Welcome to PS3Hax, your official PS3 hacks, PS3 Homebrew, and PS3 Downloads scene. Check back daily to keep up with the latest PS3 Hacks and drop by our forums for more PS3 Hacks discussions.
  • Posted by GregoryRasputin , on 23/10/2012 , @ 01:04pm

     

    Well like the last big CFW, this new one has gone mainstream, what i mean by that is sites like Eurogamer and Games Industry, though you would think that these big popular sites would research their stories properly, these guys get paid for their so called writing, i will quote some of the phrases that these idiots have written:

     

    We’ve been here before of course. Over two years ago, the first piracy-enabling firmware and USB dongle combo – PSJailbreak was released, which exploited a weakness in the PS3′s USB protocols, allowing for the system software to be patched in order to run copied software running from hard disk. This was followed up some time later by the release of tools from hacker group fail0verflow, which allowed users to encrypt files for the system in the same way that Sony does, allowing for a new wave of piracy. Geohot’s public release of the “metldr” root key also added to the challenges facing Sony, resulting in a messy legal battle.

     

    Now whilst the part in red is partially right, they focus on the bad and they state that what fail0verflow did was for piracy, they fail to state that what fail0verflow did was bring back OtherOS, they fail to point out tat all fail0verflow cared about was to return OtherOS, they ignorantly focus on piracy, which is wrong.

     

    Despite the effectiveness of firmware 3.60, PS3 has still had to contend with piracy issues, notably the JB2/TrueBlue dongle, but this hack still locked consoles to 3.55 and stopped compromised consoles gaining access to PSN – until recently at least, where the “passphrase” security protocol protecting PSN was leaked, giving hacked consoles full access to the service.

    The release of the new custom firmware – and the LV0 decryption keys in particular – poses serious issues. While Sony will almost certainly change the PSN passphrase once again in the upcoming 4.30 update, the reveal of the LV0 key basically means that any system update released by Sony going forward can be decrypted with little or no effort whatsoever. Options Sony has in battling this leak are limited – every PS3 out there needs to be able to decrypt any firmware download package in order for the console to be updated (a 2006 launch PS3 can still update directly to the latest software). The release of the LV0 key allows for that to be achieved on PC, with the CoreOS and XMB files then re-encrypted using the existing 3.55 keys in order to be run on hacked consoles.

     

    The part in red, is a yet ANOTHER bit of ignorance, they basically say that this new hack allows access to PSN and that we never had access to it before then, how unprofessional is that, seriously for someone to be paid to write an article, they should at least research the f*cking item they are talking about properly…

     

     

    So just how did LV0 come to be released at all? The original hackers who first found the master key – calling themselves “The Three Tuskateers” – apparently sat on its discovery for some time. However, the information leaked and ended up being the means by which a new Chinese hacking outfit – dubbed “BlueDiskCFW” planned to charge for and release new custom firmware updates. To stop these people profiteering from their work, the “Muskateers” released the LV0 key and within 24 hours, a free CFW update was released.

     

    Now the above marked in red is me nit picking, but these motherf*ckers get money to write, when it clearly states “The Three Musketeers” in a pastie, then that is what you f*cking write, the above junk was written by Eurogamer and Games Industry another big professional site took Eurogamer word for word, instead of doing their own damn research, her is the same kind of junk from VG2/47.

     

    Now i rarely make front page rant pieces, but i hate it when people sh*t on the Ps3 scene, if you are a developer or involved some way in the scene, then you can say what the hell you want about it, but if you are some professional idiot that hasn’t a clue what the hell you are talking about, then shut the f*ck up until you actually learn what you are talking about.

     

    Sorry for the rant

    /Rant Over…


  • Posted by GregoryRasputin , on 12/10/2012 , @ 03:55pm

     

    Well some of you may have been having problems accessing PSN, so give this a try:

     

    Click to expand post: CLICK SHOW TO VIEW TUTORIAL SelectShow

    Source psjailbreak.ru

    PS3 Dev Wiki

    Thanks euss :)

    UPDATE

     

    This could be an easier method for some, thanks to Asure

    Source Ps3HaX

     

    Probably easier to patch ****PSN since it’s already close.

    Source here: https://github.com/drizzt

    Line 36/37 you update with the new passphrase & version.

    Russians say:

    Code:
    Name:X-Platform-Version
    Value:PS3 03.55 Replace
    Name:X-Platform-Version
    Value:PS3_C 04.21 (once 4.25 – put here)
    replace all поставить, ок

    I’ve attached an untested ‘editable’ version of Fpsn to this post.
    - Passphrase updated
    - Platform-version strings changed to have PS3_C (underscore-c is not present by default.. in 0.9)
    - bingo.bat runs with spoofed consoleID
    - bingo_nospoof_console_id.bat does not spoof consoleID at all.

    Not at home, so i can’t test if it works, but i see no reason why it won’t.
    Note that the russian version/charles version does not spoof consoleID. So if ‘go’ doesn’t work, just ctrl-c and try the go_nospoof bat file.

