As the PS3 Turns..

February 2, 2011 -

A number of happenings related to the PS3 have occurred since the last time we wrote the story about Sony's court action against George Hotz - what follows is a brief rundown of events.

The Examiner and Ars Technica reported that the recently released firmware may have - at least temporarily - broken some stuff. The report points to a problem with the original and the Slim models of the PS3 not being able to upgrade to a new hard drive. According to several users on NeoGAF and HighDef Forum, the 3.56 firmware prevents the newer PlayStation 3 models with 16 MB flash from being upgradeable to a new hard disk drive.

The models include the Original PlayStation 3 Models - CECHH, CECHJ, CECHK, CECHL, CECHM, CECHP, and CECHQ. Slim PlayStation 3 models having trouble include CECH-20..A, CECH-20..B, CECH-21..A, CECH-21..B, CECH-250.A, CECH-250.B, CECH-250.A, CECH-250.B, CECH-251.A, and CECH-251.B. This is apparently an old bug that was eventually fixed, but accidently reintroduced by Sony. Other reports indicate that this problem has already been fixed.

Both CV&G and Gamasutra reported earlier this week that code sharing site Github was forced to take down seven custom firmware files shared by three different users. This was done at the behest of Sony who sent the web site a DMCA takedown notice. The takedown of these files took place a day before a California judge granted Sony a temporary restraining order against PS3 jailbreaker George Hotz.

A Neograf thread, fueled by an IRC conversation from developer and hacker "Mathieulh" (found on JailBreakScene), speculated that firmware 3.56 contained a rootkit that allowed Sony to scan specific files on any PS3 connecting to PlayStation Network. With the ability to scan for specific files, Sony could use this "back door" approach to detect and then ban users who have customized firmware on their consoles. This is a method similar to the one used by Microsoft to detect compromised Xbox 360s.

The Register reported that hackers had already managed to compromise the latest firmware release. On the same day 3.56 was released game console hacker Youness Alaoui (aka KaKaRoToKS) claimed via twitter that he was releasing tools to unpack the files,. These tools allowed him to uncover the new version's signing keys. Alaoui only released the signing keys for 3.56, which were hosted at Github. Naturally these files can be found somewhere on the internet if someone looks hard enough. A customized version of firmware 3.56 has not been released yet.

Finally, Edge reports that homebrew developer Mathieu Hervais calls Sony's efforts to plug the security hole created by hackers "too little, too late."

"3.56 was more of a patch to save what's left to be saved," Hervais told Edge. "Indeed Sony fixed everything that could have been fixed. The reality though is that this is only a minor drawback."

"New keys were introduced in the 3.56 Firmware and code that is not whitelisted is now forced to use those keys. However, since the boot chain integrity is compromised it's always possible to reprogram externally the NAND/NOR chips (where the firmware code is written to) to run unsigned code again."

"No matter what they do, a 3.56 (and onward) custom firmware is possible on all PlayStation 3 consoles manufactured so far. The people Sony hired made several kindergarten mistakes while implementing their security."


Comments

Re: As the PS3 Turns..

 I F'n Hate you hackers. Seriously, you're like a plague. Completely pointless, but always making life miserable for the rest of us.

Re: As the PS3 Turns..

Yeah those hackers are huge assholes! Especially since they use their high-priced lawyers to sue everyone into oblivion! Oh wait... that's Sony.

-Greevar

-Greevar

"Paste superficially profound, but utterly meaningless quotation here."

Re: As the PS3 Turns..

Right... That made sense.

How dare people use hardware they have purchased in a legal manner other than which is dictated by it's creator. How dare we!

Re: As the PS3 Turns..

The people Sony hired made several kindergarten mistakes while implementing their security...

LOL. Instead of suing them, maybe Sony should consider to hiring them.

 

------------------------------------------------------------ My DeviantArt Page (aka DeviantCensorship): http://www.darkknightstrikes.deviantart.com

Re: As the PS3 Turns..

Sony is a huge company and large companies tend to not think very clearly.  Dying companies tend to dumb things like sue first instead of doing smart things like negotiating and firing lousy programmers to replace them with good programmers.

- Left4Dead

Why are zombies always eating brains? I want to see zombies that eat toes for a living. Undead-related pun intended.

- Left4Dead Why are zombies always eating brains? I want to see zombies that eat toes for a living. Undead-related pun intended.

