It was nearly 7 years ago since we have seen a PS3 Official Firmware Exploited (3.55 being the last), which predates many PS3 models and thus why those later Slim & SuperSlim models could never install Custom Firmware (CFW) and/or Downgrade. However that could all change as a team of three have been developing a new project (4.81 OFW Exploit) called PS3Xploit. The "Unhackable PS3 models" will be a term of the past, but the exploits not quite there yet but the possibility of a HENkaku (vita) style hack is very plausible. Currently the exploit has allowed for access to enable Flash dumps on all consoles, Then Write access to Flash, unhackables (25xx +) will not be able to write but all previous PS3 will so that means Goodbye Hardware Flashers and Hello Software Downgradrs. The team is consisting of psx-place's very own @bguerville, @esc0rtd3w and W form the team behind PS3Xploit.
The theory behind the project started off when bguerville was looking through some of the webkit source code (for unrelated research) and stumbled on a discovery and a discussion here on the psx-place forums was formed with theories on how the PS3 could be attacked with his findings. As time passed the team formed and an idea became a full-fledged project in development, A request came to temporary remove the said discussion as the idea spawned a project with alot of potential. Sadly this is not ready for release quite yet (but soon), while we know it is working there is additional development needed to make this complete. The team has a goal of 2018 (first Q1) target for the release of the exploit.
![]()
Recently team member esc0rtd3w announced the tentative release date on another forum and it seemed some were so grateful they decided to intrude and breach his MEGA account and leak what they thought was the exploit / key component but was only a small puzzle piece of the entire thing and quite useless itself . While the good news it did not harm the project or discourage the development team behind Ps3Xploit. However esc0rtd3w did lose some personal files and also the community lost the huge collection of NoPSN Apps for the PS3. But don't cancel those subscription service's just yet, as esc0rtd3w is in the process of re-uploading the collection, you can follow the progress here .
Also, I have been personally told by the team that some of the details being reported elsewhere are not 100% accurate, but rest assured we have first-hand information about this upcoming exploit and we will set the record straight and keep you flowing with the facts as they become available. bguerville has provided us with some details about this release and also tells us about what they plan to release first and that is coming in the next 24 hours in the form of a IDPS Dumper for 4.81 (All PS3 Models). (UPDATE >> Released)
Additional details via @bguerville
(NOTICE - Please Read ALL TABS contains IMPORTANT Details about the project !!! )
I started investigating the ps3 webkit about 6/7 months, but at the time, it was only to gather information, I had no idea I would eventually be the one working on it!
End of August, I gave the information I had to esc0rtd3w & expected he would work on it alone. However, he knew nothing about webkit exploitation & he started to collaborate with W. By hijacking webkit, we inherit its privileges which means we are root & we get access to lv2 syscalls. However the ps3 OS is protected by NX (No eXecute is the bsd/linux equivalent of DEP on Windows), no address randomisation though. Executing our own payload is made impossible by NX but we can still execute code despite NX using ROP (Return Oriented Programming).
The principle is simple, select snippets from the system code (snippets like these are called gadgets) & assemble them so execution jumps from one gadget to the next until the task we planned is done. It requires providing values/parameters & offsetting to each gadget instruction as well...
First week of September, I joined their effort & 2 weeks later we had ROP execution.
From that moment, I have been doing all the ROP development work alone while the other 2 helped with testing & researching (and debugging for esc0rtd3w).
Right now I have 2 ROP chains ready, one for idps dumping & the other for flash memory dumping.
The next part of the job is to modify the flash dumper into a flash writer.
- The idps dumper is about to get released. (UPDATE Released >> Click Here)
- The flash dumper will be released later.
When that is done & released, ps3 hardware flashers will have become mostly obsolete.
FYI, the idps dumper should work on any nor/nand model of ps3. Same goes for the flash memory dumper.
It was tested ok on superslim.
Once the ROP work above is finished , there is much more to be done & hopefully more releases to come...
Stay tuned.....
The Current Status
For now the main project we are working on will not jailbreak all consoles.
It will enable flash dumps from all consoles but flash write only to all consoles up to 25xx so consoles that are are not cfw compatible will not really benefit just yet, except for dumping flash & idps but not for JB.
For those with cfw compatible consoles on ofw, once flash is overwritten with a db ofw copy, a user can reboot then install the cfw of their choice. Hardware flashers being then obsolete.. You could also overwrite the flash memory in more recent consoles but that would result in a brick due to metldr2.
It's only after that flash management project is done, in hopefully March that we will begin working on exploiting lv2. If we get the results we wish, we should be able to make a TaiHEN type of hack for all consoles including superslims.
Once lv2 is exploited, I am not sure yet how far I will take it, whether I will also try to take on lv1.. Or leave it for someone else to build on by releasing a fully commented & dev friendly version... We will see how things go, ......
However, even without lv1, direct access to lv2 functions using the right parameters would allow us to run homebrews (except those needing lv1 peek/poke) & backups without problems along with many other things.
I figured i would add this (tab) to add some news and thread related to this project, that has arisen after this article.
- November 11 >> IDPS Dumper (PS3 NAND / NOR ) - 4.81 OFW Compatible by Team PS3Xploit
- November 12 >>> PS3 4.81 IDPS Dumper eMMC (Only for 12Gb models) Testing and Research Area
- November 12 >>> PS3Xploit NOTICE - Stay clear of any Incoming Firmware Updates on the PS3.
