PSP3D Left Header
PSP3D Header Right
PSP3D Logo CraveOnline Logo
Help the PSP 3D community grow!
Vote for us below:


Vote on the PSP Top 200
PSP Top 200 - Games, Videos, Wallpapers, Files, Hacks, Homebrew

Development Center - Learn the basics of coding or talk about advanced coding techniques with other developers.

Welcome to PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums!

You are currently viewing our website as a guest, which gives you limited access to reply and interact to discussions and other members. By joining our free community, you will be able to post topics in the forums, communicate privately with other members, vote in polls, and access many other special features.

Registration is fast, simple, and absolutely free so join our community today!

Go Back PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums > PSP Forums > Development Center

Closed Thread
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 04-18-2006, 08:18 AM
pj1115's Avatar
pj1115 pj1115 is offline
Camouflage Condoms: They won't see you coming
My Mood:
 
Join Date: Nov 2005
Location: Surrey, UK
Age: 23
Posts: 1,310
Points: 215.27
Donate
Send a message via ShopTapNham to pj1115
Lightbulb firmware emulator...

hey i posted this a while ago (can't remember what forum), but my idea was a 1.5 firmware emulator for 2.xx WITHOUT EVEN TOUCHING THE FLASH.....
Sounds crazy? read on and find out how it works:

1) We capture and save the entire memory at the standard 1.5 firmware XMB to the ms. (i know it can be done,as in the GTA cheat device, you can dump the memory. all you would need is a background application)

2)We put a flash1 and flash0 dump of 1.5 on the ms.

3)We write a program to load the entire contents of the 1.5 memory we captured in step 1, and then the program will write a string to the memory which
redirects all FLASH calls to the MS.

4)The Program will then clear every single string of memory, EXCEPT:
-The 1.5 memory we just loaded
-the FLASH call redirection

5)then the program would allow an exit to the XMB, which should then be a 1.5 interface

voila! you COULD have a temporary 1.5 psp! when you hard reboot the system, the 2.xx would have been restored!

---
Here are the catches:

-if we were to successfully run homebrew from the XMB, it would be ever so slightly slower, as you have the redirecting memory string running.
-Some of the stages (ie. 3 and 4), would be very difficult.
  #2 (permalink)  
Old 04-18-2006, 08:31 AM
t0ne_303 t0ne_303 is offline
Junior Member
 
Join Date: Dec 2005
Posts: 1
Points: 0.00
Donate
Quote:
Originally Posted by pj1115
3).../...and then the program will write a string to the memory which
redirects all FLASH calls to the MS.
You won't be able to do this as GTA cheat device doesn't run in kernel mode.
  #3 (permalink)  
Old 04-18-2006, 08:36 AM
chriscooke109's Avatar
chriscooke109 chriscooke109 is offline
Master-Bator
 
Join Date: Jan 2006
Location: England
Age: 18
Posts: 957
Points: 17.00
Donate
If we could do this wouldn't we just emulate 2.0 and run the tif exploit (but it probably would not write to the flash).
__________________
  #4 (permalink)  
Old 04-18-2006, 08:36 AM
pj1115's Avatar
pj1115 pj1115 is offline
Camouflage Condoms: They won't see you coming
My Mood:
 
Join Date: Nov 2005
Location: Surrey, UK
Age: 23
Posts: 1,310
Points: 215.27
Donate
Send a message via ShopTapNham to pj1115
you don't need to have kernel mode. if you load an EBOOT, you are writing to the memory. If you load a game, you are writing to the memory.
All it is, is loading a program.

If you wanted to dump the memory, that is even easier.
  #5 (permalink)  
Old 04-18-2006, 08:41 AM
pj1115's Avatar
pj1115 pj1115 is offline
Camouflage Condoms: They won't see you coming
My Mood:
 
Join Date: Nov 2005
Location: Surrey, UK
Age: 23
Posts: 1,310
Points: 215.27
Donate
Send a message via ShopTapNham to pj1115
Quote:
Originally Posted by chriscooke109
If we could do this wouldn't we just emulate 2.0 and run the tif exploit (but it probably would not write to the flash).
I thought of this. Running the TIFF exploit would write to index.dat on the ms instead, as it would be redirected. But this would mean the ability to run the 1.5 update (and even then, it would be re-directed to the MS.......)

