Keys: Difference between revisions

From PS4 Developer wiki
Jump to navigation Jump to search
 
(106 intermediate revisions by 3 users not shown)
Line 22: Line 22:
|}
|}


= Portability/EncDec Keys =
= Portability / EncDecKeys =


* Todo: fill slots
== In Kernel ==
* Todo: EncDec 0x4C (present in 7.55) (SCE_KDF_NCDT_PSK)
* Todo: EncDec 0x58 (present in 7.55) (sceSblPfsSaveDataUpdateAuthCode)
* Todo: EncDec 0x54 (present in 7.55) (sbl_pfs)
* Todo: EncDec 0x50 (present in 7.55) (SIEIPMISceIpmiMgrEQSx)


== AES PORTABLE 0 ==
<pre>
0x00 pfsSKKey__SecKey
0x0C CFK1
0x14 SCEROOTPARAM_KEY
0x1C SCECloudSD___KEY
0x20 sbl_srv_ioctl
0x24 SCE_LwUtoken_Key
0x28 SCE_SBL_BAR_KEY1
0x44 livedump
0x48 SceHidAuth
0x4C SCE_KDF_NCDT_PSK
0x50 SIEIPMIS
0x54 pfs_sbl
0x58 sceSblPfsSaveDataUpdateAuthCode
</pre>
 
== In Shellcore ==
 
<pre>
0x08 Index.dat
0x0D Hostnames
0x10 SystemLogger
0x3C GetOpenPsIdHash
0x40 envelope keys
</pre>
 
== In NPXS20001 ==
 
<pre>
0x08
0x40
</pre>
 
== In NPXS20120 ==
 
<pre>
0x40
</pre>
 
== In NPXS21000 ==
 
<pre>
0x40
</pre>
 
== In coredump.elf ==
 
<pre>
0x08
</pre>
 
== In libtsmp.sprx ==
 
<pre>
0x08
</pre>
 
== in libSceSystemService.sprx ==


<pre>
<pre>
9E A5 CD 89 DA 8D AB 6E 66 CE 6D 34 57 52 63 9D
0x40
9A 4E E5 1E EA F0 84 D9 70 FE FC 28 50 F7 60 4E
</pre>
</pre>
== in swagner.self ==
<pre>
0x18
</pre>
== in swreset.self ==
<pre>
0x18
</pre>
== in ScePlayReady2.self ==
<pre>
0x5C
</pre>
== AES PORTABLE 0x0==


* pfsSKKey__SecKey
* pfsSKKey__SecKey
* iv is F60016BACD42AD21C70D9B075CB51983
===E===
<pre>
9EA5CD89DA8DAB6E66CE6D345752639D
9A4EE51EEAF084D970FEFC2850F7604E
</pre>
===I===
<pre>
6CEDCF30A30306F3AAE52B51B93726FD
E18CE3B2B1ED8BB74BDE51D712349314
</pre>
== HMAC PORTABLE 0x0==
===E===
<pre>
D8808616FA98B0BF50A499D5FA5DCCA7
</pre>
===I===
<pre>
096459F1A0C8C5DDDD404E40A4CEBF6C
</pre>
== AES PORTABLE 0x4==
<pre>
231D69F73D12C55164D5A40A10DB5170
4DF980998A155CE381966E6521C572C6
</pre>
== HMAC PORTABLE 0x4==
<pre>
B3547B179154B3C9AC96304B4F9AEA73
</pre>
== AES PORTABLE 0x5==
<pre>
21E474E20845F868B1EADBC90C7BE001
CF7FBB1A479716EA02F8A30B23C577BB
</pre>
* AACS
== HMAC PORTABLE 0x5==
<pre>
94CA4FDC575C812E9E0432459E30DB75
</pre>
== AES PORTABLE 0x6==
<pre>
A48932A314C75ED5321764638B7A2FE8
9EF8ADB044C01302936910C25FD7410E
</pre>


== HMAC PORTABLE 0 ==
* Css
 
== HMAC PORTABLE 0x6==


<pre>
<pre>
D8 80 86 16 FA 98 B0 BF 50 A4 99 D5 FA 5D CC A7
6E30BD54F52053CA6B68F9F23B7FD216
</pre>
</pre>


== AES PORTABLE 4 ==
== AES PORTABLE 0x7==


<pre>
<pre>
23 1D 69 F7 3D 12 C5 51 64 D5 A4 0A 10 DB 51 70
7B626924420F5F8D7BC5CBF7BC803C27
4D F9 80 99 8A 15 5C E3 81 96 6E 65 21 C5 72 C6
DAFA0EA507083AF6D91033548BCFB216
</pre>
</pre>


== HMAC PORTABLE 4 ==
* BdPlus
 
== HMAC PORTABLE 0x7==


<pre>
<pre>
B3 54 7B 17 91 54 B3 C9 AC 96 30 4B 4F 9A EA 73
8FAA08823BF7354F0999D0D8A7F0A893
</pre>
</pre>


== AES PORTABLE 5 ==
== AES PORTABLE 0x8==
 
===E===


<pre>
<pre>
21 E4 74 E2 08 45 F8 68 B1 EA DB C9 0C 7B E0 01
CC3C6CD60871591A5A6C6347B2100CA2
CF 7F BB 1A 47 97 16 EA 02 F8 A3 0B 23 C5 77 BB
FC286633A4D9482B9313FEE574E04338
</pre>
</pre>


== HMAC PORTABLE 5 ==
===I===
<pre>
331BDC5EF45CA0CADEB210DDC309C1D2
4E0059E82E1626F24A1855696BE324B2
</pre>
 
*Index.dat
* iv is 310CC1BD68FA39AF74FB07A6C67B6CBF
 
== HMAC PORTABLE 0x8==
 
===E===


<pre>
<pre>
94 CA 4F DC 57 5C 81 2E 9E 04 32 45 9E 30 DB 75
7FA3B3BA6D9456EE223EB74A2D30AA54
</pre>
</pre>


== AES PORTABLE 6 ==
===I===
<pre>
D820E2E7455FB1F43EE0593EDA734E9B
</pre>
 
== AES PORTABLE 0xC==
 
===E===


<pre>
<pre>
A4 89 32 A3 14 C7 5E D5 32 17 64 63 8B 7A 2F E8
36902DC7BD1EC112BE122D2CD9ABEBB2
9E F8 AD B0 44 C0 13 02 93 69 10 C2 5F D7 41 0E
29AA7D0164D30385733753EEAE20E6F4
</pre>
</pre>


== HMAC PORTABLE 6 ==
===I===
<pre>
16BC4CCEABEA9F03D2EB670BD29630A1
882D16F707FD33FA2ABFEC130F60EEFF
</pre>
 
*CFK1(Crepo)
 
== HMAC PORTABLE 0xC==
 
===E===


<pre>
<pre>
6E 30 BD 54 F5 20 53 CA 6B 68 F9 F2 3B 7F D2 16
FFFE8EF3A4967BDEF3A0B377582C7E50
</pre>
</pre>


== AES PORTABLE 7 ==
===I===


<pre>
<pre>
7B 62 69 24 42 0F 5F 8D 7B C5 CB F7 BC 80 3C 27
C3F74D676DCF7A68AA482ED8914405B7
DA FA 0E A5 07 08 3A F6 D9 10 33 54 8B CF B2 16
</pre>
</pre>


== HMAC PORTABLE 7 ==
== AES PORTABLE 0xD==
 
===E===


<pre>
<pre>
8F AA 08 82 3B F7 35 4F 09 99 D0 D8 A7 F0 A8 93
BDA98742518157C4634A21FBB47C8311
D21CE6016404D8CB2EF0C24462C42C38
</pre>
</pre>


== AES PORTABLE 8 ==
===I===


<pre>
<pre>
CC 3C 6C D6 08 71 59 1A 5A 6C 63 47 B2 10 0C A2
8FC2405D96B41290DF62525E536E37B6
FC 28 66 33 A4 D9 48 2B 93 13 FE E5 74 E0 43 38
42D798F0538B7FB42829C05ECBB00B08
</pre>
</pre>


* Index.dat
*hostnames(ShellCore)


== HMAC PORTABLE 8 ==
== HMAC PORTABLE 0xD==
 
===E===
 
<pre>
AED0BCC3264D91A698E4D7D8CA428E52
</pre>


===I===
<pre>
<pre>
7F A3 B3 BA 6D 94 56 EE 22 3E B7 4A 2D 30 AA 54
A43C5B248AEF15C4CEFAEA170F6F31F7
</pre>
</pre>


== AES PORTABLE 0x10==


== AES PORTABLE C ==
===E===


<pre>
<pre>
36 90 2D C7 BD 1E C1 12 BE 12 2D 2C D9 AB EB B2
32AF1AE6A8B408ACA7072C9364BF8A36
29 AA 7D 01 64 D3 03 85 73 37 53 EE AE 20 E6 F4
BA19E55263F00585EA2653311747A1E4
</pre>
</pre>


