Post: [THEORY] Retail PSN on CFW
04-02-2011, 03:40 AM #1
pcfreak30
>> PCFreak30.com Happy<<
(adsbygoogle = window.adsbygoogle || []).push({}); So everyone by nows knows about Rebug and the Dev PSN. Well i have realized they are using a 3.60 vsh.self, meaning a 3.60 XMB.

So I was thinking if we could do a SSL Man-in-the-middle attack and see a login attempt to auth.sp-int.ac.playstation.net, we might be able to get the X-I-5 paraphrase.

We also should check the 3.55 XMB and get it. If they are different it might be the key to get on Retail PSN on 3.55..

I am not sure if the networks are requiring the same or a different paraphrase.

I have already tried a SSL/DNS spoof with CA24.cer and got a SSL error. granted I am not the best in SSL, so if anyone else knows more feel free to look into it and contact me.

So feel free to try. Any help will make us getting back on the regular faster, if possible.

Peace..
(adsbygoogle = window.adsbygoogle || []).push({});

The following 2 users say thank you to pcfreak30 for this useful post:

cluckin bell, HIvkid
04-02-2011, 03:45 AM #2
Originally posted by pcfreak30 View Post
So everyone by nows knows about Rebug and the Dev PSN. Well i have realized they are using a 3.60 vsh.self, meaning a 3.60 XMB.

So I was thinking if we could do a SSL Man-in-the-middle attack and see a login attempt to auth.sp-int.ac.playstation.net, we might be able to get the X-I-5 paraphrase.

We also should check the 3.55 XMB and get it. If they are different it might be the key to get on Retail PSN on 3.55..

I am not sure if the networks are requiring the same or a different paraphrase.

I have already tried a SSL/DNS spoof with CA24.cer and got a SSL error. granted I am not the best in SSL, so if anyone else knows more feel free to look into it and contact me.

So feel free to try. Any help will make us getting back on the regular faster, if possible.

Peace..


so would that be like downgradeing or 3.60 cfw?

The following user thanked johndahon94-PS3 for this useful post:

Mr. Aimbot
04-02-2011, 03:47 AM #3
Please explain more, very interesting idea.
04-02-2011, 03:47 AM #4
TheFallen
Former Dark Night
WOWOWOWOWOW can someone smack the kid who posted first? /facepalm

The following 8 users say thank you to TheFallen for this useful post:

.Kane., cluckin bell, emsp, Mr. Qwax, Mw2Freak13, shawry, shelim786,
04-02-2011, 03:50 AM #5
djfatpickle
Bounty hunter
I dont know much about this but i dont really think this would work but good idea.
04-02-2011, 03:57 AM #6
pcfreak30
>> PCFreak30.com Happy<<
Simply, when ever you did the SSL spoof on charles/****psn a code called the X-I-5 Passphrase was sent as a header.

I have a feeling that running on the debug xmb, it might contain the pass used in 3.60. Basically when sony "updated" their login, they just changed that static code.

So if this really is a 3.60 xmb, then it might have the updated login. This IS using rebug 3.55..

---------- Post added at 11:57 PM ---------- Previous post was at 11:51 PM ----------

Ok scratch everything I said. I got my certs switched up, haha.

but this is NOT good. i just realized Rebug is reporting 3.55 firmware version to sony on the DEV network. i am using sp-int currently. THIS IS NOT GOOD. Sony is probably logging EVERYONE doing this.

You must login or register to view this content.
04-02-2011, 04:16 AM #7
YnO
~♣°Yamata no Orochi°♣~
Originally posted by pcfreak30 View Post
Simply, when ever you did the SSL spoof on charles/****psn a code called the X-I-5 Passphrase was sent as a header.

I have a feeling that running on the debug xmb, it might contain the pass used in 3.60. Basically when sony "updated" their login, they just changed that static code.

So if this really is a 3.60 xmb, then it might have the updated login. This IS using rebug 3.55..

---------- Post added at 11:57 PM ---------- Previous post was at 11:51 PM ----------

Ok scratch everything I said. I got my certs switched up, haha.

but this is NOT good. i just realized Rebug is reporting 3.55 firmware version to sony on the DEV network. i am using sp-int currently. THIS IS NOT GOOD. Sony is probably logging EVERYONE doing this.

You must login or register to view this content.


SO That means console bans. Claps
04-02-2011, 04:17 AM #8
pcfreak30
>> PCFreak30.com Happy<<
Originally posted by YnO View Post
SO That means console bans. Claps


Possibly. This is what happens when people dive in head first. I may be guilty myself, but oddly I am the only one checking this..
04-02-2011, 04:31 AM #9
YnO
~♣°Yamata no Orochi°♣~
Originally posted by pcfreak30 View Post
Possibly. This is what happens when people dive in head first. I may be guilty myself, but oddly I am the only one checking this..


since yesterday I knew that could happen.

you're right.

some people (including me) have debug firmware and knew of the existence of this PSN_debug for a long, and was OK because we were still in private

but now that everyone have this debug PSN has become dangerous for all. cuz sony will watch that
04-02-2011, 04:53 AM #10
Originally posted by pcfreak30 View Post
So everyone by nows knows about Rebug and the Dev PSN. Well i have realized they are using a 3.60 vsh.self, meaning a 3.60 XMB.

So I was thinking if we could do a SSL Man-in-the-middle attack and see a login attempt to auth.sp-int.ac.playstation.net, we might be able to get the X-I-5 paraphrase.

We also should check the 3.55 XMB and get it. If they are different it might be the key to get on Retail PSN on 3.55..

I am not sure if the networks are requiring the same or a different paraphrase.

I have already tried a SSL/DNS spoof with CA24.cer and got a SSL error. granted I am not the best in SSL, so if anyone else knows more feel free to look into it and contact me.

So feel free to try. Any help will make us getting back on the regular faster, if possible.

Peace..


yo cant use ca24.cer bud its expired use 10 or 13 certificate
no not 13 unlucky number try 10 and 14 lol

Copyright © 2026, NextGenUpdate.
All Rights Reserved.

Gray NextGenUpdate Logo