Hack a ps4: PS4 Jailbreak / PS4 Custom Firmware for Dummies

PS4 Jailbreak / PS4 Custom Firmware for Dummies

PS4 Jailbreak: Official tools and news for PS4 Jailbreak, latest updates directly from the PS4 hacking scene. You just got yourself a new PS4, and are looking for a PS4 Jailbreak / PS4 Custom Firmware solution? Then bookmark this page, as it will be kept up to date with the latest, greatest, and simplest solutions available for Playstation 4 CFW.

PS4 Jailbreak – the current status

PS4 9.00 Jailbreak

PS4s running on Firmware 9.00 or lower can be Jailbroken. Check the links below for the required tools to Jailbreak your PS4.

  • How to run the PS4 9.00 Jailbreak (Full guide with GoldHEN payload)
  • PS4 9.00 Jailbreak released (December 2021)
  • Where to find a PS4 with firmware 9.00 or lower

PS4 7.55 Jailbreak

PS4s running on firmware 7.55 or lower can now be Jailbroken. The tools and process to Jailbreak your PS4s are described in the links below:

  • Where to buy a PS4 running Firmware 7. 55 or lower
  • Mira Custom firmware for PS4 7.55. Compatible with 7.50 and 7.51 as well.
  • PS4 7.50/7.55 Jailbreak released. (March 2021)

PS4 7.02 Jailbreak

PS4s running on firmware 7.02 or lower can now be Jailbroken. The tools and process to Jailbreak your PS4s are described in the links below:

  • PS4HEN For PS4 7.02

PS4 6.72 Jailbreak

PS4s running on firmware 6.72 can now be Jailbroken (the Jailbreak was initially released on July 17th, 2020). The tools and process to Jailbreak your PS4s are described in the links below:

  • How to get your hands on a PS4 running 6.72 or lower
  • PS4 6.72 Jailbreak released

PS4 5.05/5.07 Jailbreak

If you own a PS4 Running firmware 5.07 or below, congratulations, you are on the golden firmware to Jailbreak your PS4! The 5.05 PS4 Jailbreak was released in May 2018 (and to the best of our knowledge, it is compatible with the rare 5.07 firmware). See links below for details. Also in general you can apply the tutorials used for 4.55 below (just make sure you use the latest version of the tools).

  • How to get your hands on a PS4 running 5.05 or lower
  • Where to get the 5.05 exploit
  • How to run the PS4 5.05 exploit on an ESP8266

For PS4 firmwares above 9.00 (9.03 and higher)

There is no public Jailbreak at this point for firmwares 9.03 and above.

In the meantime, it is generally recommended that you stay on as low a firmware as possible, as new hacks will eventually surface. Your current best bet however is to get a low firmware PS4.


Below this point are more details and more information about PS4 Jailbreaks from past firmwares, or news relevant to PS4 Jailbreak history/tools.

PS4 4.55 Jailbreak – Historical notes for Firmware 4.55

If you own a PS4 Running firmware 4.55 or below, you can jailbreak your console, although at the moment we suggest you update to a better supported firmware (see above). But here are some links related to the 4.55 jailbreak for reference:

  • How to get your hands on a PS4 running 4.55 or lower
  • How to Download and run the PS4 4.55 exploit
  • Holy Grail PS4 4.55 Payload to run homebrews and backups

PS4 Jailbreak – Historical notes for firmware 4.05

Firmware 4.05 was hacked shortly before firmware 4.55. If you have a console running on firmware 4.05, we now recommend that you upgrade to get the latest hack (see above for links on how to run recent exploits and other tools). The links below are kept for reference:

  • What you can do on a hacked PS4 4.05 So far
  • How to get your hands on a PS4 running 4.05 or lower
  • How to update your PS4 to Firmware 4.05
  • How to run the PS4 4.05 Exploit (Downloads + Tutorial)

PS4 Jailbreak – Historical notes for firmware 1.76

Firmware 1.76 was the firmware for PS4’s historical first jailbreak. The full files to Jailbreak the PS4 and/or run Linux on 1. 76 have been released here. We have an article to help you find a 1.76 PS4 to buy. The dlclose exploit lets you run Linux on your PS4, or run your own PS4 native code (this can now be done on more recent firmwares as well, see above).

Quicklinks

  • Linux on the PS4 (Fail0verflow)
  • CTurt PS4 Kernel Exploits (2015)
  • PS4 Brazilian Jailbreak (2014)
  • Jailbreak PS4 News & rumors – Fake exploits

PS4 Jailbreak – Linux on the PS4

In December 2015, Fail0verflow showed at the CCC hacking convention that they have Linux running on the PS4. They later on released all the required source code to run Linux on PS4, but not the required PS4 Jailbreak. Hacks have now been released for some models of PS4 to run Linux. Fail0verflow demonstrated Linux running on PS4 again, on Firmware 4.0x at the end of 2016.

