Login Register






Thread Rating:
  • 0 Vote(s) - 0 Average


PS3 "Hacked for good" Master-Keys Revealed filter_list
Author
Message
PS3 "Hacked for good" Master-Keys Revealed #1
Article: http://nakedsecurity.sophos.com/2012/10/...-revealed/
Quote:Sony's PS3 has been hacked.

Perhaps "hacked" is the wrong word, because it can imply both criminality and lawful exploration. But we'll stick with "hacked" here, in the sense of "some reverse engineers have figured out how you can adapt, or jailbreak, your PS3 to make it interoperable with software of your own choice."

The PS3 has been hacked before, but Sony was able to inhibit the hack with an update to its own firmware. This is much like the history of jailbreaking on Apple's iOS, where hackers typically uncover a security vulnerability and exploit it, whereupon Apple patches the hole and suppresses the jailbreak.

But the latest PS3 break is being dubbed unpatchable and the final hack.

That's because this hack isn't giving you an exploit to use against a programming hole. It's giving you Sony's so-called LV0 (level zero) cryptographic keys.

The PS3 system software loads up as shown in the picture below:
[Image: ps3-boot-loading-500.png?w=640]
The Level Zero (LV0) loader is the mother of all field-updatable firmware components in the PS3 bootstrap process. It orchestrates the loading, and the cryptographic verification, of all the modules underneath it. As long as the LV0 loader remains the way Sony wants it, you get to run only what Sony wants you to.

Pirated games won't load, which is good for rights holders. But Linux, for example, won't run either, which is bad for you. Why shouldn't you run lawfully-acquired software of your choice on your own computer? [*]

With the LV0 keys now published, you can - at least in theory - replace the LV0 loader and run whatever you like, because you can authorise your own custom firmware (CFW). The PS3's most-secret cat is out of the bag.

Incidentally, the publication of the LV0 keys was not without some controversy and finger-pointing amongst the reverse engineering and CFW community.

It seems as though a hacking and reversing posse known as the Three Musketeers worked out the LV0 keys some time ago. Since they were, in their own words, "done with PS3 now anyways," they just sat on the information.

But some turncoat leaked it, and it eventually reached a Chinese hacking group, BlueDisk­CFW.

Well, well.

BlueDisk­CFW didn't just use someone else's work to publish a custom firmware that was unashamedly aimed at violating others' intellectual property. They planned to charge for it! Knock me down with a feather! Dishonourable software pirates! Thieves and rascals!

The Three Musketeers took exception to that.
[Image: group-effort-500.png?w=640]
Let's hope, when the PS4 comes out, that Sony will give up on trying to lock out jailbreakers permanently, and instead provide a way for those who want to run alternative software to do so in official safety.

When King Cnut famously ordered the tide back and failed, he wasn't an arrogant absolute ruler trying to show off.

He knew he would fail, and thereby demonstrated that to hold back the tide was impossible - and, in any case, unnecessary - even for a king.

Can't wait to softmod my PS3 Biggrin

LV0 keys:

ERK = CA7A24EC38BDB45B98CCD7D363EA2AF0C326E65081E0630CB9 AB2D215865878A

RIV = F9205F46F6021697E670F13DFA726212

PUBLIC = A8FD6DB24532D094EFA08CB41C9A72287D905C6B27B42BE4AB 925AAF4AFFF34D41EEB54DD128700D

PRIVATE = 001AD976FCDE86F5B8FF3E63EF3A7F94E861975BA3

CURVE_TYPE = 0×33
(This post was last modified: 10-26-2012, 09:35 AM by The Protagonist.)

[+] 1 user Likes The Protagonist's post
Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #2
Great information, I will start softmodig PS3s for money. :angel:

Reply

Re: PS3 "Hacked for good" Master-Keys Revealed #3
Sony has dealt with hackers terribly in the past. I cannot wait to see how they deal with this.
[Image: fSEZXPs.png]

Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #4
Well it is reaching the end of its life-cycle so maybe not a whole lot will be done.

Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #5
(10-26-2012, 10:22 AM)The Protagonist Wrote: Well it is reaching the end of its life-cycle so maybe not a whole lot will be done.

It will just happen all over again. Tongue
[Image: fSEZXPs.png]

Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #6
WOOOOO ENDLESS LOOPING OF CONSOLE CYCLES
1. Console is released
2. Early hacks
3. Patches released
4. Permanent hack
5. End of life cycle.

Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #7
(10-26-2012, 10:38 AM)The Protagonist Wrote: WOOOOO ENDLESS LOOPING OF CONSOLE CYCLES
1. Console is released
2. Early hacks
3. Patches released
4. Permanent hack
5. End of life cycle.

I agree...how did they get these keys? Brute force, or were they written deep in a file?
[Image: V8OSA.gif]

Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #8
(10-26-2012, 11:46 AM)BaneKitty Wrote:
(10-26-2012, 10:38 AM)The Protagonist Wrote: WOOOOO ENDLESS LOOPING OF CONSOLE CYCLES
1. Console is released
2. Early hacks
3. Patches released
4. Permanent hack
5. End of life cycle.

I agree...how did they get these keys? Brute force, or were they written deep in a file?

Yeah, someway some how they did, not too sure how. Also, Sony said they are sticking with the PS3 until around 2015-16 which is when they will release info about PS4. So they must be doing something to prevent the hacking..
[Image: blanksig1.jpg]
- I don't need a bullet ima lyrically shoot ya -
"I'm a Gamer, not because i don't have a life, but because I choose to have many"

Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #9
Ps3 security is shit overall lol

Reply

RE: PS3 "Hacked for good" Master-Keys Revealed #10
That right there makes me want to get a PS3.

Reply







Users browsing this thread: 3 Guest(s)