PS4 9.00 Jailbreak Exploit via ChendoChap with Updated Payloads!
Summary
In this project you will find an implementation that tries to make use
of a filesystem bug for the PlayStation 4 on firmware 9.00. The bug was
found while diffing the 9.00 and 9.03 kernels. It will require a drive
with a modified exfat filesystem. Successfully triggering it will allow
you to run arbitrary code as kernel, to allow jailbreaking and
kernel-level modifications to the system. will launch the usual payload
launcher (on port 9020).
Patches Included
The following patches are applied to the kernel:
- Allow RWX (read-write-execute) memory mapping (mmap / mprotect)
- Syscall instruction allowed anywhere
- Dynamic Resolving (sys_dynlib_dlsym) allowed from any process
- Custom system call #11 (kexec()) to execute arbitrary code in kernel mode
- Allow unprivileged users to call setuid(0) successfully. Works as a status check, doubles as a privilege escalation.
- (sys_dynlib_load_prx) patch
- Disable delayed panics from sysVeri
Download Links Below
Contributors
Video Guide :
Sign up here with your email
1 comments:
Write comments.V 10.50 ANOTHER PROBLEM
ReplyConversionConversion EmoticonEmoticon