Geohot releases the PS3 keys [Discussion]


Recommended Posts

Wow, I thought GeoHot had stopped hacking the PS3.

Hes a sellout. his release came with a job application to any of the 'big three' so he's NOT on the 'side' hes portrayed in his PS3 and iPhone hacks...

I believe he figured this out months ago though, cause 3.21oo wouldn't have been possible otherwise - but that never came to light either.

wonder what Sony is going to do next(probably nothing)... pirated PS3 games will soon show up in the internet.

I am not sure if i have understand correctly and what has changed with Geohot's released keys but on the "failoverflow" videos they clearly state that they don't have the keys to sign games.

Has this changed now?

I am not sure if i have understand correctly and what has changed with Geohot's released keys but on the "failoverflow" videos they clearly state that they don't have the keys to sign games.

Has this changed now?

The Root/Master Key has leaked from what i can gather, that means the PS3 is wide open now anything can be run or signed and any firmware past, present or future can be hacked and you will be able to play on PSN, you wont need a dongle either.

I'm far from knowledgeable about how serious this is. I understand what it allows a user to do, but couldn't Sony release another firmware update that changes the key and uses a different form of encryption? Or would that break anything created for the PS3 in the past?

The Root/Master Key has leaked from what i can gather, that means the PS3 is wide open now anything can be run or signed and any firmware past, present or future can be hacked and you will be able to play on PSN, you wont need a dongle either.

From what I've read, it was the method Sony used to make the keys that was cracked (i.e. the method used was weak, like a random number generator always returning the same value)

It has the possibility to do that. It's still a very new hack and applications are limited at the moment... but they are coming.

Primarily, homebrew is what benefits this as the custom packages can now be signed with the proper key - not needing the jailbreak/debug console.

From what I've read, it was the method Sony used to make the keys that was cracked (i.e. the method used was weak, like a random number generator always returning the same value)

It wasnt, that was a joke from XKCD comics.

I thought it was pretty much a variable that Sony kept constant? Thats what the hacking slides show.

If K is the private key, and m is a random number (they're divided in the algorithm), if m is kept the same, that means K is the same so it's possible to work it out.

It's quite a read if no-ones seen the slides/videos yet and are interested:

http://psx-scene.com/forums/f6/fail0verflow-27c3-ps3-epic-fail-now-live-demo-73986/

fail0verflow has now released some of their tools on their git: http://git.fail0verf...?p=ps3tools.git

Some of the tools are as follows:

sceverify: verify SCE binaries

pupunpack: check pup hmacs

puppack: create PUP files from scratch

norunpack: extract files from a NOR dump

unself: convert fselfs back to elfs

makeself: convert ELF files to self files

makepkg: build update.pkg files

readself: read and output info regarding a self file

unpkg: decrypt and unpack update .pkg files

appldr keys have been dumped. That's the keys used to encrypt games.

And some tools have been released.

decrypt-self.exe

Code:

decrypts self files

Usage: decrypt-self {self file} {elf file} {key file} {fix}

self file: file you want to decrypt

elf file: your output file

key file: use one of the included (e.g. "315.appkey")

all x**.appkey files are unknown fw numbers

find out on your own :)

fix: 0 (zero)

read-self.exe

Code:

shows self info

Usage: read-self {self file}

self file: file you want to decryptrebuild-self.exe

Code:

rebuild self?

Usage: rebuild-self {self file} {elf file}

pup_unpack.exe

Code:

unpack pup files (get core_os_package.pkg, etc.)

Usage: pup_unpack {filename} {directory}

filename: your pup

directory: destination for pup contents

fwpkg.exe

Code:

decrypt pkgs (you extracted with pup_unpack)

Usage: fwpkg {mode} {input file} {output file}

Mode: - e: Encrypt PKG

- d: Decrypt PKG

input file: your crypted pkg

output file: decrypted output

coreos_tool.exe

Code:

extracts/rebuilds the decrypted CORE_OS_PACKAGE

Pack CoreOS : coreos_tool p {output pkg} {files...}

Unpack CoreOS: coreos_tool u {decrypted CORE_OS_PACKAGE.pkg}

key files:

Code:

first 32 bytes: erk

last 16 bytes: riv

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Ninja Theory's new Hellblade game is action-focused and set in Purgatory by Pulasthi Ariyasinghe Ninja Thery has been building its award-winning Hellblade series since 2017, delivering Senua's Sacrifice and Senua's Saga since then. Today at the 2026 Xbox Games Showcase, the studio had a brand-new installment announcement featuring Senua again, but this time, she is in a version of purgatory, and the focus is on the action. Simply named Senua, this new entry is described as a "full-on action-adventure" experience, delivering an expanded focus on combat, puzzle-solving, and freedom of exploration. The developer says that it is keeping the same high production values and storytelling features of the previous games while giving what players have been asking for in the gameplay department. The entirety of Ninja Theory is now working on Senua, giving the project much more manpower than ever before, while also letting the team draw on its action roots from Devil May Cry and prior titles. However, the studio also confirmed that its previously announced Project Mara horror experience is no longer in development. Alongside snappier traversal moves, Senua will be able to take stealth and direct combat routes. She has access to her own sword, plus any enemy weapons as well, with dual wielding also being an option for most dropped melee swords, axes, and other weapons. Outside of melee combat, Senua will be able to use special abilities that let her alter the reality around her. The world is said to be about twice the size of Hellblade 2. While this won't be an open-world experience, the linear story will let players explore their surroundings further than before. The story of Senua will be set after the events of previous Hellblade titles, with our protagonist being stuck in her own version of Purgatory. The series' well-explored psychosis themes will return as well. "She’s trapped between life and death on a quest to reach the afterlife and be reunited with the ones that she’s loved and lost," adds the studio. "Her belief is that by healing the wounds of her life, she can find the peace that is the key that unlocks the gate to the afterlife." Senua is releasing on Xbox Series X|S, PC, and PlayStation 5 sometime in 2027.
    • Windows has had it, it's called camera frame server. I recall when it was first introduced in an early Windows 10 release it caused issues and there was a registry entry to disable it. Seems like they disabled it by default at some point. Windows 11 brought that toggle to the settings app (not just registry) a while ago.
    • You didn't like Mafia The Definite Edition? As a fan of the first when it came out, I liked that remake.
  • Recent Achievements

    • Proficient
      Eric Biran went up a rank
      Proficient
    • Dedicated
      Conjor earned a badge
      Dedicated
    • Week One Done
      Windows Guy earned a badge
      Week One Done
    • Dedicated
      Mark Spruce earned a badge
      Dedicated
    • Collaborator
      conkir earned a badge
      Collaborator
  • Popular Contributors

    1. 1
      +primortal
      479
    2. 2
      PsYcHoKiLLa
      243
    3. 3
      Steven P.
      72
    4. 4
      +Edouard
      66
    5. 5
      neufuse
      66
  • Tell a friend

    Love Neowin? Tell a friend!