    This is a drop-in for 0.9, you should have your certs etc. already setup on the ps3 side.. (see original readme from Fpsn..)

    Attached Files
    File Type: 7z Fpsn_editable.7z (6.97 MB, 30 views)
  • Posted by GregoryRasputin , on 15/09/2012 , @ 04:47am

     

    An anonymous source has released eBoot fixes for Damage Inc Pacific Squadron WWII, PS3HaX member lookye posted the information below:

     


    Damage Inc. – Pacific Squadron WWII
    Working: Internal/External
    ID: BLES01563
    Size: about 2.15GB
    CFW: Yes

    I got this from an anon source. Tested and working on BLES01563 intern with KMEAW.
    Source: boerse.bz (german board)

    BTW: First 4.1+ game that was fixed and has no TB Fix

    Download (rghost)

    Source boerse.bz

  • Posted by GregoryRasputin , on 12/06/2012 , @ 03:25pm

     

    Several months ago a device that enabled cheating on 3.55 FW, was released, that devices name was PS3UserCheat Dongle, today that device has been fully hacked, thanks to some awesome hackers/coders/devs, @oct0xor and @flat_z will go down in the annals of PS3 History as the two guys who have hacked the first PS3 dongle since PS Jailbreak was hacked, here is a quote from oct0xor’s Twitter:

    Release:
    ps3usercheat dongle pwned!

    I am not a lone wolf and say thanks to all who helps me anyhow with this: @flat_z. <3
    Also thanks to Baphometh from psjailbreak.ru who donated dongle to me.

    If you like my work you can donate :)

    Download
    Here
    or
    Here

  • Posted by PS3Hax Member News , on 29/10/2011 , @ 07:30am

     

    The french Scene site PS3-Addict has interviewed Mathieulh. Thanks to both of them for taking the time for this interesting read

    Hi Mathieulh, could you give us your curriculum vitae to light up ours members?

    I reserve my curriculum vitae for business. However, I can tell you that skills are there.

    We saw you participating to PSP and PS3 Scenes, two consoles from Sony, do you have some reason (affinity…)? Have you another favorite platform (like the Galaxy S2 with Android…)?

    I’ve just been seduced by these two platforms, especially the fact that just a few details were revealed, particularly on the technic side, which raises challenge. I’m more interested in understanding the system architecture of the platform than playing, even if I’m a gamer.
    Concerning the Galaxy S2, I’m also really interested on it, but more for fun than to develop or reverse engineer.

    According to you, what kind of tools should be in hacker’s tool kits… except a brain (hardware / software)?

    A computer of course, a disassembler (e.g. IDA), a logic analyzer, if you’re interested in hardware, good knowledge in development and reverse engineering (assembly…), don’t be afraid to take risks with your equipment, if possible, have the resources to debug the code that you analyze/reverse. Maybe more if you want :P

    You seemed detached from bad comments which gone the rounds concerning what you told in the past and that didn’t result in a release, and it does you credit ! But aren’t you tempted to shut their mouth by publishing a “legal” release?

    Not really, I posted or participated to enough releases in my life (Custom Firmwares M33, Pandora, PSGroove (open source version of PSJailbreak’s exploit + full documentation), Documentation about .self/update packages cryptography, appldr + lv2ldr keys, Documentation and games packages keys, QA flag (even if this release was a leak, it was my work), use of SPE8, Kirk keys to sign applications to PSP… and many others that I’ve forgotten), as well in PSP, as in PS3 Scene to get a deep respect from my peers.

    I’ve little esteem for ungrateful users who ask more than what they’re graciously provided and who have some chronic amnesia when it comes to remember what developers have done for them. More people claim results, insult me when these don’t match with what they expect… Less I’m disposed to provide my hard work to the public. I don’t develop to fame, money or any other reason like these, I develop by curiosity to understand how the system of a platform was elaborated, and also to challenge, like to find glitches on theses platforms, consoles correspond very well to it as their system are designed with a military level, especially PlayStation 3 and Xbox 360. Apart sharing, I haven’t any interest to publish my work to the public, so when the public abuse of my work or my kindness, I feel no remorse to suspend my releases. I believe this is also the case of many other developers who haven’t any interest to run backups or any other thing on any platform.
    This is one of the reasons that pushed me to stop releasing, another good one is to avoid a possible lawsuit from Sony.

    You still are active on Gitbrew IRC channel, Twitter, and also reactive to some news, why did you left the Scene?

    Despite having stopped public releases, it doesn’t prevent me from continuing my work for personal and educational goals, to be an acute observer, and to help other developers who need it.
    This is what’s happening, I attend some developers in their work without asking any credits in return (particularly via IRC or MSN) and post comments on my Twitter when opportunity arises.

    Could you tell us more about one of your last tweets:

    @playstation #didyouknow that your self format is uber fail ? #morethanjustmy2cents xD

    It concerns a vulnerability I recently discover in Sony’s SELF format.

    Have you been able to exploit the vulnerability (lack of verification to the size of the header of an SCE SELF when copying it from the Local Shared Storage to the Local Isolated Storage) unveiled by yourself a while ago?

