• Home
  • Downloads
  • EBOOT Fixes
  • Forums
  • New Posts
  • Register
    • Welcome, Register Now! 
    • Premium VIP Membership
    • PS3 Sticky
      • PS3 CFW & MFW
      • PS3 Debug Firmware
      • PS3 Decrypted PSN Links for CFW
      • PS3 Downloads
      • PS3 EBOOT.BIN Original File Links
      • PS3 Firmware
      • PS3 Game Releases List
      • PS3 Guides & Tutorials
      • PS3 Hacking Guides and Tutorials
      • PS3 Hacks & JailBreak
      • PS3 Help & Support
      • PS3 JailBreak Game Compatibility List
      • PS3 JB2 / True Blue (TB) Game Links
      • PS3 multiMAN Updates
      • PS3 Resources
      • PS3 Reviews
      • PS3 Save Files Repository
      • PS3 Themes
      • PS3 Trophies List
      • PS3 Videos
      • PS Vita Trophies List
    • Quick Links
      • Affiliates
      • Contact Us
      • FAQ
      • Post News
      • Site Rules
      • Tag Cloud
 

PS3 Hypervisor Reverse Engineering Progress is Detailed

Category: PS3 Hacks & JailBreak  By: PS3 News - (ps3wiki.lan.st)
Tags: ps3 hypervisor ps3 hypervisor reverse engineering ps3 hv dumps ps3 hv re ps3 rei

131w ago - A few days ago we reported on graf_chokolo's progress in decrypting PS3 Firmware 3.50, and today he has made available to the PlayStation 3 Wiki (linked above) his PS3 hypervisor reverse-engineering work to date, as follows:

HSPRG
The hypervisor stores a pointer to some structure per LPAR in HSPRG0 register. There are actually 2 HSPRG0 values: one for each thread of Cell CPU !!! There is a HSPRG0 array at 0x8(-0x69A0(HSPRG0)) + 0x20.

LPAR
LPAR = Logical Partition

lpar1 starts at 0x(unknown), and its believed to be the memory space wherre lv1 stores its variables, flags and other data.
lpar2 starts at 0x80000000000 and it's believed to be the memory space where lv2 stores its variables, flags and other data.

The pointer to active LPAR is stored at -0x67E8(HSPRG0).

vtable
0x0033CA40 (3.15)

Member variables
offset 0x38 - some pointer
offset 0x50 - LPAR id (8 bytes)
offset 0x70 - pointer to VAS id bitmap
offset 0x78 - power of 2 of word size from VAS id bitmap (4 bytes), equal to 6
offset 0x7C - number of 64-bit words in VAS id bitmap(4 bytes)

Interrupt handling
The pointer to the interrupt handler that is called e.g. when an external interrupt occurs is at -0x69F0(HSPRG0).

0x00001930 (3.15 and 2.60)

Interrupt vector tables
There are 2 interrupt vector tables. One for each thread. The pointer to these tables is at -0x6950(HSPRG0).

offset 0x8 - IIC memory base address (8 bytes)
offset 0x10 - thread register offset (8 bytes)
offset 0x18 - start of interrupt vector table (19 entries, each entry 32 bytes)

Interrupt vector table entry
offset 0x0 - pointer to interrupt handler
offset 0x8 - TOC
offset 0x10 - 0
offset 0x18 - parameter to interrupt handler

Interrupt handlers
Spurious interrupt handler
0x002BC174 (3.15)

RSX
0x00219A44 (3.15)
0x002176FC (2.60)

SB bus
0x002B9CC4 (3.15)

I/O address translation
0x002CD7D8 (3.15)
0x002C9214 (2.60)

Performance monitor
0x002F0584 (3.15)
0x002EB1B0 (2.60)

Token manager
0x002BBA9C (3.15)
0x002B754C (2.60)

HV call
The address of HV table is stored at -0x6FC8(HSPRG0).
The address of HV table size is stored at -0x6FD0(HSPRG0).

Continue reading the PS3 Hypervisor Reverse Engineering Progress HERE.



Stay tuned for more PS3 Hacks and PS3 CFW news, follow us on Twitter and be sure to drop by the PS3 Hacks and PS3 Custom Firmware Forums for the latest PlayStation 3 scene updates and homebrew releases!

Comments 19 Comments - Go to Forum Thread »

Errors

The following errors occurred with your submission

Okay

Quick Reply Quick Reply

  • Decrease Size
    Increase Size
  • Wrap [QUOTE] tags around selected text
Posting Quick Reply - Please Wait Posting Quick Reply - Please Wait
Starlight's Avatar
#19 - Starlight - 131w ago
Reply
Sounds like great news and hopefully will help into unlocking the ps3 fully some day.

mjgdroid's Avatar
#18 - mjgdroid - 131w ago
Reply
This is awsome, someone finally showed us what the playstaion can do. There is almost endless possibilities now this is like the commands in linux terminal although they are numbers not words.