- November 24 >>> 4.82 OFW Software Flash Writer + Nor Dumper (install CFW on 4.82 OFW)
- November 25 >>> PUBLIC WARNING - Fake Exploit Pages
- November 27 >>> NOR DUMPER (Lower OFW Ports)
Stay tuned to psx-place.com as this story develops, we have the inside scoop on all the details as they flow. This is a huge breakthrough for the PS3 Community and will only progress from here on out!!!
UPDATE : IDPS DUMPER HAS BEEN RELEASED> >> NEWS Coverage
(Please Note - You should not update your PS3 firmware past 4.81 if a Software Update goes Live)
PS3 Official Firmware 4.81 Exploit - Software Downgrader & More Incoming! Could SuperSlim be hacked?
Discussion in 'PS3 News' started by STLcardsWS, Nov 9, 2017.
-
STLcardsWS Administrator
-
PS4 Homebrew Store (ALPHA) - Latest Update by LigthingMods
Developer @LigthingMods has released an update to the PlayStation 4 Homebrew Store App that is currently in the Alpha Stages of development. We have now seen several releases of this homebrew store and the functionality of delivering you a homebrew package (pkg's) works very well."Simply" select and download then boom the app installs the homebrew and is ready to use on your Homebrew Enabled PS4. So the foundation seems solid in terms of the functionality. However you must be warned the User -Interface could use a bit of work but we are sure the developer is aware of this and plans to make further improvements as we embark into the future. One of more annoying quirks you will find in the UI will be with navigation as homebrew is randomly listed and you must navigate pages of listing to find Homebrew. In this update there has been the inclusion of a search feature and in my honest opinion it can be a bit picky (if you do not know the exact name of the homebrew) also a pagejump does allow you to navigate any page on demand, but not the most ideal way of browsing the Homebrew contained in the store. A suggestion to help the browsing of pages would be to add some category listing's and even a newly released section
. Now this update there has been plenty of changes/improvements for those changes lets take a look @ligthingmods take it from here with the release details for this huge update found below, also @MasterTurkey has a video showing a bit of the update also.- Introduction by @STLcardsWS Continue reading -
Update #3 for Orbital - An PS4 Emulator by @AlexAltea - now with DualShock 4 support!
Following up after his Milestone Update back in March, Developer @AlexAltea showcases his third Update from his PS4 Emulator Orbital, which now supports the inputs from an original DualShock 4 Controller together with a new and updated Presentation from the current Development Stages of his PS4 Emulator on his own YouTube-Channel (know with a higher Resolution and Quality
). Although the support isn't perfect (the keypress shows big delays on the PS4 while running in Safe Mode - but they are fixable), it is still nice to see how difficult it is to emulate a Console from the ground-up until running a playable Game, but also how much effort he takes to get this PS4 Emulator updated and running better and better. This is already worth some kudos, don't you think? And he has already plans for future updates, such as the possibility to allow a re-installation from the PS4 System Software via an USB Mass Storage Device. Running the Operating System from a emulated Console is always very important and a good basis to make some further work profitable. If this progress will keep so strong for the future, we think we can expect some great functions from that Emulator and for emulating a PS4 on a PC in General, what do you think?Continue reading -
webMAN MOD 1.47.21 - Improved support for PS3HEN with update by Aldostools
Following the recent updates to backup manager's (multiMAN / IRISMAN / ManaGunZ) to provide improved support for PS3HEN. A new update has been also provided for webMAN MOD by fork creator @aldostools, This turbo-charged PS3 plugin for PS3 CFW & PS3HEN user's has been updated to version 1.47.21, as PS3HEN evolves the plugin must adopt as well and improved support for PS3HEN should be seen in this update, along with some other improvements to the AIO plugin. Checkout the full details about this update in the changelogs included belowContinue reading
Comments
Discussion in 'PS3 News' started by STLcardsWS, Nov 9, 2017.
-
Page 1 of 10
New Posts
Loading...
Tag Cloud
- 3.60
- 4.82
- cfw
- cobra
- emulator
- error
- game
- han
- help
- hen
- henkaku
- henkaku homebrew
- homebrew
- jailbreak
- multiman
- ofw
- pkg
- playstation 2
- playstation 2 resources
- playstation portable
- playstation portable cfw
- playstation portable resources
- playstation tv
- ps vita
- ps2
- ps2 emulator
- ps2 resources
- ps3
- ps3 cfw
- ps3 han
- ps3 homebrew
- ps3xploit
- ps4
- ps4 homebrew
- psn
- psp
- psp cfw
- psp emulator
- psp resources
- pstv
- pstv homebrew
- rebug
- taihen
- tool
- vita
- vita homebrew
- webman
- webman mod
- xmb
- xmb mod
Forum Statistics
Featured Homebrew
-
PS3 MinVerChk (Minimum Version Checker)
Displays your PS3s Base-Factory-Firmware -Ifcaro -
PSP RetroArch (PSP)
The Official RetroArch (PSP) port (multi system emulator) -
PS3 PS3 Game Manager by Francesco Fazio
A new original PS3 Backup Manager that runs on Windows, Mac OSX and Linux inside VirtualBox
XenPorta 2 PRO
© Jason Axelrod from 8WAYRUN.COM
