UPDATE: RELEASED See the News Coverage >>>>> HERE <<<<<
What a journey it has been in hacking the PlayStation 3 despite all the progress the community has made over the years, there has been those NoN-CFW Compatible PS3's (SuperSlim and some later Slim Models) unable to join the party on system hacks/homebrew to make most of their PS3 Hardware While CFW is not a likely option to ever happen on those models, the hole in 4.81/2 provided by PS3Xploit has brought some hope to hacks on those models as it provides a window for hackers/developers to explore. As the PS3Xploit team continues their exploration on the PS3 they have stumbled on some good news and also some bad news. The bad news is that the team still has not solved the Homebrew hurdle for those models :( and is proving to be a tall task that may not be achieved, but let me follow that up with some really
exciting news, as the team has made yet another great discovery and this time around it's for SuperSlims (& late Slims) while no native Homebrew Support has been achieved as mentioned, there is some other interesting hacks that make those models more desirable with some great new features!!!!

SuperSLim_PS3.jpg


This exploit is only relying on userland exploitation, while not a kernel exploit there are some clever features coming to the table as the PS1 / PS2 / PSP Emulators (within the ps3 firmware) have been unlocked for digital backups and also the ability of backing up your PS3 Games and turning them into digital media playable straight from the XMB, User's familiar with the Injections methods in 4.70 OFW will be a step ahead with those same preparations (using TABR) and the quirks like requiring a "game update" in order to backup your game are required. Cinavia protection removed for HDD Content is also a feature that should be appearing in this release as well, we should be seeing this released sometime in March, but there is no concrete date as of yet. Additional details will be emerging as we get closer to the release and additional detailslike a short interview with one of the devs of the team can be seen below that provides some additional bits of information about this hack.

  • Official teaser video demo provided by @Joonie / @DeViL303
    About the Video >>>:Tested on CECHE01 w/ OFW 4.82
    1. Verifying the firmware is the latest OFW,
    2. Downloading a demo PS3 game from PSN
    3. Running the original
    4. Enabling IPF [install Package Files]
    5. Verifying the mod content cannot be installed
    6. HAXing it to allow custom PKG
    7. Installing the custom mod
    8. Running the modded content.

    What will this future exploit provide?
    • "Install PKG Files" unlocked on XMB (Retail / Debug PKGs,) *No PS3 Homebrew Support
    • PS1 Emulator Support
    • PS2 Emulator Support
    • PSP Emulator Support
    • PS3 Backup Support (Convert your PS3 Game to Digital PKG - npdrm* (requires game update for disc game backups to work))
    • New Resigning Tools
    What you need to know about the legacy PlayStation emulators?
    • PS1 emulation is very good on the PS3, most games will play fine
    • Ps2 emulation is hit and miss on the PS3 (slightly more then half PS2 titles will work fine)
    • PsP emulation is roughly about a 40% success rate for the PS3
    • PS3 Backups - Require a Game Update

  • Here was a short interview with one of the devs of PS3Xploit Team ( @bguerville )


    What type of exploit is this project based on?
    • The project is relying on userland exploitation only.

    What's the word on Homebrew (HEN) for NoN-CFW Compatible Models?

    • Given the results of our research so far, we do not think that we can solve the PS3 homebrew hurdle from userland (unless we find some unexpected vulnerability, chances of that are ultra slim though!). It's clear that s#ny"s implementation makes running homebrew difficult without defeating lv2 whereas they have been careless with various other aspects such as npdrm handling....

    Do you see any more possibilities in Userland exploitation?

    • There is actually so much more that could be done from userland in my opinion. More potential features could be potentially added...

    Future Plans on this exploit?