Emulator on ps4 – Pokemon on PS4

Careful examination of the Fail0verflow 2015 presentation showed that the Fail0verflow crew were running their exploits through the Webkit 1. 76 exploit, meaning their console was running on Firmware 1.76 at the time. in the 2016 Presentation, Fail0verflow member Marcan confirmed his PS4 was running on firmware 4.05.

  • Related: How to get your hands on a PS4 running firmware 1.76 or lower

Fail0verflow have stated that many kernel exploits exist on the PS4, and they are “easy to find”.

Linux on the PS4 – News

  • PS4 hacks: Fail0verflow demonstrate linux running on PS4 Firmware 4.05 (2016/12)
  • Release: Fully operation dlclose exploit + Linux for PS4, by kR105 (2016/04)
  • SteamOS on the PS4 a possibility in the near future? (2015/12)
  • Fail0verflow: “For the PS4, we’re trying something new” (2015/12)
  • Linux on PS4: Fail0verflow Showcase Linux on the PS4, run a Pokémon demo (2015/12)
  • Linux on PS4: More confirmation bubbling up from the scene (2015/12)
  • Fail0verflow to announce a Jailbreak on PS4? (2015/12)

PS4 Jailbreak – CTurt Kernel exploits (Firmware 1.

76, 2015)

In December 2015, hacker CTurt confirmed he has a PS4 jailbreak. He later revealed a second exploit. Both exploits have been released, in particular the dlclose exploit has been releasesd on PS4 firmware 1.76 and below, and is fully functional.

  • Related: How to get your hands on a PS4 running firmware 1.76 or lower

CTurt PS4 Jailbreak – Older News

  • CTurt publishes PS4 Kernel exploit technical details, decides to end hacking research on PS4 (2015/12)
  • Cturt Confirms PS4 Kernel Exploit (2015/12)

PS4 Jailbreak – the Brazilian PS4 Jailbreak (2014)

Although not an actual “PS4 Jailbreak” that would allow to run unsigned code, it’s been confirmed that people have found ways to pirate games on the PS4, without the use for any advanced hack. With the use of a simple raspberry pi, electronics stores in Brazil have been able to dump the licenses of games from a PS4 to another, enabling them to pirate games. This technique is also known as PS4 NOR Cloning.

  • New piracy technique on PS4 in Brazil confirmed to be real, Sony might take legal action
  • Jailbreak on PS4: origins and game list

PS4 Jailbreak explained (the Brazilian Method)

In the Brazilian “Jailbreak”, it seems the PS4 NOR is dumped to a memory card. Reading/Writing Data from a PS4 that has the right games “activated” on it seems to be the technique that has been used by hackers in Brazil to Jailbreak the PS4. Videos have been showcasing the use of a Raspberry PI and free software JAISPI to perform the dump. Note that it is recommended that you do not try to reproduce this unless you know exactly what you’re doing.

It is believed a similar NOR dump technique has been used by the Brazilian stores selling pirated games.

PS4 Jailbreak News – Real exploits.

  • Related: “Piracy just doesn’t make sense anymore”

Historical information that led to the multiple PS4 Jailbreak, as well as information on ongoing hacks for the PS4.

  • 2018/05/28: PS4: SpecterDev releases PS4 5.05 kernel exploit
  • 2018/02/27: PS4 4.55 Jailbreak: SpecterDev releases full implementation
  • 2017/12/27: SpecterDev releases PS4 4.05 Kernel Exploit
  • 2017/10/16: Hacker Qwertyoruiop claims victory on Firmware 5.00
  • 2017/4/2: PS4 4.50 Jailbreak: qwertyoruiop progresses on PS4 Webkit hack, states he has a 4.50 kernel exploit
  • 2016/10/24: PS4 4.01 Jailbreak showcased by Chinese hackers at Geekpwn convention
  • 2016/04/02: Release: Fully operation dlclose exploit + Linux for PS4, by kR105
  • 2015/12/30: Linux on PS4: Fail0verflow Showcase Linux on the PS4, run a Pokémon demo
  • 2015/12/06: PS4 Hack: CTurt confirms PS4 Kernel exploit
  • 2015/05/13: New piracy technique on PS4 in Brazil confirmed to be real, Sony might take legal action
    • 2015/04/26: Jailbreak on PS4: origins and game list
    • 2015/04/24: PS4 service for Jailbreak rumors incoming from Brazil
  • 2014/10/24: Webkit exploit confirmed to run on PS4 firmware 1. 76

Also check these other (real) PS4 hacks

A jailbreak is not the only way you can enhance your PS4 functionality! Check the following:

  • PS4 Remote play – Developers found ways to port the PS4 Remote Play functionality to android and PC.

