Join Us and become a Member for a Verified Badge on Discord to access private areas with the latest PS4 PKGs.
PS4 Jailbreaking       Thread starter PSXHAX       Start date Mar 29, 2017 at 2:03 PM       119,053       220      
Following the PS4 Playground for Firmware 3.55 and PS4 3.55 File Browser, today PlayStation 4 developer qwertyoruiopz made available a PS4 4.0x WebKit RCE Exploit dubbed JailbreakMe PS4 4.0x with details via Twitter below! :D

PS4 Link (click go 3 times): http://rce.party/ps4/ / local rce.rar (3 KB) via Nesterwork / Local RCE v2.rar (6 KB) via Nesterwork / Local rce v3.rar (12 KB) via Nesterwork

According to the developer's Tweets below, the bug used is a stack uninit read yielding UaF and the actual exploit does nothing but give you read/write/infoleak arbitrary JS object primitives.

He also confirmed the exploit won't work on PS4 4.50 as Sony updated WebKit past a vulnerable version unfortunately, but it's still an entry point for those on PlayStation 4 OFW 3.55 through 4.07. (y)

C8MRP_eXkAAwFYE.jpgThat said, if you give it a try on a PlayStation 4 under 4.50 and receive a ffff000000000539 error prompt it's expected output for the exploit's success.

Spoiler: Related Twitter Tweets
Cheers to @DarkElementPL, @DoxyMarket, @hyndrid, @ryan111, @toni1988 and @vettegast for sharing the news in the PSXHAX Shoutbox! <3
JailbreakMe PS4 4.0x PS4 4.0x WebKit RCE Exploit by Qwertyoruiop.jpg
 

Comments

cebs

Member
Contributor
Verified
I read on twitter he is updating to 4.06, i'm a little bit concerned cause i'm on 4.07 (n)
 

psik

Senior Member
Contributor
Verified
I think not work (today we have only webkit exploit), but you can upgrade your ps4 to 4.06 official.
no we actually have both webkit and kernel exploit up to TOGETHER for up to 4.06 according to qwertyoruiop who has found BOTH, it depends on whether qwertyoruiop is going to release it (the kernel exploit part) or not! so there you have it.
 

MaSsAcReuR

Senior Member
Contributor
as psik said, the kernel exploit is available on 4.50 but there is no webkit exploit available over 4.06. So stay put on 4.06 for now.

Fingers crossed that between qwertyoruiop and the Rebug team we can see something soon !!
 

JackQ

Senior Member
Contributor
Actually, the public webkit exploit works up to 4.07..

But I would hold off updating any way higher then 4.05 for now...

If the kernel will be released, I am personally updating to at least 4.07.
 

:fire: Latest Help Topics

Top