Keys: Difference between revisions

From PS4 Developer wiki
Jump to navigation Jump to search
Line 724: Line 724:


<pre>
<pre>
0A547025878C198979548FF00BA9E445
0A547025878C198979548FF00BA9E445 <- K
C0D00D285FC00870B543C1F31FAE44A8
C0D00D285FC00870B543C1F31FAE44A8 <- iv
CD4F7C917ED4C9FE3B337EA2C60EC273
CD4F7C917ED4C9FE3B337EA2C60EC273
115BF5EE2659FF078C373EEDDFD4F3C7
115BF5EE2659FF078C373EEDDFD4F3C7
Line 736: Line 736:
== BDPLUS ==
== BDPLUS ==
<pre>
<pre>
CAC19E73A99A37649720DBA9E5B9C8E9
CAC19E73A99A37649720DBA9E5B9C8E9 <- K
971D666C66C5BBA31B6280AC5D00A849
971D666C66C5BBA31B6280AC5D00A849 <- iv
B49740B965AACFA87DCE1218EBB1B27C <-
B49740B965AACFA87DCE1218EBB1B27C <-
0CA31B024A73E030D2BB9FB3613DF147 <-
0CA31B024A73E030D2BB9FB3613DF147 <-
Line 749: Line 749:


<pre>
<pre>
0957909454D722D5FD71D02A5CCAC711
0957909454D722D5FD71D02A5CCAC711 <- K
C9E37A810F42EFAA2A5BE0C8E75E3D2A
C9E37A810F42EFAA2A5BE0C8E75E3D2A <- iv
75B68FB0DBEF478F3975443180095AD2 <-
75B68FB0DBEF478F3975443180095AD2 <-
EA018F41C99D65CA57190A1B4F973BED <-
EA018F41C99D65CA57190A1B4F973BED <-

Revision as of 21:15, 19 March 2023

Static KeySlots

Slot Size Key Static? Notes
0x43 0x10
6B 98 18 FF 35 16 7D 30 90 09 0A A4 22 D6 80 57
Yes Unknown Usage, same from 2 5.05 identical dumps
0x44 0x10
50 5E 2D 39 EB 32 E5 FC E9 DE E1 F8 0D 9E ED 26
Yes Unknown Usage, same from 2 5.05 identical dumps
0x50 0x10
50 7E 2C 58 77 B3 A0 F3 DE 7B 96 A4 F3 8E FE FF
Yes Unknown Usage, same from 2 5.05 identical dumps
0x52 0x10
F4 E6 20 AE EE 53 37 73 85 03 D3 64 01 7D AA 29
Yes Unknown Usage, same from 2 5.05 identical dumps
0x67 0x10
B2 EB AB D9 2C 2D 12 BE 12 C1 1E BD C7 2D 90 36
Yes Unknown Usage, same from 2 5.05 identical dumps
0x71 0x10
87 DB 4C 5C 56 29 1F 3D 4D 60 2E C4 09 50 3A FE
Yes Unknown Usage, same from 2 5.05 identical dumps
0x15A 0x10
1A F9 22 3E 6C C0 A3 C8 7E CC C6 52 74 19 13 72
Yes Unknown Usage, same from 2 5.05 identical dumps
0x15B 0x10
2D D7 7F D0 38 BF 67 4C FC 60 73 A9 E7 B6 17 76
Yes Unknown Usage, same from 2 5.05 identical dumps

Portability / EncDecKeys

In Kernel

0x00 pfsSKKey__SecKey
0x0C CFK1
0x14 SCEROOTPARAM_KEY
0x1C SCECloudSD___KEY
0x20 sbl_srv_ioctl
0x24 SCE_LwUtoken_Key
0x28 SCE_SBL_BAR_KEY1
0x44 livedump
0x48 SceHidAuth
0x4C SCE_KDF_NCDT_PSK
0x50 SIEIPMIS
0x54 pfs_sbl
0x58 sceSblPfsSaveDataUpdateAuthCode

In Shellcore

0x08 Index.dat
0x0D Hostnames
0x10 SystemLogger
0x3C GetOpenPsIdHash
0x40 envelope keys

