New bootloader lets you take the “Meta” out of the original Meta Quest
Summary
Ars Technica reports on a new root-access bootloader for the original Meta Quest that enables privilege escalation and sideloading without relying on Meta servers. The QuestStack project chains Android fastboot vulnerabilities to gain full root access, raising security and ownership concerns as users may bypass vendor controls and potentially brick devices.