Mathieulh: SELF格式有天大的漏洞~ - 改機

Regina avatar
By Regina
at 2011-10-29T15:00

Table of Contents

http://goo.gl/d2H8z

...

Q) Could you tell us more about one of your recent Tweets (über
means "huge"): Mathieulh a écrit:@playstation #did you know that
your self format is uber fail? #morethanjustmy2cents.

A) This is a vulnerability that I discovered recently in the
SELF format from Sony.

Q) Have you been able to exploit the flaw (lack of verification
of the size of the header of an SCE SELF when copying the Local
Shared Storage to the Local Isolated Storage) unveiled by yourself a
while ago?

A) This fault is very difficult to implement and only works on certain
loaders when one has direct control over the arguments sent to them.
Nevertheless, there are other faults that have never been published.

Q) With the information made available to hackers and without 3.6+ key,
is it possible to sign an application that is functional in 3.70?
If so, do you think it would lead to piracy again?

A) It is impossible to recover the private key of keysets used in
firmwares 3.56+, and, consequently, to sign applications for the
latter, however, there is a way through the old keysets (0x0D below)
to launch chokes on 3.56+ if you know how it is more possible to
sign a custom firmware 3.60+ and install it over a 3.55 firmware
provided you have the keys 3.60+ available.

...

******

看來SONY遲早要考慮修改SELF檔案格式了,然後弄些新的 API進去新版韌體中。
否則3.55版理論上還能夠支援目前所有的遊戲(能解密的話)。

--

____ _ _ _ _ ____ _ _ ____ _____ ____
(_ _)( \( )( \/ )( ___)( \( )(_ _)( _ )( _ \
_)(_ ) ( \ / )__) ) ( )( )(_)( ) /
(____)(_)\_) \/ (____)(_)\_) (__) (_____)(_)\_)


--
Tags: 改機

All Comments

Anonymous avatar
By Anonymous
at 2011-11-03T10:38
QA mode 也是他找出來的 也是神人一個
Emma avatar
By Emma
at 2011-11-05T08:13
我覺得他嘴砲跟破解的實力一樣強
Eden avatar
By Eden
at 2011-11-10T06:49
XDDDDD
Kristin avatar
By Kristin
at 2011-11-14T01:39
那他的實力很高強
Franklin avatar
By Franklin
at 2011-11-14T21:59
快了嗎?
Rachel avatar
By Rachel
at 2011-11-18T06:53
有神快拜
Lydia avatar
By Lydia
at 2011-11-21T22:24
2F +1 XD

來研究一下脈衝啟動自製系統

Hedwig avatar
By Hedwig
at 2011-10-28T22:57
※ 引述《a384331 (名動江湖)》之銘言: : 最近X360話題最夯的就是全民自製系統來到 : 發現對岸的自己動手改機能力滿強的 : 論壇不少刷機的心得分享 : 而且掏寶的脈衝晶片也不算太貴 200人民左右 : 雖然北部X皮也開始提供改脈衝自製的服務,但是看看價錢還滿黑的 : 難怪叫X皮阿.... ...

將PSN遊戲和PKG裝到移動硬碟或usb

Thomas avatar
By Thomas
at 2011-10-28T11:33
源自 http://www.ps3hax.net/ 1.先安裝gameDATA.pkg到你的PS3 2.點擊進入game DATA Mode:【HDD】 3.在把usb或者移動硬盤插上在安裝你要裝的PSN遊戲或者應用程序 http://www.multiupload.com/8YVTFFJA8 ...

來研究一下脈衝啟動自製系統

Hardy avatar
By Hardy
at 2011-10-27T20:37
最近X360話題最夯的就是全民自製系統來到 發現對岸的自己動手改機能力滿強的 論壇不少刷機的心得分享 而且掏寶的脈衝晶片也不算太貴 200人民左右 雖然北部X皮也開始提供改脈衝自製的服務,但是看看價錢還滿黑的 難怪叫X皮阿.... 最近在研究這個,目前差刷機晶片還沒弄到 有人要分享一下刷脈衝自 ...

有關multiman select + X 的問題

Andrew avatar
By Andrew
at 2011-10-27T17:40
ps3 3.55韌體 MM 2.09 + bdemu2 一開始跑暴雨殺機會停在讀取畫面 右下角有個折紙那裡 然後就不動了 後來查了一下google 在mm下用select+X 的方式就進去了 請問這樣按的方式是什麼用意? google的解答裡 有人說是模 ...

PS3 全裸了嗎?

Dora avatar
By Dora
at 2011-10-27T16:25
ps3hax那篇重點以外的東西太多,PS3DevWiki上有比較詳細的解釋 http://ps3devwiki.com/index.php?title=Per_Console_Keys per_console_root_key_0 絕對管理員金鑰 0 〔所謂絕對是指世界上就只有這麼一把,不會有第二把相同 ...