PSX-SCENE Forum Discussion for Sony PlayStation/PsOne/PS2/PS3/PSP/PS VITA
  • True Blue and Cobra-USB Payloads Found!

    Developer shadoxi has released the True Blue and Cobra-USB payloads. With these developments, there may soon be a way for those without the dongles to enjoy the same experiences as those with the dongles. Hopefully all that is left is to sit back and wait for the MFW patches to come rolling in, but in the mean time most of us will have to wait for the dongle-less True Blue and Cobra-USB experience.



    I (aka shadoxi) figured out where is located the payload of Trueblue and cobra dongle. You can find it at offset @360000 in lv2_kernel and 7f0000 in ps3 memory.

    First of all you need to edit the header of lv2_kernel.self (from cfw trueblue) at offset 0×1D, replace 36 1A 00 by 4C FC F0. And decrypt it with unself tool from fail0verFlow. Open lv2_kernel.elf with Ida pro (in binary file mode), go to offset 360000 and press “C” to convert to asm code.

    TrueBlue use some HVCALL:
    lv1_insert_htab_entry
    lv1_undocumented_function_114
    lv1_undocumented_function_115
    lv1_allocate_device_dma_region
    lv1_map_device_dma_region
    lv1_net_start_tx_dma
    lv1_net_control
    lv1_panic (shutdown ps3 when TB is unplugged)

    This payload do some hvcall:
    lv1_insert_htab_entry (map lv1)
    lv1_allocate_device_dma_region (?)
    lv1_map_device_dma_region (?)
    lv1_net_start_tx_dma (?)
    lv1_net_control (?)
    lv1_panic (shutdown ps3 when TrueBlue Dongle is unplugged)
    lv1_undocumented_function_114 (map lv1)
    lv1_undocumented_function_115 (unmap lv1)

    We need now to dump lv2 and lv1 memory when TrueBlue is plugged. So I create a modified TrueBlue Cfw with peek and poke syscall. It work fine !
    Download Link: Payload.zip

    News Source: Brewology

    Thanks to Secludedly for sharing this with us.

    [Get Your Name On The Front Page!! Member News Submissions!!]
    J313C likes this.
    Comments 53 Comments
    1. No0bZiLLa's Avatar
      No0bZiLLa -
      hope this guy is for real. we will find out in the next days to come how serious this is.
    1. Mathematician's Avatar
      Mathematician -
      The developer who incorporates this into a firmware may magically be rich X_X
    1. ch13696's Avatar
      ch13696 -
      I sent word to PsDev on Twitter. Hopefully he checks it out.
    1. RUT Dark Ronin's Avatar
      RUT Dark Ronin -
      Read the wiki, gyus. C'mon, both payloads are already known, and still no one implemented them in any FW because of both dongle's DRM. Crash, can you take a look at this if it's a real deal or another "biggest news EVER!"?
      But don't consider it as bashing someone. If it's real indeed - good luck to you in any way then!
    1. kada's Avatar
      kada -
      Isnt already TB payloads released? Link below for 2.4 update payload.

      ReDRM / Piracy dongles - PS3 Development Wiki

      I remember cobra payload adapted for dongles from 3.41 to run on 3.41.

      I think only payload is nothing coz its nearly been 3 months (maybe more) payloads released and nothing changed except JB-King as TB clone.

      And Team Rebug made TB compatible CFW with peek and poke. Seems like rediscovering America.
    1. Mathematician's Avatar
      Mathematician -
      What if you can compile what it does without the lvl1 panic?