PS4 Jailbreak News & rumors – Fake exploits.

Although there is real progress being made on PS4 Jailbreaks and hacks, several sites exist with the goal of tricking you, pretending they have a PS4 Jailbreak for you. We debunk a few of those below, as always, beware of bad sites. When a PS4 Jailbreak is made available for your PS4, popular scene sites such as us at wololo.net will be the firsts to let you know.

If you just found an unknown website that claims to provide a CFW or jailbreak for the PS4, be extremely careful. Such sites are usually trying to get you to answer some sort of survey in order to get the “hack”. This is how they make money in general (but this is not their only technique!), as they get paid for every person who completes a survey. These surveys will most of the time not lead you to anything, or in some cases they will let you download a file that has nothing to do with a PS4 jailbreak. Their explanations for the hack will usually be extremely fishy, for example asking you to copy some files on the PS4 hard drive without explaining how to actually do it, or things similar to that. They have fake comments on their site to make you believe their stuff is legit, and also use black hat techniques to build fake followers on twitter and facebook.

More generally, ask yourself about the odds that you are the first one in the world to find about a PS4 hack that nobody else knows about. Console hacking is our passion on this site, and we have dozens of community members scouting the internet for any verifiable piece of information. If something like that was legit, we would find out within hours. Again, when a PS4 jailbreak/Custom Firmware is made available, wololo.net and other reputable scene websites will be the first ones to let you know.

Please share this page with your friends whenever they think they have found a PS4 Jailbreak. This page will be updated with the latest progress on PS4 hacking.

  • 2016/02/24: jailbroken dot co: beware of Jailbreak scams!
  • 2015/03/09: New Jailbreak dongle for PS4. Debunked here.
  • 2013/12/01: I have debunked a fake “PS4 exploit” here: Fake PS4 exploit sets the scene on fire. It contains useful information on how you can debunk fakes yourself

PS4: How to run the PS4 9.00 Jailbreak (full guide with GoldHEN payload)

People who are new to the PS4 scene and joining us on their shiny 9.00 PS4 seem to be a bit confused about how to run the 9.00 Jailbreak, and in particular how to inject payloads. Here’s a full guide on how to run the PS4 9.00 Jailbreak, from start to finish.

0. Upgrade your PS4 to 9.00

First of all, if your PS4 is not running firmware 9.00, you might want to upgrade it to that firmware. Check here our FAQ as to whether you want to upgrade or not, and once you’ve made your decision, you can update to 9. 00 following our guide here.

Note: if you’re on firmware 9.03 or higher, you can’t go back to 9.00 and you will not be able to run the Jailbreak. So be careful not to update to 9.03 by mistake

1. Prepare the magic USB stick

Note: This step is only required once. You’ll need to use the USB stick every time you Jailbreak, but this preparation step is only needed the first time.

The PS4 9.00 Jailbreak requires part of the exploit to be injected from a specifically crafted USB stick. You’ll need a dedicated USB stick for this, as it will be required each time you jailbreak the console, so use one that you don’t need for anything else. You don’t need anything huge, the image you’ll copy there is 4MB.

  1. Download the exfathax.img file from the pOOBs4 Jailbreak’s github.
  2. Plug your USB stick into your computer. You don’t need to format it, as the next step will do that for you.
  3. Download and install a tool to write the img file to your usb stick, such as Win32 Disk Manager
  4. Write the img file you just downloaded onto your USB stick. See the screenshot from the Jailbreak’s github for reference:
  5. Your magic usb stick is now ready!

2. Note your PS4’s IP Address

You’ll need to know your PS4 IP address in order to send payload to it. Before starting the Jailbreak process, go and note down your console’s IP address:

  1. Note down your PS4’s IP address in Settings > Network > View Connection Status

3. Run the Jailbreak on your console

With your PS4 running firmware 9.00, and your magic usb stick in hand, let’s proceed to actually running the exploit.

  1. point your PS4’s browser to any trusted host that has the exploit. This can be a local server that you set up yourself (you’ll need to put the files from the Jailbreak in there) or one of the public hosts we trust. For public hosts, two popular ones are:
    • https://cthugha.exploit.menu/ (by Al-Azif)
    • https://kameleonreloaded.github.io/900/ (by Kameleon)
  2. When you reach the exploit page, you will see a loading screen
  3. If the first step of the exploit (the webkit exploit) works, you will see a message asking you to insert the USB stick.
  4. Go ahead and plug the usb stick (do not click the “ok” button of the dialog box!). A message saying “This USB Device Storage’s file system is unsupported” should pop up on the upper left of your screen
  5. After that message has appeared, go ahead and click “ok” on the dialog box. You should now see a message saying “Awaiting payload”.
  6. Your PS4 is now technically Jailbroken. Remove the usb stick from your PS4.