    • I don't think we will be the ones developing the technique further & adding features. It will be up to the community devs to do it... This project will actually be provided as a base for the community, it gives users some basic features that have been denied to them on non-cfw compatibles thus far but more importantly imho it provides devs with methods they can replicate to offer new features for those consoles. We are hoping devs will update their existing tools to support ofw & maybe improve the project we are to release soon.
    • We will not be offering technical support on this project (except for interested Devs). We hope the community will take care of it.
    • The new ROP framework functions I wrote these past weeks basically take care of all the javascript implementation of the rop chains, no complicated unescape strings & juggling with long hex chains anymore, all that stuff is now generated automatically in the background. It makes using ROP extremely easy in practice BUT... devs will still need to use IDA & reverse vsh or modules in order to find patches & implement new features. ppc seems daunting but like I said before any decent C/C++ dev could learn enough to get their first patches done if they just spent a couple of weeks working with IDA, ProDG & the pett tutorial.. We would make ourselves available to help as well.

    Will user's be able to create their own Custom packages if tools are supported?
    • Yes, users should be able to make emu pkgs. Some Ps2 homebrew will also be supported that way. Ps1 & ps2 are currently fully supported. PSP support still need a little work but we believe this will be supported as well once the release is ready.

    • Official Website @ **ps3xploit.com >Domain no Longer owned by team** (ps3xploit.me =new)
    • Official Forum @ PSX-Place.com
    • Ps3Xploit News & Releases >>> LINK

  • UPDATE: @habib has shared the source code & new details about his Resigning Tool:
    Visit this link >>>> http://www.psx-place.com/threads/ps3xploit-resigner.16554/


UPDATE NEW VIDEO - SNES RUNNING VIA PS2 Emulation:

Stay tuned to psx-place.com as details mature on this exploit and its pending release!!
 
Last edited:
some saves will show as corrupted if used by another user fakesigning basicly transfers an encrypted game save over to your profile
 
@ Habib hey your signing tool was leaked i'll send you the link (was on redit but i'll send you the github (unless it's your teams) )
 
wonder if there's an update blocker like PS4Hen could be useful for ppl with kids who don't know better

gah sorry i feel stupid
 
great progress guys. the modified PKG method is very interesting since now we could make translation patch of some retails games that don't have eboot modifications.

might be a stupid idea or just throwing ideas for homebrews to work... might be a good idea to check how ODE handles homebrews on ofw especially on 4.50+ which requires those games/homebrews a modified BD-disc with encrypted eboots then they swap it out to make it work. Even modified eboots that is signed to 3.55 ODE works this way. not really sure how they made it but maybe worth to check it out. Maybe we could burn homebrews on custom made BD-discs and with the help of PS3 exploit make it work.

With ODE, even mod menu should be doable, but 3.55 signed elfs don't work as NPDRM...
 
anyone on OFW 4.81, stay on 4.81 and use this to sign in and activate as primary as you need it for some of the things in the exploit to work. use this tutorial to do it.

1. Download this proxy server.
2. Download and install .net Framework 1.1 from here
3. Type ipconfig in cmd and get your computer's local ip address . example here
4. Run PS3.ProxyServer.GUI as admin and paste the ip address there
5. Setup manual connection on your ps3 and use the same address and the port in the proxy settings.
6. In PS3.ProxyServer.GUI select ps3 mode and start.
7. Check for update on ps3 and it should say that you are on the latest one.
8. Create a user and sign in and then use a throwaway account to sign in and activate system in account management.

Note: only for 4.81 users only and if it doesn't work pm me. Try disabling your firewalls as well.
guess it won't work on 4.50?
 
With ODE, even mod menu should be doable, but 3.55 signed elfs don't work as NPDRM...
Is it possible to re-enable ODE on 4.81/4.82 OFW based on this userland exploit? Since ODE(no-swap method) is blocked above 4.53/4.55.
 
@Joonie , it's good to see you back, my friend.. I thought you had retired or had just left or was dealing with something in real life..
 
oh would Ethenol allow region free backups?

if you mean games, the system is already region free. it might be locked with bd movies though (not sure). there's only one game I know of that's not region free. I've forgotten what it was, but I remember reading an article about it.
 
Interested there's a website that links to ps3 hen enabler have you seen it? Hope it's not a leak.
 
Last edited:
Back
Top