wololo.net/talk • View topic - PS3 packages and how it leads to PSP signing
Postby kgsws » Sun Jan 16, 2011 4:41 am
Well ok, here it comes. Try this one.
tested on fat PSP with OFW 6.35
Simple, notice it contains ~PSP header from demo game (UCES00206), it is exactly same header.
It is easy to craft last 16 bytes of encrypted data block to match header CMAC - yes, that's the trick
There are some strange thigs, it can't run homebrews with bigger executable block (data block does not matter), and because of ~PSP header, it has to match exact size of original game.
This trick might be possible on firmware kernel modules to get permanent HEN on non-pandrorable PSPs, i was not able to do it but i was not trying that much.
PS: i am not only one who found this trick
Postby Disturbed0ne » Sun Jan 16, 2011 5:46 am
Like a few posters above I'd like to confirm that this works on a 3001 with 6.35OFW.
I can't wait to see what comes out of this.
I think that all the silence is worse than all the violence
Fear is such a weak emotion thats why I despise it
We scared of almost everything, afraid to even tell the truth
So scared of what you think of me, I’m scared of even telling you