Advertising (This ad goes away for registered users. You can Login or Register)

PSN Game Exploit Project! [For PSP & PSVita]

Forum rules
Forum rule Nº 15 is strictly enforced in this subforum.
FoX
Posts: 17
Joined: Sat Oct 30, 2010 4:15 pm

PSN Game Exploit Project! [For PSP & PSVita]

Post by FoX »

Hello Devs i'm working on new hbl port.I can controll my crash who want help me? I can give my files to devs THX ;)

This game available on all PSNs.


Image;
Image

Sorry for my english...
Advertising
fate6
Big Beholder
Posts: 7599
Joined: Fri Mar 09, 2012 1:18 am
Location: [fate6@Canterlot ~]$

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by fate6 »

let me show you a little convo I and yosh had about your crash
[01:58:12 PDT] NoKi: lolz oh there is a guy asking for help on a exploit
[01:58:14 PDT] NoKi: viewtopic.php?f=6&t=12187&p=151249#p151249
[01:59:00 PDT] yosh: oh good
[01:59:06 PDT] yosh: but I have no time for now lol
[01:59:13 PDT] NoKi: is it a good crash ?
[01:59:37 PDT] yosh: ah xD is that really all he has ?
[01:59:40 PDT] yosh: the it's useless lol
[02:00:04 PDT] NoKi: someone should give him the bad news >__<
[02:00:13 PDT] yosh: or at elast doesn't look like he got any control
[02:00:28 PDT] yosh: well maybe he woud be able to exploit that with a lot of luck xD
[02:01:09 PDT] NoKi: hmm I think he is giving away to much info on his thread :/
Advertising
Image
anon wrote:If you can't trust a 600 year old vampire in a prepubescent girl's body, who can you trust?
m0skit0
Guru
Posts: 3817
Joined: Mon Sep 27, 2010 6:01 pm

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by m0skit0 »

What do you mean by "I can control my crash"?
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
hippi97
Posts: 137
Joined: Mon Jan 03, 2011 10:21 am
Location: C:\Finland.exe
Contact:

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by hippi97 »

Here is one game to "Don't try" -list: Sega Rally Revo. It only crashes. No control of registers.
My game consoles:
[spoiler]PSP model: 3004 [Model: 03g]
Firmware: 6.60 PRO-B10
PSP Model: E1004
Firmware: 6.60 PRO-C
PS Vita (hate that thing)
Firmware: 2.12
I also have PS3, XBOX, Gameboy, Gameboy andvance sp and Gameboy Micro[/spoiler]
My website: http://hene193.com
some1
HBL Collaborator
Posts: 139
Joined: Sun Dec 12, 2010 4:19 am

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by some1 »

First of all, you are not even showing the crash (the delay slot is what is crashing, not the jump).
Second of all, this is C0der-d or w/e.
way to keep a secret malloxis...erm jeerum
Hmm, a demo user mode exploit doesn't seem as important anymore, I wonder why... xP
m0skit0
Guru
Posts: 3817
Joined: Mon Sep 27, 2010 6:01 pm

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by m0skit0 »

some1 wrote:Second of all, this is C0der-d or w/e.
Wow and he still hasn't learn anything? What a waste-of-time guy...
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
Yoti
VIP
Posts: 369
Joined: Sun Oct 17, 2010 4:49 am
Location: Russia

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by Yoti »

some1 wrote:Second of all, this is C0der-d or w/e.
Fakers must die.
IF SOMEONE HAS AN 07G PSP-3000 PLZ CONTACT ME VIA PM.

Image
Do not forget about adb kill-server. Really.
m0skit0
Guru
Posts: 3817
Joined: Mon Sep 27, 2010 6:01 pm

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by m0skit0 »

Unlocking per n00neimp0rtant's request.
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
n00neimp0rtant
Posts: 30
Joined: Mon Jun 11, 2012 12:52 am

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by n00neimp0rtant »

I'm almost positive I know exactly which game he is talking about: I have been working with the same one. The crash posted by OP in the screenshot is NOT the overflow crash; it is a strange side effect that arises from having psplink.prx loaded into memory.

If you overflow a certain field in the save game file and load it, it totally crashes the game (which, by the way, is very very buggy and poorly written) once you go through the main menus and try to start up a game session. HOWEVER, if you have psplink.prx set to load into the game, something happens that the game doesn't like and it crashes out way early, giving that atrac3-related crash you can see in the screenshot. This presents a problem: I know that some vulnerability exists because the doctored gamesave crashes the game, but I cannot get the crashlog using psplink because psplink itself causes a totally unrelated crash, even if you're not trying to load a modified save file. The game is so buggy, it breaks if psplink is loaded into memory, so psplink outputs that good-for-nothing, bogus crashlog in OP's screenshot.

With psplink.prx disabled:
[Game loads] → [Plugins loaded into game] → [Game exec begins] → [Doctored gamesave loads into memory] → [Navigate in-game menus] → [Start session in-game] → [CRASH]

With psplink.prx enabled:
[Game loads] → [plugins (including psplink.prx) loaded into game] → [Game exec begins] → [CRASH]

So here's what I need to know: are there other methods to dump crashes other than PSPLink? Or ways I could modify the gamesave to determine if any critical registers are being overwritten? Or, ideally, suggestions on how I could figure out how/why PSPLink is causing it to crash?
Yes, I'm the iOS dev/hacker of the same name.

Got Cydia? Add my beta repo http://n00neimp0rtant.dyndns.org/repo
m0skit0
Guru
Posts: 3817
Joined: Mon Sep 27, 2010 6:01 pm

Re: Free PSN Game Exploit Project! [For PSP & PSVita]

Post by m0skit0 »

PSPLink does not affect the game in any way. The game doesn't even know PSPLink is loaded, since PSPLink PRX is loaded into kernel space and not user space. So PSPLink cannot affect a game execution except if an exception is thrown. So, that's not a bogus crash. PSPLink captures all exceptions, and it seems that, if the game is so buggy, there will be quite a few exceptions thrown, so PSPLink simply captures them. Using gdb you can continue, which means the exception is ignored and you will get your crash. When not using PSPLink only an unrecoverable exception will froze the console.
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
Locked

Return to “Programming and Security”