fail0verflow team discover PS5 root keys (symmetric) including per-console root key

FDoUDczWQBAkPwB.png

Following the recent news that famous security engineer Andy Nguyen has managed to enable debug settings on his own PlayStation 5, we are now receiving claims that the well-known hacking group fail0verflow have been able to extract all symmetric PS5 root keys, including per-console root keys.

While not much information is yet known about the process, it's worth noting that although they are claiming to be able to read the keys for encrypted files, it is likely not possible at this point to re-sign modified files in a way that the system would accept them. However, this remains a very positive first step into gaining further understanding in to how the PlayStation 5 works.


It is worth mentioning that fail0verflow are famously anti-piracy and once decided against releasing their Wii U exploit knowing it would result in software piracy.

:arrow: Source
 

godreborn

Welcome to the Machine
Member
Joined
Oct 10, 2009
Messages
38,471
Trophies
3
XP
29,138
Country
United States
btw, I explained how to get the root key for the ps4 in one of the posts in @KiiWii 's thread. it's not very hard really, just need to use pip from python to download two dependencies, (one requires a dependency from microsoft's website, but it will tell you what), then use a script file. you can also use orbisman, but afaik, it only works on 4.55 and 5.05. I did both, and they were identical, so either works. it's called the eap key on the ps4. e probably stands for encrypted just like eid root key on the ps3 stands for encrypted individual data.
 

godreborn

Welcome to the Machine
Member
Joined
Oct 10, 2009
Messages
38,471
Trophies
3
XP
29,138
Country
United States
can you use telegram or nowinstock as well. I never put them in there, but I got the n64 controller notification. however, I had a feeling before I got it, so it wouldn't have mattered. thanks to @Hayato213 who sold me his second ps5 at cost as well as telling me about the oled switch on sale at best buy, got both, and they're sitting sandwiching my animal crossing switch.
 

sley

Well-Known Member
Member
Joined
Feb 5, 2017
Messages
226
Trophies
0
Age
25
XP
868
Country
Germany
Good news, still jealous about the fact that only Xbox got a dev mode seeing whats already possible with the power of the new consoles.
 

Nagarjuna

Well-Known Member
Newcomer
Joined
Mar 12, 2017
Messages
80
Trophies
0
XP
690
Country
United States
I'm out of the loop on Sony security, why do their consoles seem to get hacked so quickly? The Xbox One has made essentially zero progress on RCE (although this might be because of UWP), are Sony consoles just less secure or more popular? It seems like they have a history of easy exploits, I remember PS1 piracy was a big concern and the PSP homebrew scene was huge.
 

Kioku

猫。子猫です!
Member
Joined
Jun 24, 2007
Messages
12,005
Trophies
3
Location
In the Murderbox!
Website
www.twitch.tv
XP
16,136
Country
United States
Good luck finding one. :P
I'm trying to get one for like 6 months now...but retailers are permanently out of stock and resellers are selling them for like $1500 where I live....No thanks.... :rofl2:
Just bought one from Best Buy.
 

godreborn

Welcome to the Machine
Member
Joined
Oct 10, 2009
Messages
38,471
Trophies
3
XP
29,138
Country
United States
I'm out of the loop on Sony security, why do their consoles seem to get hacked so quickly? The Xbox One has made essentially zero progress on RCE (although this might be because of UWP), are Sony consoles just less secure or more popular? It seems like they have a history of easy exploits, I remember PS1 piracy was a big concern and the PSP homebrew scene was huge.
generally the goal is homebrew, not piracy or anything, and the xbox one and series x have a dev mode that makes it possible, so I guess that's the reason they're left alone.
 
  • Like
Reactions: Donnie-Burger

godreborn

Welcome to the Machine
Member
Joined
Oct 10, 2009
Messages
38,471
Trophies
3
XP
29,138
Country
United States
the screw will only tighten if it's in right. it's kinda weird, I guess, but it's not very hard really as long as you know what to do. I never watched a video, so I was confused for a brief moment. it won't tighten if the base is on the front, plus it doesn't look right anyway.
 

mattyxarope

Well-Known Member
Member
Joined
Jan 15, 2019
Messages
544
Trophies
0
XP
1,995
Country
United States
generally the goal is homebrew, not piracy or anything, and the xbox one and series x have a dev mode that makes it possible, so I guess that's the reason they're left alone.
Also the huge lack of exclusives for Xbox.

And Microsoft said that all games coming to Xbox must come to Windows.

So there is almost no interest in hacking Xbox.
 
  • Like
Reactions: godreborn

Guacaholey

Well-Known Member
Member
Joined
Nov 7, 2021
Messages
468
Trophies
0
Age
27
XP
1,216
Country
United States
is it just me or is the PS scene the worst if it comes down to homebrew/hacking?
I feel like all they care about is pirating games and nothing else.
Good. The fact that Sony has had a massive design flaw in the last 3 generations of consoles that will stop you from playing your legally owned games means that it's more or less a necessity to be able to bypass the signature checks just to use stuff we paid for in time.
 

zoogie

playing around in the end of life
Developer
Joined
Nov 30, 2014
Messages
8,560
Trophies
2
XP
15,000
Country
Micronesia, Federated States of
I'm out of the loop on Sony security, why do their consoles seem to get hacked so quickly?
This is all opinion and not necessarily hard facts.

They have an old reputation of being a hardware-first company and treating their software people like second-class citizens. Don't know how much that still applies. Also, they tend to do their security programming in-house from JP headquarters and don't rely much on western peer review (except hackerone, but not everyone signs up for that). I suspect that may be somewhat of a company pride thing (Nintendo has been susceptible to this as well in the past).

They also have some bad security practices user-side like being able to install your own firmware from usb (I know this isn't a vuln in of itself, but it allows people to upgrade to vulnerable firmware versions instead of latest). Including debug mode in retail is also a bad idea.
 

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    HiradeGirl @ HiradeGirl: Have a nice day. Life. Week. Month. year.