UNLESS WE PROGRAM THE STRING TO ALLOW EBOOTS?
  #6 (permalink)  
Old 04-18-2006, 09:30 AM
sikheadtom's Avatar
sikheadtom sikheadtom is offline
Is Da Best PSP3D Member
My Mood:
 
Join Date: Dec 2005
Location: England
Posts: 651
Points: 1.61
Donate
Send a message via AIM to sikheadtom Send a message via ShopTapNham to sikheadtom
also ifu manage to emulate it we could just run the 2.0 eboot
__________________
SNES, PS1, PS2, PSP and PS3
Number of times reached 1000 posts: 3
  #7 (permalink)  
Old 04-18-2006, 09:40 AM
El3M3nT's Avatar
El3M3nT El3M3nT is offline
Senior Member
My Mood:
 
Join Date: Nov 2005
Location: America FUc|< yeah
Posts: 335
Points: 9.68
Donate
Send a message via AIM to El3M3nT
this sounds like a good idea but we all said that when we tryed to overflow the psp causing it to load the 1.50 update
__________________


OMFG ROFL COPTER!
Quote:
Quote from: k_os
I mostly play C&C Renegade, which im sure u are all aware is the same engine as Crysis.
  #8 (permalink)  
Old 04-18-2006, 10:09 AM
pj1115's Avatar
pj1115 pj1115 is offline
Camouflage Condoms: They won't see you coming
My Mood:
 
Join Date: Nov 2005
Location: Surrey, UK
Age: 23
Posts: 1,310
Points: 215.27
Donate
Send a message via ShopTapNham to pj1115
That's True, but the memory string would have to include an offset that allowred
a file with a certain signiature to write to the Flash.

But this would have to use ALOT of memory, as not only would the string have to intercept, alter, and re-send the call, it would have to examine the caller of every single request, and then take the appropriate action.

Last edited by pj1115 : 04-18-2006 at 10:13 AM.
  #9 (permalink)  
Old 04-18-2006, 11:29 AM
Michael M.'s Avatar
Michael M. Michael M. is offline
Teh h4x0r admin
My Mood:
 
Join Date: Feb 2006
Location: New York
Age: 25
Posts: 961
Points: 9,999,500,271.08
Donate
Send a message via AIM to Michael M. Send a message via ShopTapNham to Michael M.
Not possible.
Quote:
Originally Posted by pj1115
...
3)We write a program to load the entire contents of the 1.5 memory we captured in step 1, and then the program will write a string to the memory which redirects all FLASH calls to the MS.
Requires kernel mode.

Quote:
Originally Posted by pj1115
5)then the program would allow an exit to the XMB, which should then be a 1.5 interface
Requires kernel mode.
  #10 (permalink)  
Old 04-18-2006, 11:57 AM
pj1115's Avatar
pj1115 pj1115 is offline
Camouflage Condoms: They won't see you coming
My Mood:
 
Join Date: Nov 2005
Location: Surrey, UK
Age: 23
Posts: 1,310
Points: 215.27
Donate
Send a message via ShopTapNham to pj1115
Freeplay, why wouldn't you be able to load things to the memory? If you could alter memory using GTA, and you could launch programs, why couldn't you upload the 1.5 capture?

Or did you mean you couldn't run a background memory string? So you cannot keep alien strings in the memory, after you exit to the XMB?

Also step 5 shouldn't require kernal access, as all you are doing is quitting the application, and returning to the XMB. and if the memory was pre-loaded with the 1.5 memory dump, the XMB should therefore be the 1.5 one, as effectively firmware 2.xx will have been "quitted"
Closed Thread

« found this is it anygood 2.01 | psp dev on windows »



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On

Points Per Thread View: 0.00
Points Per Thread: 1.00
Points Per Reply: 0.10

Similar Threads
Thread Thread Starter Forum Replies Last Post
2.01+ Compatable eboots thread Lambda Homebrew/Hacking 58 02-09-2007 07:09 PM
IS THIS FACT OR JUST SOMETHING GOING AROUND bobgbob Homebrew/Hacking 48 04-11-2006 12:55 PM
when new firmware? kenman General PSP Discussion 5 01-23-2006 06:32 PM
UMD Emulator and MPH Firmware Launcher v1.3.7 (if they can work together...) monocraft Homebrew/Hacking 0 12-27-2005 05:24 AM
A few explanations... sk1982 Off Topic 19 12-20-2005 05:52 PM





Crave Partner Sites: CraveOnline.com | DVDFile.com | PSP3D.com | ComingSoon.net | SuperHeroHype.com | RedBalcony.com | ActionTrip.com | CraveLyrics.com
Soundtrack.net | CraveFix.com | SpikedHumor.com | RPGamer.com | TattooNow.com | ImpactWrestling.com | SeekLyrics.com | PedalBMX.com | WildKO.com
vidKing.com | StrategyInformer.com | HHdb.com | RapLeagues.com | HipHop-Lyrics.com | Cravecocktails.com | ThePhatPhree.com | RideJudge.com | HottieSpots.com

ShopTapNham Shop Online Powered by Custom vB Version 5.1.0 for Crave Online Media, LLC.
Copyright © 2000 - 2007, Jelsoft Enterprises Ltd. and PSP3D.com.
LinkBacks Enabled by vBSEO 3.0.0 RC8

All times are GMT -4. The time now is 10:15 AM.
ShopTapNham Footer Right