.de/tags/Hacking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Hacking</span></a> <a href="https://social.tchncs.de/tags/ENLBufferPwn" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ENLBufferPwn</span></a> <a href="https://social.tchncs.de/tags/Exploit" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Exploit</span></a> <a href="https://social.tchncs.de/tags/Nintendo3DS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Nintendo3DS</span></a> <a href="https://social.tchncs.de/tags/NintendoSwitch" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NintendoSwitch</span></a> <a href="https://social.tchncs.de/tags/NintendoWiiU" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NintendoWiiU</span></a> <a href="https://social.tchncs.de/tags/PabloMK7" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PabloMK7</span></a> <a href="https://social.tchncs.de/tags/RemoteCodeExecution" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>RemoteCodeExecution</span></a> <a href="https://tarnkappe.info/artikel/hacking/enlbufferpwn-macht-nintendo-3ds-wii-u-und-switch-angreifbar-261574.html" rel="nofollow noopener" target="_blank"><span class="invisible">https://</span><span class="ellipsis">tarnkappe.info/artikel/hacking</span><span class="invisible">/enlbufferpwn-macht-nintendo-3ds-wii-u-und-switch-angreifbar-261574.html</span></a></p>