PSP3D Left Header
PSP3D Header Right
PSP3D Logo CraveOnline Logo
Help the PSP 3D community grow!
Vote for us below:


Vote on the PSP Top 200
PSP Top 200 - Games, Videos, Wallpapers, Files, Hacks, Homebrew

Media - Get music, videos, and more on your PSP.

Welcome to PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums!

You are currently viewing our website as a guest, which gives you limited access to reply and interact to discussions and other members. By joining our free community, you will be able to post topics in the forums, communicate privately with other members, vote in polls, and access many other special features.

Registration is fast, simple, and absolutely free so join our community today!

Go Back PSP3D.com - Sony PlayStation Portable News, Homebrew, Hacks, Reviews, Videos, Mods, Forums > PSP Forums > Media

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 06-30-2006, 02:12 PM
salomon st's Avatar
salomon st salomon st is offline
Senior Member
My Mood:
 
Join Date: Mar 2006
Posts: 331
Points: 4.72
Donate
Truth behind Kernal Exploit!!!

I found this at dcemu sorry if it is too long but here it is:








Welcome everyone to "One Day Later" an article chronicling the events that rocked the PSP Scene from 06/28/06 to 06/29/06. In this article I will review all the ins and outs of the new exploit, the truth behind DarK_AleX's Downdater, the real culprit behind epidemic of bricked PSPs, and of course the most important part of all - The information you will learn tomorrow... TODAY!

What We Know
Well, it has been an eventful 24 hours here on the PSP Scene, with some developments that can be considered nothing less than extraordinary. We started yesterday on Wednesday June 28th, 2006 with hitchhikr releasing his proof-of-concept of kernel memory access on a 2.5 or 2.6 PSP. Without a doubt the biggest exploit since the GTA eLoader, immediately upon its release several devs took to work. Some of the biggest names in PSP Homebrew took their crack at making a practical application of the brand new exploit, including DarK_AleX, Fanjita, Yoshi, Mathieulh, and 0okm. The first to note any progress was Fanjita, releasing a very early attempt at using the newfound exploit. Below is the exact quote of the release from PSPUpdates, followed by an exact quote of their "exclusive" email from Fanjita:
__________________________________________________ ______________
Update #1: Fanjita has released the "source" of his work so far today on this newly discovered exploit. If you would like to take a look at it and continue investigating where he left off for today, have a look!
Only for v2.5 / v2.6.

Based on Proof of Concept code by Hitchhikr / Neural.

Function : Attempts to load ms0:/kernel.elf using sceLoadModule/sceStartModule when in kernel mode, after writing a NOP to 0x8801A5B4.

Diags: Writes a log of operations to ms0:/GTALOG.TXT.
If LoadModule fails, writes the error code to ms0:/failload.trc.
If StartModule fails, writes the error code to ms0:/failstart.trc.

Check out the included readme for more info! (Thanks for the tip, gangsta_psp!)
Download: [Fanjita's Exploit Source - Day 1]

Update #2: Fanjita has taken a moment to respond to some of the many questions being asked in our forums regarding the update above and his "source":

Rumour clear-up time : this was posted in the pspdev IRC, so that people who know what they're doing can play with it if they want. I don't mind it being spread around, but if you don't understand how sceKernelLoad* apply security checks, then it's probably not for you.

It's work-in-progress, it's not an eLoader beta, it's just a more convenient way of experimenting with the exploit (maybe), and also an effort to test some in-RAM hacks to remove some security checks.

It doesn't seem to work at the moment, and the main thing that needs to be done is to investigate why - presumably, there's a problem with the format of the ELFs being loaded.

Kernel.elf is just an arbitrary ELF - nothing I've tried so far has worked, feel free to try your own.

The source that's given is just the source of the function that's attempting to do stuff with the exploit - it doesn't show any of the exploit code, and is not a complete app in its own right.

He also went on to say that the main focus right now is to replicate a "nokxploit functionality" making 2.50/2.60 PSP's behave the same way that 1.0 PSP's do in regards to homebrew. He says that a "kernel eLoader" would be possible but more cumbersome than a nokxploit approach.
__________________________________________________ ______________

We will be debunking his statements later on in the article, but for now we will proceed to the next set of releases that came from the exploit, the ones from none other than the man behind the Downdater, DarK_AleX. He started all of us off by releasing the first real progress in the form of his PRXDecryptor TEST for Firmware v2.6 (though it was only partially effective). It was after this release however, that the real fun began. At around 9:30 PM on 06/28/06 DarK_AleX released the first version of his now infamous "Downdater". Before continuing on, I suggest everyone read DarK_AleX's official unmodified post, here.

