In case it wasn't obvious, our Switch coldboot exploit:
* Is a bootrom bug
* Can't be patched (in currently released Switches)
* Doesn't require a modchip to pull off
Another "PS4 Aux Hax" blog! Using HDMI-CEC to get code exec on all PS4 southbridge versions (including PS4 Pro, etc.), without requiring other parts of the system to be pwned:
fail0verflow.com/blog/2018/ps4-…
New blog post about hacking PS VR! We managed to find some major flaws - breaking secure boot and extracting all key material: fail0verflow.com/blog/2022/ps4-…