(UPDATED) Here is a very cool release for the PS3 Hacking community, as developer AlexAltea publishes Full RSX VRAM /IO Access Exploit. While this release is only intended for developer's consumption, it could lead to something more promising down the road for the end user as the developer hope someone can make use of this research and exploit, The capabilities are explained as followed "It just gives you access to something inaccessible before with userland/supervisor privileges". So now developer's can explore new areas on [break]j[/break]the PS3 and nothing better to explore then the RSX chip of the console. Checkout all the details from AlexAltea in the quote below:
Full RSX VRAM/IO access exploit
This allows userland/lv2 access to the entire 256 MB RSX VRAM range and the entire RSX IO address space and works on all firmwares up to the last version. Particularly interesting here, is that this allows to access the last 2 MB of VRAM, reserved only for the LV1 driver, and maybe slightly less interesting, accessing 'vsh.self' VRAM area and IO mapped memory.
Disclaimer The requirements are quite hard to satisfy (many of you either don't need this, or can't run this) and it's only relevant for devs (so some don't need to care about it either). It just gives you access to something inaccessible before with userland/supervisor privileges, nothing else. That's the ONLY reason I'm posting this (and maybe the hope of someone being able to do something better with it).
Requirements:
You need either:
- Userland entry point (e.g. Browser exploit [1], <= 4.78?) + NAND console (although probably if you have this, you already hacked it and have LV1 access).
- LV2 entry point (e.g. RSXploit [2], <= 4.45?). You will need to replace the `sys_rsx_context_attribute` LV2 syscall with the `lv1_gpu_device_map` LV1 call in the source code of the PoC provided below (and remove all the GCM library code among other things).
Download
- Source code available here (documentation inlined as comments): https://github.com/AlexAltea/ps3autotests/blob/master/exploits/user_vram_access/user_vram_access.cpp
Acknowledgements:
Thanks a lot to @3141card, for his LV1 RE files, and to people from Nouveau/Envytools people, specially mwk.
- [1] There's a browser-based (was it Webkit?) memdump PoC for PS3. So, just dump memory, find gadgets and build a ROP chain to load userland code.
- [2] There's a flaw in 'sys_rsx_context_allocate' that allows that. More info on the RSXploit thread.
See Post # 3 Below for UPDATE
Download :user_vram_access.cpp
Source: PlayStationHAX.it
PS3 [PS3] Full RSX VRAM/IO Access Exploit by AlexAltea
Discussion in 'PS3 News' started by STLcardsWS, Mar 23, 2016.
-
STLcardsWS Administrator
-
PS4 Homebrew Store (ALPHA) - Latest Update by LigthingMods
Developer @LigthingMods has released an update to the PlayStation 4 Homebrew Store App that is currently in the Alpha Stages of development. We have now seen several releases of this homebrew store and the functionality of delivering you a homebrew package (pkg's) works very well."Simply" select and download then boom the app installs the homebrew and is ready to use on your Homebrew Enabled PS4. So the foundation seems solid in terms of the functionality. However you must be warned the User -Interface could use a bit of work but we are sure the developer is aware of this and plans to make further improvements as we embark into the future. One of more annoying quirks you will find in the UI will be with navigation as homebrew is randomly listed and you must navigate pages of listing to find Homebrew. In this update there has been the inclusion of a search feature and in my honest opinion it can be a bit picky (if you do not know the exact name of the homebrew) also a pagejump does allow you to navigate any page on demand, but not the most ideal way of browsing the Homebrew contained in the store. A suggestion to help the browsing of pages would be to add some category listing's and even a newly released section
. Now this update there has been plenty of changes/improvements for those changes lets take a look @ligthingmods take it from here with the release details for this huge update found below, also @MasterTurkey has a video showing a bit of the update also.- Introduction by @STLcardsWS Continue reading -
Update #3 for Orbital - An PS4 Emulator by @AlexAltea - now with DualShock 4 support!
Following up after his Milestone Update back in March, Developer @AlexAltea showcases his third Update from his PS4 Emulator Orbital, which now supports the inputs from an original DualShock 4 Controller together with a new and updated Presentation from the current Development Stages of his PS4 Emulator on his own YouTube-Channel (know with a higher Resolution and Quality
). Although the support isn't perfect (the keypress shows big delays on the PS4 while running in Safe Mode - but they are fixable), it is still nice to see how difficult it is to emulate a Console from the ground-up until running a playable Game, but also how much effort he takes to get this PS4 Emulator updated and running better and better. This is already worth some kudos, don't you think? And he has already plans for future updates, such as the possibility to allow a re-installation from the PS4 System Software via an USB Mass Storage Device. Running the Operating System from a emulated Console is always very important and a good basis to make some further work profitable. If this progress will keep so strong for the future, we think we can expect some great functions from that Emulator and for emulating a PS4 on a PC in General, what do you think?Continue reading -
webMAN MOD 1.47.21 - Improved support for PS3HEN with update by Aldostools
Following the recent updates to backup manager's (multiMAN / IRISMAN / ManaGunZ) to provide improved support for PS3HEN. A new update has been also provided for webMAN MOD by fork creator @aldostools, This turbo-charged PS3 plugin for PS3 CFW & PS3HEN user's has been updated to version 1.47.21, as PS3HEN evolves the plugin must adopt as well and improved support for PS3HEN should be seen in this update, along with some other improvements to the AIO plugin. Checkout the full details about this update in the changelogs included belowContinue reading
Comments
Discussion in 'PS3 News' started by STLcardsWS, Mar 23, 2016.
New Posts
Loading...
Tag Cloud
- 3.60
- 4.82
- cfw
- cobra
- emulator
- error
- game
- han
- help
- hen
- henkaku
- henkaku homebrew
- homebrew
- jailbreak
- multiman
- ofw
- pkg
- playstation 2
- playstation 2 resources
- playstation portable
- playstation portable cfw
- playstation portable resources
- playstation tv
- ps vita
- ps2
- ps2 emulator
- ps2 resources
- ps3
- ps3 cfw
- ps3 han
- ps3 homebrew
- ps3xploit
- ps4
- ps4 homebrew
- psn
- psp
- psp cfw
- psp emulator
- psp resources
- pstv
- pstv homebrew
- rebug
- taihen
- tool
- vita
- vita homebrew
- webman
- webman mod
- xmb
- xmb mod
Forum Statistics
Featured Homebrew
-
VITA / PS TV VitaShell
VitaShell is a file manager, package installer, built-in FTP and much more. -
VITA / PS TV PS4ReLink
Re-Activate your PS4 Link with this Homebrew App for Henkaku / taiHEN
XenPorta 2 PRO
© Jason Axelrod from 8WAYRUN.COM
