PSP-Hacks.com

Join the Dashhacks Fan Club on FacebookFollow Dashhacks on TwitterDashhacks YouTube ChannelPSP-Hacks RSS Feed

Hack your Sony PSP

Forums | Tutorials | Custom Firmwares | PSP Themes | Search


 

Medal of Honor: Heroes Exploit; Works on PSP Firmware 5.51!

greg | July 8, 2009

I read about this a couple days ago and was awaiting more concrete evidence before posting, and well, here it is — the proof is in the pudding… Courtesy of kgsws — a [promising] Medal of Honor: Heroes user mode exploit for firmware 5.51 and prior.

The vulnerability stems from a classic “format string” overflow in the player’s name; Details can be found in “info.txt.” Source code also included.

Download: MOHH Exploit v2

- source: dcemu

Share This With...
  • Facebook
  • Digg
  • Twitter
  • RSS
  • Slashdot
  • Technorati
  • del.icio.us
  • Reddit
  • Blogosphere News
  • HackerNews
  • StumbleUpon
  • Google Bookmarks
  • email
Comments (100)

Tagged: :: ::

RSS feed | Trackback URI

100 Comments »

Comment by Decius
2009-07-08 17:15:50

Damn, I hope they can gain kernel access from this!

 
Comment by KTB
2009-07-08 18:12:41

And here comes Firmware v5.52

Comment by James
2009-07-08 18:16:57

lmfao

 
Comment by Awesomer
2009-07-08 18:34:49

I heard that this can be fixed by EA patching their servers. :P

 
Comment by garrett
2009-08-04 01:57:34

Your damn right about that. Good thing im hiding my psp so my noob freinds dont update it again. Damnit!! Im stuck on 5.51 i hope they make a exploit for this so i can run homebrew on my 3000.

Comment by shobby
2009-08-12 17:40:06

yep me too cant run homebrew coz i got 5.51

 
 
 
Comment by xXxXx
2009-07-08 18:17:12

Lol, another MAC paranoid.

Quite a long process to run exploit. Still its good news to all the OFW 5.51 users.

Good Work. ;)

 
Comment by Cheesetheif
2009-07-08 18:53:20

Watch 5.52 come out in the next few days.

 
Comment by headsupkid01
2009-07-08 18:56:13

I like think i’m not a noob, but what’s exploit?

Comment by PSP addicted
2009-07-09 11:49:58

You’d better face reality: as a matter of fact you actually are a noob !! :-)

BTW, here’s an excerpt from wikipedia:

“An exploit is a piece of software, a chunk of data, or sequence of commands that take advantage of a bug, glitch or vulnerability in order to cause unintended or unanticipated behavior to occur on computer software, hardware… This frequently includes such things as violently gaining control of a computer system or allowing privilege escalation or a denial of service attack.”

Comment by headsupkid01
2009-07-09 14:22:47

So it’s used to put CFW on your psp?

Comment by Kilogold
2009-07-09 16:25:39

noob xD

 
 
Comment by sirtrunkz
2009-07-13 10:21:32

Nice!!!!! could said it better

 
 
 
Comment by Fuuton_User
2009-07-08 18:59:04

lol, finally. now awaiting its use without the medal of honor umd. oh upgrade at ur own risk when 5.55 comes out

 
Comment by edreww1188
2009-07-08 20:26:14

Firmware 5.55 is already out.

Comment by cboushell
2009-07-08 21:46:27

5.55 was seen on a PSP in Japan at some type of expo but it has not been publicly released, and may never be. Get your facts straight before making a post. If I am wrong tell me where I can download firmware 5.55. You can’t tell me where to download it can you, you effing retard.

Chad

Comment by jake
2009-07-08 23:38:21

wutta douche

 
 
 
Comment by jack
2009-07-08 20:41:43

i still dont understand what an exploit is or can potetially do and why its so fascinating……………help please?

Comment by LolzxD
2009-08-10 01:12:46

in simple words… a psp should only run things coming from sony, but sometimes they screw up their protection. Hackers find these screw ups, and find ways to make the psp do what THEY want. Potentially, you can make a psp do anything as long as you can program it and that the psp is powerful enough to run it. In the world of psp people like to run game back ups (so you don’t need the UMD to play the game), or to run stuff they program (let’s say… view text documents on the psp, a drawing tool, an alarm clock…, whatever you can program).
Hope this helps.

