My roughly compiled list of ideas for eboot loading/downgrading 2.6. I'll be updating and adding things a lot, so have fun.
- Memory Stick Hotswapping
- Hexing The Eboot
- Web Browser Glitches
- Game Saves
- Misc. Glitches
- Files
1. Memory Stick Hotswapping
i.
Some people figured out that if you run a setup eboot and hot-swap the memory card you can run a different eboot. However, the PSP will tell you that it is a corrupted file.
ii.
If you hex a 2.6 eboot to 2.7 or higher and place it on one memory stick and place an eboot lower than 2.6 it will display corrupted, but if you put a 2.6 eboot on the other memory stick it will bring the setup up. It will tell you you have a higher firmware version after you click start.
2. Hexing The Eboot
i.
If you hex the eboot to something higher than the current firmware, it will launch bit the PSP will say the setup is corrupted. The only way to fix this would to be to find the encryption type of the eboot and try decoding it. Posting the key would be highly illegal since it is a unique encryption (most likely) owned by Sony.
ii.
Somebody may be able to code their own eboot... some ideas people have are setting the TIF exploit image as the background. This could easily be done, I just don't have time right now. *Correction: would not work with TIF patch*
3. Web Browser Glitches
i.
Ideas such as the viewing the TIF exloit image have been tried, but to no avail. A guy thought up making a website with a URL that saves A TON of text documents and then viewing them... anything that will weaken the flash.
ii.
A person named Richard Bru thought up making something like a PSP trojan horse through pictures or other media that would have code in them... might work.
iii.
Launching eboots through the web browser with Javascript. Don't mean to sound pessimistic, but I bet Sony thought of this too.
iv.
Like above, if you could bomb the PSP with file saves, you could probably crash your PSP and call it a hack.
4. Game Saves
i.
You can put a .bin file into a NBA gamesave and it will not be corrupted... I want to personally try this one 'cept I don't know where to get a .bin file or how to code my own.
ii.
There is a rumor that the updates in UMD's aren't encrypted; if you could get a game loaded and make it load an eboot, you could probably get it to extract an update to the memory stick. I've been told gamesaves can't access flash but an eboot could.
iii.
Semi-new rumor: Wipeout Pure has some exploits within the game and within the web browser. With that hacked web browser we could probably load some eboots.
5. Misc. Glitches
i.
If the unencrypted update thing is true above somebody could unpack an ISO of their game and find a 2.6 update and look at it... or possibly load a 1.5 update within GTA with an iso-loader and force it to launch. Remember these are just ideas!!
ii.
IEUA's icon glitch could most definetly be taken a step further. If you could somehow add code to a picture then when you view the hacked icon it could launch the eboot. Something cool with this is when you delete a picture it still can be viewed with the eboot background. Kinda cool.
iii.
When you send a friend a picture by Wi-Fi, you could easily change your video extensions to a picture and send them... then the person has the ability to change the extension when they save it. This feature could be worked upon so you could send an eboot or IEUA's corrupted background thing and then it would load the eboot once the background was launched.
iv.
When you turn off your PSP while its online and hold the power button up it will reset itself and delete the system preferences such as things stored on the PSP like WLAN connection settings, etc. (it won't touch anything on the memory stick). It doesn't reset your firmware, but if you could hijack this process you could mess with the default settings.
v.
2 words- sound glitch. One word- patched. I hope we go somewhere with that, but Sony's already thought of it.
vi.
People have been recently discussing a PSP font hack in the forums. I don't know much more about this, besides the basic idea that when the PSP loads a font we redirect the loading to a (eboot) file.
6. Files
IEUA glitch
2.6 update
Why? Because we can. I think we all prefer eboot loaders than downgraders, because we want to be able to play our 2.xx+ required games.
This list took me a while to type up. Hope you like it. I'm off to do my homework.
Peace,
DrwSecond