    This vulnerability is really difficult to implement, and only works with some loaders when we have a direct control on the arguments which are send to them. However, other flaws exist and never have been published.

    Rumors say that you’ve got the keys to decrypt 3.60 / 3.65 / 3.66 / 3.70 games. Could you confirm?

    I prefer to don’t answer to this issue, and let your interpretation answer to it. Public doesn’t need those keys, you can downgrade to 3.55 (via hardware) almost all PlayStation 3 out now (about 40 million consoles are vulnerable), and it’s possible to run Linux (via OtherOS++) or homebrews on them. I think it’s quite enough to make the PlayStation 3 one of the most open consoles in the market.

    What’s your opinion concerning DemonHades’ theory to find them?

    It’s a (really) bad sum up of the tweets I posted 6 months ago. Many elements are missing, and I doubt DemonHades has capacities to recover the keys.

    With all information available to hackers and without 3.6+ keys, is it possible to sign an application that could be functional on 3.70? If so, do you think it would lead to piracy again?

    It’s impossible to obtain the private key from keysets used by Firmwares 3.56+, and so to sign applications to those, however it’s possible to launch SELFs on 3.56+ with old keysets (below 0x0D) if we know how. Therefore, it’s possible to sign a Custom Firmware 3.60+ and install it over Fimware 3.55, if we have 3.60+ keys.

    Many people are ungrateful and always want more things, and faster. Do you think this conduct penalizes the Scene and drives away its actors? We recently saw ColdBird leaving PSP Scene.

    Indeed, I think this behavior scares many developers, including myself.

    Do you think PS3 Scene is still able to progress? Has it got the “good” sceners and public to evolve peacefully?

    Good sceners, maybe, even if a lot have gone, I though to fail0verflow, or myself. Good public, I don’t think.

    What are your motivations to this Scene? What kind of projects would you like to see?

    I appreciate the challenge and the fact that we always find new things, especially items hidden by Sony that are part of PlayStation 3′s system.

    Are you working on some projects, like the dead Utopia or other, to PS3?

    Currently, I haven’t such project to PS3.

    Do you believe Firmwares above the 3.55 could be “jailbreaken”? If so, do you think a release could revive dongles?

    I don’t think Firmwares 3.56+ could be jailbreaken with an USB dongle.

    What’s your opinion regarding modchips and their future?

    I think they’ll allow people to easily downgrade to Firmware 3.55, but their future is lukewarm, at least until 3.60+ keys become public.

    People are dissatisfied by the Scene because 3.6x+ keys weren’t found/disclosed, what do you think of these people ? Do you think it’s good to be responsive to their expectations?

    I think if they’re unhappy, nothing prevents them to work and retrieve these keys by themselves. I’ve published more than one method to recover them.

    A last question, slightly HS if we ignore old rumors, but… As an ex member of M33 Team, do you have some news about Dark_AleX?

    I don’t want to reveal too much without his consent, however, I can tell you he goes well, and I’m regularly in touch with him.

    Thank you for this interview Mathieulh, maybe we’ll see you again on December 17th?

    Hum… I may be busy to that date, I’m not sure to be able to go to CCC, it mainly depends on my availability.

    Thank you for your time

    You’re welcome

    If you want more details about Mathieulh’s works on PS3, you can read the Wiki dedicated to research or go to his own website, LAN.ST.

    Source PS3-Addict.fr

  • Posted by PS3Hax Member News , on 26/09/2011 , @ 04:40pm

     

    raxxus from a german board has released a translation for Rebug 3.55.2 CFW. He has also created 2 tasks for PS3MFW Builder, which you will need if you want to create the MFW yourself. But there is also a pre-made pup for the lazy folks out there, thanks to nuck1982 for uploading.

    Originally Posted by raxxus

    I’ve completely translated rebug 3.55.2 into German, that means all debug entries, package manager, qa-update and the menu entry “app_home/PS3_GAME /” has become “Starte Spiel… (Ohne Disc)”. The “Debug Settings” are now just called “Debug”.

    It is only the resource-files (icons and texts) nothing else.

    I’ve also enclosed a nice “write-flash” tool with which you can share resources easily. It only writes in the “dev_flash / vsh / resource”-folder, nowhere else.

    Created 2 folder on a USB-Stick, “modz” and “backup”. The backup must be created manually by simply save the resource folder under “dev_flash / vsh / resource” somewhere. Copy the original rco files, which you will change, in the backup folder and put the modded files (from the download; without the pkg and the tcl’s of course!) into the “modz” folder. The tool ES35 Cutomize explains by itself in the options. Or simply use the latest Multiman and copy the files manually into folders using new flash-write function.

    Some debug entries sound better in English and I did not translate some deliberate ..

    I have made a task for the ps3mfwbuilder on my own. It allows you to patch the official rebug 3.55.2 pup with the update files from 0.4, the privacy patch and the modded rcos.

    Simply extract the update pkg 0.4 from rebug, and specify the files from the update_files folder, as well as the modded rcos when creating the pup. Everything else runs automatically.

