50w ago - Following up on the PS3UserCheat and True Blue unnecessary DRM-infected dongles being hacked alongside zadow28's work, today PlayStation 3 developer oct0xor shared a video of his OpenCobra Payload which aims to render the current Cobra USB dongle from Max Louarn useless.
Below are the details from his blog, as follows: "First I am going to say that this is not going to be an article, just a first blog post and some info about my recent project.
Finally I got my hands on cobra it was quite a lot of time since I touched this last time. There was s good things happened since then eg. I reverse engineered usercheat and true blue, had done a lot ps3 and not ps3 related hacking. There was a bad things eg. BlueDiskCFW, lv0 leak, a lot of devs leave the scene...
Cobra was for me really "the last" thing I have to do.
The last time when I worked on this I didnt had a dongle, and all what I had was a dump by JaiCraB. I reverse engineered it as much as possible, figure out almost all tricks, encrypton and etc. And figuare out that it reads a lot of data from dongle, and I cant do much without dongle itself. Thats why I put this project to the back burner.
Well... I had never buyed anyone dongle, and I never was not going to. All my dongles was donated (thanks again ) but not that time.
it was hard for me to make this decision but a few days ago cobra finally shipped to me...
3 days and now its all over.
Security is good enough, but not without big security risks. But it still the best crypto/obfuscation what I had seen on ps3. Sony have something to learn from this guys, especially now.
Cobra / True Blue almost identical, have the same source code, if you ever hacked 1 thing, 2nd wouldnt be a problem. The main functionality, honestly, not changed since original jb. Thats a shame. Thats why I cracking them like nuts
On the fourth day I taked a decision to make my own "OpenCobra" payload. only clean code without drm and garbage, to be able to port it to any new firmware, and change/add features. It taked 2 days, 3000 lines of asm, and you had seen the result.
Atm it based on 4.1 payload, plans for future is check/add new features from 4.4/5.0. Port to a new firmware (if cobra will not do this for me), and realize all nice innovations from new version of psp emu, such as better emu accuracy, 3D and etc...
In video you had seen Payload Loader. Thats the all code it has:
If this subject will be interested for people, maybe I will write a full article about True Blue / Cobra analysis and hacking.
btw: Me and ~ some psp mysterious dark figure ~ reverse engineered algo for generating valid psp isos back to jule. But saves and a lot of games dont work without patching. So cobra's patched emu much better there imho."
Below are some additional pics from his blog which simply states: Usercheat + Cobra = <3
From flat_z: Here is some explanations to make things more clearer. If you read my twit about ps2_netemu you can see that I reverse-engineered it. It includes almost all things which are required to make custom disc images of original PS2 discs and run them on the PS3 if everything will works fine. So it can lead us to the process of remastering PS2 discs which includes making of ISO.BIN.ENC (the encrypted version of original image which can be read by the PS3), creation and encryption of .VME files (virtual memory cards), ISO.BIN.EDAT (includes the title ID of disc).
The only thing which is not currently known is the format of decrypted CONFIG file (I can decrypt the file and encrypt it back but it have a complex format). It is optional and can be empty but I'm afraid that some games requires it to run on the PS3. My plan was the creation of PS2 remastering tool and I wanted to share it. Although I even not sure will it work or no but there are many chances that it will.
But something happened before I started to do it. My HDD on the laptop died and I have all information regarding PS3 on it. Although I was able to restore some important files but not all. So I need a time to buy components for a new computer and build it. For the same reason, I have a delay on my real job (I'm working as a free-lancer) so I will going to do my job before I start to do something new for PS3.
P.S. I see many questions about compatibility. You don't need a backward compatible PS3 console to run PS2 games through ps2_netemu because it is software emulator and doesn't require any PS2 hardware components. Also I think that ps2_netemu is more better and stable than ps2_softemu but this statement requires testing.
Finally, from naehrwert (via twitter.com/naehrwert) comes some related Cobra ODE EID0 information (ECDSA from pastie.org/6169158) , as follows:
While this is definitely interesting news, odds are it's just a ploy for the Cobra Team to release a new dongle that will be 'required' for their upcoming PS3 4.3x CFW unfortunately or the PS3 ODE in order to further line their pockets with PlayStation 3 sceners' hard-earned cash once again... as always, time will tell for sure.
