|
|
#131 |
|
Hired Gun
![]() Join Date: May 2011
Posts: 6,783
Likes: 2,571
Liked 3,312 Times in 1,841 Posts
Mentioned: 980 Post(s)
Tagged: 1 Thread(s)
|
I have a partial/test/pre-alpha exploit with skyrim. Since the game itself bring the PROM to his knees. Maybe could work.
Don't know.
__________________
Check Blacklist of FAKE devs
Check Whitelist of TRUSTED devs Tutorial : DEX conversion (TEST-DEBUG) One thread with all DEX information published so far. One thread with PS3 LV0 keys, CFW'S and many more. PS3devwiki your number 1 source. Check it. Console ID's Market Warning thread PS3 Ban, CFW, Unban. How to avoid it. |
|
|
|
|
Likes: (1) |
|
|
#132 |
|
Member
![]() Join Date: Feb 2011
Posts: 380
Likes: 50
Liked 86 Times in 58 Posts
Mentioned: 8 Post(s)
Tagged: 0 Thread(s)
|
im sorry but if your going to dump ram after pulling the cell reset, you are going to need to dump ram long before you have an option to use an exploit.....i would think. if you want anything useful from the ram dump anyways
|
|
|
|
|
|
#133 |
![]() ![]() Join Date: Apr 2012
Posts: 121
Likes: 26
Liked 55 Times in 16 Posts
Mentioned: 28 Post(s)
Tagged: 0 Thread(s)
|
But what if we make the system crash and, when it tries to recover/restart we inject the code so that the code runs in the second recycle of the process? Bypassing the first cycle of check.
|
|
|
|
|
|
#134 | |
|
Member
![]() Join Date: Jun 2011
Location: The Frozen North.
Posts: 732
Likes: 479
Liked 678 Times in 304 Posts
Mentioned: 82 Post(s)
Tagged: 0 Thread(s)
|
My problem is I can read about this stuff all day long (and I do) but it's just beyond my comprehension, mostly What I do know is that the ramdump has to take place very early in the reboot, before anything overwrites the memory. So metldr's first task is loading Lv1ldr.self, what about replacing Lv1ldr with the custom self? As I said, it doesn't matter what happens after that, the work is done already by the time the PS3 crashes...
__________________
|
|
|
|
|
|
|
#135 |
|
Member
![]() Join Date: Feb 2011
Posts: 176
Likes: 11
Liked 38 Times in 29 Posts
Mentioned: 8 Post(s)
Tagged: 0 Thread(s)
|
@hellsing9
don't think the memory failure in said games will be of anyuse. Sony did learn from their mistakes with psp. But would love to hear wjat u have... Must remember that the hv will not allow that from what i know.
|
|
|
|
|
|
#136 |
|
Homebrew Developer
![]() Join Date: Jan 2012
Posts: 105
Likes: 157
Liked 171 Times in 45 Posts
Mentioned: 57 Post(s)
Tagged: 0 Thread(s)
|
No Team Rebug is not involved as far as i know. And by the way your now on the right way but you don't need a hardware guy or a dual NOR or something like that. But keep going guys ther are always more ways to one goal
![]() I attached a litle POC for you all. It's a dump of 3.55 and the used app is BlackBox. I just used a small app to make things to start more easy. We also have a RAM dump of OFW 3.74 and we don't have used any hardware or software moddifications. To time i still hold back some infos i hope for your understanding. |
|
|
|
|
|
#137 |
|
Member
![]() Join Date: Feb 2011
Posts: 380
Likes: 50
Liked 86 Times in 58 Posts
Mentioned: 8 Post(s)
Tagged: 0 Thread(s)
|
exactly....rewrite the lvl1ldr to dump ram and resign it. i think i remember math saying that the lvl1ldr still had access to ram early on....but see...this is all speculation....first and formost.....disassemblies of the loaders...thats where you start..you need to understand the code and what the hell it does....if you cant, you'll never dump ****.
|
|
|
|
|
|
#138 | |
|
Member
![]() Join Date: Jun 2011
Location: The Frozen North.
Posts: 732
Likes: 479
Liked 678 Times in 304 Posts
Mentioned: 82 Post(s)
Tagged: 0 Thread(s)
|
__________________
|
|
|
|
|
|
|
#139 |
|
Homebrew Developer
![]() Join Date: Jan 2012
Posts: 105
Likes: 157
Liked 171 Times in 45 Posts
Mentioned: 57 Post(s)
Tagged: 0 Thread(s)
|
Well some times you all think to complicate. We have no keys to this stage of work and if we some days get hands on new keys we will release them. We get the dump on the same way like Paradox or True Blue i guess.
Please understand when i don't want tell you how it works cause i don't want to have it patched by sony in one of the new fw's till it is finished or till we can provide some new 3.6+ games free for all. And maybe even then chances are high that i don't will release till the scene will have something new that sony can't patch with future updates like eg a full working bootloader exploit. |
|
|
|
|
Likes: (1) |
|
|
#140 | |
|
Hired Gun
![]() Join Date: May 2011
Posts: 6,783
Likes: 2,571
Liked 3,312 Times in 1,841 Posts
Mentioned: 980 Post(s)
Tagged: 1 Thread(s)
|
But we never know what surprise might bring
__________________
Check Blacklist of FAKE devs
Check Whitelist of TRUSTED devs Tutorial : DEX conversion (TEST-DEBUG) One thread with all DEX information published so far. One thread with PS3 LV0 keys, CFW'S and many more. PS3devwiki your number 1 source. Check it. Console ID's Market Warning thread PS3 Ban, CFW, Unban. How to avoid it. |
|
|
|
|
![]() |
| Bookmarks |
| Thread Tools | |
|
|