You are viewing our Forum Archives. To view or take place in current topics click here.
PS Vita Hacked on Day 1
Posted:

PS Vita Hacked on Day 1Posted:

XanderChaos
  • Graphics King
Status: Offline
Joined: Dec 22, 200914Year Member
Posts: 226
Reputation Power: 1023
Status: Offline
Joined: Dec 22, 200914Year Member
Posts: 226
Reputation Power: 1023
Well, looks like I've got a reason to pick up a Vita now. Day 1 and it's already full of holes. This hack isn't fully exploitable yet, but it's a start.

Source: [ Register or Signin to view external links. ]
Japanese PSP scener Mamosuke announced today on his blog that he was able to confirm a Hello World running on the PS Vita through the embedded PSP emulator. The exploit was made by developer teck4, and most likely relies on one of our good buffer overflow friends. and for those who are wondering is it real?, my current answer is that I havent tried it yet, but knowing Mamosuke fairly well I can tell you its true.

Technically, the idea behind the hack is simple but brilliant: the PS Vita has a PSP emulator, and we have plenty of PSP game exploits lying around can we assume they will work on the emulator? Thats what teck4 tried, and the answer is yes, so he managed to run unsigned code on the PS Vita.

[ Register or Signin to view external links. ]

For those who join this blog for the first time, basically how this works is that a special save data file is crafted for a specific game. When the game is asked to load the save data, through a flaw in the game code we manage to re-route the game into executing code that we wrote ourselves. That code is usually very simple, displaying a simple message (typically hello world, hence the name).

From there, what happened for the PSP was that we integrated these exploits into our homebrew loading tool, Half-byte Loader, which allows people to load more interesting homebrews such as emulators, etc

Thats the theory. Practically, although this is good news, there are a bunch of obstacles which will probably not make the exploit so interesting for most users (at least not yet): First of all, the exploit happens within the PSP emulator on the Vita, and will not directly give access to the Vita hardware or features. So this can theoretically only allow to run PSP homebrews on the vita (which, to me, is already fairly nice), and also, only User-mode ones ( a game exploit does not give access to the PSP kernel mode, so some tools and functionality is missing, which prevents emulators such as Daedalusx64 for example to run at full speed).

The second issue, and we ran into the same type of problem with the PSP, is that Sony will probably stop distributing the flawed game as soon as they know which game it is, and/or patch the game or the emulator. That can probably be tampered by the fact that there are numerous vulnerable games on the PSP, and so a cat and mouse game could start, assuming Sony cares about protecting the PSP emulator against user-mode homebrews

The third issue, and that might be the worst problem, is that copying PSP savedata from your computer to the PS Vita requires to go through a tool named the contents management assistant, which could easily be blocking the crafted savedata. Worse, copying any file to the PSP emulator has to go through this assistant, which means if we are to copy/load homebrews using this trick, they would probably have to follow a very specific format, and be all able to run from within the games savedata folder (most homebrews expect to run from the PSP/GAME folder, and half byte loader itself expects to be living on the root of the PSP, but the contents management tool will only copy files to the game savedata folder). Eventually tools will probably be built to overcome this limitation, but it sounds like Sony could patch that kind of stuff fairly easily in the future (and prevent copying anything thats not recognized as some savedata, for example)

As a conclusion there are lots of obstacles to turning this in a useful system for the end user, so as mamosuke states, this is not even step1 for the Vita hacking. But its still interesting news, running a hello world on Day1 on Sonys new console is still heart-warming and could lead to more interesting discoveries, so congrats to teck4, and a personal message to mamosuke and teck4: if you are looking for help to port HBL to this, please contact me. Im kind of always busy, but of course very interested to see where we can go with this

Im also thinking that somebody with enough free time could use this to run PSP homebrews through HBL on the PS3

Thanks to Abdullah for the tip! Two in a row, thanks a lot man

The following 1 user thanked XanderChaos for this useful post:

Kneesocks (12-17-2011)
#2. Posted:
Wub_x
  • Resident Elite
Status: Offline
Joined: Sep 19, 201112Year Member
Posts: 211
Reputation Power: 8
Status: Offline
Joined: Sep 19, 201112Year Member
Posts: 211
Reputation Power: 8
First lol, and holy crap, already!?
#3. Posted:
Kira
  • TTG Addict
Status: Offline
Joined: Dec 20, 201013Year Member
Posts: 2,522
Reputation Power: 112
Status: Offline
Joined: Dec 20, 201013Year Member
Posts: 2,522
Reputation Power: 112
LOL.

So sad.

That's Sony for you though. Making sh*tty products since 1955.
#4. Posted:
GTA5
  • TTG Addict
Status: Offline
Joined: Sep 13, 201112Year Member
Posts: 2,553
Reputation Power: 128
Status: Offline
Joined: Sep 13, 201112Year Member
Posts: 2,553
Reputation Power: 128
Lol, Really? Fail!

Poor Sony Its Always Getting Hacked Although Some Things Are Good.


Last edited by GTA5 ; edited 1 time in total
#5. Posted:
Kneesocks
  • TTG Contender
Status: Offline
Joined: Jul 21, 201112Year Member
Posts: 3,853
Reputation Power: 174
Status: Offline
Joined: Jul 21, 201112Year Member
Posts: 3,853
Reputation Power: 174
Ohhhhhh.
You GOT to be kidding me!

#6. Posted:
Prestiqe
  • Gold Gifter
Status: Offline
Joined: Aug 26, 201013Year Member
Posts: 3,855
Reputation Power: 147
Status: Offline
Joined: Aug 26, 201013Year Member
Posts: 3,855
Reputation Power: 147
Hahaha, great start for them.

#7. Posted:
Ray-Lewis
  • Prospect
Status: Offline
Joined: Apr 23, 201113Year Member
Posts: 653
Reputation Power: 27
Status: Offline
Joined: Apr 23, 201113Year Member
Posts: 653
Reputation Power: 27
lmao already??? thats a fail on sony's part
#8. Posted:
Ray-Lewis
  • Prospect
Status: Offline
Joined: Apr 23, 201113Year Member
Posts: 653
Reputation Power: 27
Status: Offline
Joined: Apr 23, 201113Year Member
Posts: 653
Reputation Power: 27
but i dont see the point in doing it anyway...
#9. Posted:
-Tommy
  • TTG Contender
Status: Offline
Joined: Feb 03, 201113Year Member
Posts: 3,108
Reputation Power: 134
Status: Offline
Joined: Feb 03, 201113Year Member
Posts: 3,108
Reputation Power: 134
Off to a amazing start!
#10. Posted:
Darkz0r
  • TTG Senior
Status: Offline
Joined: May 28, 200914Year Member
Posts: 1,172
Reputation Power: 79
Status: Offline
Joined: May 28, 200914Year Member
Posts: 1,172
Reputation Power: 79
Well its bound to be hacked isnt it, it has just being released. Takes after the PS3 :|
Jump to:
You are viewing our Forum Archives. To view or take place in current topics click here.