Hacking Finding an exploit/crash in 2022

reha

Long Live the Machine
OP
Member
Joined
Jun 10, 2021
Messages
109
Trophies
0
Website
reha.zc.al
XP
858
Country
Turkey
Yeah, I decided to hunt for an exploit (if not an exploit, at least a crash). So I have a few questions!

1) Which version should I be on for finding exploits?
2) Would it be easier to find if I look for them on older versions?
3) Do savegame/tiff exploits still work on 6.60/6.61?

Please don't reply "OMG why don't you just use CFW on latest version instead it's easier aswell", I already know that it's easy I'm just doing this for fun!

Thanks in advance!
 

FAST6191

Techromancer
Editorial Team
Joined
Nov 21, 2005
Messages
36,798
Trophies
3
XP
28,405
Country
United Kingdom
Menu exploits or game exploits? Also do you have any self imposed limits for this one -- you could sign the resulting code if you wanted that might dodge the "was it a crash or was it an exploit" aspect or indeed remove some protections and work up to an exploit with an otherwise signed firmware (think the equivalent of full updated PC with anti virus and proper user vs old PC with adobe flash/pdf reader and no AV).

Generally you will want to look for either a developer mode/fix this thing mode or something that reads external data (save games, pictures, network maybe, audio streams in for code purposes...), preferably in a higher level mode (such as the menu) and work in from there, possibly with a stop to any changelogs if it is an external library responsible for things as was the case.

New vs old versions has many possibilities and considerations.
Older stuff is more likely to be thrown together and have since revealed issues with libraries and whatnot, as well as most protections being reactionary rather than thought out from the top (don't spend time, money and CPU cycles when you could be having flashy animations or getting it "working), though at the same time chances are whatever dev was tapped to do the last updates (don't know if the PSP got one for the EU privacy thing that saw several other previously dead consoles get updates) probably considered it a lost cause, might have been an intern and likely was not concerned with the full battery of tests that might be run.
I don't think there was much on the PSP as time went on other than eboot encryption -- it is usually left to later consoles entirely to change hardware access levels, security philosophies and add in new protections even if theoretically software could be used to boost things.
 
  • Like
Reactions: reha

reha

Long Live the Machine
OP
Member
Joined
Jun 10, 2021
Messages
109
Trophies
0
Website
reha.zc.al
XP
858
Country
Turkey
Menu exploits or game exploits? Also do you have any self imposed limits for this one -- you could sign the resulting code if you wanted that might dodge the "was it a crash or was it an exploit" aspect or indeed remove some protections and work up to an exploit with an otherwise signed firmware (think the equivalent of full updated PC with anti virus and proper user vs old PC with adobe flash/pdf reader and no AV).

Generally you will want to look for either a developer mode/fix this thing mode or something that reads external data (save games, pictures, network maybe, audio streams in for code purposes...), preferably in a higher level mode (such as the menu) and work in from there, possibly with a stop to any changelogs if it is an external library responsible for things as was the case.

New vs old versions has many possibilities and considerations.
Older stuff is more likely to be thrown together and have since revealed issues with libraries and whatnot, as well as most protections being reactionary rather than thought out from the top (don't spend time, money and CPU cycles when you could be having flashy animations or getting it "working), though at the same time chances are whatever dev was tapped to do the last updates (don't know if the PSP got one for the EU privacy thing that saw several other previously dead consoles get updates) probably considered it a lost cause, might have been an intern and likely was not concerned with the full battery of tests that might be run.
I don't think there was much on the PSP as time went on other than eboot encryption -- it is usually left to later consoles entirely to change hardware access levels, security philosophies and add in new protections even if theoretically software could be used to boost things.
I'm probably going with menu exploits since they're (kinda) more interesting for me. About the version thing, I think I'll go with the lowest possible version (which is 1.00/1.50 for PSP 1000s), try to find a vulnerability in there, after that I'll try to run the same exploit/crash on the newer version and see if it works. Thanks for the help!!
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • Xdqwerty @ Xdqwerty:
    @SDA, ok googled it and sad
    +1
  • Xdqwerty @ Xdqwerty:
    but how did they go bankrupt?
  • Xdqwerty @ Xdqwerty:
    or rather, why?
  • K3Nv2 @ K3Nv2:
    I'm about to buy a $200 flash cart
  • Psionic Roshambo @ Psionic Roshambo:
    I think I have a 256GB card in my 3DS lol
  • Psionic Roshambo @ Psionic Roshambo:
    It's a New 3DS XL so it's still under warranty... If it ever breaks gonna make Nintendo fix it lol You said it was new.... For eternity!!!
  • Psionic Roshambo @ Psionic Roshambo:
    But my 3DS is loaded with emulators and 3DS games and DS games and GBA games probably thousands of games in total lol
  • Xdqwerty @ Xdqwerty:
    Brb going with my dad
  • Xdqwerty @ Xdqwerty:
    @Psionic Roshambo, are most of those games shovelware?
    +1
  • K3Nv2 @ K3Nv2:
    Nah gotta buy 3 1tb SD cards for 3ds the entire libraries need archived in my home
    +1
  • SylverReZ @ SylverReZ:
    >buys x3 1TB SD cards
    >stores the entire 3DS library on them
    >installs CFW
    >realised why I wasted loads of money and resources
    +2
  • Psionic Roshambo @ Psionic Roshambo:
    Lol no I clean my sets
  • K3Nv2 @ K3Nv2:
    Cause it's in my home ready to go
  • K3Nv2 @ K3Nv2:
    Like uremum
  • Psionic Roshambo @ Psionic Roshambo:
    But 100 games on SNES and Genesis and GBA then TG16 and NES and GB and GBC then all the other random systems and arcade games it all adds up lol
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Virtual Boy alone has probably 5 games!!! Lol
    +1
  • K3Nv2 @ K3Nv2:
    I won't mention any names in chat but some of us wastes $300 on preloaded hdds :tpi:
    +1
  • SylverReZ @ SylverReZ:
    @Psionic Roshambo, The PS5 had none.
    +2
  • Psionic Roshambo @ Psionic Roshambo:
    Lol I spent more than that on a stuffed 4TB drive lol
  • K3Nv2 @ K3Nv2:
    Honestly I've yet to fill the 1tb internal drive on my ps5
  • Xdqwerty @ Xdqwerty:
    @SylverReZ, 1) except final fantasy 16. 2) why would I have a console's whole catalogue if most of the games are either shovelware or terrible games?
  • Psionic Roshambo @ Psionic Roshambo:
    Kind of a waste, but the allure of all those games over 100,000
  • Psionic Roshambo @ Psionic Roshambo:
    Some shovel ware with low ratings you might enjoy more than the ratings would sugest
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    Cruisn on the Wii is one of my personal examples of that, it's considered one of the worst games of all time, I loved it and completed it several times.
    +1
  • Psionic Roshambo @ Psionic Roshambo:
    The trick for me was to go into the settings and crank up the Wiimote sensitivity to the max and it gets twitchy but you can win that way lol
    Psionic Roshambo @ Psionic Roshambo: The trick for me was to go into the settings and crank up the Wiimote sensitivity to the max and...