It just facinates me how the playstation reads binary and this is going to help us unlock everything soon we will be changing the dashboard and having the ability to run anything on this godly device.

whinis's Avatar
#17 - whinis - 131w ago
Reply
With the current information we have we can only add more ram patchs (payloads) however this will eventually lead to the entire ps3's security being broken down. Currently HV is blocking our access to the juicy things in the ps3 and with more information we can essentially disable to security with a patch and even possibly make our own signed pups by extracting very important keys.

This is just sticking our foot in the door of the ps3 though, a tank is around the corner coming to help out though.

War Kid's Avatar
#16 - War Kid - 131w ago
Reply
This is ridiculous... and awesome at the same time. lol.

So, is all this leading towards a FW 3.50 jailbreak, or just the ability to downgrade? I'm pretty much up to either one. But... being able to modify the XMB and make custom FW would be sooo cool.

tragedy's Avatar
#15 - tragedy - 131w ago
Reply
This is massively interesting reading... I'd say without a doubt that this is probably the most useful dump of information to date. Props to the guy!

Page 1 of 4 1234›LAST »

Related PS3 News and PS3 CFW Hacks or JailBreak Articles

• Guide to Install multiMAN PS3 Themes via USB from a PKG File
• Simple PS3Updates v1.6 Build 2 Final PS3 Homebrew App Updated
• Video: Super Pixel Jumper v1.2 PS3 Homebrew Game is Released
• Video: Pointman: The Akkadian Wars PS3 Homebrew Game Arrives
• PSPMinis / PS3Minis / Bite v1.5.1 Update for PS3 is Now Released
• PS3 Fan Control Utility v1.7 for PS3 CFW CEX 3.41 to 4.41 Arrives
Affiliates  NewsNow  Privacy  PS3 CFW & MFW  PS3 Hacks & JailBreak  PS3 Reviews  PS3 Videos  © 2013 PlayStation 3 News

PlayStation 3 Links

• Contact Us E-Mail
• PS3 Affiliates
• PS3 CFW & MFW
• PS3 Debug Firmware
• PS3 Decrypted PSN Links for CFW
• PS3 Downloads
• PS3 EBOOT.BIN Original File Links
• PS3 Firmware
• PS3 Game Releases List
• PS3 Guides & Tutorials
• PS3 Hacking Guides and Tutorials
• PS3 Hacks & JailBreak
• PS3 Help & Support
• PS3 JailBreak Game Compatibility List
• PS3 JB2 / True Blue (TB) Game Links
• PS3 multiMAN Updates
• PS3 News Forums
• PS3 News Site FAQ
• PS3 News Site Advertising FAQ
• PS3 News Site Posting FAQ
• PS3 News Site Privacy FAQ
• PS3 News Site Rules
• PS3 News Site Tag Cloud
• PS3 News Site Terms
• PS3 Resources
• PS3 Reviews
• PS3 Save Files Repository
• PS3 Themes
• PS3 Trophies List
• PS3 Videos
• PS Vita Trophies List

PlayStation 3 News Discussions
How to Check the PS3 Base Firmware Version with MinVerChk - 37m ago

drdr3133's Avatar
Quote hi dude my ps3 is 320G. cech 3004B. base version 4.10 but now update to 4.41 can i downgrade and hack it if yes how can i do that plz thx...
By drdr3133 with
 31 Comments »
What Are You Most Looking Forward To? - 47m ago

Natepig's Avatar
Quote With the super charge in power and ram, what are you looking forward to most, that will be possible with PS4? I would like to see a massively detai...
By Natepig with
 0 Comments »
Sony India Leaks Rumored PlayStation 4 / PS4 250 GB Retail Pricing - 54m ago

Natepig's Avatar
Quote I love how its coming in time for Christmas. I have 2 young sons so my wife won't object to buying 2, because I tell her the kids will be freaks if w...
By Natepig with
 6 Comments »
Introductions: Hello Everyone, I'm New at PS3News.com! - 1h ago

drdr3133's Avatar
Quote thx my friend...
By drdr3133 with
 7035 Comments »

Latest PlayStation 3 Trophies
Move Street Cricket II: Ace of all trades
Move Street Cricket II: Veteran
Move Street Cricket II: 5 Star
Move Street Cricket II: Velcro Hands

Latest PlayStation Vita Trophies
Men's Room Mayhem: Toilet Trouble
Men's Room Mayhem: Mayhem Master
Men's Room Mayhem: Hygiene Award
Men's Room Mayhem: Sand in the Face

Latest PlayStation 3 Releases
Kamen Rider Battride War Premium TV Sound Edition JPN PS3-HR - 05-24-2013
Tom Clancys H A W X EUR PS3-Googlecus - 05-23-2013
Terraria JPN PS3-HR - 05-23-2013
Kamen Rider Battlide War JPN PS3-Caravan - 05-21-2013

Latest PlayStation 3 Themes
Wolverine Origins PS3 Theme - 05-19-2013
Heavy Rain (Official) Dynamic PS3 Theme - 05-09-2013
Wipeout HD Fury Dynamic PS3 Theme - 05-06-2013
Batman Arkham City Dynamic PS3 Theme - 05-04-2013
  • Contact Us
  • -
  • PS3 News