Hi Sethpaien!Sethpaien wrote:Hi, Thank you all for your work and sharing it.
I'm trying to find offsets for 3.35. (I should update to 3.36 but it will be less... interesting)
I have found SceWebKit module and get modules import infos from it.
So I get two offsets : scewkbase_off and scelibcentry_off,
But no success finding Scelibc module with scanm so scelibcbase_off offset is missing.
Is there any way to get an address closer from Scelibc module (and others) ? in which range of address should I found it ?
Exploit often crash and I'm not sure to follow the right way.
I'm very interested on porting the exploit for the missing 3.30 and 3.35 firmware versions (for the sake of completeness).
You can get a close address for SceLibc by looking at it's first import used in SceWebKit. Just send me a PM and I'll be happy to help you port the exploit.
