{"id":1705,"date":"2014-10-25T12:40:00","date_gmt":"2014-10-25T11:40:00","guid":{"rendered":"http:\/\/hack-console.fr\/blog\/?p=1705"},"modified":"2017-03-20T17:00:42","modified_gmt":"2017-03-20T16:00:42","slug":"l-avance-du-hack-ps4","status":"publish","type":"post","link":"https:\/\/hack-console.fr\/blog2\/l-avance-du-hack-ps4\/","title":{"rendered":"L&rsquo; avanc\u00e9\u00e9 du Hack PS4"},"content":{"rendered":"<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>Bonjour,\u00a0<\/p>\n<p>&nbsp;<\/p>\n<p>Je vais d\u00e9tailler dans cet article ce que l&rsquo;ont sait depuis la sortie de la PS4 et les failles connues.<\/p>\n<p>&nbsp;<\/p>\n<p>La premi\u00e8re et non des moindre est l&rsquo;exploit webkit (faille navigateur)\u00a0paru il y a quelques jours et pr\u00e9sent dans le dernier firmware 1.76. Cet exploit est \u00e9galement pr\u00e9sent sur les PS VITA donnant un acc\u00e8s au coeur de la console.<\/p>\n<p>&nbsp;<\/p>\n<p>Pour tester le hack, vous pouvez avec votre PS4 vous rendre a ces adresses et appr\u00e9cier le resultat \ud83d\ude42<\/p>\n<p>&nbsp;<\/p>\n<p><a href=\"http:\/\/wololo.net\/v\/176\/ps4_dump.html\">http:\/\/wololo.net\/v\/176\/ps4_dump.html<\/a><\/p>\n<p><a href=\"http:\/\/wololo.net\/v\/176\/ps4_dump2.html\">http:\/\/wololo.net\/v\/176\/ps4_dump2.html<\/a><\/p>\n<p><a class=\"bbc_url\" title=\"Lien externe\" href=\"http:\/\/wololo.net\/v\/176\/ps4_rop2.html\" rel=\"nofollow external\">http:\/\/wololo.net\/v\/176\/ps4_rop2.html<\/a><\/p>\n<p>&nbsp;<\/p>\n<p>Le code source est disponible a cette adresse :\u00a0<\/p>\n<p><span style=\"color: #00ccff;\">https:\/\/www.sendspace.com\/file\/mdunzp<\/span><\/p>\n<p>&nbsp;<\/p>\n<p>Pour le moment on ne peux rien faire avec cet exploit, cela nous donne juste un acc\u00e8s a des informations de la console qui n&rsquo;\u00a0\u00e9tait pas disponible jusqu&rsquo;\u00e0 pr\u00e9sent. Laissons faire le temps pour le d\u00e9veloppement de ce hack.<\/p>\n<p>&nbsp;<\/p>\n<p>https:\/\/www.youtube.com\/watch?v=rK84GQW3neY<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Le lancement d&rsquo;homebrew JAVA est dej\u00e0 disponible sur PS4.<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p>Cela n&rsquo;a rien \u00e0 voir avec un hack, mais on peux d\u00e9j\u00e0 \u00e9muler des jeux \u00a0super nintendo et gameboy sur PS4 en gravant l&rsquo; homebrew sur un BLU RAY. \u00a0La console lira ensuite le contenu. Cette fonction \u00e9tait d\u00e9j\u00e0 pr\u00e9sente sur PS3 avant son jailbreak.<\/p>\n<p>&nbsp;<\/p>\n<p>https:\/\/www.youtube.com\/watch?v=8ucnqBNmqU8<\/p>\n<p>&nbsp;<\/p>\n<div class=\"entry-content-asset videofit\">\n<div data-mode=\"normal\" data-oembed=\"1\" data-provider=\"youtube\" id=\"arve-youtube-_cqq2hfikpo\" style=\"max-width:900px;\" class=\"arve\">\n<div class=\"arve-inner\">\n<div style=\"aspect-ratio:4\/3\" class=\"arve-embed arve-embed--has-aspect-ratio\">\n<div class=\"arve-ar\" style=\"padding-top:75.000000%\"><\/div>\n<p>\t\t\t<iframe allow=\"accelerometer &apos;none&apos;;autoplay &apos;none&apos;;bluetooth &apos;none&apos;;browsing-topics &apos;none&apos;;camera &apos;none&apos;;clipboard-read &apos;none&apos;;clipboard-write;display-capture &apos;none&apos;;encrypted-media &apos;none&apos;;gamepad &apos;none&apos;;geolocation &apos;none&apos;;gyroscope &apos;none&apos;;hid &apos;none&apos;;identity-credentials-get &apos;none&apos;;idle-detection &apos;none&apos;;keyboard-map &apos;none&apos;;local-fonts;magnetometer &apos;none&apos;;microphone &apos;none&apos;;midi &apos;none&apos;;otp-credentials &apos;none&apos;;payment &apos;none&apos;;picture-in-picture;publickey-credentials-create &apos;none&apos;;publickey-credentials-get &apos;none&apos;;screen-wake-lock &apos;none&apos;;serial &apos;none&apos;;summarizer &apos;none&apos;;sync-xhr;usb &apos;none&apos;;web-share;window-management &apos;none&apos;;xr-spatial-tracking &apos;none&apos;;\" allowfullscreen=\"\" class=\"arve-iframe fitvidsignore\" credentialless data-arve=\"arve-youtube-_cqq2hfikpo\" data-lenis-prevent=\"\" data-src-no-ap=\"https:\/\/www.youtube-nocookie.com\/embed\/_cqQ2hFiKpo?feature=oembed&amp;iv_load_policy=3&amp;modestbranding=1&amp;rel=0&amp;autohide=1&amp;playsinline=0&amp;autoplay=0\" frameborder=\"0\" height=\"675\" loading=\"lazy\" name=\"\" referrerpolicy=\"strict-origin-when-cross-origin\" sandbox=\"allow-scripts allow-same-origin allow-presentation allow-popups allow-popups-to-escape-sandbox\" scrolling=\"no\" src=\"https:\/\/www.youtube-nocookie.com\/embed\/_cqQ2hFiKpo?feature=oembed&#038;iv_load_policy=3&#038;modestbranding=1&#038;rel=0&#038;autohide=1&#038;playsinline=0&#038;autoplay=0\" title=\"\" width=\"900\"><\/iframe><\/p><\/div>\n<\/p><\/div>\n<p>\t<script type=\"application\/ld+json\">{\"@context\":\"http:\\\/\\\/schema.org\\\/\",\"@id\":\"https:\\\/\\\/hack-console.fr\\\/blog2\\\/l-avance-du-hack-ps4\\\/#arve-youtube-_cqq2hfikpo\",\"type\":\"VideoObject\",\"embedURL\":\"https:\\\/\\\/www.youtube-nocookie.com\\\/embed\\\/_cqQ2hFiKpo?feature=oembed&iv_load_policy=3&modestbranding=1&rel=0&autohide=1&playsinline=0&autoplay=0\"}<\/script><\/p>\n<\/div>\n<\/div>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong><span style=\"font-size: 14pt;\">Maintenant nous allons d\u00e9tailler d&rsquo;autres failles possibles list\u00e9es par SKFU en voici la traduction.<\/span><\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Disque dur<\/strong><\/span><\/p>\n<p>Le disque dur est chiffr\u00e9 donc rien ne peut \u00eatre fait pour l&rsquo;instant tout comme la PS3. Pour cette derni\u00e8re, il nous faut la root key pour d\u00e9crypter le disque dur.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Wifi LAN<\/strong><\/span><\/p>\n<p>Son point d&rsquo;entr\u00e9e favori. Certains d\u00e9tails ne seront pas indiqu\u00e9s ici pour \u00e9viter que Sony ne les corrige.<br \/>Pour analyser les paquets, vous pouvez utiliser Wireshark, Charles ou SKFU&rsquo;s Pr0xy.<br \/>Une chose int\u00e9ressante que SKFU a trouv\u00e9, c&rsquo;est que le jeu\u00a0Final Fantasy XIV: A Realm Reborn\u00a0proc\u00e8de lors du lancement au t\u00e9l\u00e9chargement d&rsquo;un patch (mise \u00e0 jour) avant de lancer le jeu, alors que les autres jeux utilisent des PKG pour se mettre \u00e0 jour.<br \/>Le fichier est demand\u00e9 \u00e0 l&rsquo;adresse\u00a0<a href=\"http:\/\/patch-bootver.ffxiv.com\/http\/ps4\/ffxivneo_release_boot_eu\/2014.04.02.0000.0000\/?time=2014-04-04-11\" target=\"_blank\" rel=\"nofollow\">http:\/\/patch-bootver.ffxiv.com\/http\/ps4\/ffxivneo_release_boot_eu\/2014.04.02.0000.0000\/?time=2014-04-04-11<\/a><br \/>La chose int\u00e9ressante, c&rsquo;est que la connexion n&rsquo;est pas s\u00e9curis\u00e9e (HTTPS), ce qui fait qu&rsquo;on a pu conna\u00eetre l&rsquo;adresse et son contenu. Encore mieux, on peut ainsi faire un \u00ab\u00a0man in the middle\u00a0\u00bb pour modifier le contenu de ce fichier. Il semblerait que le jeu ne v\u00e9rifie pas les ent\u00eates (la signature de sony).<br \/>Une faille est ainsi possible ici. Peut-\u00eatre que d&rsquo;autres jeux ont une faille similaire. SKFU demande qu&rsquo;on lui donne des cl\u00e9s PSN pour tester des failles sur d&rsquo;autres jeux<\/p>\n<div><img decoding=\"async\" class=\"bb-image\" title=\"Cliquer ici pour voir l'image en taille reelle \" src=\"http:\/\/www.ps4-info.fr\/static\/im\/ff_5TQXqs6.png\" alt=\"\" \/><\/div>\n<div>\u00a0<\/div>\n<div><span style=\"text-decoration: underline;\"><strong>HDMI<\/strong><\/span><\/div>\n<div>\u00a0<\/div>\n<p>Peu de personnes le savent mais dans le protocole HDMI il y a CEC et HEC qui pourraient contenir des failles exploitables pour ex\u00e9cuter du code.