Page 1 of 3 1 2 3 LastLast
Results 1 to 10 of 21

Thread: Hacks for the Unhackable PSPs

  
  1. #1
    Organized_Chaos's Avatar
    Organized_Chaos is offline Senior Member -Hacks Titan
    Join Date
    May 2008
    Posts
    4,768
    Rep Power
    53962

    Post Hacks for the Unhackable PSPs

    Welcome

    First of all, there is no way to to play ISO games or use a custom firmware if your unhackable PSP is past 5.03. If you have 5.03 or lower, click here. If your PSP 2000 (with the TA-088v3 motherboard) or PSP 3000 is above 5.03 firmware, it is impossible (at this time) to get a CFW or play ISO. Same goes with the PSP Go, only the lowest firmware for the go is 5.70 so none of the Go's have any CFW. There is no way for us to know when a hack will be available so don't ask.

    Now you might be thinking to yourself, "Wow, I can't believe I bought this piece of junk... I can't even hack it or anything." Well there are a few hacks for it so it isn't completely useless. You can change the font used on the XMB (Xross Media Bar/main menu of the PSP), you can run a limited number of homebrew applications (including emulators for classic consoles), and you can do all of this while still accessing the PSN via Media Go. However, if you really want to pirate PSP games and PS1 game I highly suggest that you sell your current PSP and buy a hackable PSP-2000.

    Getting started with using homebrew and emulators (using the HBL)

    The first thing I'll cover is the homebrew and emulators. Check out this tutorial I wrote about the Half-Byte Loader: click here. That shows how to use emulators on official firmware but it also works for homebrew. For a full list of tested homebrew click here. If you have trouble getting the Half-Byte Loader to work then you can try using blake1211's easy installer.

    The XMB font mod

    + —Hacks YouTube Video Player
    ERROR: If you can see this, then YouTube is down or you don't have Flash installed.

    It’s been discovered that using PSP Filer 4.4 Kernel 3.xx, which seemingly works best with Half Byte Loader, you’re able to access (read/write) the PSP registry in flash1. So if you follow the steps below you can customize the XMB font by redirecting the fonts folder from flash0 to your memory stick. Lets get started:

    1. Download the fontmod package below; it includes PSP Filer 4.4, fixupreg3, and fonts to try out.
    2. Run PSP Filer via HBL; press R + Left to go into “Hacker Mode.”
    3. Press start to move over to flash1.
    4. Copy the registry folder to the memory stick.
    5. Open the file “system.dreg” in a hex editor; Google for one.
    6. Change “flash0:/font” to “ms0:/fontmod” (or ef0:/fontmod if you’re on a GO).
    7. Place the files from the registry into a folder with the files from fixupreg3, then run the .exe.
    8. Place the new registry files back on the memory stick.
    9. Place the fontmod folder in the root of the memory stick (or GO storage).
    10. Run Filer, enter Hacker Mode, and copy the registry files from the memory stick over the files in flash1:/registry/.
    11. Hit Home and exit to the XMB to see your new font.

    That should be it. Now, real quick, we aren’t responsible if you damage your PSP. Messing with flash memory poses a potential risk; however, it’s unlikely you’ll cause a brick by performing the above. If you do mess up the PSP will prompt you to recover flash1 anyway.

    (I got this tutorial from greg, here)
    Download:
    Fontmod Hack Pack
    Half Byte Loader (HBL) Rev. 85 You could also use the latest revision.
    Birdman1′s Font Pack v11 (135 fonts)

    Buying PSN content without upgrading

    If you're a PSP Go user, the only way to get official Sony content is from the PSN. And since we don't have an ISO loader or CFW for the PSP Go, you can't play backup (ISO) games from your old UMDs. However, if you try to connect to the PSN via the PSP it will try to convince you to upgrade to 6.31. DON'T DO IT, IT'S A TRAP! If you upgrade to 6.31 you'll have to buy an exploitable UMD in order to continue using HBL and homebrew. To circumvent this update you can just download Media Go 1.5 and download your PSN content to your computer and transfer your downloads to the PSP. You don't need to have 6.30/6.31 on your PSP to use Media Go.

    If it asks you to update, just skip it (the update).
    + —Hacks YouTube Video Player
    ERROR: If you can see this, then YouTube is down or you don't have Flash installed.


    Techincal Reasons Why You can't Downgrade an Unhackable PSP
    Understanding user/kernel Mode (click me)
    Have you ever wondered why you can't simply downgrade your unhackable PSP to 5.03 so you can use the temporary CFW or full CFW that other PSPs get to use? I'll try to explain why it is impossible; however, I will be using a lot of technical terms which many of you might not understand.

