PS3 Question about how to get eid_root_key from nor dump

Luisile

Member
Hi, time for my question. i have cech-2504b the not jailbreakable console. i can homever instal the hfw and make nor dump from it. It is posible to extraxt the eid root key from dump in format that it will work with ps3 hdd reader? i will do it only for backup for savegames that i can not copy to usb from xmb due to copyright issues. it is somehow possible? thanks
 
To extract the key is needed to run a PKG with a homebrew program that triggers an exploit
In HAN is not posible to run homebrew so is not posible to dump the key :/
 
I've never seen a way to dump the per console keys without having the system do it for you.
I think you should be able to use the han file copier to backup the param.sfo from the save and remove the copy protected attribute then copy it back. After that the save should let you copy it to the usb.
 
I've never seen a way to dump the per console keys without having the system do it for you.
I think you should be able to use the han file copier to backup the param.sfo from the save and remove the copy protected attribute then copy it back. After that the save should let you copy it to the usb.
Hmmm, this should not work, because the PARAM.SFO is supervised by the PARAM.PFD
The PARAM.PFD contains the hashes of the PARAM.SFO so is working like an anti-tampering protection, if you change a single bit of the SFO the whole savedata becomes invalid

The way to do it in CFW is by removing the "copy protected" flag in the PARAM.SFO (this is the easy part)
And after that you need to use the pfd tool tool released by flatz to force an "update" of the PARAM.PFD
By using the "update" command the new PARAM.PFD is rebuilt and the new hash of your new PARAM.SFO is added in it

But the tool needs the EID key of your PS3 :/
 
same question again..


The best I can suggest is trying Rebug Toolbox and see if it works. Not near a system to test myself. That's the only app that comes to mind that isn't firmware dependant. I recall someone saying they were able to get it in another thread.

@Joonie @habib


Edit

Never mind just checked one needs lvl1 access which is still protected using HEN and I don't forsee this happening anytime soon if at all. If this was possible we would have access to Linux for HEN. So if you ever see Linux supported for HEN then you will have access to eID root key. Sorry no such luck yet bud.
 
Last edited:
The best I can suggest is trying Rebug Toolbox and see if it works. Not near a system to test myself. That's the only app that comes to mind that isn't firmware dependant. I recall someone saying they were able to get it in another thread.

@Joonie @habib


Edit

Never mind just checked one needs lvl1 access which is still protected using HEN and I don't forsee this happening anytime soon if at all. If this was possible we would have access to Linux for HEN. So if you ever see Linux supported for HEN then you will have access to eID root key. Sorry no such luck yet bud.
Hey, can you answer me what is "CEX-FLASH.EID0.NANDBIN" please?
 
Hey, can you anser me what is "CEX-FLASH.EID0.NANDBIN" please?


It is a dump of your NAND flash which is needed for CFW to swap from CEX to DEX kernel. It isn't the eID root key. With that and your eID root key using Rebug Toolbox you can swap from CEX to DEX mode with CFW. Trying with HEN would result in a bricked system. But you have a NAND based model so you can install CFW if you don't have it and do this. You can also use it to get your IDPS on the PC with tools. Never share this or try it on another system as they are specific for your system. The only thing anyone else would need it for is to get your IDPS and using on any other system will result in a brick.
 
Nope can't be used for HEN but why would you be using HEN? You can install CFW with that system which is VASTLY superior. Check my updated post for more info
My console don't support CFW unfortunately(it's 3000 series),I'm at hen, I tried dumping that file with IDPSet, and it gave me "CEX-FLASH.EID0.NANDBIN" and "DEX-FLASH.EID0.NANDBIN"
 
My console don't support CFW unfortunately(it's 3000 series),I'm at hen, I tried dumping that file with IDPSet, and it gave me "" and "DEX-FLASH.EID0.NANDBIN"


Oh I thought you got that from Rebug Toolbox. IDPSet isn't supported for HEN that's why it was getting confused.


CEX-FLASH.EID0.NORBIN

Is what your system would dump if it was compatible. Why we're you attempting to use IDPSet?
 
Oh I thought you got that from Rebug Toolbox. IDPSet isn't supported for HEN that's why it was getting confused.


CEX-FLASH.EID0.NORBIN

Is what your system would dump if it was compatible. Why we're you attempting to use IDPSet?
I'm trying to help HEN progress, I wanted to donate, but I don't have money.
What I could do to help?
 
I'm trying to help HEN progress, I wanted to donate, but I don't have money.
What I could do to help?


The guys don't do it for cash man. Simply testing and posting results helps aid the process and a simple thank you goes a long way. The guys put in countless hours for everyone. There is already a new build in the pipeline we are testing as we speak. @habib and @Joonie tirelessly work on this as well as other contributors. This is a hobby and passion for these guys.
 
So tested the rebug toolbox on hen but it does not work. i select dump eid root key and the system just freeze with black screen. needed restart the system. so no go for now.
 
I just realized something. Its not my question from first post pointles if i can install hen some ftp homebrew and just ftp the Save files to pc? But what about ban? I use this console only with original disc and oficial PSN content. On other things i have another cfw Ps3. So now what? That is the question....
 
So tested the rebug toolbox on hen but it does not work. i select dump eid root key and the system just freeze with black screen. needed restart the system. so no go for now.

Don't waste your time testing rebug toolbox on HEN, you can't dump your eid root key due to limited access in kernel and hypervisor.
 
I just realized something. Its not my question from first post pointles if i can install hen some ftp homebrew and just ftp the Save files to pc? But what about ban? I use this console only with original disc and oficial PSN content. On other things i have another cfw Ps3. So now what? That is the question....

It doesn't matter for what purpose You using it. For Sony hacked console == reason to ban. It's simple as that (and injustice but we can do nothing).
 
Back
Top