如果这不是PSP软件开发史上最大的消息,那我们真不知道该说些什么 ,曾经带给我们多次惊喜地破解小组——Noobz没有让我们失望,又一次给PSP的破解带来了新的曙光。在3.50系统上所发现的新漏洞基于游戏《Lumines》,类似于风光无限《GTA:LCS》的工作方式。通过游戏存档文件中的buffer数据溢出让自制软件得以运行。而自制软件的运行正是软件降级的前提条件,同样你需要有一张《Lumines》的UMD,现在放出的只是一个"hello world"自制程序Demo演示程序 。
目前经过测试,欧版和美版工作正常。但漏洞目前仍然属于user-mode,不管怎样,至少我们很快可以让所有的 PSP运行homebrew,如果一切顺利,在不久的将来,3.50系统以下版本的机器也将可以使用软件降级成为1.50的机器,而Dark_AleX即将完成的3.50 OE也在召唤着我们。

引用:
Following research in conjunction with Archaemic, Noobz are proud to present the first ever all-firmware exploit for the PSP. Based on Lumines, the "Illuminati" exploit is a user-mode exploit using a buffer overflow in the savedata file - similar to the GTA exploit.
That's right - if you've got a legal UMD copy of Lumines, then you can run homebrew on your PSP - whatever the firmware version. That includes v3.50! Right now, the only homebrew is the Hello World demo released below - but in future we intend to release a HEN and downgrader.
- Check that you have an EU or US version of Lumines (ULES00043 or ULUS10002). Currently we don't have a version for the Japanese version, but we're working on it, as soon as we get hold of a Japanese UMD.
需要欧版或者美版的 Lumines (ULES00043 or ULUS10002)UMD,我们目前没有日版游戏,不过很快会弄到一张来测试。
- Extract the contents of the 'MS_ROOT' folder from the ZIP file into the top-level of your memory stick. (HINT: If you wind up with an 'MS_ROOT' folder on the stick, you've done it wrong).
把 'MS_ROOT'文件夹内的文件从压缩包中解压缩出来,然后放到记忆棒根目录
- Start the game, and as soon as it gets to the 'Press START' screen, press START. If you wait until the demo has started, the exploit may not work.
运行游戏,当出现 'Press START'画面时,按START,然后等 demo开始运行,漏洞也许不会工作。
- The screen should go blank, and the exploit will start after a few moments. It doesn't do anything except look pretty at this stage - but feel free to enjoy the first homebrew on your v3.10 - v3.50 PSP
屏幕应该会变白,漏洞将很快运行,不要有任何操作此时,享受在v3.10-v3.50系统的psp上运行第一个自制软件吧! |