* CFK1 (Crepo)
===I===


== HMAC PORTABLE C ==
<pre>
05E051FEDB737FEEA2FFA6D78AAC1613
2ABAE36253F2A291C2EF0A1ACADAE1D1
</pre>
 
*logger
* iv is a1d989b020185024f4c448283537540b
 
== HMAC PORTABLE 0x10==
 
===E===


<pre>
<pre>
FF FE 8E F3 A4 96 7B DE F3 A0 B3 77 58 2C 7E 50
E2AB163DFA812B4AA73FFB0AB4CB27E2
</pre>
</pre>


== AES PORTABLE D ==  
===I===
 
<pre>
<pre>
BD A9 87 42 51 81 57 C4 63 4A 21 FB B4 7C 83 11
F7B1C4722FC52AEED7AE88C7DAB14C97
D2 1C E6 01 64 04 D8 CB 2E F0 C2 44 62 C4 2C 38
</pre>
</pre>


* hostnames (ShellCore)
== AES PORTABLE 14==
 
===E===


== HMAC PORTABLE D ==
<pre>
<pre>
AE D0 BC C3 26 4D 91 A6 98 E4 D7 D8 CA 42 8E 52
3A9980C60B2752B1E5C9437C8BE0730E
057683371B0207B1B63D32412D41AAC3
</pre>
</pre>
== AES PORTABLE 10 ==  
 
===I===
 
<pre>
<pre>
32 AF 1A E6 A8 B4 08 AC A7 07 2C 93 64 BF 8A 36
190C5FD353B619FFE1CEE8DEB9F828DA
BA 19 E5 52 63 F0 05 85 EA 26 53 31 17 47 A1 E4
60F0ADA572E1C5CB30BC259BD0818C66
</pre>
</pre>


* enc_util
*SCEROOTPARAM_KEY
* iv is 9569829CD4B15FF84330545A34EC1BC5
 
== HMAC PORTABLE 14==
 
===E===


== HMAC PORTABLE 10 ==
<pre>
<pre>
E2 AB 16 3D FA 81 2B 4A A7 3F FB 0A B4 CB 27 E2
38618E377454ADC8EA799376DEB01D34
</pre>
</pre>
== AES PORTABLE 14 ==  
 
===I===
 
<pre>
<pre>
3A 99 80 C6 0B 27 52 B1 E5 C9 43 7C 8B E0 73 0E
0CB1FD77B96A6815E65A1B26BF29822F
05 76 83 37 1B 02 07 B1 B6 3D 32 41 2D 41 AA C3
</pre>
</pre>


* SCEROOTPARAM_KEY
== AES PORTABLE 18==
 
===E===


== HMAC PORTABLE 14 ==
<pre>
<pre>
38 61 8E 37 74 54 AD C8 EA 79 93 76 DE B0 1D 34
7D031910F9918242BD0069AACD047249
A95E1F0651AE9D14E4F7B09D0D816E56
</pre>
</pre>
== AES PORTABLE 18 ==  
 
===I===
<pre>
<pre>
7D 03 19 10 F9 91 82 42 BD 00 69 AA CD 04 72 49
9FCEEE75F2FD4C0A57AA32FDBD4093D3
A9 5E 1F 06 51 AE 9D 14 E4 F7 B0 9D 0D 81 6E 56
7876E4D29D621BB54E62A2756E3E9C83
</pre>
</pre>


* swagner, swreset
*swagner,swreset
 
== HMAC PORTABLE 18==
 
===E===


== HMAC PORTABLE 18 ==
<pre>
<pre>
E4 2C 03 F0 AB AF 7D ED 9E F3 B3 14 61 52 6D F1
E42C03F0ABAF7DED9EF3B31461526DF1
</pre>
</pre>
== AES PORTABLE 1C ==  
 
===I===
<pre>
<pre>
77 68 4D 4A CD 21 0B 03 38 23 27 D4 D1 5A 88 A4
0F4A79378A97768F719E29A5AE787513
19 BD 06 EE C0 44 74 ED EE B1 A0 07 C6 11 2C EA
</pre>
</pre>


* SCECloudSD___KEY
== AES PORTABLE 1C==
 
===E===


== HMAC PORTABLE 1C ==
<pre>
<pre>
24 02 99 60 7E DB 65 05 B6 8A 7C 88 52 E9 30 5E
77684D4ACD210B03382327D4D15A88A4
19BD06EEC04474EDEEB1A007C6112CEA
</pre>
</pre>
== AES PORTABLE 20 ==  
 
===I===
 
<pre>
<pre>
07 1B 19 D5 3D 46 20 93 E0 AF 66 4A CF A9 F9 37
EA9F99E9ED0D33D58C81E14D30F804C4
2F CD 01 54 FF 04 A9 AE 39 E8 8E FF 27 82 3F 0C
75B1B85AF1C33E3408F4107FA78AEE05
</pre>
</pre>
== HMAC PORTABLE 20 ==  
 
*SCECloudSD___KEY
* iv is DF140F0A54E95A581B8049DAA2A9AF2B
 
== HMAC PORTABLE 1C==
 
===E===
 
<pre>
<pre>
8F 1D FF 01 2B 18 14 D7 3F 70 A1 BC F0 4E AE 7F
240299607EDB6505B68A7C8852E9305E
</pre>
</pre>
== AES PORTABLE 24 ==  
 
===I===
 
<pre>
<pre>
3B DD F8 1A 1F E5 CF EE 3D AD 18 35 B2 1C FF ED
1539E66891EFC669FF9BDA34123BBE06
C1 06 09 C5 D4 D1 DB 17 33 3A BE CA EB 2E F9 55
</pre>
</pre>


* SCE_LwUtoken_Key
== AES PORTABLE 20==
 
===E===


== HMAC PORTABLE 24 ==
<pre>
<pre>
7D 10 C4 15 D0 C0 C5 DD 85 C6 79 5E 7B A0 8A 7B
071B19D53D462093E0AF664ACFA9F937
2FCD0154FF04A9AE39E88EFF27823F0C
</pre>
</pre>
== AES PORTABLE 28 ==  
 
===I===
 
<pre>
<pre>
27 E0 77 0E 09 A7 FC 1D 83 81 2F 82 D5 77 5A E1
D6E3473A984BB836E1637F813CA5953E
7C B5 D7 7F E7 3E C9 81 57 9E B0 D2 D4 FE 19 FE
186EF9F184BB76DBBC64B639F50CFF02
</pre>
</pre>


* BAR_KEY (Backup And Restore)
== HMAC PORTABLE 20==
 
===E===


== HMAC PORTABLE 28 ==
<pre>
<pre>
DD BE 5F 9A AB C6 E8 10 C1 52 7C 56 0E AF 8D C5
8F1DFF012B1814D73F70A1BCF04EAE7F
</pre>
</pre>
== AES PORTABLE 3C  ==  
 
===I===
 
<pre>
<pre>
B7 F7 1C B8 21 D1 63 D3 E4 8D 20 E1 3C B3 7C 64
DB801FB08E1C0DCE0B9ECC4E518AE24E
FE 88 34 B9 60 73 CC FD 0A 60 BC C0 44 11 C0 0C
</pre>
</pre>


* SCE_SYS_TLM_SECK
== AES PORTABLE 24==
 
===E===


== HMAC PORTABLE 3C ==
<pre>
<pre>
83 9E 28 FC 04 55 F0 27 BD E0 24 DF A6 AD CB 8A
3BDDF81A1FE5CFEE3DAD1835B21CFFED
C10609C5D4D1DB17333ABECAEB2EF955
</pre>
</pre>
== AES PORTABLE 40  ==  
 
===I===
<pre>
<pre>
FE 3A 50 09 C4 2E 60 4D 3D 1F 29 56 5C 4C DB 87
6E523DCAFDAFC20BDF288C8DF3F7BA97
0F DC D5 21 33 8C 84 86 D2 AD 85 BB 52 20 AC 49
146BFF1C88427E52461DA28F8D305B36
</pre>
</pre>


* envelopes (i'm looking at you idc ;) )
*SCE_LwUtoken_Key
* iv is ED7BD631517CF4753C9DDA7A3AB859DB
 
== HMAC PORTABLE 24==
 
===E===


== HMAC PORTABLE 40 ==
<pre>
<pre>
89 8B C1 30 4C 51 73 6B A5 6C 33 CA E9 92 22 5F
7D10C415D0C0C5DD85C6795E7BA08A7B
</pre>
</pre>
== AES PORTABLE 44 ==  
 
===I===
 
<pre>
<pre>
FA BE 3A 6D 6B 96 A1 50 CD 5B D5 65 22 08 F6 95
4AC61958B2BCFA6793B49DF84672A44D
18 F7 5E BD 22 70 4F 52 98 F3 B5 92 48 95 13 89
</pre>
</pre>


* livedump_secure
== AES PORTABLE 28==
 
===E===


== HMAC PORTABLE 44 ==
<pre>
<pre>
C7 95 9E 77 98 83 36 34 76 4B E4 04 21 E4 CA 87
27E0770E09A7FC1D83812F82D5775AE1
7CB5D77FE73EC981579EB0D2D4FE19FE
</pre>
</pre>
== AES PORTABLE 48  ==  
 