    The simple explaination: Sony added additional security checkpoints in the newer PSPs (all slims released with 4.01 firmware and up and all PSP-3000, PSP Go) which blocks our Pandora battery hack, downgraders, and full (permanent) custom frimwares.

    The long explaination (click here for a glossary of tech terms): The IPL is the Initial Program Loader. Since it's encrypted with (presumably) an AES encryption code that only Sony has access to, we can't edit it to boot a CFW. The kirk chip on the motherboard looks for official, signed Sony code to boot the PSP and if you change that code then it would no longer be encrypted and the PSP wouldn't pass the security checks and wouldn't boot up (thus causing a brick). For a Pandora battery to work we have to inject a custom IPL into our memory sticks and since those don't use the encryption keys like Sony's official IPL it won't work. It won't brick the PSP, it just won't boot to the Pandora DCv8 menu. You can read more about how the Pandora battery works here.

    To counter this, any unhackable PSP (such as PSP-3000) can only load a temporary firmware after it is turned on. When it's turned off the custom firmware goes away so the PSP will still boot up. However, it boots into Official firmware so you would have to re-enable the CFW. At least it doesn't brick the PSP.

    However, for this temporary custom firmware, we need a kernel mode exploit which are rare and hard to find. The current HBL exploit is only user mode and doesn't allow us to have full access to the flash0. The latest public kernel mode exploit is only available on official firmware 5.03, Sony has patched that exploit in all newer firmware releases. (More experienced hackers, feel free to correct any of my technical mistakes)

    Last edited by Organized_Chaos; 10-04-2010 at 10:46 PM.

  2. #2
    vandurol123's Avatar
    vandurol123 is offline -Hacks Enthusiast
    Join Date
    Jun 2010
    Posts
    377
    Rep Power
    9

    Default

    Great Guide, nice revision to your old one *Thumbs up*

  3. #3
    Organized_Chaos's Avatar
    Organized_Chaos is offline Senior Member -Hacks Titan
    Join Date
    May 2008
    Posts
    4,768
    Rep Power
    53962

    Default

    I just noticed this was a sticky. Awesome!

  4. #4
    Skorpian's Avatar
    Skorpian is offline -Hacks Guru
    Join Date
    Aug 2009
    Location
    The dark side.
    Posts
    2,436
    Rep Power
    282

    Default

    Doesn't deserve the sticky because this guide is really bad.
    j/k
    Congrats on the sticky.
    Note : All my guides are outdated.

  5. #5
    guiller711 is offline -Hacks Newbie
    Join Date
    Dec 2009
    Posts
    48
    Rep Power
    9

    Default

    ehe

  6. #6
    Lucifago is offline -Hacks Newbie
    Join Date
    Sep 2010
    Location
    Celaya,Gto. México
    Posts
    2
    Rep Power
    0

    Unhappy Help

    Look i know about the "unhackable" tv-088v3 motherboard...but here you say you can actually hack a psp with that motherboard.... i bought my psp and it came with OFW 6.20 BUT i found a video tutorial, in the tutorial a spanish child Hacks a psp with the 6.20 original firmware...so, i wanted to know wither if to risk to hack it or sell it and buy an older one...thanx...

  7. #7
    Organized_Chaos's Avatar
    Organized_Chaos is offline Senior Member -Hacks Titan
    Join Date
    May 2008
    Posts
    4,768
    Rep Power
    53962

    Default

    All current hacks for 6.20 are in this thread. I would recommend buying an older PSP.

  8. #8
    Organized_Chaos's Avatar
    Organized_Chaos is offline Senior Member -Hacks Titan
    Join Date
    May 2008
    Posts
    4,768
    Rep Power
    53962

    Default

    I added a link to m0skit0's article on understanding user/kernel mode to my original post. Maybe that will help the technologically less advanced people understand better.

  9. #9
    -Sp>>d- is offline -Hacks Newbie
    Join Date
    Sep 2010
    Posts
    1
    Rep Power
    0

    Default

    ... Shouldn't writing to flash give you the power of CFW?

  10. #10
    Organized_Chaos's Avatar
    Organized_Chaos is offline Senior Member -Hacks Titan
    Join Date
    May 2008
    Posts
    4,768
    Rep Power
    53962

    Default

    Sure, if you have a kernel exploit which can write to the part of the flash where the CFW files are located.

    With our current exploits - No.

Page 1 of 3 1 2 3 LastLast

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •