Live data from Hacker News

Root keys for Sony’s PlayStation 3 go public

geohot.com

11–20 of 79 posts

Re: Root keys for Sony’s PlayStation 3 go public

#12
post #11
post #9

From the mathematician on stage: "and for some reason, Sony uses the same random number all the time!" - classic!

Can you provide a time index for that in the videos?

Have a look at http://www.youtube.com/watch?feature=player_detailpage&v... and watch for a few minutes. The whole video is really interesting, but that part is the really embarrassing one.

Re: Root keys for Sony’s PlayStation 3 go public

#14
post #10
post #5

"if you want your next console to be secure, get in touch with me. any of you 3." I would take the mans word and hire him. I'd even through Apple into his list, he did after all release jailbreaks for the iPhone too.

Surely, someone has to hire this guy. Forget Apple. Intel? Nokia? IBM?

The US Government?

Re: Root keys for Sony’s PlayStation 3 go public

#15
post #9

From the mathematician on stage: "and for some reason, Sony uses the same random number all the time!" - classic!

I'm not sure if that was hyperbole or not.

As I understand it, all that was required was for them to use the same random number /twice/. Let's say you're Sony and you sign a patch, release it, realise there is a minor fix, and release within 2hours... maybe in your rush you failed to regenerate the random seed?

Or, my initial thoughts, someone inside Sony did this maliciously?

Re: Root keys for Sony’s PlayStation 3 go public

#16
post #2

Wow. How did this happen? Was the root key stored in the PS3? Or was it brute forced?

There's a good Eurogamer/Digital Foundry article on this here: http://www.eurogamer.net/articles/digitalfoundry-ps3-securit...

Wow. Not a great article, but not a bad overview of the subject!

Re: Root keys for Sony’s PlayStation 3 go public

#17
post #15
post #9

From the mathematician on stage: "and for some reason, Sony uses the same random number all the time!" - classic!

I'm not sure if that was hyperbole or not. As I understand it, all that was required was for them to use the same random number /twice/. Let's say you're Sony and you sign a patch, release it, realise there is a minor fix, and release within 2hours... maybe in your rush you failed to regenerate the random seed? Or, my initial thoughts, someone inside Sony did this maliciously?

No, it was parabole. :)

From what I understand, they use the same number every single time without exception.

Re: Root keys for Sony’s PlayStation 3 go public

#18
post #3
post #2

Wow. How did this happen? Was the root key stored in the PS3? Or was it brute forced?

Part 1 - http://www.youtube.com/watch?v=c77Qnk_CMF8 Part 2 - http://www.youtube.com/watch?v=ovy2kPFOu0E Part 3 - http://www.youtube.com/watch?v=Y23LUiBRcOg That talk was at the 2010 Chaos Communication Congress which just concluded a few days ago.

http://events.ccc.de/congress/2010/Fahrplan/events/4087.en.h...

It might be worth waiting until the official recording gets released at http://mirror.fem-net.de/CCC/27C3/mp4-h264-HQ/ (named "Console Hacking 2010").

Re: Root keys for Sony’s PlayStation 3 go public

#19
post #5

"if you want your next console to be secure, get in touch with me. any of you 3." I would take the mans word and hire him. I'd even through Apple into his list, he did after all release jailbreaks for the iPhone too.

I would never hire him.

This guy would release everything he knows if someone in the company wont do what he want. "GIMME MORE MONEY OR I WILL RELEASE THE KEY FOR THE PS4!".

Sry, thats not business.

Re: Root keys for Sony’s PlayStation 3 go public

#20
post #3
post #2

Wow. How did this happen? Was the root key stored in the PS3? Or was it brute forced?

Part 1 - http://www.youtube.com/watch?v=c77Qnk_CMF8 Part 2 - http://www.youtube.com/watch?v=ovy2kPFOu0E Part 3 - http://www.youtube.com/watch?v=Y23LUiBRcOg That talk was at the 2010 Chaos Communication Congress which just concluded a few days ago.

I always assumed the PS3 has top notch security given how long they had managed to avoid exploits. Seems from watching the videos that they could go a long way on a future console to prevent hacks just by plugging these issues. The hypervisor happily allocating/ running anything and everything seems like a good place to start.

Obviously other ways would probably eventually be found but as these guys say, just providing a way for people to run their own code to begin with takes a lot of effort behind people hacking the system. There will always be an army of people out there wanting to pirate games and an army of people wanting to profit off of it but only a tiny amount of them can really do anything about it.

Post reply on HN