===I===
<pre>
<pre>
06 06 70 84 96 45 2D D3 21 91 FD 83 8B 3B 68 40
587853D8EF32804120B6CA6AC15F9E7C
84 CF A1 C4 FB 44 27 BB 21 CA 18 E8 CA 80 40 6D
31844FBB1FD5677B18CA34F3C86C371E
</pre>
</pre>


* SceHidAuth
*BAR_KEY(BackupAndRestore)
 
== HMAC PORTABLE 28==
 
===E===


== HMAC PORTABLE 48 ==
<pre>
<pre>
64 21 DC 67 BF 15 20 75 7F B1 5A 68 01 5B 06 93
DDBE5F9AABC6E810C1527C560EAF8DC5
</pre>
</pre>


== AES PORTABLE 4C ==
===I===


<pre>
<pre>
BA 08 EE 7E FA 8B FE BD 4C 63 60 A8 F6 1C 1D 37
13D173D007FC85D02FC146A78B2C3032
E7 35 A3 A1 18 5C 2B 91 B4 38 D5 DD 13 2A 5E D0
</pre>
</pre>


* SCE_KDF_NCDT_PSK
== AES PORTABLE 3C==


== HMAC PORTABLE 4C ==
===E===


<pre>
<pre>
CD 54 86 B6 21 9C 0B 17 98 79 95 76 19 47 74 AA
B7F71CB821D163D3E48D20E13CB37C64
FE8834B96073CCFD0A60BCC04411C00C
</pre>
</pre>


== AES PORTABLE 50 ==
===I===


<pre>
<pre>
C2 E2 11 E7 1F 4C CD 76 B6 5E BB 45 E6 4D 99 5A
37CE6FF2CBA0C69460329C223EA763E6
74 24 AE 72 CC C4 DF 2D 6F 34 CA 2F 92 79 7B 49
EAE1D5DBFC5803C94CDA8D708161F6A0
</pre>
</pre>


* SIEIPMISceIpmiMgrEQSx
*SCE_SYS_TLM_SECK
* iv is CE5326C917B698478C46E0387689CB4A


== HMAC PORTABLE 50 ==
== HMAC PORTABLE 3C==
 
===E===


<pre>
<pre>
06 17 3B D0 9F AB 15 56 70 64 93 9F 1C 62 2A 5B
839E28FC0455F027BDE024DFA6ADCB8A
</pre>
</pre>


== AES PORTABLE 54 ==
===I===


<pre>
<pre>
FF 42 F9 8D 1E 43 E9 97 5E 8F E8 B7 93 B2 46 A1
0D7F88C9A9128A1FD6EF367E78062572
3E ED 30 98 D2 06 BC B4 55 0F 29 FA 87 61 DE E4
</pre>
</pre>


* sbl_pfs
== AES PORTABLE 40==


== HMAC PORTABLE 54 ==
===E===


<pre>
<pre>
33 47 8B 82 F3 A1 CE CB D5 C1 8B C2 46 BE 23 FE
FE3A5009C42E604D3D1F29565C4CDB87
0FDCD521338C8486D2AD85BB5220AC49
</pre>
</pre>


== AES PORTABLE 58 ==
===I===


<pre>
<pre>
AA 78 DA 20 F9 39 12 F3 3E 83 1C 9A 95 9A 99 EB
353233D34AE6544ADB79FFE2978E88B9
AE CB BE AD 59 F2 42 27 CF 5C F0 CF 1B FF 95 F1
F5E5951E752DC76941E173B0F239DE49
</pre>
</pre>


* sceSblPfsSaveDataUpdateAuthCode
*envelopes(i'm looking at you, idc ;) )


== HMAC PORTABLE 58 ==
== HMAC PORTABLE 40==
 
===E===


<pre>
<pre>
03 9E 51 0C 50 F5 77 C0 22 EA 7D 68 C9 43 5E 26
898BC1304C51736BA56C33CAE992225F
</pre>
</pre>


== AES PORTABLE 5C ==
===I===


<pre>
<pre>
FA D9 28 59 43 74 47 3E EE 62 B2 FB 49 0F F6 40
1D9E1E5B2A87B887FF1E017B02D0E04C
15 BA 7A 54 77 1D 98 72 43 22 1E 45 AD 0B 4D 39
</pre>
</pre>


== HMAC PORTABLE 5C ==
== AES PORTABLE 44==
 
===E===


<pre>
<pre>
01 9D F2 D7 81 AA 83 0E 7A D7 4B B6 47 39 F6 97
FABE3A6D6B96A150CD5BD5652208F695
18F75EBD22704F5298F3B59248951389
</pre>
 
===I===
 
<pre>
882D16F707FD33FA2ABFEC130F60EEFF
D1F8B09AA448624FD62A94C84A9433D6
</pre>
 
*livedump_secure
 
== HMAC PORTABLE 44==
 
===E===
 
<pre>
C7959E7798833634764BE40421E4CA87
</pre>
 
===I===
<pre>
A154061C592CE76844847C137F5BE71B
</pre>
 
== AES PORTABLE 48==
 
===E===
 
<pre>
0606708496452DD32191FD838B3B6840
84CFA1C4FB4427BB21CA18E8CA80406D
</pre>
 
===I===
 
<pre>
AC4E5205E1EFF2CD76DBC73EB13C383A
8C8F99A88FB3A50D554C0934DA1E7946
</pre>
 
*SceHidAuth
 
* iv is 322FDB812C9AA16311E13372657282A1
 
== HMAC PORTABLE 48==
 
===E===
 
<pre>
6421DC67BF1520757FB15A68015B0693
</pre>
 
===I===
 
<pre>
54D04BABDE26E6D8481A5D860C2D3200
</pre>
 
== AES PORTABLE 4C==
 
<pre>
BA08EE7EFA8BFEBD4C6360A8F61C1D37
E735A3A1185C2B91B438D5DD132A5ED0
</pre>
 
*SCE_KDF_NCDT_PSK
* iv is 90F86BD0BD6587517E71FEB62A8AE2BF
 
== HMAC PORTABLE 4C==
 
<pre>
CD5486B6219C0B1798799576194774AA
</pre>
 
==AES PORTABLE 50==
 
<pre>
C2E211E71F4CCD76B65EBB45E64D995A
7424AE72CCC4DF2D6F34CA2F92797B49
</pre>
 
*SIEIPMISceIpmiMgrEQSx
* iv is 6E73A4D0DF65788581DADA975F5F37A6
 
==HMAC PORTABLE 50==
 
<pre>
06173BD09FAB15567064939F1C622A5B
</pre>
 
==AES PORTABLE 54==
 
<pre>
FF42F98D1E43E9975E8FE8B793B246A1
3EED3098D206BCB4550F29FA8761DEE4
</pre>
 
*rootparam?
* iv is 6DE690827F71C3F2E47A329DCA0F63C9
 
==HMAC PORTABLE 54==
 
<pre>
33478B82F3A1CECBD5C18BC246BE23FE
</pre>
 
==AES PORTABLE 58==
 
<pre>
AA78DA20F93912F33E831C9A959A99EB
AECBBEAD59F24227CF5CF0CF1BFF95F1
</pre>
 
*sceSblPfsSaveDataUpdateAuthCode
* iv is 3E0386ACCF22356622A15BFAC1F42C3A
 
==HMAC PORTABLE 58==
 
<pre>
039E510C50F577C022EA7D68C9435E26
</pre>
 
==AES PORTABLE 5C==
 
<pre>
FAD928594374473EEE62B2FB490FF640
15BA7A54771D987243221E45AD0B4D39
</pre>
 
==HMAC PORTABLE 5C==
 
<pre>
019DF2D781AA830E7AD74BB64739F697
</pre>
 
= Bluray DRM =
 
== AACS ==
 
<pre>
0A547025878C198979548FF00BA9E445 <- K
C0D00D285FC00870B543C1F31FAE44A8 <- iv
CD4F7C917ED4C9FE3B337EA2C60EC273
115BF5EE2659FF078C373EEDDFD4F3C7
05628DC933468421B2C88448080092B5
FD2ECD5E11264EDEDBA51D7E7B364B1C
B24216CF7D781DFB82DC866B976F4EC4 <-
B73C1037C7FED6C1315AD7C16AC8EA79 <-
</pre>
 
== BDPLUS ==
<pre>
CAC19E73A99A37649720DBA9E5B9C8E9 <- K
971D666C66C5BBA31B6280AC5D00A849 <- iv
B49740B965AACFA87DCE1218EBB1B27C <-
0CA31B024A73E030D2BB9FB3613DF147 <-
AE27A7DE70E1C1329DBC1CD0533F836D
081812B592AFCD8180C054F5F9F04616
185317D8D26C5DA45F80C358DA071BAA
F55720FC0620F54F235A5DA1C3459FB0
</pre>
 
