geohot正式宣布已破解PS3系统权限
geohot宣布正式获得读写ps3系统权限.破解还是比较初级的,剩下的就是用漏洞编写软件了.
他用了五周时间完成了这一切,至于他是谁,用iphone的应该都知道.原文转贴如下:
Hello hypervisor, I'm geohot
I have read/write access to the entire system memory, and HV level access to the processor. In other words, I have hacked the PS3. The rest is just software. And reversing. I have a lot of reversing ahead of me, as I now have dumps of LV0 and LV1.
3 years, 2 months, 11 days...thats a pretty secure system
Took 5 weeks, 3 in Boston, 2 here, very simple hardware cleverly applied, and some not so simple software.
Shout out to George Kharrat from iPhoneMod Brasil for giving me this PS3 a year and a half ago to hack. Sorry it took me so long
As far as the exploit goes, I'm not revealing it yet. The theory isn't really patchable, but they can make implementations much harder. Also, for obvious reasons I can't post dumps. I'm hoping to find the decryption keys and post them, but they may be embedded in hardware. Hopefully keys are setup like the iPhone's KBAG.
A lot more to come...
http://www.cnbeta.com/articles/102765.htm
Niphor的译文:
你好hypervisor,我是 geohot
我已经 读/写 访问了系统内存入口,HV级别访问处理器,就是说,我已经 Hack 了 PS3 .剩下的就只是软件和反编译了,由于我现在有 LV0 和 LV1 的 Dumps ,所以在我面前有许多反编译等着我.
3年,2个月,11天...这真是个相当安全的系统
用了5天时间,3天在波士顿,2天在这里,明确地使用非常简单的硬件和一些不是那么简单的软件.
特别要对给我这台 PS3 1年半去 Hack 的巴西 iPhoneMod 的 George Kharrat 说,对不起,它用了我很长时间:)
至于开发状态,我还没有透露.这个理论并不是真的可修补的,何况把它完成更难.正是因为如此,我不能发布 Dumps .我希望找到 解密密钥 并发布它们,但是它们 可能被嵌入在硬件中,多么希望 密钥 像 iPone 的 KBAG 那样设置的.
还有许多要做的...
----------------
擦...什么时候我也能这样啊...大概一辈子都不行了(除非改掉1天打渔10天晒网的习惯...TAT)
原创文章,转载请注明: 转载自M-78 星云
本文链接地址: geohot正式宣布已破解PS3系统权限
文章的脚注信息由WordPress的wp-posturl插件自动生成