<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Le lecteur BLU RAY<\/strong><\/span><\/p>\n<p>Vous pouvez d\u00e9j\u00e0 dumper le disque PS4 avec un lecteur bluray sp\u00e9cifique et un PC pour voir son contenu. Le format bluray BD-J permet d&rsquo;ex\u00e9cuter du code en Java 1.3. Peut \u00eatre que des failles s&rsquo;y trouvent.<br \/>Vous pouvez m\u00eame ex\u00e9cuter du code basique gr\u00e2ce au BD-J (<a class=\"bb-url\" href=\"http:\/\/dl.skfu.xxx\/homebrew.zip\" target=\"_blank\" rel=\"nofollow\">voir exemple de SKFU<\/a>\u00a0qui fait juste hello world)<\/p>\n<p>&nbsp;<\/p>\n<p><span style=\"text-decoration: underline;\"><strong>Les outils GAME GENIE<\/strong><\/span><\/p>\n<p>&nbsp;<\/p>\n<p>Pour ceux qui ne sont pas n\u00e9s avec la Playstation, le Game Genie \u00e9tait un p\u00e9riph\u00e9rique permettant de tricher sur NES, Super NES, Game Boy, Mega Drive et Game Gear.<br \/>Une nouvelle version est sortie r\u00e9cemment pour la PS3 et DS avec une modification de la sauvegarde, suite au rachat de la marque par hyperkin.<br \/>La soci\u00e9t\u00e9 annonce avoir trouv\u00e9 une faille sur la PS4 permettant de tricher sur les jeux.<br \/>La raison de cette absence depuis tr\u00e8s longtemps s&rsquo;explique tr\u00e8s simplement par les s\u00e9curit\u00e9s ajout\u00e9s dans les consoles et il est donc de plus en plus difficile de tricher dans les jeux et il est souvent obligatoire d&rsquo;hacker la console. Les seules solutions sont souvent la modification des sauvegardes.<\/p>\n<p>Cependant Game G\u00e9nie dit avoir trouv\u00e9 une faille dans la PS4 avec la fonction Remote Play avec la PS Vita, exploit\u00e9e gr\u00e2ce \u00e0 un r\u00e9seau Wifi cach\u00e9 pour exploiter une backdoor dans le syst\u00e8me. Pour l&rsquo;instant ils sont parvenus \u00e0 acc\u00e9der aux donn\u00e9es de troph\u00e9es et aux sauvegardes partiellement encrypt\u00e9es. Il y a encore beaucoup de travail n\u00e9cessaire mais le but ultime est de pouvoir modifier un fichier de jeu ou les fichiers PUP pendant que le jeu tourne, via une modification de la m\u00e9moire en temps r\u00e9el.<br \/>Pour l&rsquo;instant ils ont r\u00e9ussi \u00e0 faire fonctionner de la triche sur les jeux Battlefield 4 et Tomb Raider.<\/p>\n<p>&nbsp;<\/p>\n<p>Quote:<\/p>\n<blockquote class=\"bb-quote-body\">\n<p>GAME GENIE EYES PLAYSTATION 4<\/p>\n<p>In 2012, just over two decades after its creation, Game Genie made a quiet return to market. It had a new look and a new company backing it, and it operated in a completely different style than its predecessors. This new Game Genie, developed by Hyperkin for the PlayStation 3 and Nintendo DS, modified your save game to give you extra lives or ammo. According to Chris Gallizzi, product manager at Hyperkin, this is a much more rigid system than what the older Game Genie enjoyed. Gaining access to a game&rsquo;s save files means cracking several layers of encryption, a process that changes from game to game. It&rsquo;s slow, time-consuming work that limits the product to only the games Gallizzi and his three-person team have cracked.<\/p>\n<p>However, Gallizzi thinks he may have found a way to recapture some of that old Game Genie craziness thanks to a security loophole in the PlayStation 4&rsquo;s design. \u00ab\u00a0The key to the PlayStation 4 is the Vita,\u00a0\u00bb he explained, \u00ab\u00a0and the Vita is not as secure as people think. By syncing the Vita to the PS4, we are then able to pick up a hidden Wi-Fi signal to detect a backdoor entry to the system. From there, we&rsquo;re able to access the raw game files, like trophy data and partially encrypted game saves. It still needs work, but the ultimate goal is to be able to mod a game file or the actual PUP files while the game is running&#8211;similar to DEX modding for the PS3, which allows real-time memory hacks.