January 26, 2012 // 4:07 pm - Below is a work-in-progress (WIP) of PS3 3.60+ games booting on PlayStation 3 Custom Firmware (CFW) 3.55 and 3.41 without a dongle for those interested in experimenting further with it.

What you need ?

1- PS3 3.55 CFW Rebug or 3.55/3.41 with Debug
2- Debug Dev_Flash (Also allow to have the debug options on retail)
3- Backup of your own CFW DEV_Flash (make a dev_flash path on your USB Device)
4- A File Manager
5- EBOOT.BIN of your games (also from Paradox)

What you need to know

Rebug normal in Debug mode 2

  • You need to put your PS3 in boot mode -> debugger mode (and not system software mode)
  • We're gonna use the debugger mode to debug the self execution we don't need to have NPDRM, anyway the debugger don't know how to Debug the Self NPDRM
  • Release mode -> Development mode
  • All the content type configuration -> Development mode

Dongle uses modified sprx/modules/lib related to the Debug files to be loaded when you boot the PS3 on CFW.

Almost all the EBOOT Paradox don't have NPDRM -> it's a simple self (fake sign header) renamed to EBOOT.BIN (like i was explaining many times) -> call function to the debugger -> sprx/modules loader.

Let's do a small test to be sure that you understand.. take whatever EBOOT Paradox, open with editeur hexa, check the first header ->

[Register or Login to view code]

You can see that is a standard Self without NPDRM only have a fake sign header.

Rename this file EBOOT.SELF than .bin transfer your self on your usb stick/storage, launch a file manager, add the self to the path of your game and execute your self after that, self will load on the path APP_HOME of your XMB.

If you launch that with the debugger mode, it execute without problem and the debugger don't need to have NPDRM (anyway the debugger don't know how to read Self NPDRM)

Why we need debug_devflash

We need that to replace some specific temporary file to allow to boot on debugger mode and reload the XMB, also the backup of your dev_flash CFW it's here to put back your files (that allow to reboot without crash).

I don't put all now put this is one of the step and WIP of game 3.60+ boot on 3.55/3.41. Remember that the dongle use also standard Self to be load on a debugger mode.

PS3 3.60+ Games Booting on 3.55 / 3.41 CFW Without Dongle WIP

#215 - Transient - January 17, 2012 // 12:12 am
Transient's Avatar
I wonder, if running 3.60+ games can be achieved by replacing a few SPRX files, does that mean the 3.60+ keys are stored in the SPRX themselves instead of in appldr? If not, then does it mean 3.60+ doesn't really use a new key but instead some form of obfuscation?

As for the comment earlier about the people flaming devs, I think a certain amount of that is subterfuge (eg. Them trying to discourage people). Otherwise why wouldn't the other console scenes have the same jerks over there?

#214 - wyldstallyn - January 16, 2012 // 10:28 pm
wyldstallyn's Avatar
Cfwprophet... would access to a higher than 3.60 sdk help your cause? I'm not saying I have it... i'm just wondering if sdk helps in this type of hacking

#213 - PS4 News - January 16, 2012 // 8:04 pm
PS4 News's Avatar
Please keep this thread on topic guys, sadly we don't have time to sift though junk replies so we are just nuking them and issuing infractions.

#212 - SanctumSlayer - January 16, 2012 // 5:12 pm
SanctumSlayer's Avatar
Because Uncharted 3 original came with a 3.7x eboot but it had a patch that was later release that utilized a 3.55 eboots thus making it playable on cfw.

#211 - Emad47 - January 16, 2012 // 4:53 pm
Emad47's Avatar
can some one explain me how did uncharted3 fixed for 3.55 while other 3.6+ games not?

does it mean hackers can fix other games too but they don't because of freaky false dongle??

sorry for my english

#210 - bloodyface - January 16, 2012 // 4:35 pm
bloodyface's Avatar
First of all, i won't debate if this new is true or not but I read a comment from CWprophet that he wonders why devs stopped working or releasing stuffs for 3.41 which offers more possibilities for development and hacks due to a big lack of security before Patches of Sony on 3.55 (and maybe 3.41v2)

It is the 1st time since the update of 3.55 (with arrival of CFW3.55), this comment of CFWprophet, I hear something so logic so obvious so clever or so smart, however you call it but I just want to thank this team Acid, not for releasing CFW or exploit for 3.6+ but I thank you for this proof that there is still one dev or team thinking properly freely (no money) before releasing like all those different shitty CFW3.55 and for the benefit of all.

I support you for you "battle" against those donglers making money this is why I never bought those dongles even install 3.55 cfw to stay on 3.41 OFW waiting a smart dev (lol a cfw prophet , well done your nickname) who will realize that for hack and development 3.41 is the best one for progress of ps3 scene

I have some question for curiosity: from the list of functions I don't see functions of backups PS2/PSP or swapmagic for BC PS3: it will be possible or not to play PS2 dongleless and discless?

and also, will you release a CFW 3.41 only or also a payload to update 1st generation dongle? (there are no drm-dongle and people who bought 1st Gen dongle have done it to keep their official 3.41 (like me waiting your coming back lol)


#209 - GrandpaHomer - January 16, 2012 // 4:23 pm
GrandpaHomer's Avatar
Having 4.0 CFW doesn't necessarily mean though that it will be possible to install it via / over 4.0 OFW - it could be that only way to put it on will be via pre 3.56+ FW ...

#208 - nextbike - January 16, 2012 // 3:49 pm
nextbike's Avatar
I know how it works and this is not even close. Has nothing to do with system files I think.

#207 - Tiger007 - January 16, 2012 // 2:19 pm
Tiger007's Avatar
Or use a flasher I think... This is the best news of this year for the ps3 scene. Man what a shame on the dongle suppliers... anyway team AC1D, thanks for this share with us !

#206 - MimmoD360 - January 16, 2012 // 2:00 pm
MimmoD360's Avatar
People who are stuck in OFW 4.00 just have to wait their turn