Notebookcheck Logo

Switch 2: Developer unveils a universal exploit that works entirely offline

A picture of a pair of Nintendo Switch 2 consoles side by side
ⓘ r/switch
A picture of a pair of Nintendo Switch 2 consoles side by side
Developer Gezine has unveiled a universal userland exploit for the original Nintendo Switch and Switch 2 that works offline across all firmware versions without relying on WebKit or save transfers. While the discovery could advance homebrew research, it remains confined to an app sandbox and does not enable custom firmware, piracy, or full system access.

Nintendo has spent many years tightening the security of the Nintendo Switch 2 ecosystem, ranging from firmware updates to a new EULA that allows the company to brick Switch 2 consoles that have been modified in any way.

Despite these restrictions and pressure, the homebrew scene for the Nintendo Switch 2 has scored a new milestone. A developer who goes by Gezine, who previously worked on PS5 security research, has discovered a userland exploit that runs on both the original Switch and the Nintendo Switch 2 without using WebKit or connecting to the internet.

Gezine took to X to break the news and explain why this exploit matters more than existing ones. In the post, he stated:

“I created a Switch 1/2 userland exploit that is not a WebKit or save exploit.

"But we already have a userland exploit from day one"

The difference is that the existing userland exploit is based on the save exploit, which can't be used without save transfer using the Nintendo Online Service, which forces you to be on the latest firmware.

So even if a kexploit or some software-based privilege escalation is found, 99% of people can't use the save exploit. But this one works without any restrictions and works on all firmware.

Why not hack WebKit? Switch 2 WebKit has ARM PAC (Pointer Authentication Code), which prevents ROP code execution. So I avoided it, as there was an easier way to exploit it.”

The Switch 2’s browser is nearly impenetrable due to ARM’s Pointer Authentication Code, which largely blocks the return-oriented programming chain modders usually fall back on. For now, the community’s reaction to the exploit being made public is pretty polarising, as Nintendo has patched out earlier exploits within hours of vulnerabilities being discovered.

 

 

Not a solution for some, but an important step for homebrew

It’s important to note that a userland exploit allows developers to run code inside an app’s sandbox. It doesn’t allow users to run custom firmware, run pirated ROMs, or gain full unauthorized access to the system.

Getting to a working Nintendo Switch 2 jailbreak that functions offline will take time, as modders and hackers continue to search for new avenues. Until then, Nintendo is likely to patch out any vulnerabilities or bugs that could allow users to jailbreak their consoles—or brick them entirely.

Buy a Nintendo Switch 2 console on Amazon here

Source(s)

Google LogoAdd as a preferred source on Google
Mail Logo
static version load dynamic
Loading Comments
Comment on this article
> Expert Reviews and News on Laptops, Smartphones and Tech Innovations > News > News Archive > Newsarchive 2026 07 > Switch 2: Developer unveils a universal exploit that works entirely offline
Rahim Amir Noorali, 2026-07-21 (Update: 2026-07-21)