35w ago - Following up on his PS3 SCETool update and PS3 Dump_Rootkey code, today Sony PlayStation 3 hacker Naehrwert has posted some details on exploiting the PlayStation 3 lv2_kernel and has made available a sample 3.41 implementation below.
To quote from his blog: Exploiting (?) lv2
A long while ago KaKaRoTo pointed me to a stack overflow he found while reversing lv2_kernel. But there are two problems:
1. The vulnerability is in a protected syscall (the SELF calling it got to have the 0x40... control flags set). So you’d first need to find a suitable usermode exploit (don’t ask us), that gives you code execution with the right privileges.
2. The payload data is copied to lv2 heap first and the function will do a free call on it before the payload has any chance to get executed. This might not sound like a problem but it looks like lv2′s heap implementation will overwrite the free’ed space with 0xABADCAFE and thus destroy the payload.
Here (pastie.org/4755699) is my sample implementation for 3.41 lv2_kernel...
131w ago - Today DemonHades (and Jack90 at Spanish site Elotrolado.net) have reported a rumor of a possible PS3 kernel exploit discovered in the FIFA Soccer 09 game for PlayStation 3.
Currently there are no plans to publicly disclose the exploit, however, if it does surface there is a good chance it will still be present in PS3 Firmware 3.50 so only time will tell for sure.
To quote DemonHades, roughly translated: "I do not think showing more are demonstrated, but helping others and providing information.
I am not a coder "hopefully" would dawn, I'm ideologue and analyze the details.
What the exploit as I said in my private message that was copied to EOL (without my consent) was a reply to the question suggested by maee, who kindly responded.
As I said the FIFA09 has a kernel exploit not want to publish for several reasons, including neglecting the business model wave dependence on "x" groups, including Math.
Having the information is to have the power to handle situations as you saw when they released the code in the groove ("as if you throw rice to the pigeons go all at once and do not separate from you, but if they see anything they do not strip is piran "), I for personal reasons...