The Register® — Biting the hand that feeds IT

Feeds

Once impenetrable PS3 cracked wide open

iPhone hacker: 'I have great power'

Agentless Backup is Not a Myth

The first hacker to successfully jailbreak the iPhone says he has pulled off yet another modding marvel, this time penetrating the previously impervious PlayStation 3 gaming console.

The hack by 20-year-old George Hotz, aka geohot, is significant because the PS3 was the only game console that hadn't been hacked, despite being on the market for more than three years. The feat greatly expands the functionality of the box by allowing it to run unrestricted versions of Linux and a wide range of games that are currently forbidden. The hardware and software designer told El Reg it took him five weeks to develop the hack using a combination of modifications to the console's hardware and software.

"Basically, I used hardware to open a small hole and then used software to make the hole the size of the system to get full read/write access," he said in an interview. "Right now, although the system is broken, I have great power. I can make they system do whatever I want."

The first three weeks were spent trying attacks to directly access memory of the console. He eventually settled on his current approach after realizing software approaches alone were insufficient.

A dropout of the Rochester Institute of Technology, geohot said he is declining to provide details to prevent Sony from introducing changes that would stymie the modifications. But a blog post announcing the accomplishment makes clear the hack gives users unprecedented control over their systems.

"I have read/write access to the entire system memory, and HV level access to the processor," geohot wrote. "In other words, I have hacked the PS3."

The hack will allow PS3 users for the first time to run unrestricted versions of Linux that have full access to the system's central processing unit and graphical processing unit. That will greatly expand the kinds of things users can do with the console. For starters, they could use the mod to run emulators that will play PS2 games on the machine, something Sony strictly forbids. It could also allow programs like the VLC media player to run much more robustly. The hack also opens the door to pirated games on the console, although geohot said that's an activity he's not interested in pursuing.

Geohot said he doesn't plan to release the software used to unlock the box until he can make it more reliable. It currently takes about 15 minutes to run and frequently fails to work properly. "If I posted what I have now, people would get fed up with it," he said.

He praised the PS3 as a "pretty secure system," that was harder to hack than many hardware systems he has penetrated.

"One of the main things Sony did right was put all the security on at once," he explained. "From day 1, the PS3 was secure."

By contrast, anti-hacking protections in the iPhone were rolled out over time, allowing him to gain important insights into the overall design that helped him defeat changes that were introduced later.

"If the iPhone right now was released as is, it would be much harder for people to crack," he said. "With the iPhone, when a new version comes out, we can decrypt it right away because we have exploits for the old version."

A native of Glen Rock, New Jersey, geohot rose to prominence in 2007, at the age of 17, when he developed the first hack to allow the iPhone to work on networks other than AT&T's. Even after Apple introduced changes designed to reestablish Apple's iron-fisted grasp of the device, geohot devised ways jailbreak newer versions, unleashing a never-ending cycle of hacks and counterhacks.

While hacks of the Xbox and the iPhone have led to thriving developer communities that release custom applications for the modded devices, geohot said the challenge of overcoming the security overshaddows those more practical outcomes.

"Personally, it's a win for me just to do it," he said. "It's just cool to have it cracked." ®

Customer Success Testimonial: Recovery is Everything

Anonymous Coward

ps2

but then they wouldnt be able to sell you downloads of ps2 games you own on disc!

8
1

Why is this necessary?

I paid for a Wii (the wife wanted the fitness game)

Apparently I can't hack this model to play movies because they fixed the loophole.

Why? I don't want to hack it play pirate games - I don't really want to play any games!

But if you let it run XBMC/Mplayer natively I would buy another for the bedroom.

If you let it run skype I would buy one for my parents.

Why aren't the makers building this in?

Are sony afraid of undercuttign their DVD player business?

What are Nintendo afraid of, undercutting BT's international call business ?

7
3

This reminds me of the good old days...

...when they said that the PSP couldn't be hacked or downgraded to a more 'friendly' version of the firmware.

I bought my original PSP the day after release, and included in the box was an update disc. Great I thought... updates are always a good thing right? Excitedly upgraded to firmware 2.1 like an idiot... and BAM! No homebrew for me! D'oh! And no way to downgrade...

I checked the forums often, knowing that someone would come up with a solution eventually. Sure enough, some bright spark discovered a flaw in the .tiff decoding library. All it did was crash the PSP, but it opened up the memory and it was a start.

Lots of people presented fake downgraders, and many claimed it was impossible. But then... it happened. Someone came up with a working downgrader, using the above flaw. I was overjoyed to 'fix' my PSP and be able to run homebrew at last.

Since then the PSP hacking scene has gone from strength to strength. Those hackers / nerds / geeks / whatever you want to call them, truly own the PSP and there's naff all Sony can do about it. I'm not suprised they felt the need to stir things up with the miserable abortion that is the PSP-Go!

The point of this long, rambling tale is that from little acorns, mighty oaks grow. This guy may or may not have fully owned the PS3, but it's an interesting development and it's a start. People will learn from this and exciting things will happen, mark my words.

In short, this is very very good news whatever he's done.

3
0

More from The Register

 breaking news
Curtain drops on Apple Store ahead of WWDC: What lies behind?
Steve Jobs watching from on high. No pressure, lads
 breaking news
Cold, dead hands of Steve Jobs slip from iPhones: The Cult of Ive is upon us
Billionaire biz baron's death clears way for uber-shiny iOS 7
First look: iOS 7 for iPad
No, Apple hasn't released it yet, but that doesn't stop intrepid devs
Airbus imagines suitcases that find themselves
Point your mobe at your smalls to track their every move
Surprise! Intel smartphone trounces ARM in power trials
Tests show equal performance while sipping significantly less juice
Apple said to be 'exploring' 5.7-inch iPhone
Who's the copycat this time, Mr. Cook?
Samsung plans LTE Advanced version of Galaxy S4
1Gbps download capability could stiffen drooping S4 sales forecasts
Google Chromebooks now in over 6,600 stores
Major, worldwide retail push begins this summer
Review: Belkin Thunderbolt Express Dock
Missing Mac ports reunited, for a price