Join Us and become a Member for a Verified Badge to access private areas with the latest PS4 PKGs.
PS4 Jailbreaking       Thread starter PSXHAX       Start date Dec 13, 2015 at 2:26 AM       26      
Status
Not open for further replies.
Following the previous update, PlayStation 4 developer CTurt has now confirmed the PS4 is officially jailbroken via PS4 Kernel Exploits with the ability to dump system RAM and more below!

PS4_Jailbreak.jpg

From Radikal-Gamez.net to quote, roughly translated:

Cturt through a tweet today, has confirmed that the PS4 could be said has already been hacked. We are still very green as to this issue but we have been having concurrent information.

Apparently it reports that could be effective for FW higher but that is waiting to be confirmed. For now, only those who are in 1.76 could soon enjoy their consoles released.

I was reading that console bundles of The Last of Us come with this firmware for those who still have not bought already have to start. As more information that WILL seep noted by the leave here.

Finally, from IRC comes the log below as follows:

[SorenAlke] here you-]NOR_DUMP.bin
[SorenAlke] bye
[toxuin] so. I've found a way to crash the system UI on ps4. Reproducible. Will it help anyone?..
[B7U3C50SS] it's useful to get a ram dump or so I've been told.
[toxuin] here's a video anyways:

[B7U3C50SS] okay. nice
[toxuin] it has access by url only, so should not come up in youtube search.
[B7U3C50SS] oh are you on 1.76?
[toxuin] nope.
[B7U3C50SS] i'm running 3.11.....
[B7U3C50SS] what are you running?
[toxuin] I'm running latest firmware, but this video was filmed awhile ago. I can still reproduce this on
latest firmware. Therefore had not urge to re-film this.
[B7U3C50SS] okay. i see
[B7U3C50SS] cool
[toxuin] I have no idea where to go from here with it but if it could possibly help anyone - glad to help.
[B7U3C50SS] try gettnig a ram dump or a dump of the kernel if even possible this way.. there shuould be a
targeted way of getting the kernel this way.
[B7U3C50SS] also.
[B7U3C50SS] well if you can overload the system you can try that..
[B7U3C50SS] i mean.
[B7U3C50SS] put in your usb..
[B7U3C50SS] asnd try it
[toxuin] I think it only crashes and restarts the UI, not reboots.
[B7U3C50SS] and* got any files from this ever?
[toxuin] Files? Like, from internal flash?
[B7U3C50SS] such as..
[B7U3C50SS] yes
[toxuin] nope. I play Destiny on it :-D
[B7U3C50SS] okay.
[B7U3C50SS] i'm gonna try this.
[B7U3C50SS] so yo ujust try connecting to the wifi overe and over on a wifi network? and you cause it to
crash loading it?
[toxuin] basically just start scanning progress twice before it finishes the first scan
[toxuin] it takes couple of tries to trigger
[B7U3C50SS] okay.
[toxuin] initially you have to be disconnected.
[B7U3C50SS] OKAY
[B7U3C50SS] WAS JUST GONNA ASK ABOUT THAT
[toxuin] got it? ^_^
[B7U3C50SS] ;)
[B7U3C50SS] yeah.
[toxuin] cool!
[B7U3C50SS] wait like completely signed out?
[B7U3C50SS] or..
[B7U3C50SS] disconnected as in.. just that's it
[toxuin] doesn't matter for psn. It crashes when it returns from wifi scan and does not expect that
[toxuin] just disconnect yourself from network, go scan, quickly go back and quickly go scan again
[B7U3C50SS] k
[toxuin] let it finish and boom!
[toxuin] it will be unresponsive for about 2s
[B7U3C50SS] i think this only works in some connections
[B7U3C50SS] not mine. :/
[toxuin] try it couple of times. It took me 3 takes to film the video :-D
[B7U3C50SS] yeah okay..
[B7U3C50SS] but i still don't quite get th procedure.
[B7U3C50SS] if you get anything
[B7U3C50SS] send it up here
[toxuin] okay. What's that USB thing you were mentioning?..
[B7U3C50SS] i said leve it in your PS4
[B7U3C50SS] leave*
[B7U3C50SS] when you do this..
[B7U3C50SS] so you might capture some internal flash. like a ram dump.
[B7U3C50SS] or even better..
[toxuin] like normal flash drive??
[B7U3C50SS] hopefully if that's plausible.
[toxuin] why would sony do dis? :-D
[B7U3C50SS] do what?
[B7U3C50SS] lol
[B7U3C50SS] make that bug?
[B7U3C50SS] they don't know
[B7U3C50SS] about it
[B7U3C50SS] so don't tell 'em
[B7U3C50SS] ;)
[toxuin] if (crash) { dump cool stuff to USB1}
[B7U3C50SS] oh. i don't thin kthe ywould
[B7U3C50SS] i don't think they would.***
[B7U3C50SS] typos...
[B7U3C50SS] but.. it's always possible to get cool stuff from overloading it, right?
[toxuin] lol maybe. Me no kernel developer. Me code android.
[B7U3C50SS] lol
[B7U3C50SS] okay
[B7U3C50SS] any any good?
[B7U3C50SS] wow i typed any twice
[toxuin] I like my code. And I get paid for it. Does it makes me any good?))
[toxuin] I'll try to trigger the crash with USB inserted. Who knows whats gonna happen then.
[B7U3C50SS] okay.
[B7U3C50SS] maybe you can go one better
[B7U3C50SS] just try not to brick.
[B7U3C50SS] XD
[toxuin] :-D
[B7U3C50SS] :)
[toxuin] that would be sad.
[B7U3C50SS] yep
[B7U3C50SS] gtg for now
 

Comments

That's what i thought. reason why i told him about dumping. btw it was @SorenAlke who told me abou the RAM dumping process. that's why i said it. but i'm rethinking how possible it might be without some WK access atm lol also i am running a PS4 on 3.11 and nothing is hacke about it. but if CTurtE turns around and gives us a major hack tomorrow, i'll laugh, man. especially if it's for higher fw's.
 