 
 
Comment by Mango
2009-07-08 20:42:16

This will be patched up real quick with the source code released!

Did anyone realize how long it took nintendo to fix the twilight hack? It was CLOSED SOURCE.

Comment by HyperHacker
2009-07-09 02:23:57

Nintendo also are idiots when it comes to security. They tried twice to patch it and failed.

Comment by Alexshadow
2009-07-15 04:23:47

They are even bigger idiots because you can play their games on the consoles of the competition. never seen a playstation game run on a damn gameboy…

 
 
Comment by Nicko01
2009-07-09 12:33:23

And it can also be patched quickly without releasing the source.

I find it interesting how common this type of exploit is. Do programmers no longer care?

 
 
Comment by vic530
2009-07-08 21:21:39

This exploit looks very promising! Let’s just be patient and see what develops.

 
Comment by Charlie
2009-07-08 21:27:52

An exploit is a way of running unsigned code (homebrew) on the system. I’m a bit fuzzy on exactly how they always work, but buffer-overflow exploits like this use a messy bit of code in the game (just like gta, lumines, and gripshift exploits) to confuse the PSP and have it try to gain access to a part of the game that doesn’t exist. The hacked save file can be coded to direct the PSP to access a file on the memory stick which contains homebrew. This could potentially lead to downgraders or homebrew enablers, which would allow users to run homebrew and/or install CFW.

Comment by jack
2009-07-09 01:08:10

oooo thanks man i get it now

 
Comment by headsupkid01
2009-07-09 07:58:52

So it’s like the twilight hack on wii?

 
 
Comment by Brett
2009-07-08 21:38:57

Imagine all the people who have no idea about this side of the psp world. They’ll just be getting all these firmware updates and thinking “wow, sony must really be working hard” etc etc

Comment by swordsx48
2009-07-08 22:49:00

LOL!!

 
 
Comment by bam
2009-07-08 22:05:36

Sony has to punish these Game Makers.

SUE EA SONY!!

Comment by bob
2009-07-09 06:12:51

are you retarted? you act like ea intentionally set out to put this exploit in their game.

Comment by PinCushion
2009-07-10 18:24:30

I’m pretty sure that was sarcasm. Don’t get your knickers in a twist.

 
 
Comment by Nicko01
2009-07-09 12:37:12

Sony doesn’t really have the ability to sue them. They didn’t do anything wrong, and sony was the one who allowed their code to be run on the system. Plus, I’m sure if SCE would sue EA over something like this, it would be unlikely that they would work together in the future, causing Sony to face somewhat severe losses.

 
Comment by jake
2009-07-09 16:32:00

its retards like you who make me pissed off
lol

that’s like saying “lets show these gay people how balls feel”

 
 
Comment by jake
2009-07-08 23:39:53

dammm
droppin exploits like they hot
LOLOLOLOL

Comment by inuyasha555
2009-07-09 00:07:26

Lets go make our own game. JUST TO EXPLOIT THE PSP!

Comment by jake
2009-07-09 16:21:44

genius

 
 
 
Comment by Iceus
2009-07-09 00:13:12

wtf!! Why they got to go @ released
This Exploit was better off waitin for the PSP GO before releasein this + wtf they released source code too.. This gonna be patched up real fast!!

Comment by Kenneth
2009-07-09 04:26:10

My thoughts exactly, if you know of an exploit save it and try it on the pspgo before sony can kill it. Although there will be no UMD in the pspgo, I wonder if downloaded games will have exploits (most likely). I guess some people are just too excited when they find something.

Comment by bob
2009-07-09 06:19:15

umm because the exploit wont work on the go. it uses a new mobo which means itll be harder to hack. it wont have security that is as half assed. sony is gonna do alot more to keep it locked up. notice you can only download games. thats the key WHENEVER a new exploit for the go is found all they have to do is take down the upload (which can be done in minutes) and put up a fixed version when they choose too.

Comment by Nicko01
2009-07-09 12:40:51

The motherboard has nothing to do with how easy it is to hack. It’s all in the software.

Also, exploits can be found in places other than games, for example – the loading of media files, or even in the form of simple hardware modifications.

Comment by bob
2009-07-09 21:43:20

really the motherboard doesnt make a difference? then why was it harder to hack psp 3000s AND psps with a ta88-v3? If the mobo didnt make a difference then why did they need an exploit for both instead of just the 3000? hate to break it to you but your wrong.