== CSS ==
 
<pre>
0957909454D722D5FD71D02A5CCAC711 <- K
C9E37A810F42EFAA2A5BE0C8E75E3D2A <- iv
75B68FB0DBEF478F3975443180095AD2 <-
EA018F41C99D65CA57190A1B4F973BED <-
2DB61C46D497A1EC092816DC1243FF5E
C86676C3A45AB182B21BF75277916BE0
548631EF9270FC6F8BCBBCAF8BA3753D
F3F472638D324ECBBA7A4D844C2CA612
</pre>
</pre>


Line 368: Line 784:


= EMC Keys =
= EMC Keys =
== EMC Fuse Key for Aeolia ==
<pre>
1C7680D2963F3903811139C9C993BCA6
</pre>
== EMC Constants for Aeolia ==
<pre>
F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
47 1D 3A FE 3C 26 F1 BB 01 F1 94 8F 9A 7F B1 24
F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
EA 29 B8 CD A2 01 0C 98 53 CA BB F9 F2 1D 04 8C
F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
E3 6E 21 4F 63 57 E9 EA 08 F0 B8 11 BD F8 01 60
F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
88 DA B5 B0 51 95 E9 7F 88 82 F4 39 DD 10 61 81
</pre>


== EMC IPL Cipher Key for Aeolia ==
== EMC IPL Cipher Key for Aeolia ==
Line 823: Line 1,258:


=== RSA PKG Meta ===
=== RSA PKG Meta ===
==== P 600 ====
<pre>
F967AD9912310C56A22E161C46B34D5B
43BE42A2F686968042C3C73FC342F587
49339F075D6E2C04FDE3E1B2AE0A0CF0
C7A61CA16350C8099C5124526C5E5EBD
1E2706BBBC9E94E135D46DB3CB3C68DD
68B3FE6CCB8D8220762363B7E9681001
4EDCBA275D01C12D805E2BAF826BD884
B6105286A7898EAE9AE289C6F7D587FB
</pre>
==== Q 680 ====
<pre>
D7A10F9A8BF2C91195329A8CF0D94047
F568A00DBDC1FC432F65F9C3610F2577
54ADD758AC8440608D3FF3658975B5C6
2C511A2F1F22E4431154BEC9B4C7B51B
050BBC569ACD4AD973685E5CFB92B78B
0DFFF507CAB4C89B963C079E3E6B2A11
F28AB18AD72E1BA5532406ED50B89067
B1E241C69201EE10F061BBFBB27D4A73
</pre>


==== Modulus 400 ====
==== Modulus 400 ====
Line 888: Line 1,299:
</pre>
</pre>


==== DP ====
==== P 600 ====
<pre>
F967AD9912310C56A22E161C46B34D5B
43BE42A2F686968042C3C73FC342F587
49339F075D6E2C04FDE3E1B2AE0A0CF0
C7A61CA16350C8099C5124526C5E5EBD
1E2706BBBC9E94E135D46DB3CB3C68DD
68B3FE6CCB8D8220762363B7E9681001
4EDCBA275D01C12D805E2BAF826BD884
B6105286A7898EAE9AE289C6F7D587FB
</pre>
 
==== Q 680 ====
<pre>
D7A10F9A8BF2C91195329A8CF0D94047
F568A00DBDC1FC432F65F9C3610F2577
54ADD758AC8440608D3FF3658975B5C6
2C511A2F1F22E4431154BEC9B4C7B51B
050BBC569ACD4AD973685E5CFB92B78B
0DFFF507CAB4C89B963C079E3E6B2A11
F28AB18AD72E1BA5532406ED50B89067
B1E241C69201EE10F061BBFBB27D4A73
</pre>
 
==== DP 700 ====
<pre>
<pre>
52CC2DA09C9E75E728EE3DDEE345D14F
52CC2DA09C9E75E728EE3DDEE345D14F
Line 900: Line 1,335:
</pre>
</pre>


==== DQ ====
==== DQ 780 ====
<pre>
<pre>
7C9DAD39E0D560149448197F8895D58B
7C9DAD39E0D560149448197F8895D58B
Line 912: Line 1,347:
</pre>
</pre>


==== QP ====
==== QP 800 ====
<pre>
<pre>
459755D422085EF35CB4057AFDAA4242
459755D422085EF35CB4057AFDAA4242
Line 933: Line 1,368:


flag is 8
flag is 8
same as internal


=== HMAC-SHA256 Patch Pkg URL Key ===
=== HMAC-SHA256 Patch Pkg URL Key ===
Line 946: Line 1,383:
82B12D0362A993BFE995D477611BB7B26FB34AC4ED47C3EFC62D8A93B3561255307DFAA1DCA95EBA612468F3471CEF854868DC035C74442F21F7374AA62CEEAE
82B12D0362A993BFE995D477611BB7B26FB34AC4ED47C3EFC62D8A93B3561255307DFAA1DCA95EBA612468F3471CEF854868DC035C74442F21F7374AA62CEEAE
5B9DD5C1049ADC70B7F3678B37340CD5F8BCC57B1C343D171C510740AD792C5C5C72167EE295F73ED237F9C9D2D06ED66F502F6434FEAD5B64B10623C3E7E27B
5B9DD5C1049ADC70B7F3678B37340CD5F8BCC57B1C343D171C510740AD792C5C5C72167EE295F73ED237F9C9D2D06ED66F502F6434FEAD5B64B10623C3E7E27B
</pre>
=== RSA-2048 HID P ===
<pre>
EECAE0D972C35872BAC2A7E427C69FE0
D3FA59ADE49F2F9986F3905B601717BB
01DDB35955213C7F0A3C5B22B01F6512
73EF14E95AD68129D69A7BC7BA45D0E5
85A8E385EDEF421CCE70A0191F7BE000
EDF1EE4C05047445AC7BBE990822AE7B
D0414BFEE999299B6620364BEAC36B14
C07FA5BF4210E30E951CA0D5640C487F
</pre>
=== RSA-2048 HID Q ===
<pre>
D9EBE9E88218DEA733ED14D2C41D8EA3
B9993F0C47F585093DAB47261B9F8574
297FDC1028AABF6E88E9DE203714924B
55069C4C9275A8E6C8221B930BA63AD6
2413BAB057CF39B6FF53B3C944526C6E
F4A03EFE7888C316722EF142CD4A2380
EC5E284C75F31CA324DDBFECDB59D04F
3F4BE1017FF7AD7B1253A5D7A8D6FDFF
</pre>
</pre>



Latest revision as of 17:18, 9 September 2023

Static KeySlots[edit | edit source]

Slot Size Key Static? Notes
0x43 0x10
6B 98 18 FF 35 16 7D 30 90 09 0A A4 22 D6 80 57
Yes Unknown Usage, same from 2 5.05 identical dumps
0x44 0x10
50 5E 2D 39 EB 32 E5 FC E9 DE E1 F8 0D 9E ED 26
Yes Unknown Usage, same from 2 5.05 identical dumps
0x50 0x10
50 7E 2C 58 77 B3 A0 F3 DE 7B 96 A4 F3 8E FE FF
Yes Unknown Usage, same from 2 5.05 identical dumps
0x52 0x10
F4 E6 20 AE EE 53 37 73 85 03 D3 64 01 7D AA 29
Yes Unknown Usage, same from 2 5.05 identical dumps
0x67 0x10
B2 EB AB D9 2C 2D 12 BE 12 C1 1E BD C7 2D 90 36
Yes Unknown Usage, same from 2 5.05 identical dumps
0x71 0x10
87 DB 4C 5C 56 29 1F 3D 4D 60 2E C4 09 50 3A FE
Yes Unknown Usage, same from 2 5.05 identical dumps
0x15A 0x10
1A F9 22 3E 6C C0 A3 C8 7E CC C6 52 74 19 13 72
Yes Unknown Usage, same from 2 5.05 identical dumps
0x15B 0x10
2D D7 7F D0 38 BF 67 4C FC 60 73 A9 E7 B6 17 76
Yes Unknown Usage, same from 2 5.05 identical dumps

Portability / EncDecKeys[edit | edit source]

In Kernel[edit | edit source]

0x00 pfsSKKey__SecKey
0x0C CFK1
0x14 SCEROOTPARAM_KEY
0x1C SCECloudSD___KEY
0x20 sbl_srv_ioctl
0x24 SCE_LwUtoken_Key
0x28 SCE_SBL_BAR_KEY1
0x44 livedump
0x48 SceHidAuth
0x4C SCE_KDF_NCDT_PSK
0x50 SIEIPMIS
0x54 pfs_sbl
0x58 sceSblPfsSaveDataUpdateAuthCode

In Shellcore[edit | edit source]

0x08 Index.dat
0x0D Hostnames
0x10 SystemLogger
0x3C GetOpenPsIdHash
0x40 envelope keys

In NPXS20001[edit | edit source]

0x08
0x40

In NPXS20120[edit | edit source]

0x40

In NPXS21000[edit | edit source]