In NPXS20001

0x08
0x40

In NPXS20120

0x40

In NPXS21000

0x40

In coredump.elf

0x08

In libtsmp.sprx

0x08

in libSceSystemService.sprx

0x40

in swagner.self

0x18

in swreset.self

0x18

in ScePlayReady2.self

0x5C

AES PORTABLE 0x0

  • pfsSKKey__SecKey
  • iv is F60016BACD42AD21C70D9B075CB51983

E

9EA5CD89DA8DAB6E66CE6D345752639D
9A4EE51EEAF084D970FEFC2850F7604E

I

6CEDCF30A30306F3AAE52B51B93726FD
E18CE3B2B1ED8BB74BDE51D712349314

HMAC PORTABLE 0x0

E

D8808616FA98B0BF50A499D5FA5DCCA7

I

096459F1A0C8C5DDDD404E40A4CEBF6C

AES PORTABLE 0x4

231D69F73D12C55164D5A40A10DB5170
4DF980998A155CE381966E6521C572C6

HMAC PORTABLE 0x4

B3547B179154B3C9AC96304B4F9AEA73

AES PORTABLE 0x5

21E474E20845F868B1EADBC90C7BE001
CF7FBB1A479716EA02F8A30B23C577BB
  • AACS

HMAC PORTABLE 0x5

94CA4FDC575C812E9E0432459E30DB75

AES PORTABLE 0x6

A48932A314C75ED5321764638B7A2FE8
9EF8ADB044C01302936910C25FD7410E
  • Css

HMAC PORTABLE 0x6

6E30BD54F52053CA6B68F9F23B7FD216

AES PORTABLE 0x7

7B626924420F5F8D7BC5CBF7BC803C27
DAFA0EA507083AF6D91033548BCFB216
  • BdPlus

HMAC PORTABLE 0x7

8FAA08823BF7354F0999D0D8A7F0A893

AES PORTABLE 0x8

E

CC3C6CD60871591A5A6C6347B2100CA2
FC286633A4D9482B9313FEE574E04338

I

331BDC5EF45CA0CADEB210DDC309C1D2
4E0059E82E1626F24A1855696BE324B2
  • Index.dat
  • iv is 310CC1BD68FA39AF74FB07A6C67B6CBF

HMAC PORTABLE 0x8

E

7FA3B3BA6D9456EE223EB74A2D30AA54

I

D820E2E7455FB1F43EE0593EDA734E9B

AES PORTABLE 0xC

E

36902DC7BD1EC112BE122D2CD9ABEBB2
29AA7D0164D30385733753EEAE20E6F4

I

16BC4CCEABEA9F03D2EB670BD29630A1
882D16F707FD33FA2ABFEC130F60EEFF
  • CFK1(Crepo)

HMAC PORTABLE 0xC

E

FFFE8EF3A4967BDEF3A0B377582C7E50

I

C3F74D676DCF7A68AA482ED8914405B7

AES PORTABLE 0xD

E

BDA98742518157C4634A21FBB47C8311
D21CE6016404D8CB2EF0C24462C42C38

I

8FC2405D96B41290DF62525E536E37B6
42D798F0538B7FB42829C05ECBB00B08
  • hostnames(ShellCore)

HMAC PORTABLE 0xD

E

AED0BCC3264D91A698E4D7D8CA428E52

I

A43C5B248AEF15C4CEFAEA170F6F31F7

AES PORTABLE 0x10

E

32AF1AE6A8B408ACA7072C9364BF8A36
BA19E55263F00585EA2653311747A1E4

I

05E051FEDB737FEEA2FFA6D78AAC1613
2ABAE36253F2A291C2EF0A1ACADAE1D1
  • logger
  • iv is a1d989b020185024f4c448283537540b

HMAC PORTABLE 0x10

E

E2AB163DFA812B4AA73FFB0AB4CB27E2

I

F7B1C4722FC52AEED7AE88C7DAB14C97

AES PORTABLE 14

E

3A9980C60B2752B1E5C9437C8BE0730E
057683371B0207B1B63D32412D41AAC3

I

190C5FD353B619FFE1CEE8DEB9F828DA
60F0ADA572E1C5CB30BC259BD0818C66
  • SCEROOTPARAM_KEY
  • iv is 9569829CD4B15FF84330545A34EC1BC5

HMAC PORTABLE 14

E

38618E377454ADC8EA799376DEB01D34

I

0CB1FD77B96A6815E65A1B26BF29822F

AES PORTABLE 18

E

7D031910F9918242BD0069AACD047249
A95E1F0651AE9D14E4F7B09D0D816E56

I

9FCEEE75F2FD4C0A57AA32FDBD4093D3
7876E4D29D621BB54E62A2756E3E9C83
  • swagner,swreset