4. Inject a Payload

You will now be injecting a “payload”, that is, unsigned code that will run on your PS4. This can be something as simple as a bit of code that will be dumping some files from your PS4 firmware onto a disk, or run an ftp server on your PS4, or a full fledged Custom Firmware such as GoldHEN or Mira.

In this example, we’ll be injecting GoldHEN, but note that any compatible payload would work at this point.

Warning: Be sure that you download only payloads from places that you trust, and that you understand what they do, before injecting them. At this point, you have full control of your PS4 and this means you could permanently brick your console if you inject malicious software.

  1. Make sure your computer is ON, and connected to the same local network as your PS4 (this should generally be the case as long as your PC and PS4 are connected to the same router, and unless you have a complex network configuration at home).
  2. Download GoldHEN (for firmware 9.00) from the official gihtub.
  3. You’ll want a way to send payloads through Netcat, from your PC to your PS4. You can use the utility of your choice, NetCat GUI by Modded Warfare is what we’ll be using here.
    • Note: The help image from NetCat GUI below says you should run the “binloader” payload. Technically the Jailbreak is already awaiting a payload so you can ignore this, this time (once you’re running e.g. GoldHEN though, you’ll want to run a binloader from the PS4 in order to accept more payloads)
  4. Run Netcat GUI on your PC. Make sure the IP address is the one of your PS4, that the port is 9020, and load the .bin file for GoldHen that you just downloaded. Then click “inject payload”.
  5. If everything works as expected, your PS4 should display that GoldHEN has been loaded successfully:
  6. To confirm that everything is in order, you can go to the PS4’s “Settings” menu, and you should see GoldHEN in there:
  7. That’s it! Now google around to see what cool stuff you can do with your Jailbroken PS4 😉

 

 

 

 

PS4 Guide — Hack PS4


DO NOT GO TO FIGHT IN UKRAINE! YOU WILL DIE THERE!

  • How to avoid mobilization
  • How to surrender
  • Living conditions of prisoners in Ukraine and interviews with them

If this guide helped you or just liked it, then we accept donations.

For hacking and manual inquiries please click here.


The most basic information is collected here. After running the exploit, it is recommended to read the thematic groups and forums in order to make the most optimal use of the flashed prefix. This site is not a collection of all instructions from around the Internet!

Read each introductory page of the manual (including this one!) carefully before you begin. Read the FAQ and go through the manual, mentally following the steps that match your configuration.

This manual applies to only for retail consoles. Set-top boxes for developers cannot be flashed using this instruction!

What is meant by hacking the set-top box?

The first thing to understand is that the firmware on your device does not change. She is always official. All changes are made to the official firmware only after it is launched and only to the console’s RAM. That is why the hack must be reactivated each time after each reboot of the console. And to remove the hack, just restart the console. With the help of tricky manipulations, we activate the hidden Debug settings in our console and install PKG files with applications (usually games) with their help.

What exactly are we hacking?

If we greatly simplify, then we have something like the following picture:
All dumps in PSN are encrypted using a special key (for convenience, you can imagine that each dump was provided with a digital lock, the key to which only SONY has). It is incredibly difficult to decrypt this key, but it is not necessary. Sony can change it at any second, and decrypting it again is long and expensive. Therefore, a licensed dump purchased can only be unpacked on the console and only after purchase. Which is obvious. We bought the game, got the key to its “lock”, and were able to unpack it. Likewise with patches. And with saves.

So how do we run dumps on a «hacked console»? Very cunning. Someone who has the key (the person who bought the game) installs it on their console. Starts up. The running game is automatically decrypted. And in this decrypted form, the game is copied via FTP or to a media using a special payloader-damper. Unpacked, mind you. Ideally, and patched immediately. Already on the computer, the user collects the dumped game using a special tool and also encrypts it … with a key that everyone knows (because the community agreed to use it), consisting of 32 zeros ( 00000000000000000000000000000000 ). By running HEN on the console, you patch the system calls in the console directly in the RAM (which is why the hack fails after a reboot — the memory is cleared) in such a way that the console reads the games signed with 32 zeros as purchased, unpacks them and launches. Such PKGs are called fakePKG

That is why PKG and patches downloaded from SONY servers cannot be installed — you do not have a key for them. You didn’t buy the game.

