garyodernichts.bsky.social
@garyodernichts.bsky.social
I wrote a blog post about the security of the STM32H730 microcontroller used in the Nintendo Alarmo. There's a vulnerability that allows dumping the protected secure bootloader of the STM32H730.
You can read more about it here: garyodernichts.blogspot.com/2025/11/priv...
Privileged Arbitrary Code Execution on STM32H73XXX microcontrollers
This is somewhat of a follow-up to the Nintendo Alarmo blog post from last year. This time the blog post is about the security of the STM32H...
garyodernichts.blogspot.com
November 13, 2025 at 5:25 PM
Reposted
now with sound!!!!!

I had to change the audio amplifier's config to make it run at 32KHz (instead of the standard 48KHz). heh
September 3, 2025 at 1:25 AM
Reposted
here's a framebuffer graphics demo (this has no practical purpose and I can't prove I'm not just like, playing a youtube video or something)
June 5, 2025 at 4:26 PM
I spoke too soon heh...
Nintendo released a new Alarmo update a few hours ago. The new update contains a new 2ndloader where the signature is properly checked in USB mode. If you want to modify your Alarmo without soldering, stay on v2.0.0!
March 24, 2025 at 7:43 AM
Nintendo is still shipping Alarmos without signature checks in the 2ndloader. I assumed they might do something for the wide retail release, but it looks like they don't really care (for now).
March 8, 2025 at 10:41 AM
Wii U fun facts:
While reverse engineering the Wii U's USB Host Stack (UHS) I noticed several fun quirks in their descriptor code.
One of them was even exploitable (UDPIH), but there are some others that I have never mentioned before. This thread contains some of the minor ones I still remember.
February 27, 2025 at 5:19 PM
After my last post, it was pretty clear what everyone wanted to see on the Alarmo. So, here it is - Doom running on the Nintendo Alarmo!
November 2, 2024 at 4:52 PM
It's possible to run custom code on the Nintendo Alarmo via USB - without opening it up!
More details in the blog post here: garyodernichts.blogspot.com/2024/10/look...
#nintendo #hacking
October 30, 2024 at 12:33 AM
Here's a simplified overview of what I figured out about the Nintendo Alarmo boot process so far.
October 20, 2024 at 8:18 PM
I kind of forgot about Bluesky and now I have over 50 followers out of nowhere. I guess I should start posting some more things over here!
October 20, 2024 at 7:39 PM
Ever wanted to exploit DNS response parsing on the Wii U? I have just released DNSpresso!
You can find the technical write-up here: garyodernichts.blogspot.com/2023/10/expl...
Exploiting DNS response parsing on the Wii U
It's annual Wii U exploit time! 😄 Image of the Wii U connection test screen on the GamePad. After reverse engineering parts of the Wii Us' ...
garyodernichts.blogspot.com
October 28, 2023 at 11:02 AM
wii u
October 14, 2023 at 8:17 AM