    About the privacy patch: I’ve intentionally omitted playstation.net, otherwise some psn games do not run.

    I’m just a small rebug fan, not more ..

    Originally Posted by nuck1982

    I’ve newly patched a Rebug 3.55.2:

    - Debug Settings in German
    - Package Manager in German
    - App / home renamed to start ‘Spiel starten (ohne Disk)’
    - Integrated Rebug Update 0.4 Package
    - Suppressed some communication to advertising partners of Sony (Sony is not patched, some PSN would not longer run)
    - Integrated Rebug Selector 1.6
    - TV menu is now called ‘Werkzeuge’ (due to the creator of the files, because it uses TV as a Homebrew Channel)

    Otherwise nothing has changed in the firmware. I have tested the firmware and everything works. The thanks goes to raxxus for the provision of the files and the task for the MFW Builder.

    MFW bulder Log

    Download Patched Rebug 3.55.2 Deutsch – German (178.52 MB)

    Download Rebug 3.55.2 German Tools(6.22 MB) (content)

    Original Source

    Translated Source

  • Posted by Pirate , on 21/08/2011 , @ 02:10pm

     

    Team E3DIY, the same guys behind the E3 card reader in the PSJailbreak days have contacted us today unveiling their new product, E3 Flasher. The E3 flasher is essentially a ProgSkeet clone, which you know is being used to downgrade PS3s from firmware 3.70.

    To quote email:

    E3 FLASHER, the world first flasher special  for PS3 , easier backup and downgrade,support dual boot,coming soon !

    E3,  created miracles on PS3 jailbreak , release free jailbreak,downgrade and goldfinger , and will now release a full new revolutionary E3 FLASHER which includes: backup, restore, upgrade, downgrade and dual boot all in one .

    Features:

    • NOR FLASH ON board
    • 1 KEY backup or restore, simple is best
    • Dual boot , choose booting from original bios or E3 bios.
    • 3 save MODE, save bios to E3 nor flash, TF card or PC .
    • NO harm for console, but can longer console life because of specially design.
    • Integrated lots of interface, perfectly extension, will have more function with future new E3 accessory.
    • Compatible all slim and fat console, include latest 3000x version.

    Don’t forget E3DIY team, which free service always :) It said they were studying BIOS, Let’s wait and see what happens.

    AND please note the new E3 domain www.e3-tech.net , more details coming soon !

    PS: E3DIY team note 3.7 downgrade, so maybe E3 flasher will downgrade automatically, no need modify on PC .

    Thanks all guy whom contribute PS3 jailbreak.

    Not a bad alternative to a ProgSkeet. Prices and availability will be announced soon.

    You can check out E3DIY new site here: www.e3-tech.net

    E3DIY
  • Posted by Pirate , on 07/02/2011 , @ 11:32am

     

    brandonw has released PS3Jig for the PS3. PS3Jig is a homebrew program for the PSP that emulates the official Sony “jig” stick for entering Factory/Service mode. All you need to do is attach a USB cable between your PS3 and PSP, run the program, and turn on your PS3, just like any other downgrade/service mode method.

    To quote:

    AS OF THIS WRITING, THERE IS NO WAY TO EXIT FACTORY/SERVICE MODE ON PS3 FIRMWARE VERSION 3.56, SO DO NOT ATTEMPT TO USE THIS ON PS3 FIRMWARE VERSION 3.56 UNTIL YOU READ OTHERWISE ELSEWHERE!

    Keep in mind that I’m not a PSP developer, and that I know very little about homebrew for it; my ability to answer questions about how to run it and troubleshoot any issues is severely limited.

    This application is open source and has no license attached to it, so you’re free to do whatever you want with it; but please don’t slap your name on it and call it your own, it’s just rude.

    Frequently Asked Questions

    What’s the main purpose of this?
    To enter Factory/Service Mode on your PS3 using your PSP. This is typically used to downgrade your PS3′s firmware version to something that supports homebrew/backups, or you can use it to unbrick some PS3s from a firmware flash gone bad.

    Will this cause any permanent damage to my PSP?
    Not that I know of, but don’t blame me if it does.

    Do I need a special cable for this?
    No, you just need a standard A<->mini-B USB cable. Among many other uses, it’s the cable used to charge/sync PS3 controllers. You have one of these.

    What firmware version does my PS3 need to be on for this to work?
    As of this writing, you need to be on firmware version 3.55 or earlier. DO NOT USE IT ON FIRMWARE VERSION 3.56 OR HIGHER UNTIL YOU READ OTHERWISE ELSEWHERE.

    What firmware version does my PSP need to be on for this to work?
    Honestly, I don’t know. This requires kernel mode, so as of this writing (and to the best of my knowledge), version 6.35 or lower. It runs on my PSP-1001 5.50 GEN-D.

    I get an error when I run it on the PSP! What’s wrong?
    I really don’t know.

    How do I get this on my PSP?
    The same way you do with any other PSP homebrew. Do some reading and/or googling.