\u00a0\u00bb<\/p>\n<p>So far, Gallizzi and his team have been successful in modifying only two games&#8211;Battlefield 4 and Tomb Raider&#8211;on the PS4, and even then, neither game is very stable. It will be a while before this technology is ready for public consumption, but when it is it will open up games in ways the PS3 and DS Game Genies could not. \u00ab\u00a0What this technology would allow us to do is actually modify the game data, similar to how the orignal Game Genie functioned,\u00a0\u00bb Gallizzi said. \u00ab\u00a0From there we could do things like jumping over a whole level in a single bound or explore the game coding and find hidden stuff that was never fully deleted, stuff that&rsquo;s not seen in save data but is actually within game code.\u00a0\u00bb<\/p>\n<p>Gallizzi and his team are aware that the gaming landscape has changed since the days of the original Game Genie. Massively multiplayer online games and competitive online gaming have taken hold, and those are two areas of gaming the team knows to stay away from. \u00ab\u00a0We have one golden rule,\u00a0\u00bb said Gallizzi, \u00ab\u00a0and that is to never go into online gaming. We don&rsquo;t want to disrupt the competitive communities for Call of Duty or Battlefield or any of those games. We make sure that if you&rsquo;re using our hacks or cheats or whatever, you&rsquo;re doing it in your own little world.\u00a0\u00bb<\/p>\n<p>Game hacking and modding are still alive and well outside of Game Genie, especially on PC. However, as Sole noted, Game Genie made game modification both safe and accessible for non-PC players, while opening up a ton of crazy possibilities to boot. And unlike typical PC modding, Game Genie also introduced an element of randomness. Most game mods or hacks are designed with some sort of goal in mind. With Game Genie, you never really knew what&#8211;if anything&#8211;you were going to get when you started plugging in random codes, and those results might not be things you would think to search for, nor develop as a mod.<\/p>\n<p>History has shown that the one major complaint lobbed at Game Genie was that it made games shorter or easier by circumventing certain parts. You could just press a button and win the game. And while that was certainly an option, it wasn&rsquo;t all this device could do. For those who took the time to learn this new technology, it rewarded them by breathing new life into games time and again. Game developers and publishers today are constantly looking for new ways to get extra mileage out of their games, whether through downloadable content or various unlocks. It&rsquo;s time we put the power back in the players&rsquo; hands and let our imaginations extend the life of our favorite games. It&rsquo;s time for another Game Genie.<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>Source : ps4info.fr<\/p>\n<\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>La PS4 hack\u00e9e ? <\/p>\n","protected":false},"author":2,"featured_media":1706,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"kt_blocks_editor_width":"","footnotes":""},"categories":[233],"tags":[],"class_list":["post-1705","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ps4-playstation-consoles-de-salon"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/posts\/1705","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/comments?post=1705"}],"version-history":[{"count":0,"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/posts\/1705\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/media\/1706"}],"wp:attachment":[{"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/media?parent=1705"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/categories?post=1705"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hack-console.fr\/blog2\/wp-json\/wp\/v2\/tags?post=1705"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}