HMAC PORTABLE 18

E

E42C03F0ABAF7DED9EF3B31461526DF1

I

0F4A79378A97768F719E29A5AE787513

AES PORTABLE 1C

E

77684D4ACD210B03382327D4D15A88A4
19BD06EEC04474EDEEB1A007C6112CEA

I

EA9F99E9ED0D33D58C81E14D30F804C4
75B1B85AF1C33E3408F4107FA78AEE05
  • SCECloudSD___KEY
  • iv is DF140F0A54E95A581B8049DAA2A9AF2B

HMAC PORTABLE 1C

E

240299607EDB6505B68A7C8852E9305E

I

1539E66891EFC669FF9BDA34123BBE06

AES PORTABLE 20

E

071B19D53D462093E0AF664ACFA9F937
2FCD0154FF04A9AE39E88EFF27823F0C

I

D6E3473A984BB836E1637F813CA5953E
186EF9F184BB76DBBC64B639F50CFF02

HMAC PORTABLE 20

E

8F1DFF012B1814D73F70A1BCF04EAE7F

I

DB801FB08E1C0DCE0B9ECC4E518AE24E

AES PORTABLE 24

E

3BDDF81A1FE5CFEE3DAD1835B21CFFED
C10609C5D4D1DB17333ABECAEB2EF955

I

6E523DCAFDAFC20BDF288C8DF3F7BA97
146BFF1C88427E52461DA28F8D305B36
  • SCE_LwUtoken_Key
  • iv is ED7BD631517CF4753C9DDA7A3AB859DB

HMAC PORTABLE 24

E

7D10C415D0C0C5DD85C6795E7BA08A7B

I

4AC61958B2BCFA6793B49DF84672A44D

AES PORTABLE 28

E

27E0770E09A7FC1D83812F82D5775AE1
7CB5D77FE73EC981579EB0D2D4FE19FE

I

587853D8EF32804120B6CA6AC15F9E7C
31844FBB1FD5677B18CA34F3C86C371E
  • BAR_KEY(BackupAndRestore)

HMAC PORTABLE 28

E

DDBE5F9AABC6E810C1527C560EAF8DC5

I

13D173D007FC85D02FC146A78B2C3032

AES PORTABLE 3C

E

B7F71CB821D163D3E48D20E13CB37C64
FE8834B96073CCFD0A60BCC04411C00C

I

37CE6FF2CBA0C69460329C223EA763E6
EAE1D5DBFC5803C94CDA8D708161F6A0
  • SCE_SYS_TLM_SECK
  • iv is CE5326C917B698478C46E0387689CB4A

HMAC PORTABLE 3C

E

839E28FC0455F027BDE024DFA6ADCB8A

I

0D7F88C9A9128A1FD6EF367E78062572

AES PORTABLE 40

E

FE3A5009C42E604D3D1F29565C4CDB87
0FDCD521338C8486D2AD85BB5220AC49

I

353233D34AE6544ADB79FFE2978E88B9
F5E5951E752DC76941E173B0F239DE49
  • envelopes(i'm looking at you, idc ;) )

HMAC PORTABLE 40

E

898BC1304C51736BA56C33CAE992225F

I

1D9E1E5B2A87B887FF1E017B02D0E04C

AES PORTABLE 44

E

FABE3A6D6B96A150CD5BD5652208F695
18F75EBD22704F5298F3B59248951389

I

882D16F707FD33FA2ABFEC130F60EEFF
D1F8B09AA448624FD62A94C84A9433D6
  • livedump_secure

HMAC PORTABLE 44

E

C7959E7798833634764BE40421E4CA87

I

A154061C592CE76844847C137F5BE71B

AES PORTABLE 48

E

0606708496452DD32191FD838B3B6840
84CFA1C4FB4427BB21CA18E8CA80406D

I

AC4E5205E1EFF2CD76DBC73EB13C383A
8C8F99A88FB3A50D554C0934DA1E7946
  • SceHidAuth
  • iv is 322FDB812C9AA16311E13372657282A1

HMAC PORTABLE 48

E

6421DC67BF1520757FB15A68015B0693

I

54D04BABDE26E6D8481A5D860C2D3200

AES PORTABLE 4C

BA08EE7EFA8BFEBD4C6360A8F61C1D37
E735A3A1185C2B91B438D5DD132A5ED0
  • SCE_KDF_NCDT_PSK
  • iv is 90F86BD0BD6587517E71FEB62A8AE2BF