    It didn’t work! What’s wrong?!
    Try it multiple times. I have noticed through a hardware USB analyzer that sometimes the PSP doesn’t send the jig challenge response correctly, despite the PSP saying it did.

    Will this work on the PSP Slim? 2000? 3000?
    I honestly don’t know.

    It locked up my PSP when I tried to exit! Why?
    I honestly don’t know. Pull the battery, re-insert it, and turn it back on.

    What tools did you use to compile/build this?
    PSPSDK.

    Where’s the latest source at?
    http://brandonw.net/svn/pspstuff/PS3Jig/trunk/.

    What dongle ID does this use?
    0xAAAA. It can easily be changed and re-compiled in the source. I didn’t provide a UI for it because it’s unlikely anyone will ever need to change it.

    You know, you’re really late on this.
    I don’t care.

    I thought you said this couldn’t be done! And yet here it is, prick. What’s with the lying?
    I said you couldn’t implement the PSGroove/PSJailbreak exploit on it, and that’s still true. Emulating the Sony official jig stick for Factory/Service Mode is different, and the PSP can do it. I didn’t see anyone else doing it, so I did.

    How can I scream at you / profess my undying love / throw money at you via PayPal / give a simple thanks / etc.?
    brandonlw@gmail.com.

  • Posted by Pirate , on 14/01/2011 , @ 03:12pm

     

    We knew it would happen. Geohot released on his blog the PS3 “root key” and various tools to run homebrew on the PS3. Geohot posted on his blog the following:

    As of 1/11/2011 7:20 PM EST, I have been served with papers, see below…

    Motion For TRO
    Proposed Order

    old front page, with relevant info removed, is here

    contact me geohot … gmail

    You can download the court papers here (an interesting read):

    Fail0verflow is also stuck in the mess, here is some responses from the team:

    From Fail0verflow’s Twitter http://twitter.com/#!/fail0…
    “Looks like Sony decided to ignore the facts and sue us all for it. See http://geohot.com/”

    From Hector Martin’s Twitter
    http://twitter.com/#!/marca…
    “Ah, so Sony decided to sue everyone under US law. Guess I won’t be visiting the US in a while…”

    From Muscle Nerd’s Twitter
    http://twitter.com/#!/Muscl…
    “EFF has done a fantastic job keeping iPhone jailbreaks (not piracy!) legal..hope they can do the same with this PS3 news”

    List of charges:

    • Confidential Information On Computer
    • Intent To Defraud And Obtain Value
    • Knowing Transmission of Code
    • Intentional and Reckless Damage And Loss
    • Trafficking in Password
    • Intent to Extort

    Seems like Sony isn’t planning going down without some payback first. What are your thoughts about this? What do you think will be the outcome of this case? Let us know by replying below

    [Via GeoHot Blog]

    UPDATE:

    According to PSGroove, Geohot response is now available, you can view the response HERE. The response basically defends Geohot and claims that Sony’s actions are not justified against Geohot. Furthermore you can also see refiled documents by Sony outlining tactics similar to the PSJailbreak lawsuit (view HERE).

    UPDATE 2:

    Sony failed in attempts to get a restraining order on Geohot, to quote @ Geohots Blog: “ As of 2:00 PM EST, 1/14/2011, I am not subject to any TROs

    Update 3:

    Clarification from readers over at Engadget of the judge ruling, to quote:

    Update: Looks like we jumped the gun and got the story a little wrong, but thanks to our readers we’ve discovered that the judge declined to rule on the TRO. Instead she tabled the TRO issue because she was not satisfied that the Northern District of California has jurisdiction to rule on the matter because Geohot hacked the PS3 in New Jersey.

  • Posted by Pirate , on 05/01/2011 , @ 04:54pm

     

    An article by BBC news was published today posting news of the latest craze of the release of the PS3 keys and “downfall of the PS3 security”. The reported interviews Geohot as well, to quote:

    iPhone hacker publishes secret Sony PlayStation 3 key
    By Jonathan Fildes Technology reporter, BBC News

    The PlayStation 3′s security has been broken by hackers, potentially allowing anyone to run any software – including pirated games – on the console

    A collective of hackers recently showed off a method that could force the system to reveal secret keys used to load software on to the machine.

    A US hacker, who gained notoriety for unlocking Apple’s iPhone, has now used a similar method to extract the PS3′s master key and publish it online.

    Sony declined to comment on the hack.

    “The complete console is compromised – there is no recovery from this,” said pytey, a member of the fail0verflow group of hackers, who revealed the initial exploit at the Chaos Communication Congress in Berlin in December.

    “This is as bad as it gets – someone is getting into serious trouble at Sony right now.”

    The group, which has previously hacked Nintendo’s Wii and says it is vehemently against games piracy, said that it had developed the hack so that it could install other operating systems and community – written software – known as homebrew – on the powerful machine.

    “The details we provided and information and techniques we disclosed would have been enough to install Linux,” he said. “We have no interest in piracy.”

    Following the presentation, US hacker George Hotz, who has previously hacked parts of the console, used a similar technique to extract the master key. He has now published it on his blog.

