Random Homebrew: IRDA File Transferer
program to transfer files from one PSP to another via infrared.
Friends: Coding 'n Cracking - Nymphaea - PS3 Forum - darkforestgroup - daxhordes.org - Tgames - coldbird - gopsp.it - pspstation.org - prometheus - hgoel.info - MakeSmartTV - ps vita

Finding the memory layout of the vita?

Re: Finding the memory layout of the vita?

Postby m0skit0 » Sat Mar 24, 2012 8:00 pm

yifanlu wrote:Doesn't the EBOOT.BIN on the PS3 use the ELF format? If the Vita does the same, we can use the program headers in the elf files.

So what? PSP too uses ELF format. In fact Linux too uses ELF, as does OS X (IIRC). But on Sony's devices those ELFs are fully encrypted. And what you want to do with program headers anyway?
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
User avatar
m0skit0
Guru
 
Posts: 4787
Joined: Mon Sep 27, 2010 6:01 pm

Re: Finding the memory layout of the vita?

Postby yifanlu » Sat Mar 24, 2012 8:32 pm

m0skit0 wrote:
yifanlu wrote:Doesn't the EBOOT.BIN on the PS3 use the ELF format? If the Vita does the same, we can use the program headers in the elf files.

So what? PSP too uses ELF format. In fact Linux too uses ELF, as does OS X (IIRC). But on Sony's devices those ELFs are fully encrypted. And what you want to do with program headers anyway?

Wait, so even if we can decrypt the vita beta pkgs, the actual binaries still cannot be decrypted? Darn.
yifanlu
Guru
 
Posts: 302
Joined: Sun Mar 11, 2012 6:42 am

Re: Finding the memory layout of the vita?

Postby Green Ranger » Sat Mar 24, 2012 8:51 pm

sss0 wrote:
m0skit0 wrote:That has a common name: fake.


It was actually PSV Beta/Retail (<1.00) packages decryption programs. These packages were encrypted with the PSP AES PKG Key, which is available.

I wonder what happened to this, though: http://streetskaterfu.blogspot.com.br/2 ... -flaw.html
I remember SKFU stating that he could decrypt/encrypt PSV savedata... But I don't know if he's trustworthy... Such a thing could probably be used for a buffer overflow, couldn't it? Not an exploit, as we don't have the memory layout, but at least a crash.
It could possibly be a fake too and that was actually a Beta package that he decrypted with the PSP key. Again, I don't know if SKFU is trustworthy


SKFU is trustworthy, and he released some useful Programms for the Vita. Yifanlu schould ask him, because he worked on it month ago.
Before you talk, listen. Before you react, think. Before you criticize, wait. Before you pray, forgive. Before you quit, try.
User avatar
Green Ranger
 
Posts: 129
Joined: Mon Mar 05, 2012 7:41 pm
Location: NRW Germany

Re: Finding the memory layout of the vita?

Postby yifanlu » Sat Mar 24, 2012 9:00 pm

Green Ranger wrote:
sss0 wrote:
m0skit0 wrote:That has a common name: fake.


It was actually PSV Beta/Retail (<1.00) packages decryption programs. These packages were encrypted with the PSP AES PKG Key, which is available.

I wonder what happened to this, though: http://streetskaterfu.blogspot.com.br/2 ... -flaw.html
I remember SKFU stating that he could decrypt/encrypt PSV savedata... But I don't know if he's trustworthy... Such a thing could probably be used for a buffer overflow, couldn't it? Not an exploit, as we don't have the memory layout, but at least a crash.
It could possibly be a fake too and that was actually a Beta package that he decrypted with the PSP key. Again, I don't know if SKFU is trustworthy


SKFU is trustworthy, and he released some useful Programms for the Vita. Yifanlu schould ask him, because he worked on it month ago.

I emailed him my potential exploit like two weeks ago and haven't heard a thing from him, so I don't think he's reading/responding to his emails.
yifanlu
Guru
 
Posts: 302
Joined: Sun Mar 11, 2012 6:42 am

Re: Finding the memory layout of the vita?

Postby wololo » Sun Mar 25, 2012 12:02 am

I will try to get in touch with him. He rarely reads email, but is quite often on skype.
I have a few US PSN codes to sell for a reasonable price (cheaper than pcgamesupply). PM me if interested, 1st come 1st serve basis..

Looking for guest bloggers and news hunters here at wololo.net, PM me!
wololo
Site Admin
 
Posts: 4642
Joined: Wed Oct 15, 2008 12:42 am
Location: Japan

Re: Finding the memory layout of the vita?

Postby sss0 » Sun Mar 25, 2012 5:03 am

wololo wrote:I will try to get in touch with him. He rarely reads email, but is quite often on skype.


Thank you, wololo.
That'd be really nice
sss0
 
Posts: 55
Joined: Sat Mar 24, 2012 2:02 am

Re: Finding the memory layout of the vita?

Postby wololo » Tue Mar 27, 2012 12:26 pm

So, I contacted SKFU and he confirmed to me that even though the firmware package itself can be extracted and decrypted, the files inside are still encrypted. We therefore both agreed that it was not worth the risk for him to share any files he could have access to.
I have a few US PSN codes to sell for a reasonable price (cheaper than pcgamesupply). PM me if interested, 1st come 1st serve basis..

Looking for guest bloggers and news hunters here at wololo.net, PM me!
wololo
Site Admin
 
Posts: 4642
Joined: Wed Oct 15, 2008 12:42 am
Location: Japan

Re: Finding the memory layout of the vita?

Postby stingray1059 » Tue Mar 27, 2012 1:42 pm

yifanlu wrote:Doesn't the EBOOT.BIN on the PS3 use the ELF format? If the Vita does the same, we can use the program headers in the elf files.


hmm.. talking about ps3.... is it possible to have save game exploit in the ps3? just like the vita, psp, wii , ps2 and xbox?
stingray1059
 
Posts: 48
Joined: Thu Apr 28, 2011 10:34 am

Re: Finding the memory layout of the vita?

Postby m0skit0 » Tue Mar 27, 2012 2:23 pm

Yes, but please, ask such questions in the PS3 forum and avoid off-topic-ing.
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
User avatar
m0skit0
Guru
 
Posts: 4787
Joined: Mon Sep 27, 2010 6:01 pm

Re: Finding the memory layout of the vita?

Postby jigsaw » Tue Mar 27, 2012 5:15 pm

have u guys read this?

http://www.playstation.com/pss/develope ... erview.pdf

It confirms that there's a mono running inside of vita. All the games/apps rely on mono env.
And Sony is following Apple to create a more open ecosystem, with evil c#. Sad.
jigsaw
 
Posts: 255
Joined: Sat Dec 18, 2010 12:49 pm

PreviousNext

Return to Security/Homebrews

Who is online

Users browsing this forum: No registered users and 5 guests