(Comments wont nest below this level)
 
Comment by PinCushion
2009-07-10 18:27:41

Actually you are wrong. The mobo version affects pandora only. Not exploits. They work in completely different ways. . . Rocket Scientist.

(Comments wont nest below this level)
 
Comment by bob
2009-07-10 18:42:00

alright then please explain why they needed an exploit for the ta-088v3 mobos?

(Comments wont nest below this level)
 
Comment by PinCushion
2009-07-10 18:58:24

Because they still haven’t hacked the ipl for the ta-088 V3 mobo or the 3000’s. No IPL hack means no Pandora. They use the exploits instead to be able to run unsigned code. Exploits when properly written can run on all versions.

(Comments wont nest below this level)
 
Comment by bob
2009-07-11 12:45:39

so you just proved my point. thanks.

(Comments wont nest below this level)
 
Comment by PinCushion
2009-07-12 09:56:48

Is english your second language? Do you need to run what I said through google translate or something?

(Comments wont nest below this level)
 
Comment by bob
2009-07-12 13:14:16

if you didnt notice my original point was that a new mobo would make it harder to hack. reread the conversation and youll realized you proved my point. so your insults were in vain. permission to feel like an moron granted.

(Comments wont nest below this level)
 
Comment by PinCushion
2009-07-12 19:10:10

An moron, eh? I see you’re still struggling with the whole English thing. Don’t worry, I’ll use small words. Mobo version doesn’t affect exploits. They haven’t hacked the ipl of the newest mobos yet and they it’s highly doubtful they will hack the ipl, which may very well be the same one since it has worked so well for them, on the go anytime soon. Software exploits will never end. There are always loopholes. The release of this exploit makes it possible for the poor unfortunate (sound that one out if it was too big) souls who have firmware 5.51 to use their psp’s for something useful.

(Comments wont nest below this level)
 
Comment by bob
2009-07-12 23:12:54

your still talking about how its hardes to hack the ipl on the mobo. BLAH BLAH BLAH at the end of the day your still proving my point which was that it makes it harder to hack. pointing out minor gramatical errors will not cover that up.

(Comments wont nest below this level)
Comment by jonathan
2009-08-26 09:41:12

ok. bob,.. when they made a new motherboard for the psp is harder to hack,50%right, because they need to develop exploits or libtiff, but u still can hacked but it take a little time to develop, anyways i hate sony!!!!
look they just fk want us to do what they want.. ok. anyways this is my rule…
1- if i buy a psp i do anything to my fk psp
2- if i want to do anithing with it i do anything with it is my fk psp.
3-sony just want to stil our fk money.. if you dont belief me here is the proof.
example>
1- ps1, then they made ps2, then they made ps2m slim, then they made a ps3 and now they made a ps3 slim. ok!!!!!!!!!!
can they just make fk updates wtf is wrong with sony… one day they are going to lose alot of money and they will be sue!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

 
 
Comment by PinCushion
2009-07-13 15:04:52

amazing. . . .

(Comments wont nest below this level)
 
Comment by Anonymous
2009-07-16 16:51:37

I’m late to this game but bob, you’re an idiot. The motherboard is not making it difficult, the programming the motherboard is using is making things difficult. The IPL is not built into the motherboard, if it were, there would be no problem hacking it, the motherboard would validate itself. The problem is that if you change the IPL you haven’t changed the requirement of it so the system bricks. Just because the boot up requires a check on models with certain motherboards doesn’t mean the motherboard is what’s causing the difficulty.

I’m reminded of an old proverb here: “It is best to keep one’s mouth shut and let people think them a fool, than to open it and remove all doubt”

(Comments wont nest below this level)
 
Comment by Ryan
2009-07-17 08:28:58

Win.

(Comments wont nest below this level)
Comment by skippy
2009-07-18 00:57:04

bob = fail

 
 
 
 
 
 
Comment by Sam
2009-07-09 01:10:54

fck there are MORE adds on this site. I have adds floating all over the screen I could hardly type this message. Has this site been infected with a trojan advert or somthing? Its a real pain in my arse and ugly as hell.

Anyone else got this or is it my computer? But it seems to just be this website.

Comment by Sam(fake)
2009-07-09 01:22:06

Its The “sony exploit pstch virus”
Ahhhhh…Im scared…>>>>lol

 
Comment by Nicko01
2009-07-09 12:43:06

It sounds like you have some adware. Install firefox, adblock plus, and some anti-adware software and you’ll never have to worry about ads.