The same story with saves. Your saves, from your console, from your specific account, are signed with your own unique key. If someone writes a program that unpacks them, you can unpack them on your console with your key, transfer the unpacked files to another user, and he, in turn, will pack them using his own unique key.

Reasonable question — why can’t just one person buy the game and distribute the key to others? This is because the key is generated based on the ID unique for each console sewn into the processor. Thus, it cannot be used on a console for which it was not generated.

What is HEN and MiraCFW?

Homebrew Enabler (“HEN”) allows you to use almost all the features of the set-top box that are not available to users of conventional userland exploits. For example, signature patches allow you to run unsigned code directly from the console menu.

HEN consists of a Webkit exploit that uses a vulnerability in the browser and is the entry point through which the kernel-exploit is launched, which in turn already runs the commands in the payloader. By running HEN, we get the opportunity to install modified PKG files that are signed in a special way. It is with the help of HEN that we patch the system calls of the console and install and run fakePKG with games.

MiraCFW is a very powerful tool for Homebrew developers. It is designed to run plugins specially written for it. It also contains HEN. However, games installed via Mira are not always compatible with games installed via regular HEN.

HEN is needed solely for one purpose — to give users the opportunity to run unsigned code (in our case, pirated dumps of games). Mira can do much more. For everyday use not recommended use Mira!

What is installed in this manual?

The ultimate goal of this guide is to install HEN on PS4 with official firmware up to and including 9.00. Depending on the current firmware version on your set-top box, we will upgrade it to the recommended one, if necessary, and also block access to SONY update servers in order not to accidentally upgrade the firmware version to the highest one.

What can be done on custom firmware

  • Run game backups (dumps) from PS4/PS2/PS1
  • Dump purchased games in a format that can later be installed directly into the system and played without using a disk
  • Make backup saves

What do you need to know before you start?

  • Before you start flashing, you should understand the risk of hacking: EVERY time you modify the console firmware, you risk getting an UNRECOVERABLE brick. The probability of this is extremely low, but the chance is still there. So make sure you STRICTLY follow all directions.
  • The instruction is intended for all set-top boxes of the PS4 family of all regions with firmware 9.00 and below.
  • If everything goes according to plan, you will not lose anything and everything will remain in its original state (games, PSN account, saves, etc.).
  • PS4 Fat, PS4 Slim, PS4 PRO have the same software, and therefore the same vulnerabilities. Therefore, speaking of PS4, we mean any set-top box of this family with the required firmware version installed.
  • DOWNGRADE IS IMPOSSIBLE AT THE MOMENT! If your firmware is higher than 9.00 — you will not be able to install hack

Let’s start!!

Firmware update to 9.00 — Hack PS4


DO NOT GO TO FIGHT IN UKRAINE! YOU WILL DIE THERE!

  • How to avoid mobilization
  • How to surrender
  • Living conditions of prisoners in Ukraine and interviews with them

If this guide helped you or just liked it, then we accept donations.

For hacking and manual inquiries please click here.


Preparatory work

  1. Format the USB stick in exFAT
  2. Create a folder PS4 in the root of the USB flash drive, and in it a folder UPDATE
  3. Download a regular update file to simply upgrade the firmware version, or an update file for recovery if you want to change the hard drive on the set-top box, or you have already downloaded an update to the latest unhackable version of the software
    • Regular system update file (mirror) for Playstation 4 version 9.00
    • Recovery version (mirror) for Playstation 4 version 9.00
  4. Move the update file to the folder PS4/UPDATE and rename it to PS4UPDATE.PUP

PS4 Firmware Upgrade

Normal USB Upgrade

  1. Insert the USB stick containing the firmware files into the PS4 USB port
  2. Open Settings, go to “ System software update
  3. The prefix will write that an update has been found and indicate its number

    CAREFULLY MAKE SURE YOU UPGRADE TO VERSION 9. 00

  4. Complete the update installation by following the instructions on the screen
    • If you have problems, try to sew through the recovery

Update via recoveryVideo

  1. Turn off the PS4 system by pressing the power button on the front panel. The power indicator blinks several times and then turns off
  2. After turning off the PS4 system, press and hold the power button again. Release it when you hear a second beep: one beep will sound when you press the power button, and a second one after a few more seconds
  3. Connect the DUALSHOCK 4 controller with a USB cable and press the PS button on the controller
  4. Select item “ Update system software
  5. Select “ Update from USB stick ” and press OK
  6. The prefix will write that an update has been found and indicate its number

    CAREFULLY MAKE SURE YOU UPGRADE TO VERSION 9.