PS3 PPPwn?

Nakamichi

Well-Known Member
OP
Member
Joined
Dec 10, 2021
Messages
388
Trophies
0
Age
36
XP
1,724
Country
Germany

robokingscosmos

New Member
Newbie
Joined
May 9, 2024
Messages
4
Trophies
0
XP
21
Country
United States
No there's only one way to beat Metldr2 and there is one guy who is gonna DPA a superslim eMMC retail unit
Everything is locked away inside Lv0 since 3.60+ so the chain of trust has not been defeated and so far we only got as far as getting a Superslim with a factory fault tested on hackable units.
 

LPpiton

New Member
Newbie
Joined
May 9, 2024
Messages
1
Trophies
0
Age
29
XP
3
Country
Russia
No there's only one way to beat Metldr2 and there is one guy who is gonna DPA a superslim eMMC retail unit
Everything is locked away inside Lv0 since 3.60+ so the chain of trust has not been defeated and so far we only got as far as getting a Superslim with a factory fault tested on hackable units.
what is it DPA and factory fault in superslim?
 

zfreeman

Well-Known Member
Member
Joined
Mar 9, 2013
Messages
1,562
Trophies
2
Location
USA
XP
4,014
Country
United States
what is it DPA and factory fault in superslim?
I'm a layman as well, but it sounds like they're using Differential Power Analysis (DPA) to physically "disassemble" the encryption procedure, and eventually decrypt part of Superslim's bootchain, Metldr2. Decrypting Metldr2 will allow breaking through the other security levels using a set of commands (bootstrap?) to gain Return-Oriented Programming (ROP) code execution (e.g., Fusée Gelée exploit on Switch), or maybe overwrite it, if it's stored in writeable memory.

https://www.psx-place.com/threads/meltdr2-decryption.31497/

https://www.psx-place.com/threads/wait-why-cant-we-jailbreak-3000-systems.18778/page-2
 
  • Like
Reactions: LPpiton

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
    Bunjolio @ Bunjolio: j