Forum: Latest News - Get all of the latest legal dev and underground news as it relates to the Sony PlayStation right here on PSX-Scene.

The above video goes away if you are a member and logged in, so log in now!



 
Would you like to get all the new info from
PSX-Scene in your email each day?




Want to learn more about the team keeping you up to date with the latest scene news?

Read about them now!

Check out our Developer bios, too!

 


Thread: Graf_Chokolo: HV Exploit and Dump from GameOS!
  

Page 1 of 15 1 2 3 11 ... LastLast
Results 1 to 10 of 150
  1. #1 Thumbs up Graf_Chokolo: HV Exploit and Dump from GameOS! 
    The Central Scrutinizer's Avatar
    The Central Scrutinizer is offline PSX-SCENE Admin Bot
    Join Date
    Jul 2002
    Posts
    919
    Downloads
    0
    Uploads
    0
    Likes Given
    0
    Likes Received
    512
    The decrypting and hypervisor master of the PS3 console, "Mr. Graf_Chokolo" has done it again!

    Today, he informs our PSX-SCENE viewers that he is able to dump the Hypervisor v3.15 via the GameOS and plans to do the same for v3.41 and make all the technical details public in a few days!


    Quote Originally Posted by graf_chokolo View Post
    I have just exploited and dumped HV 3.15 from GameOS

    I used memory glitching like Geohot to get dangling HTAB entry but 2nd and 3rd stages are quite different. I used my knowledge about HV internals and created a simpler exploit for stage2 and stage3.

    I didn’t use second VAS like Geohot. I used lv1_undocumented_function_114 and lv1_undocumented_function_115 to exploit HV after i got a dangling HTAB entry

    Now we don't need Linux to exploit and dump HV. Furthermore, HV dump from GameOS is a lot better because when GameOS is running more features are activated in HV So, i can reverse now more C++ objects and understand better how HV works

    I will make everything public very soon and i plan to dump HV 3.41 in the next days

    Happy New Year guys!
    BREAKING NEWS UPDATE: -- FINALLY THE REAL KEY! -- Thanks Graf!


    Quote Originally Posted by graf_chokolo View Post
    And now i dumped the real USB Dongle Master Key guys Noone needs it now but here it is. I tested it with HMAC SHA1 and dongle key 0xAAAA and got the same dongle key that was reversed by KaKaRoTo

    Just as i said previously, use USB Dongle Authenticator, then dump HV and the decrypted USB Dongle Master Key will be in HV dump I extracted this key from my HV dump after i used USB Dongle Authenticator on GameOS. Then i rebooted GameOS but not HV and the key was still in HV and still decrypted

    static u8 master_key[20] =
    {
    Code:
    46 DC EA D3 17 FE 45 D8 09 23 EB 97 E4 95 64 10 D4 CD B2 C2
    };
    This man can make the PS3 turn inside out and spill all its bits & bytes to him!
    Last edited by garyopa; 12-27-2010 at 10:47 PM. Reason: Added the real key - Thanks Graf!
    Reply With Quote  

  2. #2  
    chesh's Avatar
    chesh is online now New Moderator on the block
    Join Date
    Sep 2006
    Location
    Spokane
    Posts
    5,193
    Downloads
    0
    Uploads
    0
    Likes Given
    32
    Likes Received
    118
    Damn graf, you're amazing! Keep up the good work. Been watching everything you've been saying on the xorlosers blog. Very interesting stuff indeed.
    New Homebrew - PS3 Collection http://x.co/XEsO
    New Homebrew - PS3/PC Collection http://x.co/XBYN
    New Homebrew - Direct Downloads http://x.co/XBYb
    New Themes - multiMAN Collection http://x.co/XPSb
    New Cheats - Pkg Collection http://x.co/XPSa
    Reply With Quote  

  3. #3  
    Pockets69 is offline Banned
    Join Date
    Aug 2010
    Location
    Lisbon, Portugal
    Posts
    413
    Downloads
    0
    Uploads
    0
    Likes Given
    19
    Likes Received
    18
    AHHHHHHH GOD!!!
    thank you very much for your effort graf_chokolo, one thing though that i didn't understand, did you use the Geohot glitch to exploit it, or was a lv2 exploit and therefor no hardware required.
    Reply With Quote  

  4. #4  
    Grey_Wolf's Avatar
    Grey_Wolf is offline Door Kicker!
    Join Date
    Jan 2010
    Posts
    65
    Downloads
    0
    Uploads
    0
    Likes Given
    5
    Likes Received
    1
    Quote Originally Posted by graf_chokolo View Post
    I have just exploited and dumped HV 3.15 from GameOS :-)

    I used memory glitching like Geohot to get dangling HTAB entry but 2nd and 3rd stages are quite different. I used my knowledge about HV internals and created a simpler exploit for stage2 and stage3.

    I didn’t use second VAS like Geohot. I used lv1_undocumented_function_114 and lv1_undocumented_function_115 to exploit HV after i got a dangling HTAB entry :-)

    I will make everything public very soon and i plan to dump HV 3.41 in the next days :-)

    Happy new year guys
    Thank god we have you graf. Excellent work and merry christmas.
    Reply With Quote  

  5. #5  
    chesh's Avatar
    chesh is online now New Moderator on the block
    Join Date
    Sep 2006
    Location
    Spokane
    Posts
    5,193
    Downloads
    0
    Uploads
    0
    Likes Given
    32
    Likes Received
    118
    But guys, I thought the scene was dying?!?!?! Oh noez!! Graf can never come out with this, because it may lead to new exploits or reverse engineering other components of the PS3. Then we can't have anymore newbies posting that this is the end because they can't play their precious GT5 or NFSHS!!!