HMAC PORTABLE 4C

CD5486B6219C0B1798799576194774AA

AES PORTABLE 50

C2E211E71F4CCD76B65EBB45E64D995A
7424AE72CCC4DF2D6F34CA2F92797B49
  • SIEIPMISceIpmiMgrEQSx
  • iv is 6E73A4D0DF65788581DADA975F5F37A6

HMAC PORTABLE 50

06173BD09FAB15567064939F1C622A5B

AES PORTABLE 54

FF42F98D1E43E9975E8FE8B793B246A1
3EED3098D206BCB4550F29FA8761DEE4
  • rootparam?
  • iv is 6DE690827F71C3F2E47A329DCA0F63C9

HMAC PORTABLE 54

33478B82F3A1CECBD5C18BC246BE23FE

AES PORTABLE 58

AA78DA20F93912F33E831C9A959A99EB
AECBBEAD59F24227CF5CF0CF1BFF95F1
  • sceSblPfsSaveDataUpdateAuthCode
  • iv is 3E0386ACCF22356622A15BFAC1F42C3A

HMAC PORTABLE 58

039E510C50F577C022EA7D68C9435E26

AES PORTABLE 5C

FAD928594374473EEE62B2FB490FF640
15BA7A54771D987243221E45AD0B4D39

HMAC PORTABLE 5C

019DF2D781AA830E7AD74BB64739F697

Bluray DRM

AACS

0A547025878C198979548FF00BA9E445 <- K
C0D00D285FC00870B543C1F31FAE44A8 <- iv
CD4F7C917ED4C9FE3B337EA2C60EC273
115BF5EE2659FF078C373EEDDFD4F3C7
05628DC933468421B2C88448080092B5
FD2ECD5E11264EDEDBA51D7E7B364B1C
B24216CF7D781DFB82DC866B976F4EC4 <-
B73C1037C7FED6C1315AD7C16AC8EA79 <-

BDPLUS

CAC19E73A99A37649720DBA9E5B9C8E9 <- K
971D666C66C5BBA31B6280AC5D00A849 <- iv
B49740B965AACFA87DCE1218EBB1B27C <-
0CA31B024A73E030D2BB9FB3613DF147 <-
AE27A7DE70E1C1329DBC1CD0533F836D
081812B592AFCD8180C054F5F9F04616
185317D8D26C5DA45F80C358DA071BAA
F55720FC0620F54F235A5DA1C3459FB0

CSS

0957909454D722D5FD71D02A5CCAC711 <- K
C9E37A810F42EFAA2A5BE0C8E75E3D2A <- iv
75B68FB0DBEF478F3975443180095AD2 <-
EA018F41C99D65CA57190A1B4F973BED <-
2DB61C46D497A1EC092816DC1243FF5E
C86676C3A45AB182B21BF75277916BE0
548631EF9270FC6F8BCBBCAF8BA3753D
F3F472638D324ECBBA7A4D844C2CA612

Companion App Protocol RSA Public Key

-----BEGIN PUBLIC KEY-----
MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxfAO/MDk5ovZpp7xlG9J
JKc4Sg4ztAz+BbOt6Gbhub02tF9bryklpTIyzM0v817pwQ3TCoigpxEcWdTykhDL
cGhAbcp6E7Xh8aHEsqgtQ/c+wY1zIl3fU//uddlB1XuipXthDv6emXsyyU/tJWqc
zy9HCJncLJeYo7MJvf2TE9nnlVm1x4flmD0k1zrvb3MONqoZbKb/TQVuVhBv7SM+
U5PSi3diXIx1Nnj4vQ8clRNUJ5X1tT9XfVmKQS1J513XNZ0uYHYRDzQYujpLWucu
ob7v50wCpUm3iKP1fYCixMP6xFm0jPYz1YQaMV35VkYwc40qgk3av0PDS+1G0dCm
swIDAQAB
-----END PUBLIC KEY-----

SMU Keys

AMD System Management Unit (SMU) is a thermal and electric management unit found in modern AMD x86 processors. See this video.