0x40

In coredump.elf[edit | edit source]

0x08

In libtsmp.sprx[edit | edit source]

0x08

in libSceSystemService.sprx[edit | edit source]

0x40

in swagner.self[edit | edit source]

0x18

in swreset.self[edit | edit source]

0x18

in ScePlayReady2.self[edit | edit source]

0x5C

AES PORTABLE 0x0[edit | edit source]

  • pfsSKKey__SecKey
  • iv is F60016BACD42AD21C70D9B075CB51983

E[edit | edit source]

9EA5CD89DA8DAB6E66CE6D345752639D
9A4EE51EEAF084D970FEFC2850F7604E

I[edit | edit source]

6CEDCF30A30306F3AAE52B51B93726FD
E18CE3B2B1ED8BB74BDE51D712349314

HMAC PORTABLE 0x0[edit | edit source]

E[edit | edit source]

D8808616FA98B0BF50A499D5FA5DCCA7

I[edit | edit source]

096459F1A0C8C5DDDD404E40A4CEBF6C

AES PORTABLE 0x4[edit | edit source]

231D69F73D12C55164D5A40A10DB5170
4DF980998A155CE381966E6521C572C6

HMAC PORTABLE 0x4[edit | edit source]

B3547B179154B3C9AC96304B4F9AEA73

AES PORTABLE 0x5[edit | edit source]

21E474E20845F868B1EADBC90C7BE001
CF7FBB1A479716EA02F8A30B23C577BB
  • AACS

HMAC PORTABLE 0x5[edit | edit source]

94CA4FDC575C812E9E0432459E30DB75

AES PORTABLE 0x6[edit | edit source]

A48932A314C75ED5321764638B7A2FE8
9EF8ADB044C01302936910C25FD7410E
  • Css

HMAC PORTABLE 0x6[edit | edit source]

6E30BD54F52053CA6B68F9F23B7FD216

AES PORTABLE 0x7[edit | edit source]

7B626924420F5F8D7BC5CBF7BC803C27
DAFA0EA507083AF6D91033548BCFB216
  • BdPlus

HMAC PORTABLE 0x7[edit | edit source]

8FAA08823BF7354F0999D0D8A7F0A893

AES PORTABLE 0x8[edit | edit source]

E[edit | edit source]

CC3C6CD60871591A5A6C6347B2100CA2
FC286633A4D9482B9313FEE574E04338

I[edit | edit source]

331BDC5EF45CA0CADEB210DDC309C1D2
4E0059E82E1626F24A1855696BE324B2
  • Index.dat
  • iv is 310CC1BD68FA39AF74FB07A6C67B6CBF

HMAC PORTABLE 0x8[edit | edit source]

E[edit | edit source]

7FA3B3BA6D9456EE223EB74A2D30AA54

I[edit | edit source]

D820E2E7455FB1F43EE0593EDA734E9B

AES PORTABLE 0xC[edit | edit source]

E[edit | edit source]

36902DC7BD1EC112BE122D2CD9ABEBB2
29AA7D0164D30385733753EEAE20E6F4

I[edit | edit source]

16BC4CCEABEA9F03D2EB670BD29630A1
882D16F707FD33FA2ABFEC130F60EEFF
  • CFK1(Crepo)

HMAC PORTABLE 0xC[edit | edit source]

E[edit | edit source]

FFFE8EF3A4967BDEF3A0B377582C7E50

I[edit | edit source]

C3F74D676DCF7A68AA482ED8914405B7

AES PORTABLE 0xD[edit | edit source]

E[edit | edit source]

BDA98742518157C4634A21FBB47C8311
D21CE6016404D8CB2EF0C24462C42C38

I[edit | edit source]

8FC2405D96B41290DF62525E536E37B6
42D798F0538B7FB42829C05ECBB00B08
  • hostnames(ShellCore)

HMAC PORTABLE 0xD[edit | edit source]

E[edit | edit source]

AED0BCC3264D91A698E4D7D8CA428E52

I[edit | edit source]

A43C5B248AEF15C4CEFAEA170F6F31F7

AES PORTABLE 0x10[edit | edit source]

E[edit | edit source]

32AF1AE6A8B408ACA7072C9364BF8A36
BA19E55263F00585EA2653311747A1E4

I[edit | edit source]

05E051FEDB737FEEA2FFA6D78AAC1613
2ABAE36253F2A291C2EF0A1ACADAE1D1
  • logger
  • iv is a1d989b020185024f4c448283537540b

HMAC PORTABLE 0x10[edit | edit source]

E[edit | edit source]

E2AB163DFA812B4AA73FFB0AB4CB27E2

I[edit | edit source]

F7B1C4722FC52AEED7AE88C7DAB14C97

AES PORTABLE 14[edit | edit source]

E[edit | edit source]

3A9980C60B2752B1E5C9437C8BE0730E
057683371B0207B1B63D32412D41AAC3

I[edit | edit source]

190C5FD353B619FFE1CEE8DEB9F828DA
60F0ADA572E1C5CB30BC259BD0818C66
  • SCEROOTPARAM_KEY
  • iv is 9569829CD4B15FF84330545A34EC1BC5

HMAC PORTABLE 14[edit | edit source]

E[edit | edit source]

38618E377454ADC8EA799376DEB01D34

I[edit | edit source]

0CB1FD77B96A6815E65A1B26BF29822F

AES PORTABLE 18[edit | edit source]

E[edit | edit source]

7D031910F9918242BD0069AACD047249
A95E1F0651AE9D14E4F7B09D0D816E56

I[edit | edit source]

9FCEEE75F2FD4C0A57AA32FDBD4093D3
7876E4D29D621BB54E62A2756E3E9C83
  • swagner,swreset

HMAC PORTABLE 18[edit | edit source]

E[edit | edit source]

E42C03F0ABAF7DED9EF3B31461526DF1

I[edit | edit source]

0F4A79378A97768F719E29A5AE787513

AES PORTABLE 1C[edit | edit source]

E[edit | edit source]

77684D4ACD210B03382327D4D15A88A4
19BD06EEC04474EDEEB1A007C6112CEA

I[edit | edit source]

EA9F99E9ED0D33D58C81E14D30F804C4
75B1B85AF1C33E3408F4107FA78AEE05
  • SCECloudSD___KEY
  • iv is DF140F0A54E95A581B8049DAA2A9AF2B

HMAC PORTABLE 1C[edit | edit source]

E[edit | edit source]

240299607EDB6505B68A7C8852E9305E

I[edit | edit source]

1539E66891EFC669FF9BDA34123BBE06

AES PORTABLE 20[edit | edit source]

E[edit | edit source]

071B19D53D462093E0AF664ACFA9F937
2FCD0154FF04A9AE39E88EFF27823F0C

I[edit | edit source]

D6E3473A984BB836E1637F813CA5953E
186EF9F184BB76DBBC64B639F50CFF02

HMAC PORTABLE 20[edit | edit source]

E[edit | edit source]

8F1DFF012B1814D73F70A1BCF04EAE7F

I[edit | edit source]

DB801FB08E1C0DCE0B9ECC4E518AE24E

AES PORTABLE 24[edit | edit source]

E[edit | edit source]

3BDDF81A1FE5CFEE3DAD1835B21CFFED
C10609C5D4D1DB17333ABECAEB2EF955

I[edit | edit source]

6E523DCAFDAFC20BDF288C8DF3F7BA97
146BFF1C88427E52461DA28F8D305B36
  • SCE_LwUtoken_Key
  • iv is ED7BD631517CF4753C9DDA7A3AB859DB

HMAC PORTABLE 24[edit | edit source]

E[edit | edit source]

7D10C415D0C0C5DD85C6795E7BA08A7B

I[edit | edit source]

4AC61958B2BCFA6793B49DF84672A44D

AES PORTABLE 28[edit | edit source]

E[edit | edit source]

27E0770E09A7FC1D83812F82D5775AE1
7CB5D77FE73EC981579EB0D2D4FE19FE

I[edit | edit source]

587853D8EF32804120B6CA6AC15F9E7C
31844FBB1FD5677B18CA34F3C86C371E
  • BAR_KEY(BackupAndRestore)

HMAC PORTABLE 28[edit | edit source]

E[edit | edit source]

DDBE5F9AABC6E810C1527C560EAF8DC5

I[edit | edit source]

13D173D007FC85D02FC146A78B2C3032

AES PORTABLE 3C[edit | edit source]

E[edit | edit source]

B7F71CB821D163D3E48D20E13CB37C64
FE8834B96073CCFD0A60BCC04411C00C

I[edit | edit source]

37CE6FF2CBA0C69460329C223EA763E6
EAE1D5DBFC5803C94CDA8D708161F6A0
  • SCE_SYS_TLM_SECK
  • iv is CE5326C917B698478C46E0387689CB4A

HMAC PORTABLE 3C[edit | edit source]

E[edit | edit source]

839E28FC0455F027BDE024DFA6ADCB8A

I[edit | edit source]

