Quantcast
PCWorld.com is upgrading some back-end systems. Some site features, such as user registration, may be temporarily unavailable.

MIT Student Extracts Secret Keys From Xbox

Using 'simple custom hardware', savvy users could unlock security and run other software on Microsoft game console.

Joris Evers, IDG News Service

  • 0 Yes
  • 0 No

A computer science graduate student claims to have cracked the security system in Microsoft's Xbox game console, potentially allowing users to run software of their choice on the device.

Using a custom circuit board, made in spare time in a three-week period for a total cost of about $50, Massachusetts Institute of Technology student Andrew Huang was able to tap traffic between Xbox components and uncover the keys that unlock the device's protection, he wrote in a research paper published on his MIT Web site last week.

The Xbox's decryption algorithm and security key are housed securely in a chip inside the Xbox, but can be intercepted using "simple custom hardware" because they are sent to the Xbox's processor over a set of unsecured high speed connections, or buses, according to Huang's paper.

The security in the Xbox is used to authenticate the system's boot sequence and the software that it runs. With the keys in hand, a technically advanced user could create his own boot image and run other software on the Xbox. Connectors originally installed for fault checking during manufacturing can be used to reprogram the Xbox motherboard, according to Huang in his paper.

Xbox Unlocked

One contributor to a long discussion on the Xbox crack on the Slashdot.org news Web site wrote he would like to be able to load the Linux operating system and a media player for the DivX media format onto the Xbox.

That might not be possible for a while, though.

Huang sees the uncovering of the keys as a first step. "It is now possible to investigate the kernel and bootloader in more detail," he wrote in his paper. Huang won't publish the keys, as they are Microsoft's intellectual property, he wrote last weekend in an online forum dedicated to Xbox hacking. Huang, in another posting to the same forum under his nickname "bunnie," also states that he did the work on the Xbox in February, but that it "took about three months to get it positioned and cleared with both MIT and Microsoft."

Nobody at Microsoft was available for comment.

  • Recommend this story?
  • 0 Yes
    0 No
  • Great year-end deals
    for small business!
  • Get 24/7 live remote AT&T Tech Support 360* service along with select Lenovo* PCs (with Intel® Core™ 2 Duo processors) and save up to 200!

    Learn more

  • HP EliteBook* 6930p Notebook with Intel® vPro™ technology and a free HP Basic Docking Station - $641 instant savings!

    Learn more

People who read this also read:

Sponsored Links