Join Us and become a Member for a Verified Badge on Discord to access private areas with the latest PS4 PKGs.
PS4 Jailbreaking       Thread starter PSXHAX       Start date Mar 29, 2017 at 2:03 PM       119,049       220      
Following the PS4 Playground for Firmware 3.55 and PS4 3.55 File Browser, today PlayStation 4 developer qwertyoruiopz made available a PS4 4.0x WebKit RCE Exploit dubbed JailbreakMe PS4 4.0x with details via Twitter below! :D

PS4 Link (click go 3 times): http://rce.party/ps4/ / local rce.rar (3 KB) via Nesterwork / Local RCE v2.rar (6 KB) via Nesterwork / Local rce v3.rar (12 KB) via Nesterwork

According to the developer's Tweets below, the bug used is a stack uninit read yielding UaF and the actual exploit does nothing but give you read/write/infoleak arbitrary JS object primitives.

He also confirmed the exploit won't work on PS4 4.50 as Sony updated WebKit past a vulnerable version unfortunately, but it's still an entry point for those on PlayStation 4 OFW 3.55 through 4.07. (y)

C8MRP_eXkAAwFYE.jpgThat said, if you give it a try on a PlayStation 4 under 4.50 and receive a ffff000000000539 error prompt it's expected output for the exploit's success.

Spoiler: Related Twitter Tweets
Cheers to @DarkElementPL, @DoxyMarket, @hyndrid, @ryan111, @toni1988 and @vettegast for sharing the news in the PSXHAX Shoutbox! <3
JailbreakMe PS4 4.0x PS4 4.0x WebKit RCE Exploit by Qwertyoruiop.jpg
 

Comments

HydrogenNGU

Element
Senior Member
Contributor
Added to the OP now, thanks @Nesterwork! ;-)

Also from mntadr56 is the jailbreakME expl.js file for those interested:

Download: expl.js (13.2 KB)

That guy unblocked me from Twitter after months from being a skid. I wonder why :)
Pegasus is not the same as the WebKit exploit.
 

JackQ

Senior Member
Contributor
I don't know why but now when I am pressing the "go" button its suck and I need to load the page again.. I am on 4.05.. no way sony patched it without me updating right?
 

umbjolt

Member
Contributor
Restart ur ps. Try 1s presses with a 1s delay between presses
Thanks but no dice. Before I sent the message, it works one time but shown that error when I press the second button after the "exploit succedeed" but now, I can't go deeper. Clicking go on my console make that error appear, dunno why
 

:fire: Latest Help Topics

Top