Without doubt one of the biggest developments that could have possibly came from the new 2.5/2.6 exploit, it was a ray of light for the 2.0+ PSP community. And after a few successful reports early on, the program soon made it to PSPUpdates where it was eagerly accepted (perhaps to eagerly), and the result turned out to be a large number of yep, you guess it, BRICKS. After that things began getting ugly on the PSPUpdates forums, with several angry members blaming their newfound bricks on DarK_AleX and few even taking advantage of the situation. Anyone present on the PSPUpdates forums last night knows what I am talking about. However, later in this post I will reveal the truth behind this frenzy, and clear up who was truely behind the bricking, and who is taking advantage of you.

Regardless of the wonderful flame-job countless users provided for DarK_AleX, he continued his work on the Downdater after teaming up with Yoshi and Mathieulh to releases three subsequent versions of the program, v0.2, v0.3, and v.04. Thanks to Yop2k5 from the PlanetPSP iRC channel's bravery (he tested THREE times until ending up with a brick) we are now even closer to a working version.

And last but not least, we have the unconfirmed downgrader by 0okm, the creator of the Die Hard Firmware v1.0 Downgrader. All there currently is in proof of this is three posts in broken English on the PSPUpdates forums.
__________________________________________________

sorry
it is unstable
i test 10pcs FW2.60 PSP
8pcs OK
2pcs have error

i can't share it
i don't want to have Dark_AleX's condition :P
__________________________________________________

yes
i can confirm can use hitchhikr's concept to "downgrader" old ver. hardware PSP with FW2.60 to FW1.00
i was use another method NOT Dark_AleX's Downgrader"

"if "ookm" is "0okm"
i can tell you
i try my way with hitchhikr's Great Work ^o^
__________________________________________________

i test 10pcs FW2.60 psp
reflash them to FW1.00
8pcs OK
2pcs have error
but never mind
i have multi FW Module ^o^"
__________________________________________________

And with that, we have reviewed EVERYTHING that has happened in the last day concerning this great new exploit, which leaves the fun stuff. In the following section, I will debunk all of the information above (you people deserve the truth!), and give you a little preview of what's to come.

What You Don't Know
Well, here goes, I'll start by talking about the first thing I discussed in this article, Fanjita's attempts with Kernel memory and the eLoader. I do not intend to demean his work in any way, but there is definitely some things you eLoader hopeful's and downgrader bashers should hear about.

1. The exploit for Kernel access itself is unstable, as noted by one of the developers of the Downdater in the following statements:
* [Mathieulh] because the exploit itself is unstable.
* [Mathieulh] the point is lots of functions **** up for no reason using the exploit
* [Mathieulh] and we don't know why
* [Mathieulh] for instance using printf will freeze the psp in kernal mode
2. The Kernel access exploit doesn't allot very much RAM for use on a 2.6 PSP, once again as noted by a Downdater developer:

* [Mathieulh] we also found out that the ammount of available ram on 2.60 using the kernel exploit is very small
Well, now that that is out there, we can move on to the next issue I promised to address – DarK_AleX's nickname as the "BRICKER". Last night on the PSPUpdates forums was literally a spam fest in which countless updates members called out DarK_AleX and blamed their bricks on him. This really disappointed me, as I am personally seeing residual effects of this portrayal on my own site, www.pspbrew.com. DarK_AleX is an amazing asset to the PSP Community, and it truly saddens me that some sceners would damage his reputation so severely. Thus, it makes me proud to bring you the TRUTH about the real culprit behind the bricks that resulted from Downdater v0.1! As it turns out, the true culprit behind the devastation was none other than the very first person to try the Downdater, PSPXnax. To lend validity to my case, I interviewed an eyewitness who watched the first KNOWN downgrade play out, and also an exact quote of PSPXnax's live confession on ProjectPSP's iRC Chat, here it is:

Birdman's Eyewitness Account: "we were all excited when the downgrader came out, even us with 1.5's were glad to finally be able to accept more members into our family, but of course dark_alex didnt test it so we eventually found someone who was willing and able to test it, PSPXnax. We explained how to set it up and all, and he ran it on his first psp and told us that it ran compleatly fine and the downgrader was a complete success. Well of course when we heard this we were overjoyed but at the same time we were a bit sceptical, but he continued to insure us it worked. he seemed like a very nice trustworth guy, so after pspxanx confirmed we happily went about telling sites all over the internet that pspxnax had tested it and that he claimed it worked fine. After that everyone who followed this knows the horrific events that happend afterwards, mass brickage, people were so eager to have 1.5 that the heard it had been "confirmed" and imeadiatly rushed to test it. so i mean its really for you to decide. dark alex told everyone straight up that it was untested and unconfirmed, but whos the real culprit? the dev or the devil?"

