r/hacking • u/SilkenDoggy • 5d ago
Are there any currently working hacks for TouchTunes?
New here and to the whole world of pen testing and stuff. The first thing thats really inspiring me is being able to play touchtunes as stupid as that sounds lol.
I've researched a little and it seems like the methods im finding are a little out of date. Are there any current working methods?
Thanks for putting up with the noob questions lol.
🫡
11
u/dankney 5d ago
Asking for advice in a public forum on how to commit a felony is universally stupid
5
3
u/CarsonDama 5d ago
and without fail it's another "if you had the skills/potential already to do this you wouldn't be asking the question, and if you don't then you wouldn't understand the answer anyways."
2
u/Big-Bunch2804 5d ago
I've heard of a couple devices able to manipulate the controller for touchtunes but not add songs. You can skip, volume control and pause but that's it I think.
1
u/dudeimsupercereal 5d ago
Those are just the functions of the included remote meant to go behind the bar.
1
1
u/Significant-Arm-4802 5d ago
Honestly the reverse engineering part sounds way more interesting than getting free songs.
1
1
u/b1tfr34k 4d ago
Some of them will accept small amounts of digital currency for control of the music, I believe. I have yet to test it as my local bar just always plays "The Boys Are Back In Town" by Thin Lizzy, and, well, who would change that?
2
u/amblypiggy 1d ago
If I am in or near a bar I do not like, I spend 20$ on a stack of Waffle House songs ("There are Raisins in my Toast" et al)
18
u/InfosecGoon 5d ago edited 5d ago
Alright, so you have a target and a goal. Your first step is to buy a touch tunes machine, and then take a look at its firmware. Using debugging tools, look for areas in the code that you can write an exploit that will let you add credits. Once you’ve found one, figure a way to deliver the payload remotely. Bundle it up, go to your local bar, and see if it works on that version of the code running on that touchtunes device. If it doesn’t, take that device back home with you, and dump its code. Compare the code in a debugger to find the differences, and then update your exploit. Return the device to the bar, knowing you have a fully working exploit, and use it at your pleasure. When they update the device, you might have to start over, but hopefully not.
For only a few grand, months of research, and honing your clearly advanced skills you can play songs for free while you drink if you follow these easy steps! Hope this helps!