PS4 hack: PS4 3.55 OFW unsigned code execution PoC released (webkit exploit)

wololo

We are constantly looking for guest bloggers at wololo.net. If you like to write, and have a strong interest in the console hacking scene, contact me either with a comment here, or in a PM on /talk!

72 Responses

  1. Danny312312

    This is good stuff. I can’t wait to see what people can get running which will hopefully be shortly!

  2. Gaze

    He must have only scratched the surface with Henkaku on ps4, since people reverse engineering the exploit are thinking Henkaku actually used a kernel exploit on the Vita.

    We’ll have to wait and see.

  3. Ant

    First

  4. M.Abdullah Zaheer

    can we port henkaku for ps3 3k 4k consoles

    • n

      no. and why would anyone bother messing with an encryption that can never be broken again?

      • M.Abdullah Zaheer

        ps3 gen is finished from what we see from the upcoming release for that reason if it enable the hombrew on ps3 3k 4k it would be a best option for old gen

  5. kosuke

    ture wololo. this is not likely ethier but say ppl maybe find anothe exploit on the ps4 through this could happen tho

  6. Key Holder

    The Vita was the key :O

  7. Kyo

    Thank you

  8. Hung

    I wonder if this can be used on PS3 CECH 3k 4k.

  9. AAKASH

    OMG NOW WHAT TO DO
    IM CONFUSED WHETHER TO BUY PS4 RIGHT NOW OR NOT, AS THE NEW NEW PS4 SLIM AND NEO ARE JUST TWO MONTHS AWAY FOR RELEASE.

    • meysam25

      there will not be so many deffrent between ps4 and ps4 neo and neo will be little more expensive
      so buy it know

  10. Phil87700

    wow

  11. que

    Exciting times

  12. Aroth

    I swear, every time I look into what has been happening with the PS4 scene I end up feeling like I am the only person who has any interest in seeing the save game encryption broken.

  13. 3.55 Rule

    Hope this exploit can get complete jailbreak for ps4 with 3.55. Like PS3 was jailbroken with 3.55. So 3.55 will become special number for playstation console(Bad is vita on 3.60 not 3.55 otherwise..). Guys make it happen .. XD

  14. Sacknase

    What kind of homebrew is possible now? Emulators, Game Ports and Filemanager?

  15. meysam25

    keep up to good work guys

  16. yUnoRead

    Omg, read carefully! There is NO code execution! Just rop AND it will stay like that for … reasons :p

    • yUnoRead

      You cant just tell everyone that its staying that way so sony doesn’t release their neo console prepatched and “unhackable”?

    • Seth

      You can’t just say so that Sony doesn’t release the neo console prepatched and “unhackable”?

    • coolcat

      yes there is code execution, you don’t even need an exploit to run code, javascript gets converted to code, and rop stands for Return Oriented Programming, privileges, jails and sandboxes stand in our way, this webkit exploit allows us to escape the javascript sandbox, next we need a kernel exploit to escalate privileges which in turn will allow us to escape the browser jail

  17. Giovanni

    Haha when 3.55 was released I Joked about it being the perfect Firmware for us. I think I won’t update to the 4.0 beta for now just in case someone will be able to find a kernel exploit. Or maybe I just get a second ps4 for less than 200€ and wait 😀

  18. ps3 slim user

    3.55….I hate this number

  19. Ragnarok01

    And here i was thinking about selling my extra ps4 with 2 tb installed hmmm thanks to this im gonna keep it until a hack is released to enjoy homebrews and emus

  20. motel

    what about 2.xx firmwares? I remember reading before that the BadIRET Kernel exploit could work on it but needed another exploit to load. I’m still on 2.01

  21. dragonfly

    hmm staying on 1.76 or update to 3.55 ?

    • coolcat

      this should mean that firmwares 1.76 all the way to 3.55 can be exploited with this however, we don’t which firmware a kernel exploit will be found for, could be a 2.xx firmware that gets lucky this time, personally i am staying on the firmware i have (2.50 i think, not looked for a while) and if and when 3.55 gets cracked wide open i’ll update then, if not then i’ll stay, unlike most people though i only want enough access to mess around with GTA:V can think of some cool things to do to that game

  22. ishygdaft

    3.55 hacked again? Sony has REALLY bad luck with there firms around the 3.50.. The ps3, the vita had the 3.51 rejuvenate thing, now this, Lol.