Re: As the PS3 Turns..

"Sony" and "rootkit" in the same article.

This can only end well.

Re: As the PS3 Turns..

This only means they can detect and ban people on PSN like MS does with XBL.  Even so, custom firmware could be written to send back the proper response to the PSN server with enough investigation.  The entire thing is compromised.  This isn't going back in the bottle, Sony.  :P

 
Forgot your password?
Username :
Password :

Shout box

You're not permitted to post shouts.
Andrew EisenWell of course. Girls don't buy figurines and guys don't buy figurines of girls. And no, the girls that buy figurines and the guys that buy figurines of girls don't count. The money belongs on the table, thank you very much!10/21/2014 - 12:43pm
IanCI have 3 of the Disney Infinity figures even though i don't have the game (Rapunzel from Tangled, and Anna & Elsa from Frozen, purely because its the only way to get figures from those two films)10/21/2014 - 12:23pm
Andrew EisenGlad you said "Pokemon." That's the first time I've seen anyone use that abbreviation.10/21/2014 - 12:14pm
MaskedPixelanteGot my demo key for ORAS, hope I get some awesome Pokemon to bring over.10/21/2014 - 12:08pm
E. Zachary KnightNot owning a WiiU helps too.10/21/2014 - 11:39am
E. Zachary KnightI have avoided Skylanders and Disney Infinity so far, so I don't see how Amiibos will get me in their grasp.10/21/2014 - 11:39am
Andrew EisenYes, GamerGate has a lot of fair-weather friends.10/21/2014 - 11:25am
Neo_DrKefkaI'm disheartened we have a group of people in Gamergate such as The Ralph Retort that is using Gamergate to prop themselves up but they are acting just like those they are fighting against. Only gaming site coming out of gamergate that worthy is TechRaptr10/21/2014 - 11:17am
Andrew EisenNot I. I'm not interested in desktop tchotchkes. Don't know what they do in Captain Toad (a game I'll actually be picking up) but I'm not impressed by what they do in Smash Bros.10/21/2014 - 11:10am
quiknkoldso in a change of subject to something much lighter, who here is getting the Amiibos? I have 4 preordered.10/21/2014 - 7:02am
TechnogeekFor a change of pace, here's a story about death threats aimed at games industry employees via Twitter that has nothing whatsoever to do with Gamergate: http://kotaku.com/indie-dev-threatens-gabe-newell-has-game-removed-from-164867886910/21/2014 - 4:38am
MechaCrashThey aren't being held accountable because *this is what GamerGate is really about.* Hatred and harassment under a thin veneer of concern for ethics; it's a rotten movement right down to the core. Related: http://tinyurl.com/o5mamgn10/21/2014 - 1:53am
james_fudgeodd why would they delete pro vita comments?10/21/2014 - 12:50am
Neo_DrKefkaI am a little disturbed that members of #GamerGate are supporting and not holding its same members accountable when they say remarks that are unacceptable!10/20/2014 - 11:39pm
Neo_DrKefkaSome #GamerGate people are defending @kingofpol many are however lashing out at him but if we held Sam Biddle accountable and Gawker so must we hold @kingofpol and #GamerGate10/20/2014 - 11:30pm
Neo_DrKefkaA big name in the Gamergate movement Kingofpol uses a offensive term about autistic people and in turn the entire GamerGate community lashes out at him. We do not need false leaders who think they can say anything https://twitter.com/Kingofpol10/20/2014 - 11:07pm
Papa MidnightMP, honestly, I'm struggling to make heads or tales of the events being outlined in that reddit thread. I've never heard of Siliconera before, either.10/20/2014 - 10:48pm
MaskedPixelantehttp://www.reddit.com/r/vita/comments/2jbn6u/former_siliconera_moderator_leaks_screenshots_of/ Siliconera mods accused of deleting user comments that were pro Vita.10/20/2014 - 9:23pm
quiknkoldhttp://www.diamondbackonline.com/opinion/article_3fbc52ec-57eb-11e4-ba91-0017a43b2370.html10/20/2014 - 9:16pm
Neo_DrKefkaId love to see people come 2gether whether your 4 or against gamergate to gather 2gether and support an anti bullying charity and I would love to see a pro and anti gamegate debate on a neutral platform that promotes discussion and solutions10/20/2014 - 8:33pm
 

Be Heard - Contact Your Politician