    This formerly secret number is used to “sign” all games and software that run on the system, to authenticate that it is genuine and approved by Sony.

    However, once the key is known it can be used to sign any software – including unofficial software and games.

    “I hate that it enables piracy,” said Mr Hotz. “The publication of the key is more academic than anything else.”

    The number also works for Sony’s handheld console the PlayStation Portable, said Mr Hotz.

    Developers have already started releasing tools to develop new software for the PS3 using the hacks.

    ‘Valid target’

    The PS3 – once regarded as the most secure of the game’s consoles, and the only one not to have been permanently cracked – has in the last 12 months come under increasingly scrutiny from hackers.

    In January 2010, Mr Hotz claimed to have cracked the console.

    Following his initial announcement, Sony released an update disabling a function, called OtherOS, that allowed gamers to install a version of Linux on their machines, thought to have been exploited by Mr Hotz.

    Many saw it as a pre-emptive strike to guard against games piracy.

    Mr Hotz never released the exploit and publicly said that he had stopped work on the console.

    But Sony’s removal of OtherOS prompted other hackers to begin to look at the system more closely.

    “It became a valid target,” pytey told BBC News. “That was the motivation for us to hack it.”

    He said the team had spent “months” trying to find their way into the system.

    “It was not trivial to do this,” he said.

    In the end, the flaw that allowed them to crack the system was a basic cryptographic error that allowed them to compute the private key, held by Sony, he said.

    “Sony uses a private key, usually stored in a vault at the company’s HQ, to mark firmware as valid and unmodified, and the PS3 only needs a public key to verify that the signature came from Sony.

    “Applied correctly, it would take billions of years to derive the private key from the public key, or to make a signature without knowing the private key, even when you have all the computational power in the world at your disposal.”

    But the team found that Sony had made a “critical mistake” in how it implemented the security.

    “The signing recipe requires that a random number be used as part of the calculation, with the caveat that that number must be truly random and not predictable in any way,” the team said.

    “However, Sony wrote their own signing software, which used a constant number for each signature.”

    This allowed the team to use “simple algebra” to uncover Sony’s secret key, without access to it.

    “This is supposed to be the most secret of secret of secrets – it’s the Crown jewels,” said pytey.

    The team decided to publish its method but not the keys.

    After the team revealed their hack, Mr Hotz said that he was prompted to renew his work on the system.

    “What fun is a race if no-one else is running,” he said. “fail0verflow did great work – they took it up a level.”

    Using a similar technique he was able to extract the entire master key for the system, which he subsequently publish online along with a demonstration of it in action.

    However, he has not released the method he used to extract the key.

    “There is no reason to,” he said.

    However, he said that he may release a piece of software that will allow people to easily sign their own pieces of software and homemade games – known as homebrew – on to the console.

    “I have a program running but am thinking of a good way to release it,” he said.

    Like fail0verflow, he said that he does not condone games piracy.

    “I do not want it to be able to sign official Sony programs. I’d like it just to be able to sign homebrew.”

    fail0verflow said it “disagrees” with Mr Hotz’s decision to release the key, saying that it expects them “to make piracy easier without accomplishing intrinsically useful”.

    Legal worry

    Sony takes a dim view of people hacking its system.

    Last year, a team released a USB dongle called PSjailbreak that contained software that allowed gamers to play homemade and pirated games on the PlayStation 3.

    Sony updated its consoles to block the software and took legal action against distributors in many countries.

    However, according to pytey, it may not be so easy to fix the problem this time.

    “The only way to fix this is to issue new hardware,” he said. “Sony will have to accept this.”

    He said that he thought his group was on safe legal ground with its work.

    “I haven’t stolen anything,” he said. “It’s my own hardware, I can run whatever I like on it.

    But Mr Hotz was more cautious.

    “I’m scared of being hit with a lawsuit,” he admitted.

    What is your opinion on this news story? Reply back and let us know.

    [Original BBC article VIA PSX-Scene]

  • Posted by PS3Hax Member News , on 01/01/2011 , @ 01:14pm

     

    The Dev popular for his hex files and payloads comes out with a new app called PS3LoadX. This is an improvement to the later version of PS3Load. This is what the readme had to say

    PS3loadX is my personal evolution of PSL1GHT PS3load sample, using now the Tiny3D library. I hope this version helps to you to work easily

    - You can load SELF files using the net.

    - You can load applications from USB/ HDD devices

    - You can install applications to the USB or HDD devices from one .zip file

    - You can copy applications from USB devices to HDD

    - Also you can delete installed applications.

    you can also check out his work on Psl1ght included with the 3d at his official github https://github.com/hermesEOL

    Source:

  • Posted by PS3Hax Member News , on 05/12/2010 , @ 11:57am

     

    As a follow-up to my PS3 Acid CFW XMB XML Hack Pack, today we are happy to announce that we have enabled more PlayStation 3 Debug options in our ongoing PS3 Acid CFW WIP project and posted a video below..

    More details about the project, to quote:

    We are working on this continously and even in last few hours Cfwprophet and myself have made some great discoveries with regard to Debug options! More news to come so watch this space for more great info about this Custom Firmware for PlayStation 3!