Stay tuned for more PS3 Hacks and PS3 CFW news, follow us on Twitter and be sure to drop by the PS3 Hacks and PS3 Custom Firmware Forums for the latest PlayStation 3 scene updates and homebrew releases!
I'm glad someone can see how much 'work' exists in zadow's releases.
From Wololo (via wololo.net/2012/06/16/ps3-zadows-release-a-useless-repost/): PS3 Zadow's release a useless repost?
Yesterday I posted what appeared to me as a massive breakthrough in the PS3 scene, a bunch of files decrypted from the Cobra dongle, one of the DRM encrypted piracy dongles for firmware 3.55. The files had been released by user zadow28, who seems to have a fairly good reputation on some of the scene’s websites.
I have been contacted since then by several veterans of the PS3 scene, who told me these files are, in essence, garbage.
They didn’t explicitly tell me the word “fake”, but rather, it seems the files posted by Zadow are basically useless information, which in addition has been publicly available for a while. None of them told me “where” that information actually can be found, which for now I interpret as “it is so useless that we will not even bother to tell people where they can find the information in the first place”.
I do not have the tools, the knowledge, or the time to confirm if Zadow28 is a fraud, but I can say I am seeing a pattern I’ve seen in the past on the psp and the vita scene: unknown guy gets semi famous by posting lots of garbage that looks like the real deal, famous devs call him out for a faker, random people start some conspiracy theories about old devs trying to get all the credits, other random people tell the old devs that they should collaborate with the new guy instead of bashing him, old devs have a hard time explaining that it is impossible to collaborate with a dude who has the IQ of a banana. (I’ve been through that so I know how people like kakaroto feel.
So, if I’m to choose a side, I’ll go and trust the old dudes. If they say it’s useless, I guess they’re right.
From defyboy: Thanks but these were mostly available already. With the exception of your IDA DB of course.
Why do I constantly find things newsed as a release when it's just copies of the stuff the developers made available on the wiki long ago. This isn't a gift for developers, it's another cry for attention. The developers either already have this stuff, or know exactly where to get it.
I made a mirror on the wiki for anyone who wants his files: ps3devwiki.com/files/zadow28/
From euss: At least I won't be needed to give zadow unself/ungpkg with sources and precompiles like his last readself2/3/4/5 fail (so much better to use scetool anyhow)... (which btw are all on wiki, /files and gitorious too)
I do not know who incepted this thread with nonbased remarks about Atmel AVR/Micochips PIC, but they should look closer to the content and what is needed for such target. There is nothing AVR/PIC related inside the filesets, just plain unself/ungpkg'ed files which where ran through IDA and exported i64/db files. It also does not make any sense to even /want/ it as a dongle, because if you have the PPU/SPU changes, it would make alot more sense to distribute it as patches (MFW Builder TCL) or live patcher: payload (payloader3) then a stupid dongle.
From CrashSerious: First, I've had some concerning health issues and haven't touched this for several months. Also, priorities were re-alligned in the process and haven't had a chance to pick it back up. So I have nothing to report... on to the main reason for posting.
I had a big long email started (about halfway done) detailing every file in there and just gave up due to the number of things that were junk.
Mostly, it looks like files we already have, unselfed eboot.bins (congratulations on using unself or scetool), a corrupt ida database, some meaningless/worthless logs and who knows what else.
I did look at the corrupt idb to make sure it actually "looked like"an idb. It actually did at a glaqnce--- so at least it's not like the last time and he was trying to pass off a linux binary as lv0 decrypted or some crap like that... oh wait... he did do that, didn't he defyboy .
Probably a better use of my time if I stopped dissecting the gift any ways. Zadow’s files are still available here if you want to give them a look, but it’s probably not the breakthrough I initially thought it was.
Finally, from flat_z: I am very sad looking at all news sites about ps3... when they keep posting any "shocking" news about such noobs as zadow28 and exposing him as the greatest hacker in the world
Hmm, cobra dongle payload hasn't been completely reversed by zadow, because he simply doesn't have the skills for doing that stuff, what he released is something anyone can do on their own, so it's of zero utility to get payload hacked.
yeah, with the improvements he done on MM I think he deserves to work on something that he can get something. He release stuff for free for over a year already, but I do hope that dean wont get mad on us who uses the dongle-less cobra.