PSP-Forum.com  

Go Back   PSP-Forum.com > Sony PSP > Sony PSP News

Last 10 Posts
What games can actually use custom soundtracks? ( Last Post : psplayer - - Time: 06:28 PM - Date: 10-11-2008)           »          The Randomness Thread ( Last Post : Ryder - - Time: 04:52 PM - Date: 10-11-2008)           »          Any improvement? ( Last Post : JBond - - Time: 12:17 PM - Date: 10-11-2008)           »          Connection problems ( Last Post : mtm1975 - - Time: 11:56 AM - Date: 10-11-2008)           »          emulator framerate ( Last Post : High Roller - - Time: 06:37 AM - Date: 10-11-2008)           »          HELP!!! Want to remove 4.05OCW ( Last Post : High Roller - - Time: 05:32 AM - Date: 10-11-2008)           »          Can i downgrade my 4.01 ofw ( Last Post : deax101 - - Time: 09:41 PM - Date: 10-10-2008)           »          FF7 pbp problem ( Last Post : Godsent - - Time: 07:09 PM - Date: 10-10-2008)           »          Glad to meet ya! ( Last Post : psplayer - - Time: 06:42 PM - Date: 10-10-2008)           »          In LBP beta! ( Last Post : psplayer - - Time: 02:29 PM - Date: 10-10-2008)           »         

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
Old 06-28-2006, 04:36 AM   #1 (permalink)
Constantine
PSP-Forum Demi-God
 
Constantine's Avatar
 
Join Date: Jul 2005
Location: A PSPirate on the high-seas of treason
Posts: 2,705
Send a message via MSN to Constantine
Default Firmware 2.6 hack

This post has been updated as of 11:15pm EST

Quote:
Originally Posted by QJ.Net
Break out your calendars folks, because this may be a day that you want to mark as a pivotal day in the history of PSP homebrew. A developer known as hitchhikr of "hitchhikr SoftWorks" and coder companion Neural have come out with a Proof of Concept of a 2.50/2.60 Firmware Exploit! Once implemented and fine tuned for "normal user" use, this will bring 2.50 and 2.60 Firmware up to the same homebrew capability that 1.50 PSP owners enjoy with FULL kernel mode access - although Grand Theft Auto: Liberty City Stories will still be required, just like with eLoader.

Speaking of eLoader, Fanjita is already working with hitchhikr on incorporating this new exploit into an easily executable means via eLoader. After a brief chat with Fanjita, he's told us that you can expect some generic application for developers to hopefully be released in the next 24 hours. It will take a bit longer before something useable for non-devs will be released.

The exploit takes advantage of an added security check in 2.50/2.60 Firmware for sceKernelLoadExec, which is responsible for loading EBOOTs, but Sony also accidentally added an overflow bug, which means this exploit will not work with 2.0 and 2.01 Firmware.

Below you will find a download of hitchhikr's & Neural's Proof of Concept - this is not intended for the casual user. It creates dump files containing kernel memory dumps in the root of the memstick (boot.bin, kmem.bin, klib.bin). It also creates writeaccess.bin which contains just the hex (12 34 56 78) to prove that kmem CAN be written to.

But don't start upgrading those PSP's yet until a viable means of implementation is released! Also, this breakthrough does not open up the possibility of a downgrader due to the protection in the IPL in 2.50+ firmware. Although speculation has already begun that this will open the door to the decrypting of 2.70+ Firmware, allowing it to be emulated a la Devhook.

We will stay on top of this breaking news all day long and be constantly updating this news post with information as soon as we get it! Stay with QJ.NET and PSPUpdates for all the latest!

Download: [2.60 Firmware Exploit - Proof of Concept]
Read: [QJ.NET Forum Discussion Thread]


UPDATE #1: Fanjita has released the "source" of his work so far today on this newly discovered exploit. If you would like to take a look at it and continue investigating where he left off for today, have a look!

Only for v2.5 / v2.6.

Based on Proof of Concept code by Hitchhikr / Neural.

Function : Attempts to load ms0:/kernel.elf using sceLoadModule/sceStartModule when in kernel mode, after writing a NOP to 0x8801A5B4.

Diags: Writes a log of operations to ms0:/GTALOG.TXT.
If LoadModule fails, writes the error code to ms0:/failload.trc.
If StartModule fails, writes the error code to ms0:/failstart.trc.

Check out the included readme for more info! (Thanks for the tip, gangsta_psp!)

Download: [Fanjita's Exploit Source - Day 1]


Note: This news post will stay at the top of the page for most of the day to ensure everyone gets a chance to see this breaking story unfold. Scroll down for more up to the minute news from QJ.NET!
http://pspupdates.qj.net/Breaking-Ne...g/49/aid/57216
__________________
Constantine is offline   Reply With Quote
Old 06-28-2006, 09:52 AM   #2 (permalink)
odhranus
PSP-Forum Demi-God
 
odhranus's Avatar
 
Join Date: May 2006
Location: In a tent in a field in North Wales
Posts: 3,178
Send a message via MSN to odhranus
Default

i hate that pspupdates is blocked on this pc
__________________


Currently in the pub.
odhranus is offline   Reply With Quote
Old 06-28-2006, 09:57 AM   #3 (permalink)
Pagnell
Administrator / Grim Reaper
 
Pagnell's Avatar
 
Join Date: Feb 2005
Location: Bedfordshire, England.
Posts: 2,920
Default

Looks interesting - Fanjita is already trying to find a way of implementing it so with any luck this will be working within a day or two. Full kernal mode emulation on 2.6 firmware - that would be nice.
__________________
"Children are smarter than any of us. How do I know that? I don't know one child with a full time job and children." - Bill Hicks.

Pagnell is offline   Reply With Quote
Old 06-28-2006, 02:16 PM   #4 (permalink)
2poor
PSP-Forum Addict
 
Join Date: Jun 2006
Location: USA (Ann Arbor, Michigan)
Posts: 265
Default

Very interested in how this develops...I still like my 1.5 though and would love to see 2.7+ FW decrypted for use in Devhook. 8)



ps. I added quote tags to your post Constantine, lest we suffer the wrath of someone bickering about original content.
__________________
Never looking back...or too far in front of me; the present is a gift - and I just wanna BE.

Life is fast - some choose to be quicker.
2poor is offline   Reply With Quote
Old 06-28-2006, 03:25 PM   #5 (permalink)
weezer
Moderator<>rotaredoM
 
weezer's Avatar
 
Join Date: Nov 2005
Location: Guess
Posts: 3,832
Send a message via MSN to weezer
Default

Awesome news. Time to get gta :lol:
__________________

Beware The Jub Jub Bird And Shun The Frumious Band
weezer is offline   Reply With Quote
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 07:15 PM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0