Random Homebrew: 69 Stopper
Stop a counter as close to 69 as possible
Friends: Coding 'n Cracking - Nymphaea - PS3 Forum - darkforestgroup - daxhordes.org - Tgames - coldbird - gopsp.it - pspstation.org - prometheus - hgoel.info - MakeSmartTV - ps vita

Exploit achieved

Post crashes / information about (potential) security issues over here! Sensitive information might be deleted without notice.

Re: Exploit achieved

Postby wololo » Mon Apr 16, 2012 5:56 am

This is not surprising at all.
Your issues happen on 6.60 and not on 5.50 because Sony prevents us from doing syscall estimations on 6.60. Hence, if the game is not importing a function used by VHBL, VHBL will crash when trying to use that function.

second, the part of VHBL that requires the most functions at startup is the part that frees memory. This is probably why both your games are crashing at this step.
I have a few US PSN codes to sell for a reasonable price (cheaper than pcgamesupply). PM me if interested, 1st come 1st serve basis..

Looking for guest bloggers and news hunters here at wololo.net, PM me!
wololo
Site Admin
 
Posts: 4641
Joined: Wed Oct 15, 2008 12:42 am
Location: Japan

Re: Exploit achieved

Postby xerpi » Mon Apr 16, 2012 9:57 am

Yesterday wth helped me and I could pause one thread on the loader, it was the music thread an I know it worked because the music didn't play but it still crashes cause another thread is causing trouble so today I try to pause it and see if it works.
User avatar
xerpi
HBL Collaborator
 
Posts: 94
Joined: Sat Apr 23, 2011 10:45 am
Location: Near Barcelona

Re: Exploit achieved

Postby m0skit0 » Mon Apr 16, 2012 12:11 pm

Terminate & delete the threads instead of pausing them (or after pausing them).
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
User avatar
m0skit0
Guru
 
Posts: 4786
Joined: Mon Sep 27, 2010 6:01 pm

Re: Exploit achieved

Postby wth » Tue Apr 17, 2012 10:52 am

m0skit0 wrote:Terminate & delete the threads instead of pausing them (or after pausing them).

his game doesn't import anything but sceKernelExitThread() to terminate threads
Everybody's Tennis really imports more functions indeed ^^' And I don't even speak of Motorstorm xD Motorstorm imports even more
wth
HBL Developer
 
Posts: 587
Joined: Wed Aug 31, 2011 4:44 pm

Re: Exploit achieved

Postby wololo » Tue Apr 17, 2012 10:55 am

wth is right.
However I added recently in the svn, thanks to JJS's help, a few things that could help with this situation:
viewtopic.php?f=4&t=10815&start=10#p136281
I have a few US PSN codes to sell for a reasonable price (cheaper than pcgamesupply). PM me if interested, 1st come 1st serve basis..

Looking for guest bloggers and news hunters here at wololo.net, PM me!
wololo
Site Admin
 
Posts: 4641
Joined: Wed Oct 15, 2008 12:42 am
Location: Japan

Re: Exploit achieved

Postby m0skit0 » Tue Apr 17, 2012 1:46 pm

Isn't that about FPL? Is there any way we can get info on where the threads are executing? It might be possible to inject a call to sceKernelExitThread() and make the thread exit itself.
I wanna lots of mov al,0xb
Image
"just not into this RA stuffz"
User avatar
m0skit0
Guru
 
Posts: 4786
Joined: Mon Sep 27, 2010 6:01 pm

Re: Exploit achieved

Postby wololo » Tue Apr 17, 2012 1:51 pm

m0skit0 wrote:It might be possible to inject a call to sceKernelExitThread() and make the thread exit itself.

Yup, but our current implementation is not enough to fix the issue:
http://code.google.com/p/valentine-hbl/ ... tail?r=138

But I think it's better to use the stuff I described above, it's not only about the FPL, it helps importing several functions, and the ones for threads are probably there.
I have a few US PSN codes to sell for a reasonable price (cheaper than pcgamesupply). PM me if interested, 1st come 1st serve basis..

Looking for guest bloggers and news hunters here at wololo.net, PM me!
wololo
Site Admin
 
Posts: 4641
Joined: Wed Oct 15, 2008 12:42 am
Location: Japan

Previous

Return to Security

Who is online

Users browsing this forum: Bing [Bot] and 1 guest