Category PS4 Jailbreaking       Thread starter PSXHAX       Start date Jan 18, 2016 at 4:06 PM       7,854       25            
Following the recent PS4 3.11 Out of Bound Read (Freetype 64bit Exploit), fail0verflow's PS4 patches and drivers and his previous PlayStation 4 Kernel Exploitation, today PS4 developers CTurt and Qwertyoruiop revealed news of a PS4 kernel heap overflow exploit alongside an analysis of sys_dynlib_prepare_dlclose for PlayStation 4 developers to examine further. :)

Below are some recent Tweets on their latest PS4 kernel exploit, as follows:

Finally, from Wololo comes a summary of their findings thus far with it, to quote:
  • The exploit has been patched around firmware 2.00, so it will not be useful for people expecting a PS4 hack on the latest firmware 3.15.
  • Cturt also announced that he will not release a fully weaponized exploit, and is just sharing the knowledge on how the vulnerability was exploited.
  • He’s apparently actively working on the PS4 with other hackers such as Qwertyoruiop (a well know hacker famous for his work on iOS, among other things).
  • The exploit itself lies in function sys_dynlib_prepare_dlclose and some of its internal calls such as copyin. Full details can be found in CTurt's article.
Dlclose_PS4_Kernel_Exploit_CTurt.jpg
 

Comments

PSXHAX

Staff Member
Moderator
Contributor
Verified
Agreed... hopefully one of these PS4 holes will lead to some more PlayStation 4 goodies from developers in coming months :D
 

Chaos Kid

Developer
Senior Member
Contributor
And he keeps up at it even with every1 on his back? Is he looking for a huge fall? There's a good reason alot of my and my teams work has never bin released for access and this is exactly y.
I have seen alot of good Dev's go down cuz they didn't take the huge responsibility that comes with a great ability. I'm also not sure who is thinking Cturt is making the weaponizeing system when I never mentioned who it is n I also know FOF is also not it either
 

Chaos Kid

Developer
Senior Member
Contributor
Now I did notice the comment about them being f*cking stupid but actualy there not and here is y.
Let's say tomorrow you find a loop hole in the system n then attack it then release your data now what Sony does is using this write over using hashes to totaly patch this whole so that it no longer exists then they update the kernel which then gets stored and they keep doing this till there's no holes left to close.
Now what Dev's all failed to see is this hole was even in the ps3 I knew about it myself and used it to gain things for educational purposes.
These are not realy holes in the system they can be patched realy simple
 

GTAWWEKID

Senior Member
Contributor
Now I did notice the comment about them being f*cking stupid but actualy there not and here is y.
Let's say tomorrow you find a loop hole in the system n then attack it then release your data now what Sony does is using this write over using hashes to totaly patch this whole so that it no longer exists then they update the kernel which then gets stored and they keep doing this till there's no holes left to close.
Now what Dev's all failed to see is this hole was even in the ps3 I knew about it myself and used it to gain things for educational purposes.
These are not realy holes in the system they can be patched realy simple
What you fail to see is SCEI hires developers to hack the PlayStation consoles anyways... and in every update there is a patch to at least 1 exploit. The last 15 PS3 updates are all patches to exploits and the last PS4 update is a patch for Network hijacking (RTM) that SCEI found on 3.11 firmware and lower. Most of these "leeks of exploits" are patched before they are even discovered. So most are patched and keeping them secret hurts you more than SCEI as if you release your findings, other 'hackers' see it and they put their knowledge into it and you get a working exploit for the world out it. That's why Cturt and others release this typically useless exploits as someone else may need that piece to finish their exploit.
 

Chaos Kid

Developer
Senior Member
Contributor
Don't be so sure what you don't know for a fact cuz I can tell you for one there is an exploite to the ps3 I have done it myself and there is also one on the ps4 aswel but it's not something a kid can do without great knowledge or how the system works. Cuz most care about one thing. The Hacks not the learning.
And secrets aren't hurting me any infact it's called using my head not jumping into something like a kid. Having the abilities to hack is easy learned but learning how it works is another maybe you shod try it some time
 

GTAWWEKID

Senior Member
Contributor
Don't be so sure what you don't know for a fact cuz I can tell you for one there is an exploite to the ps3 I have done it myself and there is also one on the ps4 aswel but it's not something a kid can do without great knowledge or how the system works. Cuz most care about one thing. The Hacks not the learning.
And secrets aren't hurting me any infact it's called using my head not jumping into something like a kid. Having the abilities to hack is easy learned but learning how it works is another maybe you shod try it some time
I'm sorry, who are you calling kid? I know I'm not a "kid" as my wife is passed out on my left arm... If you were just saying kid referring to 'GTAWWEKID', it's gtakid not kid... And if that is to much work, just call me by my name as it seems you and I argue way to much. My name is Katy, yes I'm bi-sexual big whoop... WHO F*CKING CARES! I'm a Xbox One developer, so I don't need to know how to hack as I just need to create software and upload it to the console without violating terms of service or anything... I'm just here to laugh at the 12 year olds getting all raddled up for a PS4 hack to mod there console, and also waiting for that day to come myself to see Multiman on PS4 to play Until Dawn and Beyond Two Souls for free....

