|
|
#511 | |
|
Senior Member
![]() Join Date: Sep 2010
Posts: 1,175
Likes: 603
Liked 625 Times in 376 Posts
Mentioned: 138 Post(s)
Tagged: 0 Thread(s)
|
My understanding is that's simply signed with a private key and we don't have that key to sign it. This talk of "markers" is nonsense and isn't even a valid explanation for a "layman" explanation and just leads to FUD when the person reading your post makes a thread about "finding the markers". ...(Or I could be wrong) pretty sure that's the case though.
|
|
|
|
|
|
Likes: (1) |
|
|
#512 |
|
Apprentice
Join Date: Sep 2010
Posts: 4
Likes: 2
Liked 0 Times in 0 Posts
Mentioned: 1 Post(s)
Tagged: 0 Thread(s)
|
We know that Sony changed something in fw 3.56+
We can reduce our search by comparing the changes with fw 3.55 And than just look into Files that make sense and Reverse them. I would say this downgrade Protections are all the Same in fw > 3.55 So search will be reduced once again. This is only a theory from me. I just follow this scene and haven't a ps3. So i cant say that this is correct or not. |
|
|
|
|
|
#513 | |
|
Member
![]() Join Date: Jul 2012
Posts: 80
Likes: 11
Liked 16 Times in 12 Posts
Mentioned: 4 Post(s)
Tagged: 0 Thread(s)
|
__________________
THERE IS NO JAILBREAK ABOVE 3.55 USE THE SEARCH FUNCTION DON'T POST USELESS THREADS!
|
|
|
|
|
|
|
#514 |
|
Apprentice
Join Date: Sep 2010
Posts: 4
Likes: 2
Liked 0 Times in 0 Posts
Mentioned: 1 Post(s)
Tagged: 0 Thread(s)
|
I read a bit in ps3devwiki and i think you are right with hmac.
But what i don't understand is, why is it so hard to find it? I mean there must be a routine which uses hmac to verify the fw and i thought with lv0 keys its possible to decrypt all. |
|
|
|
|
|
#515 |
|
Senior Member
![]() Join Date: Sep 2010
Location: Hell
Posts: 1,860
Likes: 152
Liked 423 Times in 271 Posts
Mentioned: 25 Post(s)
Tagged: 0 Thread(s)
|
"i thought with lv0 keys its possible to decrypt all."
I love how everyone keeps thinking this. |
|
|
|
|
|
#516 | |
|
Apprentice
Join Date: Sep 2010
Posts: 4
Likes: 2
Liked 0 Times in 0 Posts
Mentioned: 1 Post(s)
Tagged: 0 Thread(s)
|
I saw a sketch where the bootldr is the root of a tree and followed by lv0 and all other paths in this tree lv0 is their root. If this is right than what is my mistake? |
|
|
|
|
|
|
#517 | |
|
Member
![]() Join Date: Aug 2012
Posts: 116
Likes: 15
Liked 19 Times in 14 Posts
Mentioned: 3 Post(s)
Tagged: 0 Thread(s)
|
Decrypt all the firmware is the first part, but we need to reverse the code, understand how it works and this is not sinple and immediate. Sony has obfuscated some keys and part of code to make this process more difficult. So, in theory with bootldr keys with can make a CFW for 3.56+ for hackable console. Need to work and reverse! |
|
|
|
|
|
|
#518 |
|
Member
![]() Join Date: Jan 2008
Posts: 245
Likes: 27
Liked 127 Times in 72 Posts
Mentioned: 69 Post(s)
Tagged: 0 Thread(s)
|
To narrow reversing down, i guess to focus on emer_init.self... (This is recovery menu.)
|
|
|
|
|
|
#519 | |
|
Apprentice
Join Date: Sep 2010
Posts: 4
Likes: 2
Liked 0 Times in 0 Posts
Mentioned: 1 Post(s)
Tagged: 0 Thread(s)
|
Its like we have now learned to read and second step is to understand what we read about ofw. Thank you for your answer. |
|
|
|
|
|
|
#520 |
|
Apprentice
![]() Join Date: Oct 2012
Location: Switzerland
Posts: 13
Likes: 4
Liked 11 Times in 5 Posts
Mentioned: 0 Post(s)
Tagged: 0 Thread(s)
|
You need to find an exploit to install CFW on firmware above 3.55.
|
|
|
|
![]() |
| Bookmarks |
| Thread Tools | |
|
|