0D7F88C9A9128A1FD6EF367E78062572

AES PORTABLE 40[edit | edit source]

E[edit | edit source]

FE3A5009C42E604D3D1F29565C4CDB87
0FDCD521338C8486D2AD85BB5220AC49

I[edit | edit source]

353233D34AE6544ADB79FFE2978E88B9
F5E5951E752DC76941E173B0F239DE49
  • envelopes(i'm looking at you, idc ;) )

HMAC PORTABLE 40[edit | edit source]

E[edit | edit source]

898BC1304C51736BA56C33CAE992225F

I[edit | edit source]

1D9E1E5B2A87B887FF1E017B02D0E04C

AES PORTABLE 44[edit | edit source]

E[edit | edit source]

FABE3A6D6B96A150CD5BD5652208F695
18F75EBD22704F5298F3B59248951389

I[edit | edit source]

882D16F707FD33FA2ABFEC130F60EEFF
D1F8B09AA448624FD62A94C84A9433D6
  • livedump_secure

HMAC PORTABLE 44[edit | edit source]

E[edit | edit source]

C7959E7798833634764BE40421E4CA87

I[edit | edit source]

A154061C592CE76844847C137F5BE71B

AES PORTABLE 48[edit | edit source]

E[edit | edit source]

0606708496452DD32191FD838B3B6840
84CFA1C4FB4427BB21CA18E8CA80406D

I[edit | edit source]

AC4E5205E1EFF2CD76DBC73EB13C383A
8C8F99A88FB3A50D554C0934DA1E7946
  • SceHidAuth
  • iv is 322FDB812C9AA16311E13372657282A1

HMAC PORTABLE 48[edit | edit source]

E[edit | edit source]

6421DC67BF1520757FB15A68015B0693

I[edit | edit source]

54D04BABDE26E6D8481A5D860C2D3200

AES PORTABLE 4C[edit | edit source]

BA08EE7EFA8BFEBD4C6360A8F61C1D37
E735A3A1185C2B91B438D5DD132A5ED0
  • SCE_KDF_NCDT_PSK
  • iv is 90F86BD0BD6587517E71FEB62A8AE2BF

HMAC PORTABLE 4C[edit | edit source]

CD5486B6219C0B1798799576194774AA

AES PORTABLE 50[edit | edit source]

C2E211E71F4CCD76B65EBB45E64D995A
7424AE72CCC4DF2D6F34CA2F92797B49
  • SIEIPMISceIpmiMgrEQSx
  • iv is 6E73A4D0DF65788581DADA975F5F37A6

HMAC PORTABLE 50[edit | edit source]

06173BD09FAB15567064939F1C622A5B

AES PORTABLE 54[edit | edit source]

FF42F98D1E43E9975E8FE8B793B246A1
3EED3098D206BCB4550F29FA8761DEE4
  • rootparam?
  • iv is 6DE690827F71C3F2E47A329DCA0F63C9

HMAC PORTABLE 54[edit | edit source]

33478B82F3A1CECBD5C18BC246BE23FE

AES PORTABLE 58[edit | edit source]

AA78DA20F93912F33E831C9A959A99EB
AECBBEAD59F24227CF5CF0CF1BFF95F1
  • sceSblPfsSaveDataUpdateAuthCode
  • iv is 3E0386ACCF22356622A15BFAC1F42C3A

HMAC PORTABLE 58[edit | edit source]

039E510C50F577C022EA7D68C9435E26

AES PORTABLE 5C[edit | edit source]

FAD928594374473EEE62B2FB490FF640
15BA7A54771D987243221E45AD0B4D39

HMAC PORTABLE 5C[edit | edit source]

019DF2D781AA830E7AD74BB64739F697

Bluray DRM[edit | edit source]

AACS[edit | edit source]

0A547025878C198979548FF00BA9E445 <- K
C0D00D285FC00870B543C1F31FAE44A8 <- iv
CD4F7C917ED4C9FE3B337EA2C60EC273
115BF5EE2659FF078C373EEDDFD4F3C7
05628DC933468421B2C88448080092B5
FD2ECD5E11264EDEDBA51D7E7B364B1C
B24216CF7D781DFB82DC866B976F4EC4 <-
B73C1037C7FED6C1315AD7C16AC8EA79 <-

BDPLUS[edit | edit source]

CAC19E73A99A37649720DBA9E5B9C8E9 <- K
971D666C66C5BBA31B6280AC5D00A849 <- iv
B49740B965AACFA87DCE1218EBB1B27C <-
0CA31B024A73E030D2BB9FB3613DF147 <-
AE27A7DE70E1C1329DBC1CD0533F836D
081812B592AFCD8180C054F5F9F04616
185317D8D26C5DA45F80C358DA071BAA
F55720FC0620F54F235A5DA1C3459FB0

CSS[edit | edit source]

0957909454D722D5FD71D02A5CCAC711 <- K
C9E37A810F42EFAA2A5BE0C8E75E3D2A <- iv
75B68FB0DBEF478F3975443180095AD2 <-
EA018F41C99D65CA57190A1B4F973BED <-
2DB61C46D497A1EC092816DC1243FF5E
C86676C3A45AB182B21BF75277916BE0
548631EF9270FC6F8BCBBCAF8BA3753D
F3F472638D324ECBBA7A4D844C2CA612

Companion App Protocol RSA Public Key[edit | edit source]

-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxfAO/MDk5ovZpp7xlG9J
JKc4Sg4ztAz+BbOt6Gbhub02tF9bryklpTIyzM0v817pwQ3TCoigpxEcWdTykhDL
cGhAbcp6E7Xh8aHEsqgtQ/c+wY1zIl3fU//uddlB1XuipXthDv6emXsyyU/tJWqc
zy9HCJncLJeYo7MJvf2TE9nnlVm1x4flmD0k1zrvb3MONqoZbKb/TQVuVhBv7SM+
U5PSi3diXIx1Nnj4vQ8clRNUJ5X1tT9XfVmKQS1J513XNZ0uYHYRDzQYujpLWucu
ob7v50wCpUm3iKP1fYCixMP6xFm0jPYz1YQaMV35VkYwc40qgk3av0PDS+1G0dCm
swIDAQAB
-----END PUBLIC KEY-----

SMU Keys[edit | edit source]

AMD System Management Unit (SMU) is a thermal and electric management unit found in modern AMD x86 processors. See this video.

SMU HMAC Key[edit | edit source]

4D7E73210B677A832B9F293B496E7C3E

EMC Keys[edit | edit source]

EMC Fuse Key for Aeolia[edit | edit source]

1C7680D2963F3903811139C9C993BCA6

EMC Constants for Aeolia[edit | edit source]

F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
47 1D 3A FE 3C 26 F1 BB 01 F1 94 8F 9A 7F B1 24 
F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
EA 29 B8 CD A2 01 0C 98 53 CA BB F9 F2 1D 04 8C 
F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
E3 6E 21 4F 63 57 E9 EA 08 F0 B8 11 BD F8 01 60 
F1 F2 F3 F4 F5 F6 F7 F8 F1 F2 F3 F4 F5 F6 F7 F8
88 DA B5 B0 51 95 E9 7F 88 82 F4 39 DD 10 61 81

EMC IPL Cipher Key for Aeolia[edit | edit source]

5F74FE7790127FECF82CC6E6D91FA2D1
  • iv is all zeroes
  • algorithm is AES128CBC
  • Aeolia exists since at least PS4 prototype firmware 0.910.040
  • EMC IPL is codenamed C0000001
  • index is 0xD (13_ if you use Zer0xFF's tools)

EMC IPL Cipher Key for Belize[edit | edit source]

1A4B4DC4179114F0A6B0266ACFC81193
  • iv is all zeroes
  • algorithm is AES128CBC
  • Belize was introduced in firmware 2.00
  • EMC IPL is codenamed C0000001
  • index is 0x20 (32_ if you use Zer0xFF's tools)

EMC IPL Hasher Key for Aeolia[edit | edit source]

73FE06F3906B05ECB506DFB8691F9F54
  • Algorithm is HMAC-SHA1
  • It hashes the header (0x6C) of EMC IPL

EAP Keys[edit | edit source]

EAP KBL Cipher Key for Aeolia[edit | edit source]

581A75D7E9C01F3C1BD7473DBD443B98
  • iv is all zeroes
  • algorithm is AES128CBC
  • Aeolia exists since at least PS4 prototype firmware 0.910.040
  • EAP KBL is codenamed C0010001
  • index is 0xE (14_ if you use Zer0xFF's tools)

EAP KBL Hasher Key for Aeolia[edit | edit source]

824D9BB4DBA3209294C93976221249E4
  • Algorithm is HMAC-SHA1
  • It hashes the header (size 0x6C) of EAP KBL

EMC/EAP/KERNEL shared keys[edit | edit source]

portability_seed_key[edit | edit source]

E973A44C578757A73492625D2CE2D76B

portability_seed[edit | edit source]

DF0C2552DFC7F4F089B9D52DAA0E572A

eap_hdd_key_blob_key1_seed[edit | edit source]

