172w ago - Update #2: After examining the PSJailBreak Manager .PKG File below, RichDevX determined that it was hardcoded not to boot on Test consoles, and he has now made available a patch for PS3 Debug users who can decrypt the selfs to run PS3 game back-ups with it!
Below (under PS3 Dev Notes) is some more tech info from his findings for those curious, however, please note the PSJailBreak patch above is only for PlayStation 3 Debug users. At this time it would probably be wise NOT to waste your money on this expensive PSJailBreak USB device, as a FREE PS3 scene solution is bound to surface.
Update: CJPC has received confirmation and xorloser has now confirmed that the PSJailBreak runs unsigned code on the PlayStation 3, so it appears this PS3 mod-chip is indeed legitimate!
For those who remember ZPack for PS3, today we have what appears to be a remix of it dubbed PSJailBreak - a PlayStation 3 JailBreak allegedly for Retail and Debug PS3 consoles.
Warning: Before downloading or getting excited, read the "PS3 Dev Notes" section (below) for PS3 Dev comments on this alleged product.
To quote from their page (linked above) on the PSJailBreak Specifications:
• PS Jailbreak is a USB plug and play solution that installs in seconds, keeping your valid warranty seal in tact.
• Easy to use installer and GUI takes you step by step.
• Compatible with all production models FAT and SLIM. Supports all regions: USA, JAP, PAL and KOREA
• PS Jailbreak disables forced software updates and will never brick your console.
• Supports all games (it does not allow backups of bluray movies , dvd movies , or past consoles games)
• Backup games to your internal hard drive or external hard drive through USB, and boot directly off GUI. Eliminating the need for expensive blueray burners and costly blank media.
• Play backups off your hard drives 2x as fast as off the blueray drive. This eliminates lags and glitches to provide you with smoother game play.
• Open up your console to a new generation of homebrew applications. Load homebrew apps/games off any USB hard drive/flash drive.
• Fully updatable with new features/updates by connecting PS Jailbreak to any computers USB port.
Q: Is PS Jailbreak easy to install?
A: Yes, it is a plug and play solution. It takes 1 second to fully install, without modifying or opening your console.
Q: Does it permanently modify my console?
A: No of course not, once you unplug it from the usb port it is completely disabled.
Q: How do you install PS Jailbreak?
A: Please consult our downloads page for our instruction manual. We have done our best to make it as thorough as possible to answer all setup and troubleshooting issues.
Q: What is the warranty?
A: PS Jailbreak is sold with a 1 year warranty. All our resellers will take care of warranty issues.
PS3 Dev Notes on PS JailBreak:
Mathieulh: psjailbreak's so called "Backup Manager" (which is pretty much the only thing available to download on their website) is a debug package including a regular fself compiled with the (massively privately leaked) 1.92 sdk, The package itself is generated with Sony's official sdk tool (make_package_npdrm revision 1203 probably from that very same sdk) that makes it illegal to share because I am quite sure psjailbreak staff doesn't have the appropriate license to be using the official Playstation 3 SDK and its tools.
The binary itself seems to use the usual sce apis when it comes to the gui or copying files over. It does run on a debug console and displays a "nicely" done GUI that lets you "backup" your game to the external or usb hdd and "run" them later on.
Needless to say the backups wont "run" as their "backup manager" is just a regular fself running with game privileges and doesn't make use of any exploits that I can think of. Needless to say that if their so called usb dongle is real (which I doubt) it does extensive use of leaked sony's software and keys/certificates.
Ok, I know enough people that have the dongle to confirm that it's real even though I don't have one myself (yet). I believe it to be a USB jig; it's triggered the same way as SCE's official version so they must then use an exploit and do some lv2 patches. It's also likely that they "finalize" (set recover flag to 0) the console at every boot because you always need to use power + eject.
It also doesn't convert a retail to debug perse, there is no debug menu and no deci3 (debugging) support as far as I know. Also the fact that it only runs on 3.31 suggests that they do memory patches rather than run another kernel on the console. I might be wrong about that though since I don't have one yet myself.
Also the fact that it only runs on 3.41 suggest that they do memory patches rather than run another kernel on the console.
RichDevX: I hope nobody gave them money.. appears to be a 48 pin MCU
NDT: It wasn't actually a locked door, cause i'm sure the hackers cloned the jig module h/w and used it with their sw, so ps3 recognize the usb key like the sony hw itself, it's looks like a troian horse more than a firmware hack.
The problem until now was that no one shared the jig scheme, that's why no one was able to use this "simply" method. Maybe these hackers have really GOOD contacts.
A friend tested the patched manager with his debug and he told me it creates a directory with all the files untouched. Since original files can't work from hdd there must be some other tool that patch the eboot.
By the way it create a directory with the files. The problem is that the game won't start because the eboot is still encrypted, maybe the dongle does somthing on the fly...
By the way if the dongle "transform" a retail PS3 into a debug one then it give it the ability to install debug pkgs, this means it's possible to install homebrew on a retail Ps3 that's awesome!
It could also be that port 1000 could be open just like the debug PS3 so it could communicate with a PC (APP HOME + Target manager and so on).
I forgot to mention that the debug self can't be run from a retail unit (without the dongle at least that convert the retail to debug).
By the way it's impossible to play new games with 1.10 fw cause of the fact new games need an updated firmware because new firmware carry new libraries needed to run the games.
Some games just check the fw version in order to let the user to update (while they use old libraries revision to work) the most games instead use new libraries because the developers used them to create the game, so can't run on older firmwares.
Those with a debug could also share games saved internally. Well, it could be that jb enables port 1000 even on retail, we don't know it yet.
CJPC: Haven't tried it, but it looks like it will copy the game on a Debug PS3 but won't decrypt the executable... so, it's basically a giant "copy dev_bdvd/* hdd0/*" for lack of a better term.
RichDevX PS JailBreak Notes:
• on a debug unit, it'll branch to sys_process_exit
• based on the value that is passed to sub_10B20(true/false)
• if false is passed, it'll exit, else it'll branch to sys_game_process_exitspawn2
• i forced it to branch
• sys_game_process_exitspawn2("/dev_hdd0/game/LAUN12345/GAMEZ/BLUS30011/PS3_GAME/USRDIR/EBOOT.BIN", 0, 0, 0, 0, 0x3E9, 0x70)
• it's stored there
• aka it wont boot a game, i'll just exit the process
• they released this app, and hardcoded it so it wouldn't launch an selfs on our test kits only on theirs
Stay tuned for more PS3 Hacks and PS3 CFW news, follow us on Twitter and be sure to drop by the PS3 Hacks and PS3 Custom Firmware Forums for the latest PlayStation 3 scene updates and homebrew releases!
I've gotten word from a high level scene source that it in fact does run unsigned code. Quickest (and easiest) guess - someone swiped and cloned a JIG, easy to convert to DEV and go from there, however it could be an exploit. More to come!
Edit: Based off the install instructions, it seems that power and eject need to be quickly pressed which would confirm it uses the same technique that Sony uses for its JIG's.
So basically we will know pretty soon if its legit, because they don't even have authorized resellers on their webpage and I didnt see a checkout link to buy one. They do claim it works on any console not only dev so Im curious if it works or not, and on the other hand if it works this usb chip will be extremely illegal and we will probably see cheap copys soon.