but anyways, I'm not a kid... And I honestly don't care about hacking unless you book with my crap and than you are going to see dial-up speeds yourself when my gigabit isp try's to send your ip that 100GB Fish porno... Yes, it's like 120 hours of video on this SSD I have, and 3 people been booked up by it when they DDOS my email server trying to steal my psn and Xbox/Windows developer accounts
 

Chaos Kid

Developer
Senior Member
Contributor
I'm sorry, who are you calling kid? I know I'm not a "kid" as my wife is passed out on my left arm... If you were just saying kid referring to 'GTAWWEKID', it's gtakid not kid... And if that is to much work, just call me by my name as it seems you and I argue way to much. My name is Katy, yes I'm bi-sexual big whoop... WHO F*CKING CARES! I'm a Xbox One developer, so I don't need to know how to hack as I just need to create software and upload it to the console without violating terms of service or anything... I'm just here to laugh at the 12 year olds getting all raddled up for a PS4 hack to mod there console, and also waiting for that day to come myself to see Multiman on PS4 to play Until Dawn and Beyond Two Souls for free....

but anyways, I'm not a kid... And I honestly don't care about hacking unless you book with my crap and than you are going to see dial-up speeds yourself when my gigabit isp try's to send your ip that 100GB Fish porno... Yes, it's like 120 hours of video on this SSD I have, and 3 people been booked up by it when they DDOS my email server trying to steal my psn and Xbox/Windows developer accounts
You do realize that by using multiman you are already violating policy backups or not depending where you live and I also cod careless if your gay or not you threw that in and I apologize if I confused you with another similar name but in other regards I have seen alot of kids so this wasn't a direct bash at you it was in general and state of mind.
I don't need to steal data from a surver I have my own methods of getting what I need and it surely isn't from Dev's who claim to have the keys I know exactly where they come from n it's not any of the Dev's on this website or the ones watching.
So let's take this down a notch. Release what you want but member being a Dev for whoever you are also abide by laws so by releasing any backup content or in any way of backups and caught it's your loss.
This is what I meant by using your head and thinking
 

GTAWWEKID

Senior Member
Contributor
You do realize that by using multiman you are already violating policy backups or not depending where you live and I also cod careless if your gay or not you threw that in and I apologize if I confused you with another similar name but in other regards I have seen alot of kids so this wasn't a direct bash at you it was in general and state of mind.
I don't need to steal data from a surver I have my own methods of getting what I need and it surely isn't from Dev's who claim to have the keys I know exactly where they come from n it's not any of the Dev's on this website or the ones watching.
So let's take this down a notch. Release what you want but member being a Dev for whoever you are also abide by laws so by releasing any backup content or in any way of backups and caught it's your loss.
This is what I meant by using your head and thinking
I'm not violating crap on Xbox, on PlayStation I don't really care. When you lose over a thousand dollars of income because SCEI has cut backs and you are a developer who loses your career, you don't give a book about that company services. And I use multiman to play games I own without discs, and play games from. Psn after being banned for Call of Duty modding... I do it all within the US Law, but it violates a terms of service I don't agree with and Ihate playing online anyways, so Idrc if I get banned again, all Ido online is get games and earn trophies

-------
sorry for crappy typing, I only have one hand onmy phone and I'm tired. But you're right that majority of the people on here are kids, if you are not a kid, I'm sorry if I majorly upseted you, I'm just on guard not wanting tone talked down by a pesky little fat middle school kid. And that is majority of the community at the moment. Hell I'm tired asf, if you want to talk in personal chat, hmu in skype. USERNAME: KidWWE, it goes into my phone as a text message which is easy to respond to. Anyone else snooping can too,
 
Recent Articles
Latest PlayStation 4 Game Trailer Videos from Gamescom 2019
Earlier this week we saw a Call of Duty: Modern Warfare 2v2 Alpha PS4 trailer video from Gamescom 2019, and below is some more fresh PlayStation 4 video game footage from this year's Gamescom...
Chiaki: Free and Open Source PS4 Remote Play Client by Thestr4ng3r!
Last month we reported on a PS4 Remote Play open source client in development by thestr4ng3r, and today he released Chiaki... the first free and open source PS4 Remote Play client software for...
Sony Patent Surfaces on Rumored PlayStation 5 / PS5 Development Kit Design
Although Sony's next-generation PlayStation 5 console isn't expected until the 2020 holiday season, today Andrew Marmo tweeted about a rumored Sony Interactive Entertainment patent...
CoD: Modern Warfare 2v2 Alpha Gamescom 2019 PS4 Trailer and Tips
The public Gamescom 2019 event runs from August 21st through the 24th, and during the weekend of August 23rd through the 25th gamers will be able to play the Call of Duty: Modern Warfare 2v2 Alpha...
Top