7A49D928D2243C9C4D6E1EA8F5B4E229
317E0DCAD2ABE5C56D2540572FB4B6E3

eap_hdd_key_blob_key2_seed[edit | edit source]

921CE9C8184C5DD476F4B5D3981F7E2F
468193ED071E19FFFD66B693534689D6

use_new_blob = Y[edit | edit source]

  • enc
CFFDCB6ECAE612B7A30A9EDBD8F77E26
1D629DE5E6CA3F22F439211AC033884F
4B5D7D16D0A6F65D3173A2586CF819C7
C6F437444C1D9499F6EBC4145E0BBAAB
C1DE7C63ED1F5A1E1946358C7F181B1F
AB6DAB31195D8E611A1CB81B9ACF8B38
FF21029FAB568C7A1BCC3E2FBEB25B13
F1AFD6A3599EEF09EAEBE32684FDDA29
  • sig
4798B78DD422601F26A32A1FEC5CAB8B
256E50958E0B11A31D77DEE201D4D00E
  • iv
462500ECC487F0A8C2F39511E020CC59

use_new_blob = N[edit | edit source]

  • enc
E073B691E177D39642DF2E1D583D0E9A
5A49EDF72BE9412E2B433E51490CE973
234B84F49E949F03727331D5456F4598
F2EDE6D0C11483B84CE3283243D0DE9D
C379E915301A805DFAEB292B30374C9B
F1C59041509BF11D215C35D5C08E3330
807C8229C930FAB88672C4CF7DACA881
C323D72346CA07921DB806FC242A2ED1
  • sig
ED4F32C095847C6D3143EFFD61E7582F
75F24465855C4E94DAF34885D8D03463
  • iv
3286EA97F3E92C434E1DC170C9289003

EAP_HDD_KEY_BLOB[edit | edit source]

5343455F4541505F4844445F5F4B4559
BB6CD66DDC671FAC3664F7BF5049BAA8
C4687904BC31CF4F2F4E9F89FA458793
811745E7C7E80D460FAF2326550BD7E4
D2A0A0D9729DE5D2117D70676F1D5574
8DC17CDF29C86A855F2AE9A1AD3E915F
00000000000000000000000000000000
00000000000000000000000000000000

Syscon Keys[edit | edit source]

Common[edit | edit source]

Security ID[edit | edit source]

3A4E6F743A557365643A (:Not:Used:)
Checksum for RL78: 3A+4E+6F+74+3A+55+73+65+64+3A = 0x370 && 0xFF = 0x70 - 1 = 0x6F 
Same Checksum for 78K0R

Used to access more privileged commands, such as the write command

DevKit[edit | edit source]

Full Firmware[edit | edit source]

AES-CBC-128

Key = 5301C28824B57137A819C042FC119E3F

IV =  00000000000000000000000000000000

Used for:

  • 40000001 (BLNK)
  • 40000002 (BASE)
  • 40000003 (SYST)


AES-CMAC-128

Key = 8F215691AC7EF6510239DD32CC6A2394

Used to generate the AES-CMAC-128 at the start of decrypted 40000001, 40000002 and 40000003, by digesting the remainder of the decrypted data

Retail/TestKit[edit | edit source]

Patch Firmware Keys[edit | edit source]

AES-CBC-128

Key = EF90B21B31452379068E3041AAD8281E

IV =  00000000000000000000000000000000

Used for:

  • 40010001 (Patch #1)
  • 40010002 (Patch #2)


AES-CMAC-128

Key = 95B1AAF20C16D46FC816DF32551DE032

Used to generate the AES-CMAC-128 at the start of decrypted 40010001 and 40010002, by digesting the remainder of the decrypted data

Kernel Keys[edit | edit source]

Kernel Magic[edit | edit source]

2FB09FD1DE76967DEB947B51EC82781E

Backup And Restore Keys (BAR)[edit | edit source]

Cipher[edit | edit source]

79C8CCC889A1540D4F2E27BB614FD653

Hasher[edit | edit source]

1F18C970D000AC7E6FCC1A8CDD89B4FECDA133A10EC8F525982223F5861F0200

default_suffix[edit | edit source]

Key = 518D64A635DED8C1E6B039B1C3E55230

Used as suffix to symbol names when hashing with SHA1 to create a NID.

Crash Dump KeySeed[edit | edit source]

kd, kc
KEYS = [
    ['',''],
    [b'8F86DDEDCBF24A44EB6C30607AA26F76', b'4125715AAB8B78E569F512E65CA62DD3'], # 1.01-3.15
    [b'63AEF79DC49969FD8997B2F60DB65F81', b'1800A5DE2D0F0652FA5602FFADD440AA'], # 3.50-3.70
    [b'05205507B7A154E08A7A38B1897563FB', b'AD334D142EAF8B9438DB00D1D0BFF357'], # 4.00-4.05
    [b'04C1A0961BBB0CB2140361B0956AAABA', b'052D2FF3014FB38CAAF6898CB899982A'], # 4.06-4.07 (to test)
]

Sealed Key Values or (PFS_EncKey and sealedkey_retail_key) Values[edit | edit source]

Keyset 1[edit | edit source]

AES-CBC-128

Key = B5DAEFFF39E6D90ECA7DC5B029A8153E


SHA-256-HMAC

Hash = 8707960A53468D6C843B3DC9624E22AF

Keyset 2[edit | edit source]

AES-CBC-128

Key = EC0D347E2A7657471F1FC33E9E916FD4


SHA-256-HMAC

Hash = A6D6583D3217E87D9BE9BCFC4436BE4F

Keyset 3[edit | edit source]

AES-CBC-128

Key = 51D8BFB4E387FB4120F081FE33E4BE9A


SHA-256-HMAC

Hash = FFF9BDEA803B14824C61850EBB084EE9

Keyset 4[edit | edit source]

AES-CBC-128

Key = 346B5D231332AC428A44A708B1138F6D


SHA-256-HMAC

Hash = 5DC6B8D1A3A0741852A7D44268714824

Dumped with getSealedKeySecret on 5.05

Keyset 5[edit | edit source]

AES-CBC-128

20 D0 43 85 25 30 C4 04 D1 68 69 E0 79 08 D5 E6

SHA-256-HMAC

2D E8 DE 4D E6 62 8B B6 2D D5 C1 70 F5 65 B6 2C


Keyset 6[edit | edit source]

AES-CBC-128

93 B7 27 0D F0 D3 73 10 60 07 90 66 65 5D 8D 07

SHA-256-HMAC

FD 44 A3 2D 8B C8 AC 18 9C 1B D0 96 40 29 66 CF

Keyset 7[edit | edit source]

AES-CBC-128

4C 78 44 83 69 37 50 8B 92 33 DF 7C D7 D6 51 65

SHA-256-HMAC

BC 4C 9F 0F E5 D3 56 A0 57 52 02 4C BD EE C8 E4

Keyset 8[edit | edit source]

AES-CBC-128

3A 32 EE CF 74 99 39 87 1C 3D 7B F8 C0 1C 7D 1F

SHA-256-HMAC

F6 F9 D8 21 82 CC C2 22 7B 7D 33 A3 B7 1E AD E3

Keyset 9[edit | edit source]

AES-CBC-128

EB 35 64 04 7D 60 24 7F 55 73 CD E5 7E 0C DE 1C

SHA-256-HMAC

29 8B 4F 59 1E F0 4E 52 17 3E EC 59 C5 A4 78 33

Keyset 0xA[edit | edit source]

AES-CBC-128

8A D4 92 CC 5B 27 B5 C3 60 11 A5 85 8B 90 93 80

SHA-256-HMAC

00 6A 34 41 82 B6 1B E5 6A 6C D6 B9 46 6F 03 45

AuthCode[edit | edit source]

KeySet 1[edit | edit source]

2B CF 69 8E 79 CF DD FA C2 4D 4C 25 BF 35 1E 62

Vtrm Cipher Init Keys[edit | edit source]

hmac_key_seed[edit | edit source]

Key = 87FB19BBF3D4D6B1B0ED226E39CC621A
      37FA4ED2B6618B59B34F770FBB92947B

IV = 00112233445566778899AABBCCDDEEFF

aes_key_seed[edit | edit source]

B0ED226E39CC621A37FA4ED2B6618B59

Keystone Keys[edit | edit source]

keystone_passcode_secret or passcode_hmac_secret[edit | edit source]

C74405F67424BA342BC1276251BBC2F5
55F16025B6A1B6714780DBAEC852FA2F

keystone_ks_secret or keystone_hmac_secret[edit | edit source]

783D6F3AE91C0E0712FCAAB7950BDE06
855CF7A22DCDBDE127E9BFCBAD0FF0FE

ShellCore Keys[edit | edit source]

DevKit/TestKit[edit | edit source]

Trophy Key[edit | edit source]

Key = 02CCD346B459CB83505E8E760A44D457

Retail[edit | edit source]

Trophy Key[edit | edit source]

