Originally posted by AsTrO
Well I know how to dump the nand. AND all I have to do now is find the NAND in the ps3. I'll open up my ps3 and find it soon. If and when I find it, I can erase all contents on it by setting a large voltage of the opposite polarity. Bassically it pulls the electrons off the FG through quantum tunneling. Once we do this, we SHOULD be able to downgrade. And i'll have to have a new HDD, or reformat my current one, as %60 of the firmware is stored on the HDD. And if I have to, i'll install a new flash reader.. >.> ALSO: Don't ask me questions about what I just said if I confuse you.. It's REALLY hard to explain. If I manage to find something usefull, i'll post it.
Do you even know what NAND is?
NAND = flash memory
It uses tunnel injection for writing memory and tunnel release for erasing memory
To be able to downgrade you need low-level access to the NAND memory of the PS3, then you can downgrade the firmware or install custom firmware on the MTD Flash
Basically you need root access to the JFFS2, CRAMFS or SQUASHFS partitions
Its stupid to dump the NAND on the PS3 because its all encrypted anyway and its much harder than getting LV1 access and like I said, its encrypted
So this is how it works:
Theres 3 levels to the PS3 hardware/software
LV0 - Hardware
LV1 - Bootloader
LV2 - Hypervisor
LV3 - GameOS
So if we can't gain access to LV0/1 through the NAND (we can't inject our own shit into it or take anything from it), then we try and gain access to LV2 (hypervisor)
So if we can gain access to the Hypervisor, any level that runs above it we can do what we like with it
This is what GeoHot tried for months on end and he managed to find an exploit which allowed him to gain access to the Hypervisor so he can read/write to it
Now, the Hypervisor functions are limited, we can upgrade the FS (firmware) through the Hypervisor, but there is no Hypervisor call to downgrade the FS so atm its impossible
There is only 1 way to do it, and that is to install an infectus chip, which allows LV1 access to the NAND only, only for flashing and backing it up with .pup files
So what your trying to say is IMPOSSIBLE and its FAKE and you clearly have NO IDEA what the **** your talking about
I have been messing with chips and hardware all my life and what you wrote is utter nonsense
Stop posting fake stuff and if and when you ever do find something real then noone will ever believe you
tutututut
EDIT: Oh yeh forgot to mention, GeoHot is a prick and he released a long ass method to crack the Hypervisor, there must be a much easier way but he hasn't released it