That's what i thought. reason why i told him about dumping. btw it was @SorenAlke who told me abou the RAM dumping process. that's why i said it. but i'm rethinking how possible it might be without some WK access atm lol also i am running a PS4 on 3.11 and nothing is hacke about it. but if CTurtE turns around and gives us a major hack tomorrow, i'll laugh, man. especially if it's for higher fw's.
You can dump to a USB in theory but the way the system is designed won't work like that hence y I mentioned the nice toy. If you are able to do multiple then you can gain more access to the system.

I'm avoiding webkit exploit even tho it's freed but it still is part of our fw for this and will be patched instantly. I made the decision to wait to work on it due to emulators are all patched in as that's coming. The traces leave behind all sorts of hints even the Emulators can be bent so even tho it's designed for psn style they can be bent to run images.

You can also use Linux as a back door once you are in and vice versa but it's not for the inexperienced this takes great knowledge and a clear mind.

If you go back to the days of hotz member how he used hw to trigger an exploite with a pulse generator this was used with a protocol analyzer to trigger every few seconds till it hits the exploite.

But things have changed a bit now and the system is like a pc except still uses HV which is a bad idea to begin with again.

https://www.arm.com/Chip_Diagram_Cortex-A72.png
 
After going thro some links on this stuff I now understand how they get the support needed and how Linux is buried under the xmb and locked. Neat little features to how they do this stuff
 
After going thro some links on this stuff I now understand how they get the support needed and how Linux is buried under the xmb and locked. Neat little features to how they do this stuff
That's correct it is freebsd 9.1 actualy or was till updated if I'm not wrong
 
FreeBSD is not a variant of Linux, it's a completely different operating system. That is like calling a Ford a variant of Ferrari. Linux & FreeBSD both have Unix style layouts but they are not variants of Unix either. Unix, Linux, FreeBSD & Mac OSX are referred to as what's called a POSIX operating system but they are not at all variants of each other, they are all completely separate but share a lot of conventions to make it easier to port software between them.

For more info check Wiki
https://en.wikipedia.org/wiki/POSIX

The chat in this thread is ridiculous to post as news, it's just toxuin saying that he found a way to crash the system (this part is true and maybe news worthy, or not?) but then he says some rubbish about plugging in a USB drive and maybe the PS4 will dump system memory to the USB. He admits he hasn't tried it and it's absurd to think that whenever an error occurs it would just randomly dump memory to a connected USB. The chat is just toxuin rambling about things he doesn't understand.

To be honest I think toxuin & B7U3C50SS are both teens and just bouncing ideas back and forth but sadly they won't work as the entire basis is flawed, still good that they are interested in this though but definitely not something to post on the front page.
 
FreeBSD is not a variant of Linux, it's a completely different operating system. That is like calling a Ford a variant of Ferrari. Linux & FreeBSD both have Unix style layouts but they are not variants of Unix either. Unix, Linux, FreeBSD & Mac OSX are referred to as what's called a POSIX operating system but they are not at all variants of each other, they are all completely separate but share a lot of conventions to make it easier to port software between them.

For more info check Wiki
https://en.wikipedia.org/wiki/POSIX

The chat in this thread is ridiculous to post as news, it's just toxuin saying that he found a way to crash the system (this part is true and maybe news worthy, or not?) but then he says some rubbish about plugging in a USB drive and maybe the PS4 will dump system memory to the USB. He admits he hasn't tried it and it's absurd to think that whenever an error occurs it would just randomly dump memory to a connected USB. The chat is just toxuin rambling about things he doesn't understand.

To be honest I think toxuin & B7U3C50SS are both teens and just bouncing ideas back and forth but sadly they won't work as the entire basis is flawed, still good that they are interested in this though but definitely not something to post on the front page.
There is some things even I don't know and I have alot of experience but after explaining the whole file system it makes complete sence now. It wod be simillar to mingw and cygwin in the short terms.

Yes toxin does seem young I know BLU7 CROSS is but not a teen and are bouncing ideas but the part they don't Realize is the ram dump actualy dumps to the hdd and to gain that there is a way but surely no usb wod work and a complete crash wod benefit alot more which this will help with another method I use
 
So I admit did not know what i was talking about about the ram dump, although i REALLY WAS told that.. i wasn't actually telling him that because I was thinking it on my own. someone had just told me about getting ram from that particular type of System UI crash. it was @SorenAlke

@Chaos Kid how do you know my age? that I'm not a teen? pm me your response.
 
So I admit did not know what i was talking about about the ram dump, although i REALLY WAS told that.. i wasn't actually telling him that because I was thinking it on my own. someone had just told me about getting ram from that particular type of System UI crash. it was @SorenAlke

@Chaos Kid how do you know my age? that I'm not a teen? pm me your response.
you sound old I would say about 40yrs old the way you reply im 55yrs old and i would reply to your answers
 
Status
Not open for further replies.
Back
Top