Key = 21F41A6BAD8A1D3ECA7AD586C101B7A9

RSA PKG Meta[edit | edit source]

Modulus 400[edit | edit source]

 
D212FC335F6DDB831609628B03562737
82D477853529392D526B8C4C8CFB06C1
845BE7D4F7BCD24E6245CD2ABBD77776
453655273FB3F5F98EDA4BEFAA59AEB3
9BEA5498D206326A58312AE0D44F90B5
0A7DECF43A9C52672D99318E0C43E682
FE0746E12E50D41F2D2F7ED908BA06B3
BF2E203F4E3FFE44FFAA504357916994
49158282E40F4C8D9D2CC95B1D64BF88
8BD4C594E76547841EE57910FB989347
B97D8512A640982CF792BC951932EDE8
90560D65C1AA78C62E54FD5F54A1F67E
E5E05F61C120B4B9B4330870E4DF8956
ED012946775F8CB8A9F51E2EB3B9BFE0
09B78D28D4A6C3B81E1F07EBB4120B95
B88530FDDC3913D07CDC8FEDF9C9A3C1

Private Key 500[edit | edit source]

32D903908FBDB08F572B285E0B8DB3EA
5CD17EA890888CDD6A80BBB1DFC1F70D
AA32F0B77CCB88800E8B64B0BE4CD60E
9B8C1E2A64E1F35CD77601415E935C94
FEDD4662C31B5AE2A0BC2DEBC3980AA7
B7856970682B644AB31FCC7DDC7C26F4
77F65CF2AE5A442DD3AB16620419BAFB
90FFE23050896ECB56B2EBC09116925E
308EAEC7945DFD35E120F8AD3EBC08BF
C036749FD5BB5208FD0666F37AB304F4
75295DE95FAA1030B20F5A1AC12AB3FE
CB21AD80EC8F20091CDBC55894C29CC6
CE82653E5790BCA98B06B4F072F677DF
9864F1ECFE372DBCAE8C08811FC3C989
1AC742824B2EDC8E8D73CEB1CC01D908
70873C4408EC498F815AE240FF77FC0D

P 600[edit | edit source]

F967AD9912310C56A22E161C46B34D5B
43BE42A2F686968042C3C73FC342F587
49339F075D6E2C04FDE3E1B2AE0A0CF0
C7A61CA16350C8099C5124526C5E5EBD
1E2706BBBC9E94E135D46DB3CB3C68DD
68B3FE6CCB8D8220762363B7E9681001
4EDCBA275D01C12D805E2BAF826BD884
B6105286A7898EAE9AE289C6F7D587FB

Q 680[edit | edit source]

D7A10F9A8BF2C91195329A8CF0D94047
F568A00DBDC1FC432F65F9C3610F2577
54ADD758AC8440608D3FF3658975B5C6
2C511A2F1F22E4431154BEC9B4C7B51B
050BBC569ACD4AD973685E5CFB92B78B
0DFFF507CAB4C89B963C079E3E6B2A11
F28AB18AD72E1BA5532406ED50B89067
B1E241C69201EE10F061BBFBB27D4A73

DP 700[edit | edit source]

52CC2DA09C9E75E728EE3DDEE345D14F
941CCCC88729453B8D6EAB6E2AA7C715
43A3048F905FEBF3384A77FA36B71576
B6011A8E258782F155D8C6432AC0E598
C932D1946FD901BA0681E06D88F2242A
2501645CBFF2D999673EF672EEE4E233
5CF80040E32A9AF43D2286443CFB0AA5
7C3FCCF5F116C4AC88B4DE6294926A13

DQ 780[edit | edit source]

7C9DAD39E0D560149448197F8895D58B
80AD858A4B773785D077BBBF89714A72
CB726838EC02C67DC6440633511CC0FF
958F0D75DC25BB0B7391A96D42D803B7
68D41E7562A37035797800C8F5EF15B9
FC4E475AC870705B5298C0C2584A7096
CCB810E12F788B2BA17FF9ACDEF0BB2B
E266E3229231215792C4B8F23E762037

QP 800[edit | edit source]

459755D422085EF35CB4057AFDAA4242
AD9A8CA06CBB1D6854546E3E32E35373
76F13E01EAD3CFEBEB233EC0BECEEC2C
895FA8273A4CB7E674BC454C26C825FF
34632537E14810C193A6AFEBBAE3A2F1
3DEF63D8F4FDD3EEE25DE933CCADBA75
5C85AFCEA93DD1A217F3F698B3508E5E
F6EB028EA162A7D62CEC91FF1540D2E3

Index.dat Key (Portability)[edit | edit source]

Key = EED5A4FFE8A3C910DC1BFD6AAF1382250B380DBAE5045D230569473F46B07B1F

IV = 3ACB38C1EC12119D56929F49F70415FF

flag is 8

same as internal

HMAC-SHA256 Patch Pkg URL Key[edit | edit source]

Key = AD62E37F905E06BC19593142281C112CEC0E7EC3E97EFDCAEFCDBAAFA6378D84

RSA-2048 HID Config Service Signature Verification Public Key[edit | edit source]

Key = EF276915B7822ADF5D8EA7DF9094AD0EF2C72BB9C08FFAC58FEA3A07505A4B2D610EEE589DBAC967D08B96FBC05AC8111F38886DA99409940B786491FECF0EA6
4C7F0F1E419B5BA4D6701F2E0069A0E0FFCB4884339827D44A78CDC59E287A40ABB2A3D26BAF99693F8E2376A309CFC52D2F1167F8CD1204C66C94DC54C09332
82B12D0362A993BFE995D477611BB7B26FB34AC4ED47C3EFC62D8A93B3561255307DFAA1DCA95EBA612468F3471CEF854868DC035C74442F21F7374AA62CEEAE
5B9DD5C1049ADC70B7F3678B37340CD5F8BCC57B1C343D171C510740AD792C5C5C72167EE295F73ED237F9C9D2D06ED66F502F6434FEAD5B64B10623C3E7E27B

RSA-2048 HID P[edit | edit source]

EECAE0D972C35872BAC2A7E427C69FE0
D3FA59ADE49F2F9986F3905B601717BB
01DDB35955213C7F0A3C5B22B01F6512
73EF14E95AD68129D69A7BC7BA45D0E5
85A8E385EDEF421CCE70A0191F7BE000
EDF1EE4C05047445AC7BBE990822AE7B
D0414BFEE999299B6620364BEAC36B14
C07FA5BF4210E30E951CA0D5640C487F

RSA-2048 HID Q[edit | edit source]

D9EBE9E88218DEA733ED14D2C41D8EA3
B9993F0C47F585093DAB47261B9F8574
297FDC1028AABF6E88E9DE203714924B
55069C4C9275A8E6C8221B930BA63AD6
2413BAB057CF39B6FF53B3C944526C6E
F4A03EFE7888C316722EF142CD4A2380
EC5E284C75F31CA324DDBFECDB59D04F
3F4BE1017FF7AD7B1253A5D7A8D6FDFF

Dualshock 4 Keys[edit | edit source]

Jedi "MASTER" Key[edit | edit source]

9B03D4FB5FEC1A2373462C45E4BC72A6
  • decrypts dualshock4 firmwares. algo is aes-128-cbc. zeroed iv

Common[edit | edit source]

Bootloader Key[edit | edit source]

39FF1A672B4F99A6A1CA65C299D6270C
7D4E1AF91036AD6C8D20EAD1FF33D903
94FD4415B54072D9C83B94994304FD49

App 0 Key[edit | edit source]

3E5C05C6AFAFAB02203B3D181733DDCB
A965400FD53A6F501731F38655B20808
CFB8E6181CC91D64C4993B040BECC7B5
ED18A5683A95A338F3CA325528A96FCB

App 1 Key[edit | edit source]

7F81488F32024C6BF5D999928798AEC0
785FC3E61BAF32DFA5833F434964CD53
37525239B10BF838EF29B37EBD73D951
1EC4DFFB9725A1E9D2678990A03C2832

Certificate Authority Modulus[edit | edit source]

8ED7F9E4AA5CC5D23196F0DE797DFEAC
F63EDE7BC96716F13CF52ADEF8DACFA8
E233DC655717347D4C8C826EAB903616
FF9FB8F9733617FBD44EC81078AD6E24
B062619F5A17EE2F5572B427C034A949
363E86D3B213351F8904A499F862401F
4E60AC2131CD4BB9FDDFD590C8E22B7D
F96D015A41C549F3EA0DEDFC32CEC32D
72C534934AEF3DD12B58DB357DD04D9A
9311A3833FF8557A0B85B454CD21DAB9
0D714AEA2DEC42E6F4EF20453CF6DBF3
954E73A87691CFA03F4759455C8B96F1
D0B69DD3DD6262E9438DCC2696CFE64B
930C6E7D4E0151F6D1B15D1A4BE2E60F
0B36118C60F253FDBCE227A8A4C9CDF2
260858584AB8D71C629CD421EC666059

Exponent = 0x10001