SMU HMAC Key

4D7E73210B677A832B9F293B496E7C3E

EMC Keys

EMC IPL Cipher Key for Aeolia

5F74FE7790127FECF82CC6E6D91FA2D1
  • iv is all zeroes
  • algorithm is AES128CBC
  • Aeolia exists since at least PS4 prototype firmware 0.910.040
  • EMC IPL is codenamed C0000001
  • index is 0xD (13_ if you use Zer0xFF's tools)

EMC IPL Cipher Key for Belize

1A4B4DC4179114F0A6B0266ACFC81193
  • iv is all zeroes
  • algorithm is AES128CBC
  • Belize was introduced in firmware 2.00
  • EMC IPL is codenamed C0000001
  • index is 0x20 (32_ if you use Zer0xFF's tools)

EMC IPL Hasher Key for Aeolia

73FE06F3906B05ECB506DFB8691F9F54
  • Algorithm is HMAC-SHA1
  • It hashes the header (0x6C) of EMC IPL

EAP Keys

EAP KBL Cipher Key for Aeolia

581A75D7E9C01F3C1BD7473DBD443B98
  • iv is all zeroes
  • algorithm is AES128CBC
  • Aeolia exists since at least PS4 prototype firmware 0.910.040
  • EAP KBL is codenamed C0010001
  • index is 0xE (14_ if you use Zer0xFF's tools)

EAP KBL Hasher Key for Aeolia

824D9BB4DBA3209294C93976221249E4
  • Algorithm is HMAC-SHA1
  • It hashes the header (size 0x6C) of EAP KBL

EMC/EAP/KERNEL shared keys

portability_seed_key

E973A44C578757A73492625D2CE2D76B

portability_seed

DF0C2552DFC7F4F089B9D52DAA0E572A

eap_hdd_key_blob_key1_seed

7A49D928D2243C9C4D6E1EA8F5B4E229
317E0DCAD2ABE5C56D2540572FB4B6E3

eap_hdd_key_blob_key2_seed

921CE9C8184C5DD476F4B5D3981F7E2F
468193ED071E19FFFD66B693534689D6

use_new_blob = Y

  • enc
CFFDCB6ECAE612B7A30A9EDBD8F77E26
1D629DE5E6CA3F22F439211AC033884F
4B5D7D16D0A6F65D3173A2586CF819C7
C6F437444C1D9499F6EBC4145E0BBAAB
C1DE7C63ED1F5A1E1946358C7F181B1F
AB6DAB31195D8E611A1CB81B9ACF8B38
FF21029FAB568C7A1BCC3E2FBEB25B13
F1AFD6A3599EEF09EAEBE32684FDDA29
  • sig
4798B78DD422601F26A32A1FEC5CAB8B
256E50958E0B11A31D77DEE201D4D00E
  • iv
462500ECC487F0A8C2F39511E020CC59

use_new_blob = N

  • enc
E073B691E177D39642DF2E1D583D0E9A
5A49EDF72BE9412E2B433E51490CE973
234B84F49E949F03727331D5456F4598
F2EDE6D0C11483B84CE3283243D0DE9D
C379E915301A805DFAEB292B30374C9B
F1C59041509BF11D215C35D5C08E3330
807C8229C930FAB88672C4CF7DACA881
C323D72346CA07921DB806FC242A2ED1
  • sig
ED4F32C095847C6D3143EFFD61E7582F
75F24465855C4E94DAF34885D8D03463
  • iv
3286EA97F3E92C434E1DC170C9289003

EAP_HDD_KEY_BLOB

5343455F4541505F4844445F5F4B4559
BB6CD66DDC671FAC3664F7BF5049BAA8
C4687904BC31CF4F2F4E9F89FA458793
811745E7C7E80D460FAF2326550BD7E4
D2A0A0D9729DE5D2117D70676F1D5574
8DC17CDF29C86A855F2AE9A1AD3E915F
00000000000000000000000000000000
00000000000000000000000000000000

Syscon Keys

Common

Security ID

3A4E6F743A557365643A (:Not:Used:)
Checksum for RL78: 3A+4E+6F+74+3A+55+73+65+64+3A = 0x370 && 0xFF = 0x70 - 1 = 0x6F 
Same Checksum for 78K0R

Used to access more privileged commands, such as the write command

DevKit

Full Firmware

AES-CBC-128

Key = 5301C28824B57137A819C042FC119E3F

IV =  00000000000000000000000000000000

Used for:

  • 40000001 (BLNK)
  • 40000002 (BASE)
  • 40000003 (SYST)


AES-CMAC-128

Key = 8F215691AC7EF6510239DD32CC6A2394

Used to generate the AES-CMAC-128 at the start of decrypted 40000001, 40000002 and 40000003, by digesting the remainder of the decrypted data

