Desert StuntsRandom Homebrew: Desert Stunts
This full 3D homebrew contains 7 vehicles and 5 missions where you need to beat the timer. The cute [...]
Friends: Coding 'n Cracking - Nymphaea - PS3 Forum - darkforestgroup - daxhordes.org - Tgames - coldbird - gopsp.it - pspstation.org - prometheus - hgoel.info - MakeSmartTV - ps vita

Kxploits questions

Kxploits questions

Postby Theredbaron » Tue Jan 29, 2013 7:56 pm

With all the fuss around Kxploits, I thought I would ask a few questions, maybe learn a bit.

First up, here is what little I "think" I know.

Usermode exploits are game specific exploits that gives us access to anything that game would have access, so if it used a camera, we could have camera access, ect. Nothing more nothing less. That is what makes compatibility a problem.

Kxploits are exploits in the psp emu's kernel. These give us access to the whole, emulated, hardware. This means they are more compatible, but harder to find.

Now question time.

Kxploits are kernel mode, thus am I correct in assuming that they have nothing to do with any one game? You simply need any random usermode exploit to launch the kxploit? Ok, maybe not random, but you get my point So once a kxploit is released, it can be backported to earlier VHBL releases?

If that is the case, why are there CEF/ARK releases? I would thing it would be of much more use to the community to not release a kxpolit intill it is patched by sony. Case in point the ones fixed. If Uno was released as a VHBL release, then come 2.05 and the kxploits were fixed, you can release them for Uno. Why would they release a Kxploit that sony doesn't know about, instead of waiting till it is fixed. That way they are keeping a backlog of kxploits, as it were, and people can just update to a kxploit when it is fixed on a newer firmware.


Or, is it just because Sony is so slow normally, and kxploits are not found till they are released by homebrew devs?
Vita 3G - 4GB/8GB - 2.02 TN-V
User avatar
Theredbaron
 
Posts: 436
Joined: Wed Feb 15, 2012 8:47 pm

Re: Kxploits questions

Postby yifanlu » Tue Jan 29, 2013 9:11 pm

Theredbaron wrote:With all the fuss around Kxploits, I thought I would ask a few questions, maybe learn a bit.

First up, here is what little I "think" I know.

Usermode exploits are game specific exploits that gives us access to anything that game would have access, so if it used a camera, we could have camera access, ect. Nothing more nothing less. That is what makes compatibility a problem.

Kxploits are exploits in the psp emu's kernel. These give us access to the whole, emulated, hardware. This means they are more compatible, but harder to find.

Now question time.

Kxploits are kernel mode, thus am I correct in assuming that they have nothing to do with any one game? You simply need any random usermode exploit to launch the kxploit? Ok, maybe not random, but you get my point So once a kxploit is released, it can be backported to earlier VHBL releases?

If that is the case, why are there CEF/ARK releases? I would thing it would be of much more use to the community to not release a kxpolit intill it is patched by sony. Case in point the ones fixed. If Uno was released as a VHBL release, then come 2.05 and the kxploits were fixed, you can release them for Uno. Why would they release a Kxploit that sony doesn't know about, instead of waiting till it is fixed. That way they are keeping a backlog of kxploits, as it were, and people can just update to a kxploit when it is fixed on a newer firmware.


Or, is it just because Sony is so slow normally, and kxploits are not found till they are released by homebrew devs?

I don't think Sony takes the time and money to sit and find kxploits. Only when they're released do Sony go in and fix them. For example, the latest ones with the kermit wlan drivers apparently didn't do kernel security checks so all the functions are vulnerable. If sony did security audits, they would have found it a while ago, but I guess it's more efficient for them to just patch it when outsiders take the time to find it.
yifanlu
Guru
 
Posts: 302
Joined: Sun Mar 11, 2012 6:42 am

Re: Kxploits questions

Postby Acid_Snake » Tue Jan 29, 2013 9:20 pm

well they do take extra measures with games created by the same company as a known exploited game, one example is seven wonders of the ancient world, having the same exploit (and being created by the same compaby) as super collapse 3, sony patched it without us knowing it was exploitable
"V2h5IGFyZSB5b3UgcmVhZGluZyBteSBzaWduYXR1cmU/\n".decode("base64")
My forum:
Console Heaven
My Homebrews:
pyMenu 0.3.2, multiBootMenu V3, PSvid 3.0, PSP Tools 0.2
User avatar
Acid_Snake
Moderator
 
Posts: 2051
Joined: Tue May 01, 2012 11:32 am
Location: Behind you!

Re: Kxploits questions

Postby yifanlu » Tue Jan 29, 2013 9:45 pm

Stupid question, how do they patch game exploits without patching the games? Is it done on the emulator side or on the Vita side? I'm guessing there's some code in some prx module that makes sure the savefiles are in a correct format, but what do they really do?
yifanlu
Guru
 
Posts: 302
Joined: Sun Mar 11, 2012 6:42 am

Re: Kxploits questions

Postby Acid_Snake » Tue Jan 29, 2013 9:51 pm

first few exploits (as well as exploits released for the psp when the vita didn't existed) where patched with a prx (there is a thread about it that explains it better). Newer exploits (ever since Monster Hunter) patch it on the vita side, probably cause sony thinks the pspemu is not secure, even though you need a new exploit if you want to unpatch an old exploit :roll:
"V2h5IGFyZSB5b3UgcmVhZGluZyBteSBzaWduYXR1cmU/\n".decode("base64")
My forum:
Console Heaven
My Homebrews:
pyMenu 0.3.2, multiBootMenu V3, PSvid 3.0, PSP Tools 0.2
User avatar
Acid_Snake
Moderator
 
Posts: 2051
Joined: Tue May 01, 2012 11:32 am
Location: Behind you!

Re: Kxploits questions

Postby JVC » Tue Jan 29, 2013 10:37 pm

Acid_Snake wrote: even though you need a new exploit if you want to unpatch an old exploit :roll:

Very true,it will take time for a development on a more serious note,to stop the cat and mouse game everyone is annoyed with,but has to live with it.
PS Vita WiFi/3G=2.02 FW.
19,EC,nuff said.
Skype:jvc.1993
Image
User avatar
JVC
 
Posts: 460
Joined: Wed Apr 18, 2012 1:38 am
Location: Cuenca,EC

Re: Kxploits questions

Postby The Z » Tue Jan 29, 2013 10:56 pm

Theredbaron wrote:Why would they release a Kxploit that sony doesn't know about, instead of waiting till it is fixed.
[...]
kxploits are not found till they are released by homebrew devs?

Blue answers red.
White PS Vita Wifi - 36 GB - 2.12 Vita HBL
White PSP Fat 1000 - TA-081 - 6.60 ME-1.8
Black PSP Slim 2000 - TA-085 - 6.60 ME-1.8
White PSP Go N1000 - TA-091 - 6.60 LME-1.8
Black PSP Street E1000 - TA-096 - 6.60 LME-1.8
User avatar
The Z
VIP
 
Posts: 2772
Joined: Thu Jan 27, 2011 4:26 pm
Location: NRW, Germany

Re: Kxploits questions

Postby Omega2058 » Tue Jan 29, 2013 11:10 pm

yifanlu wrote:Stupid question, how do they patch game exploits without patching the games?

For the most part, this is done via savedata_utility.prx. Inside, you'll find a list of the gameID's which are patched.
uOFW: GitHub
Latest dev stuff: DropBox
Follow me on Twitter: Twitter
User avatar
Omega2058
 
Posts: 47
Joined: Tue Sep 28, 2010 4:27 am


Return to Security/Homebrews

Who is online

Users browsing this forum: Bing [Bot] and 1 guest