Post Reply 
[NEWS] More information about the PSP HACK 3000 with MathieuLH
Author Message
silver_surfer
Paradigmatic Entity

Posts: 256.8720
Threads: 167
Joined: 16th Feb 2008
Reputation: 3.37413
E-Pigs: 39.6184
Offline
Post: #1
[NEWS] More information about the PSP HACK 3000 with MathieuLH
More information about the PSP HACK 3000 with MathieuLH

Can wee install a Custom Firmware on PSP 3000? What a HEN? an IPL? a préIPL? Wee wanted to start this month of February with a small interview with our friend MathieuLH (sonyXteam, Prometheus, M33) on the thorny subject of a hack of the PSP 3000.

MaGiXieN therefore asked MathieuLh to answer some questions that come too often in the forums or e-mails now. With this interview, you will probably understand the difficulties encountered to hack the PSP 3000.



MaGiXieN: Hi Math, since you left the M33 team, how is the life of MathieuLH?

MathieuLH: Pretty good, I concentrate on my studies now and the PlayStation 3. The study said that as a priority:)

--


Spoiler for More Details:

MaGiXieN: Much has been said about HEN recently. Could you clarify the differences with a Custom Firmware?

MathieuLH: The HEN is not a custom firmware, strictly speaking, a HEN kernel uses a loophole to launch code to the kernel boot the psp while there applicant patches on the fly. A custom firmware launches him of starting the console without any manipulation by the user and also allows him to patch (usually ram) the kernel of the psp.


Simply put, when a HEN require the intervention of a user (on an official firmware) to run a loophole allowing the kernel to boot the psp with multiple patches to begin by following its own code his homebrews or even in most cases its isos. A custom firmware to start at boot of the PSP without any intervention from the user and allows direct use of homebrews upon ignition.

--



MaGiXieN: Wee talked often pre-IPL and IPL since the PSP 3000. For us mere mortals, wee can explain what a pre-IPL and IPL?

MathieuLH: Pre-IPL is a code implemented within the processor of the PSP (it is in plain text in a mask ROM 4KB) this is the first code executed by the psp, it is not updatable and is thus dependent on the version of the processor. This one at the expense of verifying the authenticity of the IPL (Initial Program Load), IPL itself is something of a micro kernel containing most of the drivers to run the hardware of the psp (the nand, the ram, etc etc) it is the first link in the start (boot chain) of the psp, that checks authentication sysmem and loadcore and performing loadcore will then authenticate the rest modules (up init.prx and execute)


In the case of PSP-1000 and 2000, wee (The Prometheus Project - alias c + d) have found a flaw (in fact, a multitude of faults) in the pre-ipl and kirk engine (hardware used to make cryptographic operations in the PSP), which has helped to launch our own IPL.


Unfortunately the flaw found in the pre-ipl was patched by Sony in processors used with the PSP-3000.

--


MaGiXieN: Do you think the PSP-3000 can spend a day in Custom Firmware?


MathieuLH:
For the moment a custom firmware on PSP-3000 is not an option, of course this could change in the future with the possibility of discovering another flaw in the pre-ipl although it may be difficult when one considers that the pre-ipl is one of the most difficult to dump and did not yet.


Wee may also consider a flaw in the chain start (boot chain) as was the case with the old custom firmwares where wee use the kernel of 1.50 (which itself had several flaws in his starting line) to to run the core of a devhook to reboot (so imperceptible) the kernel of the PSP and could start on a patched firmware.

--



MaGiXieN: Clearly, a HEN quasiement will be the only possible solution for 3000 and probably the following, correct?

MathieuLH: Yes and no, as explained above other flaws may be discovered one day (although this seems unlikely at a time when Sony has already patched the biggest gaps are at the starting line and if the pre-ipl was properly adjusted it should not include other flaws.


Moreover, the HEN is not required to run homebrews, most homebrews are coded to work in usermode and in this case a flaw kernel is not mandatory. A simple user fault as the fault GripShift enough.

--

MaGiXieN:
Many people confuse the fault and the kernel GripShift. Without the controversy, do you think the choice not Release HEN Miriam using the flaw kernel, is a good choice? The reason is that it would be patched by Sony and prevent further research via this vulnerability. What you think? Could this be the last known exploit?

MathieuLH: I do not think the releaser HEN is a good choice, there is not an infinite number of vulnerabilities in the kernel and developers may need it sooner or later. There is against several million PSPs already exploitable sleep and, if someone really wants to run homebrews on psp this is not the opportunity to fail.

Whether it is the last known exploitable vulnerability, I prefer not to speak on the topic

--




MaGiXieN: Otherwise, before you leave, what do you think the future of the PSP scene?

MathieuLH: The PSP scene is aging, and aging badly, people are starting to tire, the PSP comes from an old technology at least 3 years, if not more, on which Sony has made several minor revisions ( PSP lighter, thinner, add a microphone, screen ...) to justify the maintenance of an elevated prices largely on old technology over 3 years (the price of the PSP will have to final, less than 50 euros in 3 years, from 249 euros to 199 in France)

The PSP also sorely lack of games and trade policy Sony does not help matters. Result? The psp is one of the biggest commercial flops (can be outside of Japan) that Sony has ever known, and unfortunately the PlayStation 3 is about to suffer the same fate as Sony failed to meet awaiting the players, or the developers.

I hope that this sad reality does not sound the death knell of consoles whose capacity would allow the emergence of games exceptions, particularly with regard to the Playstation 3.

There is no need to forward it says, only time will tell.
Source
Google Translate

01/02/2009 04:39 PM
Find all posts by this user Quote this message in a reply
S7*
Sweet Dreams

Posts: 16,689.4373
Threads: 1,056
Joined: 3rd Apr 2007
Reputation: 14.29926
E-Pigs: 383.2289
Offline
Post: #2
RE: [NEWS] More information about the PSP HACK 3000 with MathieuLH
this isn't exactly news to do with a hack for PSP 3000..................

neat info for the n00bs though
01/02/2009 05:14 PM
Find all posts by this user Quote this message in a reply
Mr. Shizzy
ɯɹ˙ sɥızzʎ

Posts: 2,973.4020
Threads: 415
Joined: 21st Feb 2007
Reputation: -2.36574
E-Pigs: 160.1496
Offline
Post: #3
RE: [NEWS] More information about the PSP HACK 3000 with MathieuLH
Math left Team M33 ?

Why?  And when did that happen ?

PSP 2001 [TA-088v2]: 6.39 ME-9.7
[Image: 4kly6c1.gif]
Sig by Mr_Nick666
02/02/2009 07:47 AM
Find all posts by this user Quote this message in a reply
Post Reply 


Forum Jump:


User(s) browsing this thread: 1 Guest(s)

 Quick Theme: