Next Generation Emulation banner

PS3: Sony's EPIC FAIL!

45K views 228 replies 39 participants last post by  Spyhop  
#1 ·
Well the big PS3 Exploit talk is now officially over at the annual 27C3 conference. All the big names in the developer scene world (segher, marcan, sven and bushing) and gave almost a one hour talk regarding Sony's EPIC FAIL!

Image


Basically they talked about how the PS3 has totally failed in security, by botching the pki implementation it became possible to calculate the keys needed to sign everything, in short PUBLIC PRIVATE KEYS!

Live 4 minute demo will be available tomorrow during the 2:30hour CCC's Lighting Talks (will update this video once it happens), and possible tools for developers to be released within a month, but their goal right now is to release a AsBestOS.pup so all can enjoy full Linux on their PS3 console, even the Slim PS3 owners!

The 360 system is now the more secure then the PS3 is now that Sony has Epic Fail after 4 years!


Source
in case you still don't understand the message what it means is that the PS3 is basically as hackable as the Wii or any other "hacked-to-hell" console and custom firmware may be around the corner :) in other words Sony is now officially f***** up :thumb:

Enjoy!
 
#2 ·
I recall pointing out in an older thread that Sony's security has always been a big bucket of fail, but was "corrected" by another member, saying HyperVisor is virtually impassible. Though I believe I pointed out past hacks on other Sony products like the PSP where you could just sidestep any security measures by placing the device in service mode.

The only reason the PS3 took so long to hack was because all prior would-be hackers were trying to "brute force" the security rather than look for a way to enable service mode and simply sidestep it.
 
#5 ·
Image


i know i hate to ask but is this a serious bit of code of theres?

id be penalized at a first year uni assessment if i used something like this as a random number generator for crying out loud.
 
#6 ·
Image


i know i hate to ask but is this a serious bit of code of theres?

id be penalized at a first year uni assessment if i used something like this as a random number generator for crying out loud.
Yep, you believe it or not that's Sony's code which as mentioned in the video it should generate a random number but they just use a static one and send "4" which is just a epic fail and obviously the code of a random noob at Sony.

I don't think Sony failed as the rest did. It's not a perfect system afterall.
Yes, they did an awesome job... however as explained in the video the System remained unhacked because of the lack of interests and only started to happen because of the removal of otherOS that made hackers really angry.
 
#8 ·
4 represents dead.
 
#10 ·
Yep, you believe it or not that's Sony's code which as mentioned in the video it should generate a random number but they just use a static one and send "4" which is just a epic fail and obviously the code of a random noob at Sony.



Yes, they did an awesome job... however as explained in the video the System remained unhacked because of the lack of interests and only started to happen because of the removal of otherOS that made hackers really angry.

Actually the 4 thing is from an XKCD comic (http://xkcd.com/221/), it was a joke. Their actual number is probably incredibly more complex, but the idea is the same - it is not really a random number after the first time since they reuse that number in ALL keys.
 
#13 ·
so what now?? slims will get other os??? a custom firmware?? and how do we install it ? hardware mod or the same JB methods used before
They said it will be done via firmware update. Since they will be able to sign data like they claim, you should be able to install it without any hack, it should be just like a normal firmware update. So in this case the term custom firmware could be applied.

 
#15 ·
Yeah, it's such a failure, it only took 4 years to crack - meanwhile all other consoles got cracked in what, 1 month?
]
@marcan42
Hector Martin
Myth #1: It took us 3-4 years to do this. Negative, this exploit only took a few months after we started working. We weren't trying before.
@marcan42
Hector Martin
Myth #2: Sony can change keys. No, they can't. These aren't encryption keys, they're signing keys. If they change them GAMES STOP WORKING.
That should answer it.
 
#25 ·
Probably you're right.... eitherway the system is getting hacked to hell right now and some interesting stuff may be around the corner ;)
And that is great ;)
:lol: I decided to go get one the other day.. Glad I did. It works awesome, was so easy to mod.. $149.99 for a new 16gb memory v5.7 pspgo. The cheaper option and by far the better one IMO, I don't see any downsides compared to the 3000.
Wait, wait...
PSPGO and PSP3000 (new revisions) are hacked?