Retail/TestKit

Patch Firmware Keys

AES-CBC-128

Key = EF90B21B31452379068E3041AAD8281E

IV =  00000000000000000000000000000000

Used for:

  • 40010001 (Patch #1)
  • 40010002 (Patch #2)


AES-CMAC-128

Key = 95B1AAF20C16D46FC816DF32551DE032

Used to generate the AES-CMAC-128 at the start of decrypted 40010001 and 40010002, by digesting the remainder of the decrypted data

Kernel Keys

Kernel Magic

2FB09FD1DE76967DEB947B51EC82781E

Backup And Restore Keys (BAR)

Cipher

79C8CCC889A1540D4F2E27BB614FD653

Hasher

1F18C970D000AC7E6FCC1A8CDD89B4FECDA133A10EC8F525982223F5861F0200

default_suffix

Key = 518D64A635DED8C1E6B039B1C3E55230

Used as suffix to symbol names when hashing with SHA1 to create a NID.

Crash Dump KeySeed

kd, kc
KEYS = [
    ['',''],
    [b'8F86DDEDCBF24A44EB6C30607AA26F76', b'4125715AAB8B78E569F512E65CA62DD3'], # 1.01-3.15
    [b'63AEF79DC49969FD8997B2F60DB65F81', b'1800A5DE2D0F0652FA5602FFADD440AA'], # 3.50-3.70
    [b'05205507B7A154E08A7A38B1897563FB', b'AD334D142EAF8B9438DB00D1D0BFF357'], # 4.00-4.05
    [b'04C1A0961BBB0CB2140361B0956AAABA', b'052D2FF3014FB38CAAF6898CB899982A'], # 4.06-4.07 (to test)
]

