January 6, 2011 // 9:03 pm - Today Sony has finally spoken out against the recent PS3 Hacks stating they plan to fix the security breaches through a series of PlayStation Network updates including fraudulently unlocked PS3 Trophies.

To quote from (linked above): "Earlier this week, hackers completely tore apart the console's few remaining lines of defence against running unauthorised code, and subsequently released the first custom PS3 firmware.

Sony has remained quiet on the issue until now, having just told our friends at Edge: "We are aware of this, and are currently looking into it. We will fix the issues through network updates, but because this is a security issue, we are not able to provide you with any more details."

Hacking groups don't believe this will be possible though, telling the BBC: The complete console is compromised - there is no way back. The only way to fix this is to issue new hardware. Sony will have to accept this."

Sony went on to tell CVG the following, to quote: "We are aware of this, and are currently looking into it," an SCEE spokesperson told CVG. "We will fix the issues through network updates, but because this is a security issue, we are not able to provide you with any more details."

#30 - DADDYFU91862 - January 9, 2011 // 3:06 am
It appears that Sony is under the impression that UPDATING the firmware will be like updating the Firmware on the PSP. From what I've read so far, (from you guys), the PSP and PS3 are two ENTIRELY different beasts (with regards to the hardware and coding). One would think that SONY would be WELL aware of this... I'm sure they'll put something out that will foul up unmodded PS3 consoles. It will be a debacle.

#29 - JNCbmhs - January 9, 2011 // 2:32 am
So let me get this straight. the .pup CFW/MFW geohot may release is essentially a jailbreak as it runs UNSIGNED code but the only difference is that it doesnt touch the kernel so until we modify it, it cannot as of right now run backups.

#28 - metalheavy - January 9, 2011 // 2:10 am
Not sure if Sony can do anything now that this is in the wild. It's about time they start pushing that PS4 out the door

They cannot and will not stop piracy. It's impossible. They understand that. But they also understand that they can't get raped in the public eye view. Oh that's right they already did LOL!

You could not have said this any better. Exactly what I had in mind

#27 - kreiger3750 - January 9, 2011 // 1:25 am
Correct me if im wrong but if you sign something. It's basically a legit program/game/anything you sign/re-sign. So Sony will never know what your doing. And if they update it we still have the keys; even tho I can tell you that they can't fix this

#26 - blueclouduk - January 8, 2011 // 10:12 am
There are more than 41 million PS3 consoles worldwide. Only a very small number of which will ever be jailbroken - we're talking half a million to a million at most. The majority of owners simply don't have the technical knowledge, the courage or even the desire to jailbreak their console.

More than 350 million PS3 games have been sold worldwide. Sony gets a licence fee for each copy sold. TBH it was the only way that Sony could make a profit from the first versions of the PS3 which were sold below cost. Since the console is less of an issue financially, the profit is rising exponentially.

Sony will have to be mature about what they do to try and plug security holes. They can't make FW updates network only as not everyone as broadband, how would owners of brand new consoles update? No broadband would mean that every new game released with a FW requirement higher than that already installed could not be run on even recently acquired consoles.

Sony could potentially scan harddrives for illegal copies of software, but it was Sony that produced the first set of instructions telling owners how to upgrade the drives. That means pirates could run one harddrive for use on PSN and another for illegally copied software. It would negate the need for more than one console.

Sony could embed specific code into OFW that allows PSN access. Unfortunately, as proved on the PSP, CFW only needs to patch certain parts of the OFW.

Sony could stop all support for the PS3 and move on to a PS4. Sony then runs the risk of alienating all of the software and games developers who would suddenly be without a revenue platform. The PS4 would be left with Sony as the only software developer and fail to sell any games.

Banning consoles from PSN based on a MAC address will lead to mistakes being made. It will also stifle another important revenue stream; not everyone can afford to buy a brand new console. Sometimes, secondhand is the only way some users can get a console. A proud owner plugs in and finds that they own little more than a paperweight that can only play very old games. As their console has never had any hardware modifications how would they know why it had been banned?

So Sony are stuck between a rock and a hard place. They could use a sledgehammer to crack a nut and try everything to stop the small number of PS3 owners that are intent on committing piracy. Alternatively they could use the Microsoft Windows method; accept that piracy exists andtry to address the problem, but ultimately rely on the fact that the majority of users will be legitimate.

The security on the PS3 was broken because Sony adopted a complacent attitude. What's done is done and Sony cannot recover from this particular fumble.

Nothing is 100% secure if it relies upon human interaction.

#25 - Ebani - January 7, 2011 // 8:16 pm
Could you stop being so paranoidly unrealistic? No they won't release a new console for new games (making obsolete millions of consoles bc of their mistake? that would be an even worst mistake), no they won't make it updateable online "only", at most we won't be able to access psn (in which case there'd be no point in "banning" consoles) but engraved this on your mind.

ps3 security is null, doesn't matter what "new" tricks the magic show will present when you own the teather and decide if they'll make it to the stage.

#24 - THCIV - January 7, 2011 // 6:48 pm
"Doesnt matter at all what Sony does now... When/if they send an update.. To decrypt the new file(s), the ps3 needs to hold the key, which means "we" are able to see it too = back to former state very quickly... They lost it.."

if they apply the update through psn, scan for jailbreak, and install at least part without resetting the ps3 how can we decrypt what we don't have?

think teathered update to 3.60+

#23 - Mantagtj - January 7, 2011 // 5:51 pm
"We will fix the issues through network updates" = we are running round like headless chickens with our thumbs up our butts'' -

Anyone know anything about Crypto?

#22 - ChipMIK - January 7, 2011 // 5:07 pm
Doesnt matter at all what Sony does now... When/if they send an update..To decrypt the new file(s), the ps3 needs to hold the key, which means "we" are able to see it too = back to former state very quickly... They lost it...

#21 - THCIV - January 7, 2011 // 4:07 pm
sony can just do internet updates for this reason: its 2011 and the major reason for updates is psn so to say "they can't do it because of the offline consoles" is stupid.

once a console is hacked think 3.41 it isn't hard to reverse anything including the hashing on the nand. however if sony applies the update through psn with a "psn store downloader proxy thing" blocker and changes the way the nand is hashed how could we reverse it? we can't unpack dumped nand, we can't unpack a pup we don't have, we can't jailbreak what has no exploit.

what about the fact we have the key? our code is as good as sony's, but not signed by sony. that means instead of a revoke list we will get an approved list. don't think sony doesn't have a list of what they've signed. also don't think they can't tell a ps3 bdrom from a signed bd-r.