      Edit: That's assuming all of the functions work independently and it could be done.
    1. the-green's Avatar
      the-green -
      Yes, most likely it's not so easy to make the dream real !! a dongless CFW to lunch 3.6+ games !
      There is one thing that could help us to do that ! releasing 3.6+/3.7+ public keys !! May be we'll see this before the end of 2012
    1. RUT Dark Ronin's Avatar
      RUT Dark Ronin -
      ReDRM / Piracy dongles - PS3 Development Wiki - this has lying in public for ages. Nothing new though.
      How was it? Nifty-fifty seconds of fame, aren't this?
    1. kada's Avatar
      kada -
      Quote Originally Posted by the-green View Post
      Yes, most likely it's not so easy to make the dream real !! a dongless CFW to lunch 3.6+ games !
      There is one thing that could help us to do that ! releasing 3.6+/3.7+ public keys !! May be we'll see this before the end of 2012
      You are right but dont forget cracked PSN games(or game updates). Always there is hope for new games as long as Sony keeps PSN games crackable
    1. tynave's Avatar
      tynave -
      TB dongle has an anti-decryption protection on it. If you try to use it with a fw that has peek and poke, the dongle will "suicide", rendering itself useless..and this state is unrepairable.
      That's why REBUG team didn't make REBUG TB v2..
      So shadoxi is marching towards a bricked dongle..
    1. RUT Dark Ronin's Avatar
      RUT Dark Ronin -
      Also, why only Cobra syscalls described? Maybe because of this? - PS3Cobra Payload Reverse Engineering - PS3 Development Wiki - also wide open to anyone for copy-paste. I'm getting more sceptic every time I read through this article.
      OK then, I'll shut up for now & wait another few days/weeks/months. But, the only person I really believe capable to stand against TB/Cobra is CrashSerious - he have what it takes to finish a thing. And this one came out of nowhere with things we all knew already, with no actual proof.
    1. videogamerevie81's Avatar
      videogamerevie81 -
      I cant wait!!!
    1. xtrem3x's Avatar
      xtrem3x -
      I call fake because it looks as though we have all that already in the wiki, however I hope it is real
    1. matamoro77's Avatar
      matamoro77 -
    1. CrashSerious's Avatar
      CrashSerious -
      Several people have already hit me up about this, and I've hesitated to say anything publicly because I don't want to discourage anyone away from looking at this as well. I didn't want to be seen as THAT guy... *cough* math *cough*. But also because, I don't care who breaks it open-- so long as it is broken open.

      I won't speak for where this information came from, because it's possible this person came up with the information on thier own. However, this is all information that has been on the wiki pages for several months. -> here

      Also, this statement is concerning:

      We need now to dump lv2 and lv1 memory when TrueBlue is plugged. So I create a modified TrueBlue Cfw with peek and poke syscall. It work fine !
      First, stating that we need to dump lv2 and lv1 memory with true blue plugged in is a bit of a statement of the obvious. Of course that is needed... here is why; the TB/Cobra Patches aren't there with the dongle plugged in. Therefore, a dump without those patches will just be a CFW dump. And that certainly isn't going to be news worthy. ;-)

      Now for the last part, where they created a modified TB CFW with peek and poke in it. That's certainly possible! But before you get excited and do it... you should be aware that both dongles patches ACTIVELY look for peek and poke--- and they brick the dongle if they find them. This is why we call it malware or a reDRM dongle.

      As for it working fine, and this will be the only inflamitory statement I will make on the subject, I call bullshit.

      Update: just looked at the original posting at brewology, it's posted by a monkeymaximus. Could be a cooincidence, for sure, but if not... Trying to boost profits via bricked dongles or sell off your surplus stock before it's not sell able, Max?
    1. Jay-Jay's Avatar
      Jay-Jay -
      The only issue I foresee with this, is that who will then be able to crack the 3.60+ games? If we do have a successful way to use TB firmware without the dongle, who will then be able to figure out how they patch the games to work with TB? If nobody knows how this is done, we are going to kill the TB support if we continue with this hack project.
    1. futuretime23's Avatar
      futuretime23 -
      that or tb could release a new drm and then its back to figuring out how it works.
    1. BahumatLord's Avatar
      BahumatLord -
      Jay-Jay and futuretime23 make very good points. Something like this needs to be all or nothing
    1. futuretime23's Avatar
      futuretime23 -
      and dont forget about cobra too,they could say: UR FIGURED OUT OUR COBRA USB PAILOD,U GET DRM!!!!!.
      btw this means,time to figure out the never ending puzzle,how it works.
    1. CrashSerious's Avatar
      CrashSerious -
      And this is different from anything else---- how? Had people been saying that 1.5 years ago, the PS3 wouldn't be hacked as far as it is today.

