Olygame

DigiTopZ #2

ModChipCentral

Page 1 of 2 12 LastLast
Results 1 to 10 of 15
  1. #1
    Senior Member
    Join Date
    Apr 2011
    Location
    1 of Crunchs orig's
    Posts
    202
    Total Thanks Given
    141
    Total Thanks Received
    190
    Total Thanked Posts
    103
    Gamer IDs

    Gamertag: wilma cokfit1 PSN ID: fisk1979 Wii Code: fiskandrew

    Possiable BOOTLDR exploit....

    I found this and thought it was a good read..

    http://pastie.org/5090091


    dump bootldr how to exploit

    Must have a dex 3.55 real or made dex 3.55 ps3 also duel nand/nor installed chip base. In a 3.55 dex console, prepare a lv0.self with the metadata exploit. reboot. lv0 will hang since lv0.self will not run properly. bootldr will send info to lv0 before it hangs, after it decrypts it, running dex with certain switches set up like boot in dev mode Will allow this hang dump of bootldr to be saved to the local store. But, essentially you will have a bricked ps3 so recovery of the local store wont happen. This is where the duel nand/nor comes in handy and allows you to recover from this and replace your messed up lv0.self with the original to boot up and recover the local store dump and the decrypted bootldr. This will allow the keys to bootldr these keys cannot be changed with any update. We can then exploit lv0. The exploit of bootldr/lv0 will allow the ability to change the way private keys are made or give us the ability to reset up the private key fail and resign packages with any new firmwares.

    this although is just a "well tested Theory" of course

  2.          
  3. The Following User Says Thank You to and_fis For This Useful Post:


  4. #2
    The Master
    Join Date
    Jul 2011
    Location
    Year 1
    Posts
    806
    Total Thanks Given
    6
    Total Thanks Received
    711
    Total Thanked Posts
    384
    Gamer IDs

    PSN ID: Blue_Djinn
    Legit.

    10char.
    Don't Feed The Trolls Past Midnight
    It's Past Midnight

    STOP!!! Before you post that question, 98% of your answers are --->Here<---

  5. The Following User Says Thank You to master737373 For This Useful Post:

    Yuu (10-21-2012)

  6. #3
    Senior Member
    Join Date
    Sep 2012
    Posts
    114
    Total Thanks Given
    69
    Total Thanks Received
    71
    Total Thanked Posts
    47
    dual boot required..grrrr..it's always something, it's about time we pwn that bootloader

  7. The Following 2 Users Say Thank You to kilkip For This Useful Post:

    Yuu (10-21-2012)

  8. #4
    Member
    Join Date
    Jul 2011
    Posts
    78
    Total Thanks Given
    37
    Total Thanks Received
    57
    Total Thanked Posts
    26
    isn't that like 6 months old news?
    and nothing came from that...at least what we know off....

  9. The Following User Says Thank You to dsenseb For This Useful Post:

    lol (10-21-2012)

  10. #5
    Senior Member
    Join Date
    Jul 2011
    Location
    Giza - Egypt
    Posts
    226
    Total Thanks Given
    74
    Total Thanks Received
    373
    Total Thanked Posts
    142
    Quote Originally Posted by dsenseb View Post
    isn't that like 6 months old news?
    and nothing came from that...at least what we know off....
    Yea its old news but who know if this lead to something or not
    BTW there is a well known team/devs that already PWNed the bootloader and have the lv0 keys long time ago, but as usual its for inner-elite circle only

  11. The Following User Says Thank You to Abkarino For This Useful Post:

    Yuu (10-21-2012)

  12. #6
    Senior Member
    Join Date
    Apr 2011
    Location
    1 of Crunchs orig's
    Posts
    202
    Total Thanks Given
    141
    Total Thanks Received
    190
    Total Thanked Posts
    103
    Gamer IDs

    Gamertag: wilma cokfit1 PSN ID: fisk1979 Wii Code: fiskandrew
    Quote Originally Posted by Abkarino View Post
    Yea its old news but who know if this lead to something or not
    BTW there is a well known team/devs that already PWNed the bootloader and have the lv0 keys long time ago, but as usual its for inner-elite circle only
    It can't be that old or someone like e3 or 3k3y team or a dongle maker would tease us with new model ps3 jailbreakable, new 4.25 dongle, or 4.25 keys possiable...I got this info from an anonmous source... but, Before i posted the info I looked everywhere to see if it was bs.. There was some close info on dev wiki but nothing that explained it in steps or even how to do a bootldr exploit just a bunch of what ifs and half baked ideas nothing that says dex unit or duel nand/nor ... I dont have a dual nand/nor or i would do this... I hope someone out there does... But the way this is explained it fits in with alot on dev wiki and fills in some holes on info.....Maybe this is an inner circle leak...I hope someone will make something of this... If its 6 month old info this seems easy enough that someone would have attempted it. OR they might now and shoot this scene along...or they already have and thats how we might be getting 4.21 cfw... Just Speculating here....

  13. The Following User Says Thank You to and_fis For This Useful Post:

    Yuu (10-21-2012)

  14. #7
    The Master
    Join Date
    Jul 2011
    Location
    Year 1
    Posts
    806
    Total Thanks Given
    6
    Total Thanks Received
    711
    Total Thanked Posts
    384
    Gamer IDs

    PSN ID: Blue_Djinn
    You don't need dual nor to get bootldr. This is sort of a inner circle thing, but not really,
    Don't Feed The Trolls Past Midnight
    It's Past Midnight

    STOP!!! Before you post that question, 98% of your answers are --->Here<---

  15. The Following 2 Users Say Thank You to master737373 For This Useful Post:

    Yuu (10-21-2012)

  16. #8
    Junior Member
    Join Date
    Aug 2011
    Posts
    20
    Total Thanks Given
    3
    Total Thanks Received
    4
    Total Thanked Posts
    3
    if the Lv.0 and the boot-loader are pwned, is there any other way for sony to secure the console ?
    Final Fantasy Versus XIII

  17. #9
    The Master
    Join Date
    Jul 2011
    Location
    Year 1
    Posts
    806
    Total Thanks Given
    6
    Total Thanks Received
    711
    Total Thanked Posts
    384
    Gamer IDs

    PSN ID: Blue_Djinn
    Quote Originally Posted by kira.30 View Post
    if the Lv.0 and the boot-loader are pwned, is there any other way for sony to secure the console ?
    No.
    10char.
    Don't Feed The Trolls Past Midnight
    It's Past Midnight

    STOP!!! Before you post that question, 98% of your answers are --->Here<---

  18. The Following 2 Users Say Thank You to master737373 For This Useful Post:

    Yuu (10-21-2012)

  19. #10
    Senior Member
    Join Date
    Jul 2011
    Location
    Giza - Egypt
    Posts
    226
    Total Thanks Given
    74
    Total Thanks Received
    373
    Total Thanked Posts
    142
    Quote Originally Posted by kira.30 View Post
    if the Lv.0 and the boot-loader are pwned, is there any other way for sony to secure the console ?
    For current hardware No, but for feature hardware design maybe they could.
    But at least we will have a ultimate hacks for our current hardware.

  20. The Following User Says Thank You to Abkarino For This Useful Post:

    Yuu (10-22-2012)


 
Page 1 of 2 12 LastLast

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
EachGame