Help the PSP 3D community grow! Vote for us below:


| | Homebrew/Hacking - Discuss the latest available homebrew applications and games. |
Welcome to PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums!
You are currently viewing our website as a guest, which gives you limited access to reply and interact to discussions and other members. By joining our free community, you will be able to post topics in the forums, communicate privately with other members, vote in polls, and access many other special features.
Registration is fast, simple, and absolutely free so join our community today!
|  | 
11-24-2005, 12:46 PM
| | Senior Member | | Join Date: Nov 2005 Location: In your shattered dreams.
Posts: 568
Points: 2.64 Donate | | | Psp3d Hacking 102 I will break down in a diagram of the EBOOT handlers security:
KNOWN SECURITY LOOPHOLES
<icon0>
<icon1>
<pic0>
<pic1>
<param.sfo>
<snd0.at3> (Some reports say)
PSP BOOTUP SECURITY CHECK
param.sfo > data.psp > data.psar
So on 2.5 the sfo stage is the only one passed, the the psp recognizes it has the familiar data.psp file (I'm not quit sure how...)
so I'll explain each files purpose
param.sfo (tells psp how to use a file)
data.psp (runs an updater applet)
data.psar (is a container for the updates files to be flashed
Anyone can break the sfo stage at this point with a few tools, or hell even with notepad.
But of course their are always loopholes so i will show which ones are on each version:
HOMEBREW - 1.0, 1.5
OVERFLOW - 1.0, 1.5 1.51, 1.52, 2.0, (2.01 and 2.5 are partially affected)
VIDEO EXPLOIT - 1.0, 1.5, 1.51, 1.52, 2.0
...there are more but I just said the top 3
PSP 2.5's cracked file handlers...
eboot handler (I say again partially no code running yet)
__________________ ßûtt€rß壣€r360 | 
11-24-2005, 12:56 PM
| | $ Elite Member $
My Mood: | | Join Date: Nov 2005 Location: Toronto Age: 28
Posts: 252
Points: 1.49 Donate | | So right now you're working on how to get the psp not to recognize the data.psp or take an altered data.psp as the original?? The problem is that we don't know how it is validating that file correct? Cool stuff, I think I'm going to get in on this and quit watching and start doing. Can you recommend an environment to work in or some basic framework or methods/functions that would help me potentially help the community?? | 
11-24-2005, 01:05 PM
| | Senior Member | | Join Date: Nov 2005 Location: In your shattered dreams.
Posts: 568
Points: 2.64 Donate | | | a.beast you dont need an environment, shoot I'm a cut and paste coder and I found this stuff.
Just get this program - PBP UNPACKER
__________________ ßûtt€rß壣€r360 | 
11-24-2005, 01:26 PM
| | Senior Member | | Join Date: Nov 2005
Posts: 153
Points: 0.05 Donate | | Quote: |
Originally Posted by butterballer360 a.beast you dont need an environment, shoot I'm a cut and paste coder and I found this stuff.
Just get this program - PBP UNPACKER | I have the program. What do you do with it? | 
11-24-2005, 01:54 PM
| | Senior Member | | Join Date: Nov 2005 Location: In your shattered dreams.
Posts: 568
Points: 2.64 Donate | | | you can use it to disect and then reamake an eboot, and with the right knowledge, hide a few file...
__________________ ßûtt€rß壣€r360 | 
11-24-2005, 02:38 PM
| | | Actually passes both DATA.PSP & DATA.PSAR steps and executes the update.
Example here: http://rapidshare.de/files/7975138/E...E_251.zip.html
However, you cant do anything with this "change updater" approach unless you are able to decrypt files, change version information, encrypt files.
Ups, only Sony can encrypt.
So you forgot one last step.
1. SFO
2. DATA.PSP
3. DATA.PSAR
4. Version information in some file within the PSAR archive  | 
11-24-2005, 02:44 PM
| | Senior Member
My Mood: | | Join Date: Nov 2005 Location: MO Age: 18
Posts: 479
Points: 25.33 Donate | | | just wondering..... what happens to your overflow when you hide the 0 pictures. | 
11-24-2005, 02:45 PM
| | Senior Member | | Join Date: Nov 2005 Location: In your shattered dreams.
Posts: 568
Points: 2.64 Donate | | | It's been done and that does not pass the psar and .psp stage those 2 stages are on implemented once you bypass the update screen that says corrupt, not just bypasses the corrupt icon
__________________ ßûtt€rß壣€r360 | 
11-24-2005, 03:10 PM
| | $ Elite Member $
My Mood: | | Join Date: Nov 2005 Location: Toronto Age: 28
Posts: 252
Points: 1.49 Donate | | Quote: |
Originally Posted by butterballer360 a.beast you dont need an environment, shoot I'm a cut and paste coder and I found this stuff.
Just get this program - PBP UNPACKER | Cool, I wasn't sure how you did things, you come across as all professional n' shizzle. I'll download that later and start spankin' out some code. | 
11-24-2005, 03:47 PM
| | Member
My Mood: | | Join Date: Nov 2005 Location: -gunstate-ft-liquordale Age: 29
Posts: 90
Points: 28.14 Donate | | | i unpacked the eboot file and by repacking without the data.psp file and it went to a 2.50 update instead of the 1.50. the 1.50 is what i unpacked and ended up with a 2.50 update.?????????? | |
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | | | | Thread Tools | | | | Display Modes | Linear Mode |
Posting Rules
| You may not post new threads You may not post replies You may not post attachments You may not edit your posts HTML code is Off Points Per Thread View: 0.00 Points Per Thread: 1.00 Points Per Reply: 0.10 | | | | |