Advertising (This ad goes away for registered users. You can Login or Register)

VHBL exploits for 3.30+ from qwickrazor87

VHBL (Vita Half Byte Loader) is an open source tool to load PSP homebrews on the Playstation Vita.
VHBL can be downloaded at http://wololo.net/vhbl
samsara
Posts: 145
Joined: Tue Dec 03, 2013 11:57 pm

VHBL exploits for 3.30+ from qwickrazor87

Post by samsara » Mon Jan 12, 2015 10:52 am

qwickrazor87 just updated the binloader for the 3.18 exploits for the big leak last year in addition to the patches to allow them to work on FW 3.30+.

https://twitter.com/qwikrazor87/status/ ... 5366202368

This is not for end-user yet. Should be pretty easy to port some of the older exploits though. qwick may want to announce this himself later though so this is just a notice for the developers lurking here.

For exploit source, since zload is down, Conjo has a mirror:
viewtopic.php?f=23&t=39712&start=10#p372430

Edit; moved from VHBL subforums.
Advertising

User avatar
The Z
VIP
Posts: 5505
Joined: Thu Jan 27, 2011 4:26 pm
Location: Deutschland
Contact:

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by The Z » Mon Jan 12, 2015 5:18 pm

Keep in mind that Sudoku got patched in 3.35 and every other of these games is pretty much useless if you intend to do anything with it that is bigger than 1MB.

Setting up a VHBL bubble should still work, though.
Advertising
White PSV TV - 32GB - 3.65 CFW
White PSV 1000 - 32GB - 3.65 CFW
2x PSV 2000 - 32/64GB - 3.65 CFW
PSP Fat 1000 - TA-081 - 6.61 ME-2.3
PSP Slim 2000 - TA-085¹ - 6.61 ME-2.3
4x PSPgo & 1x PSP 3kº⁴ᶢ - 6.61 LME-2.3∞

jeerum
Posts: 52
Joined: Tue Oct 05, 2010 2:16 pm
Contact:

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by jeerum » Mon Jan 12, 2015 5:45 pm

Patapon 2 EU crashes and wont load simple hello world
Inernational Athletic's EU corrupted savedata
Ps2- PsP - Ps3 - PsVita - Ps4 - Ps4 pro

samsara
Posts: 145
Joined: Tue Dec 03, 2013 11:57 pm

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by samsara » Mon Jan 12, 2015 5:51 pm

Was going to try updating some of them but my psp died over the vacation. Any way to get the game key without a psp?
Last edited by samsara on Mon Jan 12, 2015 7:10 pm, edited 1 time in total.

jeerum
Posts: 52
Joined: Tue Oct 05, 2010 2:16 pm
Contact:

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by jeerum » Mon Jan 12, 2015 6:23 pm

samsara wrote:Was going to try updating some of them but my died over the vacation. Any way to get the game key without a psp?
ppsspp run iso and get from Log - search "Game key"
Ps2- PsP - Ps3 - PsVita - Ps4 - Ps4 pro

doctorgoat
Posts: 264
Joined: Sat Jan 03, 2015 12:19 am

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by doctorgoat » Mon Jan 12, 2015 7:13 pm

Someone more talented than me:

http://www.filedropper.com/ulus10461disgaea006

Here's an uncompressed copy of Disgaea 2 US' save that's already been set up as a basic h.bin loader.

Disgaea EU and JP were publicly exploited, but this wasn't. It's probably useless aside from this. It might not be, but w/e.

I've spent way too long on this and hopefully someone here can do something better. A VHBL bubble would be great.

Loader is at 8463D, in memory at 0x08DC53C0.

Overflow begins at 1106 and has a jump address at 11B3. In memory, it's at 0x08D41F33.

jeerum
Posts: 52
Joined: Tue Oct 05, 2010 2:16 pm
Contact:

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by jeerum » Mon Jan 12, 2015 7:48 pm

doctorgoat wrote:Someone more talented than me:

http://www.filedropper.com/ulus10461disgaea006

Here's an uncompressed copy of Disgaea 2 US' save that's already been set up as a basic h.bin loader.

Disgaea EU and JP were publicly exploited, but this wasn't. It's probably useless aside from this. It might not be, but w/e.

I've spent way too long on this and hopefully someone here can do something better. A VHBL bubble would be great.

Loader is at 8463D, in memory at 0x08DC53C0.

Overflow begins at 1106 and has a jump address at 11B3. In memory, it's at 0x08D41F33.
have you control over ra register?
Ps2- PsP - Ps3 - PsVita - Ps4 - Ps4 pro

doctorgoat
Posts: 264
Joined: Sat Jan 03, 2015 12:19 am

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by doctorgoat » Mon Jan 12, 2015 8:02 pm

The jump address and the memory address listed after that are the same thing. They're both controlling ra.

That save's already loading an h.bin file. It's just useless in my hands.

Demonstration:
https://www.youtube.com/watch?v=jO0AvGNUyz8

edit:
http://www.filedropper.com/dumps
Memory dump, decrypted file binary, UIDlist.

I also found that causing enough havoc in the game's program would lead to the actual Vita UI becoming sluggish and unresponsive, but that probably doesn't mean anything.

EDIT:
There have been two major releases of Disgaea 2. Use the US PSN version for debugging, not the original. Use the release pa-d2upsn.

User avatar
DarkenLX
Posts: 260
Joined: Tue May 14, 2013 5:44 pm

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by DarkenLX » Wed Jan 14, 2015 11:08 pm

any word on a fixed version of arcade darts? i could not find any suitable jump addresses hope someone had better luck 3.18 exploit does still crash 3.3x but wont launch tnv or vhbl in current state so not sure the issue..
PsVita 1: OLED Model 3G [3.36] [PSN?: Y]
PsVita 2: OLED Model 3G [mOFW3.00/eCFW] [PSN? :N]

doctorgoat
Posts: 264
Joined: Sat Jan 03, 2015 12:19 am

Re: VHBL exploits for 3.30+ from qwickrazor87

Post by doctorgoat » Thu Jan 15, 2015 12:16 am

DarkenLX wrote:any word on a fixed version of arcade darts? i could not find any suitable jump addresses hope someone had better luck 3.18 exploit does still crash 3.3x but wont launch tnv or vhbl in current state so not sure the issue..
Nothing's going to launch TN on something over 3.18 for now.

Post Reply

Return to “Vita Half Byte Loader”