Join Us and become a Member for a Verified Badge to access private areas with the latest PS4 PKGs.
PS4 Jailbreaking       Thread starter PSXHAX       Start date Jul 14, 2017 at 2:30 AM       24      
Status
Not open for further replies.
Earlier today we covered the PS4 MTX Key Resellers, and for those interested in further homebrew / non-profit development comes a preliminary PS4 MTX Key ModChip hardware analysis for the gamesharing method used on PlayStation 4. :geek:

So far we've seen specifications on the W29N01GZ NAND Flash Memory, a Macronix MX25L25735F Datasheet and some research from scener @Luckystar via Chinese BBS A9VG.com.

To quote, roughly translated: PS4 MATRiX Key Chip Crack Hardware Analysis

Http://www.psdevwiki.com/ps4/MX25L25635FMI-10G
Http://www.psdevwiki.com/ps4/Flash-Main

PS4 MATRiX Key is polished, so according to the photo can not be analyzed. Only from the PS4 fly line chip start.
  • PS4 1000,1100 models are MX25L25635FMI-10G 16-pin
  • PS4 1200, Slim, Pro is on MX25L25635FZ2I-10G 8 pin
Capacity 256Mb (32MB), is SCEI CXD90025G ARM low power coprocessor use. Sony does not explain the role of the CPU, but now generally speculation for the network, DRM and other background behavior. MTX 6 fly lines are respectively.

MX25L25635FMI-10G

MX25L25635FMI-10G_Pinout.png

MX25L25635FZ2I-10G

8PinWSONCUH1200.png

  • CS # Chip Select
  • SCLK Clock Input
  • SI / SIO0 Serial Data Input (for 1 x I / O) or Serial Data Input & Output (for 2x I / O or 4x I / O read mode)
  • SO / SIO1 Serial Data Input (for 1 x I / O) or Serial Data Input & Output (for 2x I / O or 4x I / O read mode)
  • VCC + 3V DC Power Supply
  • GND Ground
In conclusion:

The MTX Key deletes the coprocessor by writing data to NOR Flash. So that the PSN wrong that the PS4 has been lifted commonly used, but the actual PS4 did not lift. The biggest problem with this approach is whether Sony blocks the crack through system updates.

PS4 history similar to the crack were the Brazilian method and the Egyptian method.

What is the so-called Brazilian approach?

I checked for a long time outside the network, in short, there is no specific method of publication, but the basic process is to use Raspberry Pi to send the NOR Flash dump to external SD card, and then it seems that the hard disk and BIOS need to clone.

Ultimately it turns your PS4 into another PS4, but later the system updates seem to block this method.

Key words: cloning.

As for the Egyptian method is actually an account how to play the first three machines: commonly used, then the site unbundled. (This machine can not be networked)

Second: commonly used. Then play in other accounts.

The third: login account.

Keywords: broken net

As for the MTX should be inherited the first two methods improved version. Also need to break the network, but do not need complex disassemble and cloning.

Can Sony blockade?

NOR Flash can be updated, but it is not clear whether this is the CXD90025G loopholes. I think this is some time for Sony. Can not block the possibility of 50%. I am biased, short-term will not block. But the emergence of MTX moved a lot of people's cake. And the long term will certainly be blocked.

Sony is definitely not no way, can be used to host the strategy from the indefinite into short-term. For example, one month, three months need to log in once. Even shorter, although it can not be completely resolved, but has caused great limitations to the MTX.

:arrow: Moving forward to even better news from longtime scener and PlayStation Mod-Chip Developer Extraordinaire GaryEdmunds (see my sCENE rETROSPECTiVE for a bit more on him), to quote:

"The person behind the stealing of your work freeplex is Max Louarn this is nothing to do with Paul Owen as Paul Owen has left the modscene long time ago and sold his interest in Xecuter website to Max.

Paul Owen is currently involved in Cronusmax and no other console mods.

Just as a little bonus as Max tried to steal from me a long time ago I have the gerber files and other files for this clone chip and I will release them free to the world on the day the first modshop that is aligned with Max has them in stock to ship."

Finally, @Figure03's forum post HERE discusses a Kuro-Dachi / Clone + Erase / U3 hard disk cloning machine that may also be of interest on the Chinese blog CMD0725.Blog.FC2.com... it appears similar to the known PS4 Gamesharing Method but if anyone fluent can tell us more on this feel free to in the comments below! (y)
PS4 MTX Key ModChip Analysis for Gamesharing on PlayStation 4.jpg
 

Comments

Beautiful analysis! I expect to have it to understand how it work !
i think its not easy to sony to patch this so we can profit until new sony mandatory update.
 
is this modchip mtx can be used on every ps4 that i would like to download the game on it or just the main one ?

and is it possible to play online with the device that i download the game on it ?
 
I mean i love getting games for free as long as someone buys it along the line not just backing up it right off the bat....

See i think everyone should atleast buy it so the people who make these games that you love. Example: Elder Scrolls IV Oblivion i bought this on xbox 360 when it frist came out and when the DLC came out i bought that but when i went to pc i really wanted that game yet i had no money so someone was nice enough to get me the game of the year edition.

But see someone along the line payed for that game so the devs could get money to support themselves and make another game in the series.
 
ok first off he's made it pretty much for main system but the design shows it can be put on others but need to disable main system. no downloading games this will be for sure caught.

I mean i love getting games for free as long as someone buys it along the line not just backing up it right off the bat....

See i think everyone should atleast buy it so the people who make these games that you love. Example: Elder Scrolls IV Oblivion i bought this on xbox 360 when it frist came out and when the DLC came out i bought that but when i went to pc i really wanted that game yet i had no money so someone was nice enough to get me the game of the year edition.

But see someone along the line payed for that game so the devs could get money to support themselves and make another game in the series.
nothing in this world is ever free I'm not trying to knock down on your parade just a point of understands ng some have a side job to make the money to obtain hw or whatever is needed to make a name for themselves. but if people expect there work to be free where is the money they invested in what they had to have gone for?
 
ok first off he's made it pretty much for main system but the design shows it can be put on others but need to disable main system. no downloading games this will be for sure caught.

nothing in this world is ever free I'm not trying to knock down on your parade just a point of understands ng some have a side job to make the money to obtain hw or whatever is needed to make a name for themselves. but if people expect there work to be free where is the money they invested in what they had to have gone for?
I was saying nothing is free thats why you should respect the devs and pay for the game instead of ripping it....
 
I mean i love getting games for free as long as someone buys it.
see your words those are contradictions as long as someone buys it not referring to you. so please respect others and don't try twisting crap around when it's right there in plain sight.
 
Just to update the post the previous brazilian method is:
  • Install games and NO active as primary console
  • Change HDD and install system update
  • Make dump from NOR IC (with rpi or teensy) save as nordump.bin
  • Put hdd with games on console and Active Account as primary.
  • Dump nor ic actived, and save as nordumpactive.bin
  • Write nordump.bin on ic (not active)
  • Power on console with hdd with system only (the hdd we installed system) and go to account settings and deactive as primary
  • Write back on ic nor the nordumpactive.bin and power on console with hdd with games, done

    The method only works offline. If you connect console on internet padlock will appears in games installed with this method.

    This method worked from 2.55 OFW until 3.50 appears and blocked everything!

    This is how old brazilian sharing methods works.

ya and when you write back 2 ic soft reset through debugger and bootrom checks installed checksum of dumped nor ic during this process
 
Status
Not open for further replies.
Back
Top