bueno a estas horas y despues de 2 dias sin dormir no me extraña... pero no entiendo.
si puedes cambiar el disco de una ps3 a otra sin problemas. entonses la clave no puede estar ligada a ningun dato de sistema. ni bios ni nada de nada. ya que eso deberia ser diferente en todas las ps3 para poder diferenciarlas.
yo creo que la clave si es que usa algun tipo de encryptacion con clave publica o privarda estara en el sistema no el HD.. no tiene sentido dejar datos sensitivos en un sistema que se pueda escanear fuera de un ambiente controlado..
yo creo que los pasos que sigen los de ps3news van bien.. el tema es que nosotros no podemos segirles.. porque ellos estan usando el hardware de ps2 para usar los mismos bugs de ps2 y accesar asi al kernel mode. al parecer en las NTSC y JAP el sistema de ps2 no va por hypervisor asi que tienen acceso a todo.. el tema es que a nosotros nos metiron la chafa del emulador. y eso va por hypervisor por lo que estamos jodidos para sacar algo de ahi.
aqui el link para lo de ps3news
link
mas cosas de ps3news....
Ps3Rips escribió:Well I was on Irc last night after I had an idea, this is what I came up with.. well this was not going to be released till tomorrow, but I thought I would release a little early. First a little background on the my idea.
The XMB is the place to exploit as no one yet knows how the linux stuff is integrated into running unsigned code. My idea is that if we exploit the XMB then we can run code as game loading is already granted. So we need to run code in an unsigned way, the best way for this is to hit a shared memory space.
I’ve no idea where this space is?
PDX have told us to look in the SPEs, I’m going to look into creating buffer overflows in the browser. The integrated browser is built into the XMB and anyone who knows small amounts about security (i’ve been a hacker for a few years) will also know that every browser is exploitable.
Now the nice thing about the $0ny is that they have attempted to hide the browser in the PS3, the yhave it falsely reporting as Mozilla/5.0 (PLAYSTATION 3; 1.00) but the PlayStation 3 uses a version of the NetFront browser by Access Co. as its internal web browser. It is the same browser used in the PSP (Sony-branded NetFront 2.81) with the same interface, menus and virtual keyboard. Its user agent string is cloaked,
Ummm so why the cloaking? lets hope it’s cause they know it to be exploitable.
The NetFront Browser is for mobile devices and not PC, it can be grabbed for linux. I then grabbed some source-code and compiled a nice little package for my Windows Mobile 5 and decided to see if it ran. Yep it did, next I put together some exploits (looking for memory exhaustion and buffer overflows).
I ran them on the Netfront Browser and whooo-hooo I get nice errors, (due to memory crashes - however the browser does try to fix itself if it detects an error) I know that the PS3 has loads more memory than my winmobile device but it’s a start. I’m currently working away from home and will be back tomorrow where I will test to see if I can crash the XMB and hopefully expose it. I’m also going to look for exploits which can carry a payload
Also I know $0ny won’t have fixed these bugs as I was using the latest beta unreleased netfront developer code. It just depends on the mods the guys at $0ny have done to the core browser code, lets hope they have been lazy or are just bad at programming
Anyway thats all for now, more tomorrow.
Ps3Rips
PS - PDX - please do an update of ShootYourLoad ps3 style lol - any people who have been part of the console scene 10years plus will remember it.
basicamente el menda cuenta que cree que lo suyo seria meter un hack por el XMB y cuenta que el browers de la ps3 es el mismo que el de la psp el NETFROMT que lo emascaran como un mozilla.
lo interesante si es verdad es esto...
Ps3Rips escribió:Well following on from my tests last night using my homemade version of the PS3 browser, (NetFront) on my Mobile, as promised I'm now home and have used all avail memory on PS3 causing a buffer overflow.
It also causing XMB to crash. (outside of the browser).
I'll post a couple of vids, just gonna pop in IRC and chat to a few people.
Ps3Rips
el pavo dice que usando un exploit del NETFORM uso toda la memoria de l ps3 y causo un bufferoverflow haciendo que el XMB petase que a lo mejor no es nada . pero por algun lado ahi que empesar. dice que despues pondra videos y tal y cual. a ver que pasa.