    This is a work in progress so any help or ideas you can offer will be gratefully accepted. Big thanks to PSJailBreak team for making all this possible, Hermes and KaKaRaTo for all the payloads, Grimso (you know why!), JaicraB for the Firmloader which is vital at this point.

    If we all get together and hack this brilliant piece of technology it will keep getting better and better, who knows where it will stop! Even today there is talk of JailBreak for 3.50FW – WOW! Keep up the good work guys!

    Youtube video:

    [VIA]

  • Posted by GregoryRasputin , on 02/12/2010 , @ 10:15am

     

    PS3-World member iscary has made a very useful tutorial, for those having difficulties downgrading their PS3 console, using PS Downgrade.

    Finally PsJailbreak Team has released an update to its program Upgrader fully functional, we are talking about the 1.3 version downloaded from the official site.

    Now we turn to a step by step guide to perform this simple procedure.

    PsJailbreak

    Requirements:
    - Original PsJailbreak.
    - PsUpgrader 1.3.
    - Internet connection.

    Update process:
    1 – Downloaded from the official website PsUpgrader 1.3 and we start the installation of Setup.
    2 – Now connect the PsJailbreak to a USB port and expect to be recognized.
    3 – We initiate the program PsUpgrader.exe and soon you will see that the program will recognize the PSJ with a serial.

    4 – Now let’s move on the window Download Updates and click on the Download Updates button (in a few seconds a message will confirm that you have downloaded updates) is the program appeared in two new files will be called (Downgrader_SerialNamber.fla and prog_SerialNamber.fla)



    5 – Now let’s move on the window Update Now and click on the button (Click here to select file ….) and go to select the file Downgrader_SerialNumber.fla.

    6 – At this point we only have to click on Apply Updates and wait for the program updates the PsJailbreak (Key you’ll notice that on the following combination of devices: Red/Green, Red, And finally if the flash is going to succeed light Green fixed.) obviously the program will tell you that everything went well.

    7 – At this point you can unplug it and use it for the PSJ Downgrader because with this update works only to send the PS3 in Service Mode and Factory quini you can not use it to start the backup.
    Extras: In case you want to restore the PSJ, and then to use it as normal and then start the Backup Key will not have to do is repeat the procedure from step 3 onwards, but this time you need to select the file prog_SerialNumber.fla.

    Driver Installation & PsUpgrade program.

    Flash PsJailbreak with PsDowngrader


    PsDowngrade

    Requirements:
    - 1 PsJailbreak reprogrammed with PsDowngrade
    - 1 FAT32 formatted USB stick
    - Update Amended 3.41, if you want to go back to version 3.15, download the official PUP.
    - Lv2Dig.self (which are divided into two different files named File1 Downgrade while serving for the File2 serves to bring out the PS3 by the Service Factory Mode.)

    How to Downgrade:

    1 – Reprogrammed with the PSDowngrade PSJailbreak enter in your console
    2 – Start the console using the same method to initiate the Jailbreak – Press the Power button and then immediately press the eject button. (You will see your console that will light up with the first light PSJailbreak red & Green followed only light Green, Then turn off the light on both the PS3 PSJ.
    3 – Remove the PSJ and turn on the PS3 to make sure that everything goes well (just look to see the red box with srcitto Service Factory Mode)
    4 – Now we take a USB stick in FAT32 and formattiamola, we insert this fact in the Root of the two key files that will be used for the downgrade are (1) Update 3:41 amended and (2) Lv2Dig.self (file1)
    5 – Insert the USB stick in the console’s USB port (the important thing which should be included in the last door on the right, then click the Ps3FAT the 4th and the 2nd for Slim) turn on the PS3. Now you will see the PS3 is turned on the TV but you will not see anything (black screen)
    6 – The process takes about 3 / 4 minutes (this time the PS3 install the firmware you put on the USB key) when the process is about to end you will see the green LED on the PS3 that starts flashing and after a few seconds will turn off automatically
    7 – Remove the USB stick and turn on the PS3 (the PS3 will always be in Service Mode) go to system information and check that the firmware has become 3.41.
    8 – Take the USB stick and inseriamola your PC (you’ll notice a new file called UPDATER_LOG.TXT this is a log of everything that made the downgrade) delete the two files that we had entered earlier (LV2Diag.self and update 3.41) and insert Root always in the other file called LV2Diag.self (File2)
    9 – Always insert the USB stick in the last USB port of the PS3 and accendiamola normally after about 10 seconds will turn off the PS3 alone.
    10 – Remove the USB key and we start the PS3 and immediately start the initial configuration (language, date, time, etc. etc.) At this point you have completed the procedure and you Downgrade your PS3 with the firmware of your choice.
    Extra – If the vouchers to downgrade to a previous version you should do it this way:
    If you have a firmware 3.50, you will need to first downgrade to version 3:41 and then upgrade to version 3.15 (if you want to rehabilitate OtherOS) while if you have a firmware 3:41 you will not have to do is replace the update with 3:41 to 3.15 and do the procedure.

