User talk:Zecoxao

From PS3 Developer wiki
Revision as of 19:30, 5 October 2015 by Anonymous (Privacy policy)
Jump to navigation Jump to search

The Last Piece of the Puzzle

How

  • By enabling diagnostic mode on the ps3, we can enable the use of JTAG again (it's temporarily disabled when diag mode isn't set)
  • It is possible to dump the syscon firmware using this method (in unencrypted state)
  • The JTAG registers/TAP-controllers need to be bruteforced / reverse engineered
  • The leaked service manuals present information about the pins connected to the JigPin
  • The ObjectiveSuite contains an object (DIAGSERVICE) used to diagnose the ps3 using JTAG
  • Using a DIY JigPin would facilitate the task, but we still need more info about the hardware and software interface used by ObjectiveSuite to handle this.
  • This would probably work on ps4 too (provided that the diag pin and the JTAG pins still exist)

To wikify

request_idps generated files binary xor

Note: files are padded 8 bytes at start, for convenience

Wii U Key Goodness

Type Key SHA1 Status Description
Key 805E6285CD487DE0FAFFAA65A6985E17 2ba6f692ddbf0b3cd267e9374fa7dd849e80f8ab Valid Wii U Expresso Ancast
IV 596D5A9AD705F94FE158026FEAA7B887 Valid Wii U Expresso Ancast
Key 2EFE8ABCEDBB7BAAE3C0ED92FA29F866 ce3641b2660253f5a7e789db297be2c1585b3054 Valid vWii Expresso Ancast
IV vWii Expresso Ancast
Key D7B00402659BA2ABD2CB0DB27FA2B656 6a0b87fc98b306ae3366f0e0a88d0b06a2813313 Valid Wii U Common