      Lets not forget that number either, ONLY 1.5 years.
  • Daily Digest


    Want to receive the latest PSX info in your email?

    Sign up for our Daily Digest!



    Want to learn more about the team keeping you up to date with the latest scene news?

    Read about them now!

    Check out our Developer bios, too!

  • Recent Threads

    Munkee915

    Missing HDD space

    Thread Starter: Munkee915

    I have a PS3 slim w/ a 640gb HDD installed and Rogero 4.41 cfw. I have recently started hitting the limit on HDD space. The XMB shows I have 65gb/596gb

    Last Post By: Munkee915 Today, 07:00 PM Go to last post
    Blyze

    Best uLaunch Version to Use

    Thread Starter: Blyze

    Just wondering which version of uLaunch should I use to install Free McBoot? I've already used the version in the Noobie Package, but all I get is a black

    Last Post By: Blyze Today, 02:30 PM Go to last post
    ConorrChapple

    Anyone wanna play The Last Of Us online?

    Thread Starter: ConorrChapple

    If so add: ConorChapplee

    Last Post By: ConorrChapple Today, 01:33 PM Go to last post
    ShaolinAssassin

    Devil May Cry Pal in NTSC mode

    Thread Starter: ShaolinAssassin

    Hi guys,

    I come here to request a lil help, cause Im really out of ideas. Im trying to play my PAL copy of Devil May Cry with

    Last Post By: ShaolinAssassin Today, 04:05 PM Go to last post
    Raeralus

    System problems

    Thread Starter: Raeralus

    I am having a few issues with my PS3. Now, for some reason, my PS3 no longer displays any output when powered and turned on. This is not the same for

    Last Post By: Raeralus Today, 09:11 AM Go to last post
    rpgamer

    Gamer for life

    Thread Starter: rpgamer

    Hi everyone,
    My name is John I am a recently disabled man of 50. But this does not get me down, because I love games of all kinds. And I think

    Last Post By: codone Today, 04:39 PM Go to last post
  • Recent Comments

    racer0018

    Cobra ODE Hardware To Be Released Soon

    They were suppose to send me to test but I have not gotten anything and I have not heard back from... Go to last post

    racer0018 Today 05:27 PM
    Gradius

    Cobra ODE Hardware To Be Released Soon

    Price: US$ 120 Go to last post

    Gradius Today 04:50 PM
    The Big Harsh

    Rogero Custom Firmware 4.40 Version 1.03 Released

    After I was on CFW 4.30 I updated to CFW 4.41, then I tried to enter my PSN account but suddenly... Go to last post

    The Big Harsh Today 04:20 PM
    aneesh

    Cobra ODE Hardware To Be Released Soon

    As long as it can run backups on super slim as they show i am happy. Pricing will surely be high. Go to last post

    aneesh Today 02:20 PM
    pinkfloydviste

    Cobra ODE Hardware To Be Released Soon

    I have an ODE (Wasabi 360 Ultra)for my 360 Slim, and it works great. It was simple to install and... Go to last post

    pinkfloydviste Today 01:56 PM
    negodosul

    Rogero CEX-4.41 v1.00 Released

    I will miss yours updates Rogero. Go to last post

    negodosul Today 10:30 AM
    an0nym0us

    Cobra ODE Hardware To Be Released Soon

    Or perhaps I understand both of them and this thread needs a little explanation of the ODE... Go to last post

    an0nym0us Today 10:28 AM
    an0nym0us

    Cobra ODE Hardware To Be Released Soon

    You can certainly write the English language, but can you READ?? To quote, maybe this time you... Go to last post

    an0nym0us Today 09:13 AM
    fatattack

    Cobra ODE Hardware To Be Released Soon

    99% sure it will support ntfs. There is no reason why they shouldn't.
    atm we can't use ntfs on the... Go to last post

    fatattack Today 07:26 AM
    piaf

    Cobra ODE Hardware To Be Released Soon

    what a cliffhanger..almost....there...soon.... Go to last post

    piaf Today 03:52 AM