 
 
Comment by Iceus
2009-07-09 01:23:48

Im Usein FireFox With Adblock Plus @ BetterPrivacy Extensions I dont ever get any adds.

Comment by Iceus
2009-07-09 04:09:37

i dont care i wish i will die…
im puttin my finger in my ass because im gay!!!really

Comment by jake
2009-07-09 16:28:51

woot

 
Comment by ha
2009-07-09 17:56:47

ahahahaha

 
 
 
Comment by Jeremy
2009-07-09 02:57:14

cool to finally see an exploit with a game i already own.

too bad it will be patched soon.

 
Comment by 1UP
2009-07-09 03:25:03

Trigun FTW :D

Comment by 1UP
2009-07-09 17:57:35

…………………….

 
 
Comment by dimy93
2009-07-09 05:28:38

v2 was released:
Medal of Honor Heroes second exploit

There is new version of old exploit …
What’s new?
Now you don’t need WiFi connection and CFW PSP.
It also take much less time to run.

Download here: http://zdoom.ic.cz/psp/moh-exploit-v2.zip
… and read info.txt …

 
Comment by maxjbxx
2009-07-09 05:37:15

damn it dats cool bro keep it comin’ :))

 
Comment by headsupkid01
2009-07-09 08:02:28

So you need CFW to use this, and what it does is allows you to put CFW and homebrew on your psp? What is the point of this?

Comment by dimy93
2009-07-09 09:02:35

there is second version of the exploit which doesn’t require the other cfw psp

 
 
Comment by PSPdemon
2009-07-09 09:25:09

Updated Exploit ( as the guy above me said )

You no longer need a wifi connection to use it.

As for people wondering if this could lead to HEN… simple answer is yes. Question is who will be the one to do it :P

Comment by dimy93
2009-07-09 09:29:25

yep the hen will be only for 5.50 and it will use the current 5.03 kernel exploit,because this one is only user mode exploit

 
 
Comment by manpee1
2009-07-09 10:14:55

so does this do anything yet. or is it just a “hello world” type exploit

Comment by bob
2009-07-09 21:47:29

exactly

 
 
Comment by headsupkid01
2009-07-09 14:21:01

people should spend more time on making real programs like Airhack or a joost port instead of ten thousand way’s to put CFW on a psp.

Comment by David
2009-07-09 18:29:08

Do you have CFW on your PSP? If you do then shut up. Let them do what they want with their time.

Comment by vic530
2009-07-09 19:12:39

I concur!

 
Comment by headsupkid01
2009-07-10 12:27:57

We all have CFW you fags, thats why these is point less.

Comment by Coffin
2009-07-14 10:56:32

I don’t have CFW. I was looking forward to it when i bought my PSP but lo and behold it was a 3000 with 5.03. I did some reading saw at the time PSP 3000 wasn’t hackable atleast for not a while. So i upgraded my firmware moved on with life, HEN came out 2 days after ;.;

the moral of the story IS! there are plenty of people out there without CFW for whatever reason, and they come here for their answers. So no…this is not pointless.

Comment by Beast
2009-08-02 18:40:50

omg thats my situation completely q-q!!

except, i got a psp 2000 without an 88v3 mobo, so i could go the pandora route if i wanted, but its looking like im never gonna get my hands on a pandora battery Q_Q!!!!

(Comments wont nest below this level)
Comment by hi there
2009-09-01 10:20:07

beast- you can buy a pandora at dealextreme.com

 
 
 
 
 
 
Comment by Antonio
2009-07-09 19:28:43

Does it mean that will be possible have a cfw for the ones who have presently ofw5.51? i hope so…it’s exactly what i need!!

 
Comment by Purplehaze
2009-07-10 01:48:14

I strongly disagree. Notice that the newer models where easyly hacked. Unlike psp 1000. Sony hiding security behind the ”only download” idea would easyly be ’spoofed’ the whole idea is to make each downloaded game come with its own certificate indipendent of another copy of the same game.ergo downloaded game would refuse to work on yours.hmm, did i hear someone think ”psx certificate spoofer”?

 
Comment by jrlirgg
2009-07-12 08:54:09

Who is this soundtrack by? – Very Cool!!

 
Comment by pepe
2009-07-12 14:49:39

cooooooll i will buy this game only for the exploit!!

this is awesome
this works for psp 3000 right??

