Great progress has been made to reverse engineer the True Blue dongle. With that said, the payload for the True Blue dongle has been released. But don’t get too excited just yet, it may still need to be decrypted before it is usable on other USB dongles (e.g. Teensy++, E3 Card Reader, PS3Key, etc.). Download available below.
In case you’ve been living under a rock, True Blue allows v3.6x games to boot on v3.55 PS3 consoles.
SHA1: 43402D6FE2ECE43EBE91531EFA07C366D46DD121 //
MD5: BA5AFAB174BF6003D41AC8951301B822 //
CRC32: 248284D2 //
CRC16: 8C78
Update (11/12/2011): That’s right; the True Blue payload that was previously dumped has been decrypted! I assume a tool to flash this payload onto other USB dongles will come next but that’s just an assumption. Check out the dump info here.
lv2 dump (click to show hidden content):
payload decrypted @ LV2 dump 0x7f0000
|
Start Offset |
End Offset |
Payload |
Description |
| 00000000 | 00000FFF | first | 3.41 |
| 00001000 | 00001FFF | second | 3.41 |
| 00002000 | 00002FFF | third | 3.41 |
| 00003000 | 00003FFF | fourth | 3.41 |
| 00004000 | 00007FFF | fifth | |
| 00008000 | 00008FFF | ? | |
| 00009000 | 0000BFFF | ? | |
| 0000C000 | 0000CFFF | ? | |
| 0000D000 | 0000DFFF | ? | |
| 0000E000 | 0000FFFF | ? | |
| 00010000 | 00013FFF | ? | |
| 00014000 | 0001BFFF | ? | |
| 0001C000 | 0001C00F | ? | |
| 0001C010 | 0001C01F | ? | |
| 0001C020 | 0001C03F | ? | |
| 0001C040 | 0001C05F | ? | |
| 0001C060 | 0001C06F | ? | |
| 0001C070 | 0001C07F | ? | |
| 0001C080 | 0001C09F | ? | |
| 0001C0A0 | … | ? | |
| … | 001FFFFF | ? |
Cheers to VenomusX for this news tip!
Update #2 (11/17/2011): Once the TB reverse engineering is complete, dongles such as Teensy++, Black cat, PS3Key, etc., will not be required.
Q&A:
Q: Is this posible on other dongles from the FW3.41 days like Blackcat and Teensy?
A: Dongles are bad and obsolete, mkay
(once you have the key/algo, you don’t need any dongle at all)
Q: Are they (TB team) just stealing the dev eboots?
A: You can only rumor which source they use to resign the content to lock-in their DRM. But of course those very same DRM-less files can be resigned for 3.55 too (as has been done numerous times in the past). Piracy is bad, but pirates using DRM to make sure they get the money and not genuine developers is even worse (especially when they lock you into a single firmware that has even less to offer than generic MFW and makes you loose OtherOS++ too).
Files to strip:
rootfolder, LICDIR + content, TROPDIR + content, USRDIR (EBOOT.BIN + other signed binaries like .SPRX, .sdat)
example (portal_2_BLUS30732):
|-- ICON0.PNG
|-- LICDIR
| `-- LIC.DAT
|-- PARAM.SFO
|-- PIC0.PNG
|-- PIC1.PNG
|-- PIC2.PNG
|-- PS3LOGO.DAT
|-- SND0.AT3
|-- TROPDIR
| `-- NPWR01719_00
| `-- TROPHY.TRP
`-- USRDIR
|-- EBOOT.BIN
|-- bin
| |-- datacache_ps3.sprx
| |-- engine_ps3.sprx
| |-- filesystem_stdio_ps3.sprx
| |-- inputsystem_ps3.sprx
| |-- launcher_ps3.sprx
| |-- localize_ps3.sprx
| |-- materialsystem_ps3.sprx
| |-- scenefilecache_ps3.sprx
| |-- soundemittersystem_ps3.sprx
| |-- steam_api_ps3.sprx
| |-- steam_config.sdat
| |-- steam_resources.sdat
| |-- steamclient_ps3.sprx
| |-- studiorender_ps3.sprx
| |-- tier0_ps3.sprx
| |-- vgui2_ps3.sprx
| |-- vguimatsurface_ps3.sprx
| |-- vjobs_ps3.sprx
| |-- vphysics_ps3.sprx
| |-- vscript_ps3.sprx
| `-- vstdlib_ps3.sprx
`-- portal2
`-- bin
|-- client_ps3.sprx
|-- matchmaking_ps3.sprx
`-- server_ps3.sprx
Download True Blue dongle payload »
source ps3devwiki






















