Skip to content

Getting Started

TIP

About modchipped Switch console users

If you already know you have a modchipped Switch console, you can skip ahead to the Modchip Introduction page.

Finding your serial number

In the RCM path, we'll first determine if your Switch is vulnerable to fusee-gelee, the exploit we will be using to launch CFW.

The fusee-gelee vulnerability was discovered independently by different Switch hacking teams, who all independently released versions of the exploit in April 2018. Nintendo and NVIDIA were informed 90 days before these releases, and patched consoles were launched by mid-2018. NVIDIA publicly acknowledged the flaw in April as well. In July 2019, Nintendo announced updated consoles: the Switch Lite (HDH-001), and a new model of original Switch (HAC-001(-01)/"V2") with better battery life. Both of these new models use the Tegra X1+ (also known as Mariko, the T214, and T210B01) with a brand-new bootROM, and cannot currently be hacked without a modchip.

Patched and Mariko units can be identified by their serial number. This number can be found in the Settings applet at System -> Serial Information. You can also find it on the bottom of the console, adjacent to the charging port. However, it is always more accurate to use the serial reported in Settings instead, especially if you aren't the original owner of the console.

Visual for System Settings serial location

Visual for serial location on the bottom of console

Determining if your Switch is vulnerable

The community has crowdsourced a list of known serial numbers which are vulnerable to fusee-gelee.

  • If your serial number is on this list as "potentially patched", follow the notice directly after this list.
  • If your serial number is listed as "patched", there is nothing you can do besides installing a modchip (hardware modification. It requires experience with microsoldering.).

TIP

Notice

If you are unsure if your serial is patched, you can test your console yourself following the instructions here.

Serial list

The following information is based on this GBATemp thread.

Serial NumbersUnpatchedPotentially patchedPatched
XAW1XAW10000000000 to XAW10074000000XAW10074000000 to XAW10120000000XAW10120000000 and up
XAW4XAW40000000000 to XAW40011000000XAW40011000000 to XAW40012000000XAW40012000000 and up
XAW7XAW70000000000 to XAW70017800000XAW70017800000 to XAW70030000000XAW70030000000 and up
XAJ1XAJ10000000000 to XAJ10020000000XAJ10020000000 to XAJ10030000000XAJ10030000000 and up
XAJ4XAJ40000000000 to XAJ40046000000XAJ40046000000 to XAJ40060000000XAJ40060000000 and up
XAJ7XAJ70000000000 to XAJ70040000000XAJ70040000000 to XAJ70050000000XAJ70050000000 and up
XAK1N/AXAK10000000000 and upN/A

If your serial number is not listed above, your device is not vulnerable to the fusee-gelee exploit.

Version Table

System VersionUnpatched Switch SystemsPatched or Mariko Switch Systems
1.0.0 - 4.0.1RCMN/A
4.1.0RCMCaffeine
5.0.0+RCMModchip

TIP

About Mariko Switch models

All Mariko (V2) Switch models (HAC-001(-01), HDH-001, HEG-001) are unhackable via software. If Modchip is listed as a method for your console model, then that means the device is unhackable without a hardware modification (modchip). This guide assumes you have a functional modchip installation if you do have a Patched console.

Console Preparation

Important

Before setting up for homebrew, install at least one eShop title to utilize "title takeover", an Atmosphère feature that allows homebrew to use more resources than they would normally have. Try downloading a free game (like Fallout Shelter), application (like YouTube), or a game demo (like 10 Second Run RETURNS). Running the Homebrew Menu via a game cartridge is an alternative, but requires the game to be inserted any time you want to launch the Homebrew Menu. Generally, title takeover doesn't permanently alter the donor game or application.
Once you obtain any bootable title, you are prepared to continue on with the guide.


TIP

If your Switch is not patched, click the button below to follow the RCM path of the guide.

Continue to RCM

TIP

If your Switch is patched and modchipped, click the button below to follow the Modchip path of the guide.

Continue to Modchip introduction

Frequently Asked Questions about this page
  • Q: How reliable is the crowdsourced list of vulnerable serial numbers, and what if my serial number is not listed?

    A: To our knowledge, there hasn't been a single console which has disproved the trends documented here. Unless your serial is potentially patched, you can be certain that the table is accurate to reality.

  • Q: Why is it essential to install at least one eShop title before setting up homebrew, and what is "title takeover"?

    A: By default, the homebrew menu and its apps inherit the resources of the Album applet. Applets don't have as many system resources as full apps, and as such have inconsistent behavior when used for homebrew purposes. Title takeover ensures the best performance, and is required for some homebrew.