PSPXnax's Live Confession: [PSPXNAX] ok guys i admit it i am very sorry i did lie .... but u should also thank me for 2 things .... firstly i gave u a all hope second i gave people the courage to try it on their own psp's if i didnt do wt i did we would have never ever have know wheather this downgrader is going to work or not i am very sorry for all those that got their psps bricked but it also did save potentially thouhsands others from getting bricked thank u brave people

As you probably realize, it was not just for so many people to flame DarK_AleX and hurt his reputation. He did not intend to break any PSPs, and ultimately it is not his fault that any were bricked. If you want to blame anyone other than yourself, you now know who to flame, not DarK_AleX, but PSPXnax. This now leads us to the next thing you should be informed of, the people taking advantage of this situation to steal your money. Though there are legit cases out there like Josh's PSP from PSP-Hacks, there are also definitely bad ones out there. I will only use one for this article, and you can use your judgment if your considering donating to any other people left with bricks. The example of the day is none other than TMK or TheMarioKarters from PSPUpdates. The user had allegedly "bricked" his PSP with the downgrader and was asking for donations. The sad part was that even if he had tried the downgrader, he had not read the readme at all, because he apparently had a TA-082 PSP. I just want to get this out in the public, and warn people to not donate to scammers like this. Oh, and I also should throw a few things in for good measure. I congratulate the PSPUpdates admins for making people remove the TMK donation links from their sigs, and also that it seems what goes around as TMK's PayPal account has apparently been hacked and the money removed. Sweeeeeeet Justice! Anyways, now we can move on to the really fun stuff, what you will be seeing today from the Downdater!

Downdater Beta (coming soon): For this I felt it was best if I just copy/pasted the iRC chat about this topic directly, here it is strait from the devs keyboard to your monitor:


[Mathieulh] and finally we will tomorrow have a beta version to test
[Mathieulh] with sceioremove instead of logical format (to check out wether it works or not)
[mrweeeedbirdman> will the beta have any chanse of wroking?
[Mathieulh] if not we will stick to logical format
[Mathieulh] yes it will
[mrweeeedbirdman> cool
[Mathieulh] but it will also have chances of brickinf
[Mathieulh] bricking*
* fettesbumsen acts like he understands.
[Firey21] pl
[Mathieulh] as it's a beta
[Mathieulh] lol
[Firey21] ok
[mrweeeedbirdman> yea i just wondering if its chances are higher than that of .4
[Firey21] beta = 60% sucvess
[mrweeeedbirdman] cool
Firey21] or thats how it should be
[Mathieulh] lol I can't really tell, anything can happen on the psp especially with an unstable exploit such as the one we are using
Well folks, that’s all for now. I hope you enjoyed the show and I hope you enjoy the developments that are sure to be coming in the near future
__________________
A nintendo ds sucks about like a dyson vacuum...it never loses suction so its suckin 24/7
Reply With Quote
  #2 (permalink)  
Old 06-30-2006, 02:20 PM
=A.O.D='s Avatar
=A.O.D= =A.O.D= is offline
Senior Member
My Mood:
 
Join Date: Feb 2006
Location: WESTSlDE
Posts: 377
Points: 0.35
Donate
Send a message via Yahoo to =A.O.D=
thats very interesting, good job
__________________
Reply With Quote
  #3 (permalink)  
Old 06-30-2006, 02:22 PM
dougal22's Avatar
dougal22 dougal22 is offline
Senior Member
 
Join Date: Dec 2005
Posts: 491
Points: 10,011.72
Donate
Hey peepz , i haven`t been here for ages and have almost totaly abandonded my 2 psp`s . This exploit for 2.6/2.5 seems very interesting and from what i read it could actually lead somewhere .
__________________

PSP EU 1004 1.50 2.01 > 2.60 downdated 1.5
----------------------------------------------
GTA LCS UMD (Amazing)
Persuit Force UMD (Very Good)
Spiderman 2 - UMD (Free)
Twisted Metal Head On UMD Sold! - It sucked anyway
Lemmings PSP
Reply With Quote
  #4 (permalink)  
Old 06-30-2006, 02:29 PM
chriscooke109's Avatar
chriscooke109 chriscooke109 is offline
Master-Bator
 
Join Date: Jan 2006
Location: England
Age: 17
Posts: 957
Points: 16.22
Donate
Nice find I have read some but not all of this. And no offense but what you call kernal is actually spelt kernel.
__________________
Reply With Quote
  #5 (permalink)  
Old 06-30-2006, 02:30 PM
salomon st's Avatar
salomon st salomon st is offline
Senior Member
My Mood:
 
Join Date: Mar 2006
Posts: 331
Points: 4.72
Donate
Quote:
Originally Posted by chriscooke109
Nice find I have read some but not all of this. And no offense but what you call kernal is actually spelt kernel.
Yeah but oh well u know what i meant
__________________
A nintendo ds sucks about like a dyson vacuum...it never loses suction so its suckin 24/7
Reply With Quote
  #6 (permalink)  
Old 06-30-2006, 02:43 PM
=A.O.D='s Avatar
=A.O.D= =A.O.D= is offline
Senior Member
My Mood:
 
