PolyWolf on Security

Hacking the Xbox 360 Hypervisor Part 2: The Bad Update Exploit

Posted on 2025-03-04: https://icode4.coffee/?p=1081

It took about a week to rewrite the C code in ROP and the final chain consisted of 20-30 unique ROP gadgets and just over 28,000 links in the chain. I wrote many parts of the chain in reusable macros and split it across several source files to simplify the process, but even then the complexity of the chain is quite high.

Holy smokes!! And that’s only part of the story