Yifan Lu shares his story of successfully hacking the PS vita
It’s been an important week for the PS vita hacking scene, with the release of the Vita Rejuvenate hack, the very first native hack on the PS Vita, by Yifan Lu.
Today, the hacker (who’s also known for being the first hacker to run custom code on the kindle touch, back in the days) reveals how he worked on exploiting the device, through a lengthy and super interesting blog post.
As Yifan Lu mentions, the majority of the post was actually written back in 2012, when he initially found the exploit. The reason we had to wait for so long before a release was that Yifan Lu was waiting for the exploit to be patched, or for another one to be found, before he would reveal this one. As of today, the exploit still exists in PSM, but PSM is being deprecated by Sony, hence the decision for the release.
Yifan Lu first explains how he approached the “black box” that is the vita, without access to the internals of the device, and how he decided to target the PSM and run a privilege escalation on it. The thought process is just extremely interesting to read. He also details how Sony counterattacked after he publicly released the source code for UVLoader (the homebrew loader used in Rejuvenate). By analyzing YifanLu’s work, they were able to slow down some of the hack progress, albeit never patching the critical bits. It’s interesting how an attempt to help the scene actually ended up going against it, in a way.
I’ll let you read the actual article for all the details… and I’ll leave you with this historic video, published by Yifan today: the very first RAM dump of the ps vita, made back in 2012:
Been reading through the article when I saw it tweeting. Very interesting and shines light on just how much work goes into these “exploits”… Thanks Yifan! Your work is greatly appreciated.
There is always a hack, because people make mistakes 🙂
Thanks Yifan Lu
hello yifanlu, please tell us about that hello world you made in 2012 (a very impressive 3d cube)…
how to make the .elf homebrews?
So he have been looking for another exploit since 2012 ?
How can you write that he “successfully” hacked it when you need to have had installed a program on the console that isn’t even available to people anymore and he only “hacked” it by using software provided by the company who developed the hardware he “hacked”.
More like an exploit than a hack if you ask me.
No one asked you
Oooooooohhhhhhh!! Get Rekt scrub!
Kudos Yifan Lu, you’re hard work is greatly appreciated!
The cost of protection is justified You can at a reasonable speed protectors protect your iPhone 6,grovemade maple6 plus belt clip is really impressive and available colors and patterns,maple and leather iphone case, and iPhone Laser cutting is perfect for iPhone To protect your phone quickly wipe clear appearance always sparkling Shell to protect your love machine, phone and a variety of technical support, to bring you a better feel, stylish case can be perfectly combined with a mobile phone,sp