 
Comment by Eren Aydın
2009-07-12 15:09:22

guys i got the umd , i place the savegame file to the folder correctly but the game cannot load the profile , what can i do?

Comment by Vanz
2009-08-26 16:03:34

Read The info.txt!!!!!!

 
 
Comment by Coffin
2009-07-14 10:46:44

I just had a strangely funny thought. If this ends up being like a gripshift exploit then everyone being indoctrinated into the hacked community from PSP 3000 5.51 will be buying these things up like hot cakes. SO…what if sony got greedy and decided HEY we’ll keep patching this thing occasionally look for exploits from other games and capitalize on it.

it’s skeptical but the thought entertained me immensely. Sony finding a way to profit from the hacking community.

Comment by Ryan
2009-07-17 08:28:20

Hahaa.
Clever.

 
 
Comment by adfdaf
2009-08-01 17:22:07

sooo I’m guessing we have to wait for a version of HEN that can run after the exploit? That sucks :( I want my homebrew NOW

 
Comment by Beast
2009-08-02 18:34:28

So if someone were to create a .bin file which had the same coding as the Sony Updater, but had CFW data, technically they could flash the psp without the necessity of a Pandora battery, right?

 
Comment by Vasto Lorde
2009-08-05 16:33:36

I don’t get it. Will this let me download the full game for free on my PSP? Or do I need the UMD?

 
Comment by Crazy Smurf
2009-08-07 09:52:39

some one commented somwhere up here that with using the exploite y do we try and access a file from the memory card like a picture this could lead to a HEN
i am still an ameuture at programing and only noe java but logicaly it makes sense to try this concept

 
Comment by Coffin
2009-08-11 22:20:01

It was a nice idea, and cleverly excuted pre-5.50 in 5.03 and lower (and i think 5.04). But that was with .Tiff files. A particular image file capable of storing code or at least that’s is what my non programmer’s mind remembers. ANYWAY, tiff support was eliminated with 5.50 and up. so that picture files is no longer an option. but as mentioned in the forum thread regarding this exploit. this could lead to an open source eLoader.

 
Comment by bob
2009-08-24 20:28:18

i have an idea (thats really dumb) i changed the eboot.pnp (5.03 update) to a txt and opened it and inside was all these funky letters but what caught my eye was the numbers that listed the update number 5.03 5.03 5.03 all in a vertical line so theoretically we could change these numbers and make them into 5.52 thus don grading the psp

Comment by adfdaf
2009-08-25 22:48:44

nope sorry, doesn’t work… somebody already tried it

 
 
Comment by jonathan
2009-08-26 09:51:07

lol, i think the pandora does not work on psp3000 because sony put a securithy thing to block the padora, so what i think is that they did something were you put the battery in the psp3000, because if u compare the psp2000 to the 3000 is realy simil. so thats what i think and anothere thing is that they should start looking in the moderboard(psp chip and trie to find the security and fix it but they want to spend there time finding exploits or doing libtiff or wharever they want..)

ill be good if u can asses ur psp settings and functions in the pc so u can jus reprogramet to costume firmware or anything..

 
Comment by Skullfire
2009-10-04 00:28:48

Hello. I live in europe & bought a MOHH (1) game, European version. I’ve read a lot of things, specially in ur site. I got psp 3001, version 5.51. tried exploit v2 but couldnt manage this. read info.txt but it only says
“What you need:
- NON-CFW PSP
- this archive … but you have it, don’t you?

How to do it:
- backup your MOHH savegame (if any)
- copy entire ms0 folder to memstick root
- run MOHH
- do not change any setting
- create AdHoc game
- sucide – try rocket, that’s fast ;)

Important:
- do not change any setting! :)
- this is not savegame exploit, savegame just hold all important data to do get name exploit working.
- if there is something bad in english, correct me :)”

anywsay, then I realized there could be a problem in European MOHH. Can u help me pls?

 
Comment by otavioafm
2009-10-16 17:35:00

lets go hakers 5 months waiting a hack for psp 5.51!!!!!!!!!!

Comment by Akash
2009-10-21 04:42:57

Exactly my point.. no downgrade available YET?:O

i’ve got the MOHH with a sweet working exploit, but theres nothing on how to downgrade or upgrade the 5.51 on 3000 to get the CFWs working

 
 
<< Login :: Register >>
Name (required)
E-mail (required - never shown publicly)
URI
Your Comment (smaller size | larger size)


Affiliates



Video Games






PSP Hacks Archives