    LOL, joking aside, this is going to lead to some really great stuff. Also, happy new year to you too graf!
    New Homebrew - PS3 Collection http://x.co/XEsO
    New Homebrew - PS3/PC Collection http://x.co/XBYN
    New Homebrew - Direct Downloads http://x.co/XBYb
    New Themes - multiMAN Collection http://x.co/XPSb
    New Cheats - Pkg Collection http://x.co/XPSa
    Reply With Quote  

  6. #6  
    Pockets69 is offline Banned
    Join Date
    Aug 2010
    Location
    Lisbon, Portugal
    Posts
    413
    Downloads
    0
    Uploads
    0
    Likes Given
    19
    Likes Received
    18
    damn you chesh i was about to post that the scene is dying! instead i will just post, the scene is running dry

    and i swear if i see anyone asking can we play gt5 or nfs with this! i will go appe shit on him!
    Reply With Quote  

  7. #7  
    ken_oh's Avatar
    ken_oh is offline Fist King
    Join Date
    Sep 2010
    Location
    Everywhere
    Posts
    1,009
    Downloads
    0
    Uploads
    0
    Likes Given
    8
    Likes Received
    37
    lool.. pocket69 & chesh I was thinking bout the same thing to wonder where theve all gone ..

    and to graf THANK YOU always comming out with new surprises I'm sure every1ns going to have a happy new yer now
    "Failure to observe the rules of common sense discussion can and will result in a ban without warning.
    I pity the fool who breaks the rules."
    (the inteligent words of xiaNaix)
    lol..

    Reply With Quote  

  8. #8  
    Pockets69 is offline Banned
    Join Date
    Aug 2010
    Location
    Lisbon, Portugal
    Posts
    413
    Downloads
    0
    Uploads
    0
    Likes Given
    19
    Likes Received
    18
    Quote Originally Posted by ken_oh View Post
    lool.. pocket69 & chesh I was thinking bout the same thing to wonder where theve all gone ..

    and to graf THANK YOU always comming out with new surprises I'm sure every1ns going to have a happy new yer now
    AHAH i can tell you that one of them (RAPOSA) got banned, aha bootlegninja banned him! with that awesome line on my sig!
    Reply With Quote  

  9. #9  
    tank87 is offline Registered User
    Join Date
    Oct 2010
    Posts
    19
    Downloads
    1
    Uploads
    0
    Likes Given
    0
    Likes Received
    0
    what is gameOS??? what can this lead to????
    Reply With Quote  

  10. #10  
    SnoopDo2G's Avatar
    SnoopDo2G is offline Play$tation'$ Don Doggy$tyle
    Join Date
    Sep 2010
    Location
    @HOME
    Posts
    460
    Downloads
    0
    Uploads
    0
    Likes Given
    0
    Likes Received
    2
    I can't wait for the day that we could use our ps3's as we want fully
    i mean use it like a real PC and use all functions and tweak em the way each person
    wants !!! that's how it should be !!
    Even able to add any hardware without having to be a technician lol.
    Just connect stuff & let it add drivers for it

    Keep up the dirty job down there !!!!
    Reply With Quote  

Page 1 of 15 1 2 3 11 ... LastLast
Posting Permissions
  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

Popular Tags

1tb 3.15 3.41 3.42 3.50 3.55 3.55 cfw 3.56 3.60 3.61 3.70 3.72 3.73 007 80gb agent under fire apps armax assassins creed backup back up backup games backup manager backups backwards compatible banned batch bdemu black blackbox black ops blackrhino blackscreen black screen blu-ray bluray bluray drive boot break brick bricked broken bug burn burned bypass card cfw cfw 3.55 cheap cheat cheats cobra cod code codebreaker codes compatibility connection control controller custom custom firmware dead deank debug demo disc disc read error dlc dongle downgrade download drive dvd dvd9 e3 card reader e3 flasher easy eboot eboot.bin eboot bin elf emulator error esr ethernet exploit external external hdd fan fat fifa firmware fix fmcb fmcb 1.8 format free free mc boot free mcboot freemcboot freeze friv ftp gaia gaia manager game games gameshark geohot graf_chokolo gran gran turismo 5 gt5 gta iv guide hack hacking hard harddrive hard drive hdd hdd incompatibility hdl hdloader helpme hermes hex homebrew infectus install internal internal hdd iso jac jailbreak jailbreak 3.55 jailbreaking kakaroto killzone 3 kiosk kmeaw kmeaw 3.55 lan laser linux loader logo mac manager matrix matrix infinity maximus mcboot media player memento memor32 memory memory card mfw mod modbo mod chip modchip modded modding mods motherboard move multiman mw2 nand need for speed netflix network network adapter network games help newbie new ps3 news noob ntfs ntsc ofw online open open manager open ps2 loader openps2loader opl oplv7 otheros packages packer pal param.sfo patch payload pes 2011 pgen pic pkg playstation playstation 2 playstation 3 port power problem problems progskeet ps1 ps2 ps2 backups ps2 slim ps3 ps3 3.55 ps3 break ps3 fat ps3 game modding ps3 hdd ps3 homebrew ps3 jailbreak ps3 slim ps3break ps3key ps3mfw psfreedom psgroopic psgroove psjailbreak psn psn bypass psp psx psx-scene question read rebug recovery region remote play restore retro rock band rogero rogero manager router save saved games saves scene scph-70004 screen sdk server showtime skyrim slim slim ps2 smb sms softmod sony speed spoof stuck swap swapmagic swap magic swap trick system theme ti-84 trick trophies true blue tutorial ubuntu ulaunchelf ule update updates upgrade usb usb advance usbadvance v@ughn video virtual vmc waninkoko winhiip wireless working wutangrza x3max xmb xploder ylod