    Help and video guide created by me, I do not assume any responsibility in case of failure of your PS3 and all tested and fully functional.

    I hope I was helpful to the whole community.

    SOURCE

  • Posted by PS3Hax Member News , on 01/12/2010 , @ 01:48pm

     

    Some minutes ago the psjb team has released their new upgrader. It is confirmed this one is working !!!

    PSUpgrader V1.3 is now released!
    [2010.12.01]
    We have received numerous compatibility complaints across different windows platforms. We have repaired all issues concerning file save directory, 64 bit windows integration and file corruption. Now you just install fresh version, click receive updates and enjoy! We appreciate your feedback and support. Downgrading is now accessible and free to all past and future clients ;) Enjoy your original PS Jailbreak. We invented the industry and were also leading the way! Don’t get stuck with inferior products or clones, by now you should all know that PS Jailbreak leads and everyone else tries to copy. Wholesalers please contact us for new pricing, marketing material and Christmas specials.

    Source: http://www.psjailbreak.com/downloads

  • Posted by PS3Hax Member News , on 29/11/2010 , @ 02:44pm

     

    PS Downgrade is now officially free and provides unlimited uses for ALL users, past and future. Download PS Updater v1.1 and your PS Downgrade files and start enjoying TODAY!!!

    source: www.psjailbreak.com

  • Posted by GregoryRasputin , on 29/11/2010 , @ 12:57pm

     

    PS3HaX member ModThatGame has posted a useful tutorial, on how to update the clone of PS Jailbreak, you will know you have a clone of PS Jailbreak, if it looks identical to the official device, but cost below $60, also it wont be upgradeable via normal methods.

    Clone image courtesy of Dukio.com

    To view the tutorial, visit here

  • Posted by PS3Hax Member News , on 26/11/2010 , @ 10:17am

     

    Just as i was discussing how good it was on the IRC chan i go to look and an update came today! and if were lucky we may see PSJailbreak compatability and score us another PSDowngrade method! list of todays update is as follows:

    19:10:31 2010-11-26
    Thanksgiving Day Special Core

    1. Support the Hex files of all versions AVR/PIC electronic dog, and collect the payload to load automatically.
    2. Support hermes and kakaroto version and other customized version
    3. Do not need to upload the firmware, to help the users obtain the support of the newest functional payload conveniently
    4. If there are errors, just delete the “psgroove.hex”, it will not influence the built-in firmware, it is safe and reliable.

    Use method
    Copy the hex files to the root of U disk, and change to psgroove.hex. Do not insert TF card when use this function.

    Support list:
    AT90USBKEY
    ATAVRUSBRF01
    AVRKEY
    Bentio
    Blackcat
    Maximus
    Minimus 32
    Minimus v1
    Olimex
    OpenKubus
    PS2CHIPER
    Teensy 1.0
    Teensy 2.0
    Teensy++ 1.0
    Teensy++ 2.0
    UDIP16
    UDIP8
    USBTINYMKII
    XPLAIN

    AT90USB162
    AT90USB646
    AT90USB647
    AT90USB1286
    AT90USB1287
    ATMEGA16U2
    ATMEGA16U4
    ATMEGA32U2
    ATMEGA32U4

    PIC18F2450
    PIC18F2550

    Other manufactures
    PSJ
    PS3KEY
    PS3-Break(AVR)
    PS3YES
    PS3-Break(PIC)

    Source And Download

  • Posted by GregoryRasputin , on 15/11/2010 , @ 05:13am

     

    The official PS Jailbreak team, have reported via their website that PS Jailbreak, now supports firmwares 3.42, 3.50 firmwares and claim that it will support higher, they also confirm the legibility of PS Downgrade, here is a quote from their news section:

    PS Jailbreak now supports firmware 3.42, 3.50 and beyond!
    [2010.11.15]
    Homebrew developers and software engineers we want to hear from you. If your looking for part time or full time work please contact us sales@psjailbreak.com. Only Serious inquiries from people with experience.

    Again we revolutionize the world and show the disbelievers that we are the original source. We understand what we are doing and will continue to be at the forefront of support. Officially launched today is our sister site www.psdowngrade.com the worlds only downgrader. Allowing you to downgrade your new console to any previous firmware version. With a PS Jailbreak and PS Downgrade now all all 44 Million users and counting can enjoy Homebrew. We dont like new comers beeing singled out , so we ventured into the unknown once again and now brought you an out of the box USB solution.

    All dealers should contact us for new pricing schedules, as well as marketing material. We have just completed a new batch of product ready to ship immediately.

    Please beware PS Downgrade only installs on original PS Jailbreak devices. There are numerous inferior clones and copycats out on the market claiming to be compatable with our support. This is FALSE!!! Buy original from a trusted reseller or risk being stuck with a paperweight.

    Be aware though, this doesn’t really suggest that you can go ahead and upgrade to 3.50 and that your jailbreak device will work, rather it promotes PS Downgrade, so don’t be getting hasty and upgrading to 3.50.

    Thanks to Keytor69 for the tip
    SOURCE