that’s what Elon told me my job was, and I will try my hardest to do it. I have 12 weeks
— George Hotz 🐀 (@realGeorgeHotz) November 22, 2022
also trying to get rid of that nondismissable login pop up after you scroll a little bit ugh these things ruin the Internet https://t.co/vZbSfEqlfW
This guy's work on hacking iPhones and the PS3 was legendary at its time. He also tried to make his own self-driving car, but of course,
Jump in the discussion.
No email address required.
Here's an old article about the PS3 hack. I can't remember the detail except that he applied current to some part the hardware while running linux, causing the running process to jump into the hypervisor. It's been at least ten years since then, so I may not be remembering it exactly right.
https://www.networkworld.com/article/2243433/playstation-3-hack-released-online.html
Jump in the discussion.
No email address required.
Darn, so it was actually hardware level? For whatever reason I assumed it was heavily customized Linux on bare metal without a virtualization layer, but I'm also a non-technical Brainlet
Jump in the discussion.
No email address required.
Sony let people run Linux on the PS3 through a feature called OtherOS, but they didn't allow full hardware access because then you'd be able to pirate everything. Even the indie software people were running couldn't access the GPU so the available homebrew software wasn't very exciting. Hotz used a hardware hack to jump some memory pointers around and get access past the VM level. Then he or someone else (can't remember anymore) used the exploit to steal the encryption keys for signing everything, followed by completely removing the system's security layer. Before this happened, a lot of people thought the system was completely unbreakable.
Jump in the discussion.
No email address required.
The signing keys for any asymmetric approach shouldn't even exist on the verifying system (the console). Something seems off about how you're describing the hack.
Jump in the discussion.
No email address required.
I agree. I can't find the old details anymore, but if you google it, it sounds like Sony fricked something up in their ECDSA implementation.
Jump in the discussion.
No email address required.
IIRC, it was a weak keypair that made deriving the private key easier than it should have been.
Jump in the discussion.
No email address required.
More options
Context
More options
Context
More options
Context
More options
Context
More options
Context
Jump in the discussion.
No email address required.
Amazing find
Jump in the discussion.
No email address required.
More options
Context
More options
Context
Jump in the discussion.
No email address required.
More options
Context
More options
Context