August 23, 2007Timing Attack Complete — Downgrade from any Xbox 360 Kernel
Posted by greg
Finally some good news for Xbox 360 hackers. A fellow by the name of Robinsond has managed to successfully boot a flashed eFuse Xbox 360 with kernel 1888 using the time attack method. An astonishing breakthrough, no doubt. Once this hack is further developed and later optimized, any average Joe should be able to utilize it and take advantage of running unsigned code. Homebrew on the 360, oh yes!
Done it! My bricked box - one blown eFuse but no CPU key and no valid flash dump that would boot (I did have a valid 2241 dump though that would no longer boot because of the eFuse) - is now alive and well and booting 2.0.1888 with a patched CB (LD count = 1) and a “guessed” hash. Even doing it “manually” only took 3 evenings ;) Now, sleep
Just to be clear, the timing attack will allow you to downgrade to 2.0.1888. You can then upgrade to 4532 & run the KK sploit and obtain your CPU keys. You should be able to replace the original CB after the upgrade (this needs to be confirmed) and then the only “clue” to what happened is that you may have 1 or 2 more burned eFuses for the HV/Kernel version you are running.
It should be possible, soon, for anyone with an Infectus modchip and 20 Euros worth of homebrew hardware to downgrade. Dont forget the Kiosk disk is usable again too!
- source: xboxhacker






Sounds like it’s got potential :O
good work!
So what is my advantage with this
Your advantage would be that soon you will be able to downgrade to a vulnerable kernel and play homebrew, foo! Even if ur efuses have been blown, etc…
E-fuses will not blow like regular fuses since they are changeable. Read Here http://www-306.ibm.com/chips/news/2004/0730_efuse.html and here http://en.wikipedia.org/wiki/EFUSE Which I think this bullcrap since the fun of downgrading a 360 is not like downgrading a PSP :)
damn….im speechless
cud i play PS2 games & gamecube games?
are you stupid???
Actually, to be honest, that is entirely possible. All XBOX1 games run on the 360 are actually emulated, though sometimes special cases have to be made for each game, but still… possible.
Holy Hackers this is sweet what an awsome accomplishment my thanks to the chef for cooking this delicious meal up in the same weeks as the all unbricking psp battery expliote simply amazing the world we live in
http://www.nullriver.com/index/products/connect360
u guys know about this?
OK can someone clarify this, does this mean that it may be possible to have XBMC on the 360 like the Xbox1. If u dont know what XBMC look it up because that is the Shiiit!
cooooooooooooool finaly maybe also dvd2xbox app and staff like that come out
whats the efuse and how does it get blown in the first place ( sorry if i sound like a noob”