Join Date: Feb 2006
Location: WESTSlDE
Posts: 377
Points: 0.35
Donate
Send a message via Yahoo to =A.O.D=
i just finish reading it now. r there any set release dates for this stuff or not at this time?
__________________
Reply With Quote
  #7 (permalink)  
Old 06-30-2006, 02:48 PM
salomon st's Avatar
salomon st salomon st is offline
Senior Member
My Mood:
 
Join Date: Mar 2006
Posts: 331
Points: 4.72
Donate
Quote:
Originally Posted by =A.O.D=
i just finish reading it now. r there any set release dates for this stuff or not at this time?
well looks like the downgrader might come out tomorrow or the next day the beta at least but u know just about as much as i do i just found this article and read it and posted it so i dont know a whole lot
__________________
A nintendo ds sucks about like a dyson vacuum...it never loses suction so its suckin 24/7
Reply With Quote
  #8 (permalink)  
Old 06-30-2006, 03:21 PM
uzi_4u2's Avatar
uzi_4u2 uzi_4u2 is offline
Senior Member
My Mood:
 
Join Date: Jan 2006
Location: In a hole with Osama
Posts: 690
Points: 19.28
Donate
Send a message via MSN to uzi_4u2
o man reading your name "truth" that gave me a scare thinking this was fake
__________________
AAHH i love my 1.5 !!!!! nerdgasm!!!!! 1.5 1.51 1.52 2.0 2.01 2.5 2.6 watever i feel like
I own gretzky (gay) WipEout (sick graphx) Ridge Racer (fun!) Syphon Filter DM (SHITZA!) Gta (Of course) and a million ISOs
Quote:
Originally Posted by Fu$k Sony: I hack psp
if i download a pc game iso will that work on my psp..
Reply With Quote
  #9 (permalink)  
Old 06-30-2006, 03:23 PM
CaZzUm's Avatar
CaZzUm CaZzUm is offline
Ub3rdude
My Mood:
 
Join Date: Jan 2006
Location: In your head.
Posts: 584
Points: 7.22
Donate
Send a message via AIM to CaZzUm Send a message via MSN to CaZzUm
Quote:
Originally Posted by uzi_4u2
o man reading your name "truth" that gave me a scare thinking this was fake
Yeah. Same here.
__________________
... ¬_¬
Reply With Quote
  #10 (permalink)  
Old 06-30-2006, 03:30 PM
salomon st's Avatar
salomon st salomon st is offline
Senior Member
My Mood:
 
Join Date: Mar 2006
Posts: 331
Points: 4.72
Donate
sorry i just thought it would be an appropriate title
__________________
A nintendo ds sucks about like a dyson vacuum...it never loses suction so its suckin 24/7
Reply With Quote
Reply

« Sig of the month - June 2006 | Userbar of the Month Competition July 06 »



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Points Per Thread View: 0.00
Points Per Thread: 1.00
Points Per Reply: 0.10

Similar Threads
Thread Thread Starter Forum Replies Last Post
Devs (and noobs alike) come see the first close to working 2.7 Homebrew Exploit! dubuque Homebrew/Hacking 24 05-05-2006 11:08 AM
wouldnt a wipeout exploit work mrbob1000 Off Topic 7 04-25-2006 11:59 AM
Libungif Exploit Found!!! Twitch Homebrew/Hacking 223 04-21-2006 01:47 PM
An Exploit *idea* (NOT AN EXPLOIT!) Idkfawin32 Homebrew/Hacking 18 03-19-2006 11:35 PM
what is difference between kernal mode eBOOT and regular eBOOT apps? aznballa1992 Homebrew/Hacking 3 01-29-2006 03:49 PM





Crave Partner Sites: CraveOnline.com | DVDFile.com | PSP3D.com | ComingSoon.net | SuperHeroHype.com | RedBalcony.com | ActionTrip.com | CraveLyrics.com
Soundtrack.net | CraveFix.com | SpikedHumor.com | RPGamer.com | TattooNow.com | ImpactWrestling.com | SeekLyrics.com | PedalBMX.com | WildKO.com
vidKing.com | StrategyInformer.com | HHdb.com | RapLeagues.com | HipHop-Lyrics.com | Cravecocktails.com | ThePhatPhree.com | RideJudge.com | HottieSpots.com

PSP3D Footer Left Powered by Custom vB Version 5.1.0 for Crave Online Media, LLC.
Copyright © 2000 - 2007, Jelsoft Enterprises Ltd. and PSP3D.com.
LinkBacks Enabled by vBSEO 3.0.0 RC8

All times are GMT -4. The time now is 11:47 PM.
PSP3D Footer Right