Symbian OS | Pocket PC | Smartphone | Android | BlackBerry | Apple iPhone OS | Java | Mobile Gaming | Linux | Palm | Win CE | Tablet  
     

Free Mobile Software, Themes, Games, Apps for PDA and Smartphones

     
Search by Device
My Device

  
Last Viewed Apps
Akinator Lite for Android
Notes and Queries, Number 22, March 30, 1850 for MobiPocket Reader
Memory test
Run Rabbit Game
Diggerr
BitForce
Need CS Counter-Terrorism
Sketches New and Old, Part 1 for MobiPocket Reader
Tug table
Candy bash
Search by Category
Business & Profession
Databases
Dictionary & Translator
Entertainment
Finance
Games
Healthcare & Medicine
Internet & Communications
Multimedia & Graphics
Organisation & Productivity
Programming & Development
Reading
Science & Education
System Utilities
Antivirus
Archivers & Compression
Backup & Memory
Barcode Scanner
Battery
Data Storage & Encryption
Display & Flashlight
Emulators & Shells
File management
Hacks & Tweaks
Installer
Interface
Keyboard Extensions & Lock
Localization
Password Managers
Profiles
Registry
Remote connection & Consoles
Screensavers
Screenshots
Search
Security
Synchronization
System management
Task Managers & Launchers
Tests & Benchmarks
Text Editors
More
Themes & Wallpapers & Skins
Travel & Navigation
Search by Platform
Android
Apple iPhone OS
iPad
iPhone
iPod Touch
BlackBerry
Java
Linux
Maemo Nokia Internet Tablet
MeeGO
Sharp Zaurus
Mobile Gaming
Nintendo DS
Playstation 3
Playstation Portable
Wii
Xbox 360
Palm OS
Symbian OS
Series 60
Series 80
Series 90
UIQ
Tablet PC
Windows CE.NET
Windows Mobile Pocket PC
Windows Mobile Smartphone
     


Achivx Partner
 
 
GripShift savegame exploit POC




GripShift savegame exploit POC
Version: 1.0

Platforms: PSP, Mobile Gaming


Categories: System Utilities

Upload date: 20 Oct 11

Developer:

License: Freeware

Downloads: 13

File Size: 11 Kb
Download Free GripShift savegame exploit POC 



Rating: 1.0/5 (Total votes: 1)




  GripShift savegame exploit POC

Aah, yes, new exploit, old game. It's so cool to actually see this beauty working - and on a PSP-3000 no less! The PSP scene was buzzing the other day when MaTiAz found an exploit (read: buffer overflow!) in the three year old game, GripShift.

MaTiAz says that they've yet to find any further use for this, but it's still a new exploit. It could lead to further hacks, and for now, it's merely a proof of concept. Be that as it may, this is a great start, and a rather sweet find! Here's MaTiAz explaining the exploit:


"GripShift has a buffer overflow vulnerability when loading savegames. The savegame contains the profile name which can be easily used to overwrite $ra. The savegame file is pretty big (25kB) so you have lots of space to put your code there. I wrote a simple blob of code to paint the framebuffer completely white (to just indicate that arbitrary code is running ). The return address is located at offset 0xA9 in the file. In this poc it points to 0x08E4CD50 (which is only a few bytes after the return address), and the code starts at 0xCC in the file."


"It was tested on 4.01M33-2 with US version of GripShift (ULUS10040), and psplink.prx, usbhostfs.prx and deemerh.prx loaded (also without psplink and usbhostfs). The decrypted savegame (sorry, couldn't [be bothered to] get Shine's savegame tool working so it's in plaintext form) is in the SDDATA.BIN form which Hellcat's Savegame-Deemer produces (thanks to him, if the program didn't exist I wouldn't have bothered with this. ). Just copy the ULUS10040SAVE00 directory to /PSP/SAVEPLAIN/ and run the game. EDIT: yeah, don't forget to have Savegame-Deemer working, duh."
 
Like it? Share with your friends!

If you got an error while installing Themes, Software or Games, please, read FAQ.
 
Similar Software:

Gameboot Path ModiferGameboot Path Modifer
Gameboot Path Modifer  pspThere is a hot-of-the-grill homebrew application in our forums right now. Homebrew developer Kando informed us that Team FWI (composed of himself, LordSturm, Birdman and JamesBDX) just came up with the first version of Gameboot Path Modifier. This release probably trace it roots from the 2.71 EBOOT. It does exactly what that eboot does
Modo (September 3, 2007 update)Modo (September 3, 2007 update)
Modo (September 3, 2007 update)  PSP homebrew developer wbb dropped by the QJ.NET Forums to announce a new update for the Modo ultra simple mod player application
pergame.prxpergame.prx
pergame.prx Homebrew coder AtomicDryad has released a new version of his nifty module, pergame, a simple plugin that allows you to load "other modules as if they were in /seplugins/game.txt. The difference here is that pergame.prx loads on a per-eboot basis
TempARTempAR
TempAR Homebrew coder raing3 has released a new version of TempAR, a handy NitePR/MKULTRA mod for all your cheating needs. Changelog: [+] Added better support for homebrew, now uses unique Game IDs which are the same as those generated by CWCheat. Big thanks to HARO for the help. [+] Single select folders are now supported
warPSP^xmbwarPSP^xmb
warPSP^xmb PSP coder califrag dropped by the QJ.Net Forums earlier to announce a quick update for the warPSP^xmb Alpha prx plugin. In case you're wondering what this application does, it's a wireless hotspot scanner that displays its results on your PSP's XMB browser
FuSaFuSa
FuSa Here's some good news for all of you who've been excited about FuSa Build 032. We've just learned that it's now available for people to download. For those who haven't heard of FuSa, it's an application that allows users to play PSP games on a TV over all cable types. Sweet, right? Here's the changelog for FuSa v1
StacklessPython OSLib MODStacklessPython OSLib MOD
StacklessPython OSLib MOD from Sakya: Hi! I modified the StacklessPython PSP source to link it against OSLib MOD (faster rendering and support to dialogs and Sony OSK). I also replaced the mp3 module to use the Media Engine. The patch contains also some samples
3.03 OE AutoBoot Plugin3.03 OE AutoBoot Plugin
3.03 OE AutoBoot Plugin There's a minfield of different plugins for Dark_Alex's 3.03 OE custom firmware right now, and here's another pretty useful one from developer Kajo5 to add to your custom PRX arsenal. As the title probably gives away, this plugin allows you to autoboot a homebrew application or game on startup of your PSP with little effort
Dark_Alex 2.71 SE-C Easy Installer 1.0Dark_Alex 2.71 SE-C Easy Installer 1.0
Dark_Alex 2.71 SE-C Easy Installer 1.0  In the wake of the explosion that was Dark_Alex's 2.71 SE-C, other devs have started popping up with their own add-ons, mods, installers, and the like to complement the new custom firmware. Especially the auto-installers, those one-click time saving godsends that automatically load a homebrew into your PSP
POPSLoader patchPOPSLoader patch
Developer's note: A  This is a patch plugin for CFW ME
 

Comments on GripShift savegame exploit POC:

Comments not found

Name:


Comment:


Enter text from image below:

Turn on images!

 
 

If you noted an error or download link is broken, please, report it via this page or use comments.
 

Please, select device to check if GripShift savegame exploit POC supports it
 
 
© Pantich 2009 - 2025 All rights reserved.