  23. gobulle

    Same question here … I stay 1.76 or should I update now to 3.55 ?

  24. I want Ps4 jailbreak 3.55 is my dream,wooooool:):):):):)

  25. hacker's fan

    good news and good job wololo , keep up !

  26. kayoshin

    Without kernel exploit this is nothing as many were already in possession with this usermode exploit.
    Kernel exploit would be much difficult to achieve and that too on firmware 3.55, it may even take years to call 3.55
    as golden firmware. Cmon guys, neo will be released in oct so why get ur hands on this old ps4.
    It is a good news for existing ps4 users (on firmware>1.76) but those who are still looking forward to buy,
    should rather buy neo and wait for it to get a jailbreak.

  27. Kyogo

    So, it’s like the Wii U 5.3.2/5.5.0/5.5.1 exploit minus the kernel exploit?

  28. Lesta_SMSC

    How about a Web exploit for the PS3?! Likely they have similar vulnerability and this approach may be a means of avoiding hard-hack downgrade?

  29. Suewoo

    3.55 the firmware all hopefully will work on for any full hacks.

  30. I am very eager to come a Ps4 jailbreak 3:55 or cfw hopefully come as fast as possible!

  31. d

    https://github.com/Cryptogenic/PS4-Playground-3.55 this has been cleaned up a little by Cryptogenic

  32. Nymphetamine

    Hi,

    Just wondering could anyone give step by step instruction, I have ps4 with this version I don’t know if the script it self will put it on the usb drive or directly put in the web explorer of the ps4. kindly please help. Thanks

  33. Nymphetamine

    I tried the given instruction in the page of GitHub but I have this error.

    C:\Users\Nymphetamine\Desktop\PS4-3.55-Code-Execution-PoC-master>python fakedns.py -c dns.conf
    File “fakedns.py”, line 281
    print “>> Built NONEFOUND response”
    ^
    SyntaxError: Missing parentheses in call to ‘print’

    SAME EVEN I REMOVE THE WORD PYTHON and have also the error in server like this.

    C:\Users\Nymphetamine\Desktop\PS4-3.55-Code-Execution-PoC-master>python server.py
    File “server.py”, line 33
    print data_string
    ^
    SyntaxError: Missing parentheses in call to ‘print’

    I HAVE PYTHON IN WINDOWS AND XAMPP. but i have no luck i hope someone can provide complete details and step by step.. sorry for noob question. Thanks

    • op6yz

      You have Python 3 on you computer, but the script is written for Python 2. It would be easier for you to use Python 2, as there are more stuff that have been changed in Python 3 standart libraries (socket server packages and etc.).

      Regarding your compilation issue, there have to be:
      print (“>> Built NONEFOUND response")
      print (data_string)

  34. Christopher Williams

    Hi, I have a question. I have a ps4 that is on OFW 3.50 and I have turned off its WIFI so I ensure that it doesn’t update if it somehow manages to go into rest mode. I have to ask, should I update to 3.55 or stay on 3.50? I know lower is better, however, in terms of the VITA you had to update to 3.18 to have that exploit.

    So should I update to 3.55 or stay?

    • PlaGeRaN

      Do what i did, download the recovery and update files to your pc, just incase theres a break threw. You can update using usb threw safemode

  35. op6y

    magas23 from nextgenupdate com brought a good idea (he has deployed the webkit playground for PS4 3.55). So anybody can try the exploit on his own without python, webserver and other things. Anybody can fork https://github.com/Cryptogenic/PS4-Playground-3.55 with his/her own github account and setup Github Pages (https://help.github.com/articles/creating-project-pages-manually/). It’s super easy. After you setup GitHub pages go open it in web browser on your PS4. PROFIT.
    For instance I just created one so you can skip that step and just go to https://haxep.github.io/PS4P/index.html directly from you PS4 web browser.

    Thanks to Cryptogenic for working on PS4Playground that is based on Fire30’s for exploit port.

  36. David Billings

    “355playground.netau.net” this link will just simplify what is available for the ps4 on 3.55 at this time.

  37. PlaGeRaN

    Downloaded firmware files for 355 lol

  38. ali

    please anyone send me step by step for 3.55 playground i,m so confused .. 🙁 .. what is xploit webkit nd redeye etc…. ?