Sony says it can fix private key crack
thinq.co.uk
thinq.co.uk
I'd love to be privy to the email exchanges that must be going on there between their engineers and management...
Alternatively they do have a solution, and it's something to the effect of "nuke it from orbit"/"if we can't have it, nobody can". They already tried to take that approach with OtherOS, so this should get entertaining if that's the case.
http://s200.photobucket.com/albums/aa138/ejsid/infectus%20ps...
The keys are hard-coded in hardware and the content in question lives on a TSOP NAND device on the motherboard. No matter what Sony does, they can't prevent you from flashing your own code, signed with the old keys, to that onboard NAND. Whether you de-solder it and socket it, or use some other sort of hardware device, Sony is screwed for old hardware.
The main problem is the memory limitations of 256MB+256MB but with careful configuration it can be just OK.
I wouldn't be surprised if this ends up making the PS3 ubiquitous leaving all the other consoles behind. Even in spite of the poor higher management coming from old media (the ones pissing off traditional developers, forcing Blu-Ray and that insane rootkit.)
http://en.wikipedia.org/wiki/Howard_Stringer
http://en.wikipedia.org/wiki/Sony_BMG_copy_protection_rootki...
If it's really as simple as "purchased console without purchased games == bad for business", then that'd be a killer business strategy.
I do not know how firmware gets signed on PS3, but an alternative could be that all software already is signed with a second key. If so, having new firmware check for that key would close the hole. If they used the same broken algorithm, not for long, though.
Wrong on two counts. First, Sony can't really "fix" the problem, merely patch over the current situation until their "fix" is compromised. At best they can hold freedom off for a little while longer.
Second, there is no security through obscurity, and failing to explain exactly how they will "fix" the compromised hardware is vainglorious. If a fix does exist, it will be so resistant to exploit that an explanation won't change anything.
It's conceivable for them to have an impervious fix (without conceiving of the fix itself), however experience has shown that the strongest schemes are the ones that have been exposed to the most eyeballs.
trivial example: the fix creates a new file "supersecurity" only if the file doesn't exist. by creating an empty with that name, you can upgrade but dodge the fix. but once you've got the supersecurity, you can't delete that file.
Of course, what I said would still apply: I am less confident that such a thing would be resistant to compromise using other methods. So, if they have this supersecurity patch to put out, after it has been installed they should be eager to tell the world how the systems are now secured.