Sealed Key Values or (PFS_EncKey and sealedkey_retail_key) Values

Keyset 1

AES-CBC-128

Key = B5DAEFFF39E6D90ECA7DC5B029A8153E


SHA-256-HMAC

Hash = 8707960A53468D6C843B3DC9624E22AF

Keyset 2

AES-CBC-128

Key = EC0D347E2A7657471F1FC33E9E916FD4


SHA-256-HMAC

Hash = A6D6583D3217E87D9BE9BCFC4436BE4F

Keyset 3

AES-CBC-128

Key = 51D8BFB4E387FB4120F081FE33E4BE9A


SHA-256-HMAC

Hash = FFF9BDEA803B14824C61850EBB084EE9

Keyset 4

AES-CBC-128

Key = 346B5D231332AC428A44A708B1138F6D


SHA-256-HMAC

Hash = 5DC6B8D1A3A0741852A7D44268714824

Dumped with getSealedKeySecret on 5.05

Keyset 5

AES-CBC-128

20 D0 43 85 25 30 C4 04 D1 68 69 E0 79 08 D5 E6

SHA-256-HMAC

2D E8 DE 4D E6 62 8B B6 2D D5 C1 70 F5 65 B6 2C


Keyset 6

AES-CBC-128

93 B7 27 0D F0 D3 73 10 60 07 90 66 65 5D 8D 07

SHA-256-HMAC

FD 44 A3 2D 8B C8 AC 18 9C 1B D0 96 40 29 66 CF

Keyset 7

AES-CBC-128

4C 78 44 83 69 37 50 8B 92 33 DF 7C D7 D6 51 65

SHA-256-HMAC

BC 4C 9F 0F E5 D3 56 A0 57 52 02 4C BD EE C8 E4

Keyset 8

AES-CBC-128

3A 32 EE CF 74 99 39 87 1C 3D 7B F8 C0 1C 7D 1F

SHA-256-HMAC

F6 F9 D8 21 82 CC C2 22 7B 7D 33 A3 B7 1E AD E3

Keyset 9

AES-CBC-128

EB 35 64 04 7D 60 24 7F 55 73 CD E5 7E 0C DE 1C

SHA-256-HMAC

29 8B 4F 59 1E F0 4E 52 17 3E EC 59 C5 A4 78 33

Keyset 0xA

AES-CBC-128

8A D4 92 CC 5B 27 B5 C3 60 11 A5 85 8B 90 93 80

SHA-256-HMAC

00 6A 34 41 82 B6 1B E5 6A 6C D6 B9 46 6F 03 45

AuthCode

KeySet 1

2B CF 69 8E 79 CF DD FA C2 4D 4C 25 BF 35 1E 62

Vtrm Cipher Init Keys

hmac_key_seed

Key = 87FB19BBF3D4D6B1B0ED226E39CC621A
      37FA4ED2B6618B59B34F770FBB92947B

IV = 00112233445566778899AABBCCDDEEFF

aes_key_seed

B0ED226E39CC621A37FA4ED2B6618B59

Keystone Keys

keystone_passcode_secret or passcode_hmac_secret

C74405F67424BA342BC1276251BBC2F5
55F16025B6A1B6714780DBAEC852FA2F

keystone_ks_secret or keystone_hmac_secret

783D6F3AE91C0E0712FCAAB7950BDE06
855CF7A22DCDBDE127E9BFCBAD0FF0FE

ShellCore Keys

DevKit/TestKit

Trophy Key

Key = 02CCD346B459CB83505E8E760A44D457

Retail

Trophy Key

Key = 21F41A6BAD8A1D3ECA7AD586C101B7A9

RSA PKG Meta

Modulus 400

 
D212FC335F6DDB831609628B03562737
82D477853529392D526B8C4C8CFB06C1
845BE7D4F7BCD24E6245CD2ABBD77776
453655273FB3F5F98EDA4BEFAA59AEB3
9BEA5498D206326A58312AE0D44F90B5
0A7DECF43A9C52672D99318E0C43E682
FE0746E12E50D41F2D2F7ED908BA06B3
BF2E203F4E3FFE44FFAA504357916994
49158282E40F4C8D9D2CC95B1D64BF88
8BD4C594E76547841EE57910FB989347
B97D8512A640982CF792BC951932EDE8
90560D65C1AA78C62E54FD5F54A1F67E
E5E05F61C120B4B9B4330870E4DF8956
ED012946775F8CB8A9F51E2EB3B9BFE0
09B78D28D4A6C3B81E1F07EBB4120B95
B88530FDDC3913D07CDC8FEDF9C9A3C1

Private Key 500

32D903908FBDB08F572B285E0B8DB3EA
5CD17EA890888CDD6A80BBB1DFC1F70D
AA32F0B77CCB88800E8B64B0BE4CD60E
9B8C1E2A64E1F35CD77601415E935C94
FEDD4662C31B5AE2A0BC2DEBC3980AA7
B7856970682B644AB31FCC7DDC7C26F4
77F65CF2AE5A442DD3AB16620419BAFB
90FFE23050896ECB56B2EBC09116925E
308EAEC7945DFD35E120F8AD3EBC08BF
C036749FD5BB5208FD0666F37AB304F4
75295DE95FAA1030B20F5A1AC12AB3FE
CB21AD80EC8F20091CDBC55894C29CC6
CE82653E5790BCA98B06B4F072F677DF
9864F1ECFE372DBCAE8C08811FC3C989
1AC742824B2EDC8E8D73CEB1CC01D908
70873C4408EC498F815AE240FF77FC0D

P 600

F967AD9912310C56A22E161C46B34D5B
43BE42A2F686968042C3C73FC342F587
49339F075D6E2C04FDE3E1B2AE0A0CF0
C7A61CA16350C8099C5124526C5E5EBD
1E2706BBBC9E94E135D46DB3CB3C68DD
68B3FE6CCB8D8220762363B7E9681001
4EDCBA275D01C12D805E2BAF826BD884
B6105286A7898EAE9AE289C6F7D587FB

Q 680

D7A10F9A8BF2C91195329A8CF0D94047
F568A00DBDC1FC432F65F9C3610F2577
54ADD758AC8440608D3FF3658975B5C6
2C511A2F1F22E4431154BEC9B4C7B51B
050BBC569ACD4AD973685E5CFB92B78B
0DFFF507CAB4C89B963C079E3E6B2A11
F28AB18AD72E1BA5532406ED50B89067
B1E241C69201EE10F061BBFBB27D4A73

DP 700

52CC2DA09C9E75E728EE3DDEE345D14F
941CCCC88729453B8D6EAB6E2AA7C715
43A3048F905FEBF3384A77FA36B71576
B6011A8E258782F155D8C6432AC0E598
C932D1946FD901BA0681E06D88F2242A
2501645CBFF2D999673EF672EEE4E233
5CF80040E32A9AF43D2286443CFB0AA5
7C3FCCF5F116C4AC88B4DE6294926A13

