LAN.ST  

Go Back   LAN.ST > Forum > Console Hacking & Development > Sony PlayStation Portable

Sony PlayStation Portable Sony PlayStation Portable related development discussion.

Reply
 
Thread Tools Display Modes
  #1  
Old 02-14-2010, 12:26 PM
KiNgOfUnIvErS KiNgOfUnIvErS is offline
Junior Member
 
Join Date: Feb 2010
Posts: 14
Default MAMOSUKE , "Half-Boiled", New Exploit ?

I found a PSP savedata exploit in a certain game(region:Japan) which could be able to put any data you want in some registers including $ra.
It is available in OFW6.20.(I tried with PSP-2000)

"a"=61



"A"=41



Now I call it "Half-Boiled" SAVEDATA Exploit.

Some of the registers can be changed to any value,but only half of them.

For example, $ra to 0x00(Value1)00(Value2)

It means that I can change (Value1) and (Value2) only.
Ya,half of .So this is "Half boiled" exploit.
I can't confirm where a balue "00" come from.
("Value1" and "Velue2" are confirmed.)

I tried to change all of the data "00" in SAVEDATA to "61" or "41", and found crashing as before, but the value of registers did have no change: The situation remained unchanged.This would be distinctive of this game.

I have not investigated all of them so that I don't know this is useful as an exploit.What do you think?

Source:
http://forum.gamegaz.jp/viewtopic.php?f=23&t=77

so if i uderstand good he can load any mips codes in RA and other register but just in half.

Comment!

I wan't to specify, i don't made this exploit it was made by Mamosuke

Last edited by KiNgOfUnIvErS; 02-15-2010 at 05:50 AM.
Reply With Quote
  #2  
Old 02-14-2010, 01:54 PM
AcesInThePalm AcesInThePalm is offline
Member
 
Join Date: May 2007
Location: Perth, West Australia
Posts: 81
Default

i'm no expert on the matter, but that does look interesting.
i'd say it's exploitable
but again, i'm not one to ask

edit :definatly exploitable, you have control of return address.
nice job
__________________
DOES ANYONE KNOW WHERE SOMEWHERE IS.....I HAVE ALOT OF STUFF THERE

Last edited by AcesInThePalm; 02-14-2010 at 01:58 PM.
Reply With Quote
  #3  
Old 02-14-2010, 01:59 PM
coyotebean coyotebean is offline
Member
 
Join Date: Dec 2009
Posts: 60
Default

Sounds like the string is converted to unicode within the game. You maybe able to do something more with UTF-8/"Japanese" encoding input string.
__________________
GBASP x1, GBM x2, NDSL x2, PSP 100X x3, PSP 200X x5, PSP 300X x3, PSP Go x2, Wii x1
Reply With Quote
  #4  
Old 02-14-2010, 02:53 PM
wololo wololo is offline
Moderator
 
Join Date: Dec 2008
Posts: 218
Default

おめでとう!
Looks like you found something good mamosuke
as coyotebean said, you probably need to play a bit with unicode here, probably with a bit more research you can have full control of $ra
Reply With Quote
  #5  
Old 02-14-2010, 03:43 PM
pyroesp pyroesp is offline
Senior Member
 
Join Date: Jan 2010
Posts: 163
Default

Quote:
Originally Posted by wololo View Post
おめでとう!
Looks like you found something good mamosuke
as coyotebean said, you probably need to play a bit with unicode here, probably with a bit more research you can have full control of
Omedetou ! (that's the only thing I can read in Jap )
__________________
The one, who shall not fear fire...
Reply With Quote
  #6  
Old 02-14-2010, 08:15 PM
Pirata Nervo Pirata Nervo is offline
Senior Member
 
Join Date: May 2007
Posts: 155
Default

I'm sorry but the images look like they were made in Paint or something..that doesn't look like my terminal
Edit:
Don't take me wrong if they're real though
Reply With Quote
  #7  
Old 02-14-2010, 08:20 PM
KiNgOfUnIvErS KiNgOfUnIvErS is offline
Junior Member
 
Join Date: Feb 2010
Posts: 14
Default

Quote:
Originally Posted by Pirata Nervo View Post
I'm sorry but the images look like they were made in Paint or something..that doesn't look like my terminal
Yea Becouse character of the system are jappanese so they looks so, MamoSuke is jappanese.but they are real trough
Reply With Quote
  #8  
Old 02-14-2010, 08:38 PM
Iguanahak's Avatar
Iguanahak Iguanahak is offline
Junior Member
 
Join Date: Dec 2006
Posts: 4
Send a message via AIM to Iguanahak
Default

try to use complex characters to fill in the rest of the data in like the ra register. like enclosed alpha numberic values. alot of international games use normal english letters by skipping bytes because of the type of string format. since it is japanese game it would have the ability to use international letters. so u need to use those types of letters to fill in the rest. like it should be UTF-16. so look in the character map using Arial Unicode MS font and look at the values on them.

Last edited by Iguanahak; 02-14-2010 at 08:47 PM.
Reply With Quote
  #9  
Old 02-14-2010, 09:50 PM
npt npt is offline
Member
 
Join Date: Aug 2008
Location: Minneapolis,MN
Posts: 39
Send a message via AIM to npt Send a message via Skype™ to npt
Thumbs up

Looks very interesting, congrats.

npt
__________________
2k x 2 ta-085v1 5.00 m33-6 / 5.50 GEN D3 final
2k x 1 x ta-088v2 madden blue OFW 6.20
3k x 2 OFW 4.20 / OFW 5.03 + chickhen r2 + GEN C
Go x 1 OFW 6.10
Go x 1 OFW 6.20
Reply With Quote
  #10  
Old 02-14-2010, 10:23 PM
Pirata Nervo Pirata Nervo is offline
Senior Member
 
Join Date: May 2007
Posts: 155
Default

Quote:
Originally Posted by KiNgOfUnIvErS View Post
Quote:
Originally Posted by Pirata Nervo View Post
I'm sorry but the images look like they were made in Paint or something..that doesn't look like my terminal
Yea Becouse character of the system are jappanese so they looks so, MamoSuke is jappanese.but they are real trough
No, I meant the black window, what does it have to do with the japanese characters? It should look like the terminal but the font does not look like the terminal font.
I might be wrong though
Reply With Quote
Reply

  LAN.ST > Console Hacking & Development > Sony PlayStation Portable

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
GO USERS DOWNLOAD "Metal Gear Solid : Portable Ops" NOW PSPGOGOGO Ultimate Hall of Shame 8 02-07-2010 03:45 PM


All times are GMT +1. The time now is 12:16 AM.

Design Developed by CompleteGFX
Powered by vBulletin®
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.