Hacking Spectre exploit possible through webkit?

Thatguywhotriedwuphax

Member
OP
Newcomer
Joined
Apr 21, 2018
Messages
6
Trophies
0
Age
23
XP
109
Country
United Kingdom
Spectre affects modern CPUs, such as those found in the PS4, which gives applications access to normally inaccessible areas of memory.

If a WebKit exploit is found that can take advantage of this bug, there is a possibility that code in the hypervisor can be accessed and dumped somewhere, where new exploits could use bugs in this code to trick the hypervisor into thinking that the software is legit.

Probably pointless babble. But I wanted to give my (probably dumb) idea to this community.
 
Last edited by Thatguywhotriedwuphax,
  • Like
Reactions: KiiWii

KiiWii

Editorial Team
Editorial Team
Joined
Nov 17, 2008
Messages
16,579
Trophies
3
Website
defaultdnb.github.io
XP
26,909
Country
United Kingdom
It’s not about webkit exploits taking advantage of this bug.

If you think about it we have webkit exploits that work up to 7.02.

It’s: if it can be adapted to work as part of the exploit chain (at all) on PS4 hardware.
 
  • Like
Reactions: Hayato213

Jayro

MediCat USB Dev
Developer
Joined
Jul 23, 2012
Messages
12,971
Trophies
4
Location
WA State
Website
ko-fi.com
XP
16,994
Country
United States
hopefully one day an unpatchable exploit will be found that allows homebrew to run that isn't internet dependent, or we can get a leaked fake-signing tool like the PS3 has, to run homebrew from USB as legit games and apps.
 
  • Like
Reactions: KiiWii

aranwarez

Active Member
Newcomer
Joined
Feb 24, 2009
Messages
44
Trophies
1
XP
872
Country
Nepal
hopefully one day an unpatchable exploit will be found that allows homebrew to run that isn't internet dependent, or we can get a leaked fake-signing tool like the PS3 has, to run homebrew from USB as legit games and apps.
Once people are no longer interested in PS4 it will happen.
 

MostlyUnharmful

Well-Known Member
Member
Joined
Feb 8, 2018
Messages
410
Trophies
0
Age
42
XP
1,446
Country
Italy
If a WebKit exploit is found that can take advantage of this bug, there is a possibility that code in the hypervisor can be accessed and dumped somewhere, where new exploits could use bugs in this code to trick the hypervisor into thinking that the software is legit.

I'm probably nitpicking, but from what I know the PS4 has no hypervisor, all security relies on kernel integrity...

If you instead meant using the "meltdown/specter" class vulnerabilities against the secure enclave (SAMU) well, according to someone of the scene SAMU was already defeated, but I'm in no position to say if they are trolling or also if it has the same branch prediction defects found on Intel CPUs and if it could be exploited.
 
  • Like
Reactions: KiiWii

Site & Scene News

Popular threads in this forum

General chit-chat
Help Users
  • No one is chatting at the moment.
    K3Nv2 @ K3Nv2: Least they got head in the end