PS4 Aux Hax 4: Belize via CEC
随机文章通过 PS4 Aeolia 处理器固件上的漏洞实现代码执行
感觉现在的主机破解,几乎都是软硬结合的做法。复制粘贴一下里面的做法:
- Tap onto CEC-related i2c and irq lines and HDMI encoder power switch
- Power up PS4 and enter Rest Mode
- Wait for “EAP running” message from custom EAP kernel
- Induce the CEC RX interrupt
- Feed data to EMC such that it causes a stack buffer overflow
- Wait for EMC to copy SRAM to DDR3
- Dump copied SRAM out of UART
看看这破解的实现,再看看里面跳的这几根线,简直神来之笔!