DQ 780

7C9DAD39E0D560149448197F8895D58B
80AD858A4B773785D077BBBF89714A72
CB726838EC02C67DC6440633511CC0FF
958F0D75DC25BB0B7391A96D42D803B7
68D41E7562A37035797800C8F5EF15B9
FC4E475AC870705B5298C0C2584A7096
CCB810E12F788B2BA17FF9ACDEF0BB2B
E266E3229231215792C4B8F23E762037

QP 800

459755D422085EF35CB4057AFDAA4242
AD9A8CA06CBB1D6854546E3E32E35373
76F13E01EAD3CFEBEB233EC0BECEEC2C
895FA8273A4CB7E674BC454C26C825FF
34632537E14810C193A6AFEBBAE3A2F1
3DEF63D8F4FDD3EEE25DE933CCADBA75
5C85AFCEA93DD1A217F3F698B3508E5E
F6EB028EA162A7D62CEC91FF1540D2E3

Index.dat Key (Portability)

Key = EED5A4FFE8A3C910DC1BFD6AAF1382250B380DBAE5045D230569473F46B07B1F

IV = 3ACB38C1EC12119D56929F49F70415FF

flag is 8

same as internal

HMAC-SHA256 Patch Pkg URL Key

Key = AD62E37F905E06BC19593142281C112CEC0E7EC3E97EFDCAEFCDBAAFA6378D84

RSA-2048 HID Config Service Signature Verification Public Key

Key = EF276915B7822ADF5D8EA7DF9094AD0EF2C72BB9C08FFAC58FEA3A07505A4B2D610EEE589DBAC967D08B96FBC05AC8111F38886DA99409940B786491FECF0EA6
4C7F0F1E419B5BA4D6701F2E0069A0E0FFCB4884339827D44A78CDC59E287A40ABB2A3D26BAF99693F8E2376A309CFC52D2F1167F8CD1204C66C94DC54C09332
82B12D0362A993BFE995D477611BB7B26FB34AC4ED47C3EFC62D8A93B3561255307DFAA1DCA95EBA612468F3471CEF854868DC035C74442F21F7374AA62CEEAE
5B9DD5C1049ADC70B7F3678B37340CD5F8BCC57B1C343D171C510740AD792C5C5C72167EE295F73ED237F9C9D2D06ED66F502F6434FEAD5B64B10623C3E7E27B

RSA-2048 HID P

EECAE0D972C35872BAC2A7E427C69FE0
D3FA59ADE49F2F9986F3905B601717BB
01DDB35955213C7F0A3C5B22B01F6512
73EF14E95AD68129D69A7BC7BA45D0E5
85A8E385EDEF421CCE70A0191F7BE000
EDF1EE4C05047445AC7BBE990822AE7B
D0414BFEE999299B6620364BEAC36B14
C07FA5BF4210E30E951CA0D5640C487F

RSA-2048 HID Q

D9EBE9E88218DEA733ED14D2C41D8EA3
B9993F0C47F585093DAB47261B9F8574
297FDC1028AABF6E88E9DE203714924B
55069C4C9275A8E6C8221B930BA63AD6
2413BAB057CF39B6FF53B3C944526C6E
F4A03EFE7888C316722EF142CD4A2380
EC5E284C75F31CA324DDBFECDB59D04F
3F4BE1017FF7AD7B1253A5D7A8D6FDFF

Dualshock 4 Keys

Jedi "MASTER" Key

9B03D4FB5FEC1A2373462C45E4BC72A6
  • decrypts dualshock4 firmwares. algo is aes-128-cbc. zeroed iv

Common

Bootloader Key

39FF1A672B4F99A6A1CA65C299D6270C
7D4E1AF91036AD6C8D20EAD1FF33D903
94FD4415B54072D9C83B94994304FD49

App 0 Key

3E5C05C6AFAFAB02203B3D181733DDCB
A965400FD53A6F501731F38655B20808
CFB8E6181CC91D64C4993B040BECC7B5
ED18A5683A95A338F3CA325528A96FCB

App 1 Key

7F81488F32024C6BF5D999928798AEC0
785FC3E61BAF32DFA5833F434964CD53
37525239B10BF838EF29B37EBD73D951
1EC4DFFB9725A1E9D2678990A03C2832

Certificate Authority Modulus

8ED7F9E4AA5CC5D23196F0DE797DFEAC
F63EDE7BC96716F13CF52ADEF8DACFA8
E233DC655717347D4C8C826EAB903616
FF9FB8F9733617FBD44EC81078AD6E24
B062619F5A17EE2F5572B427C034A949
363E86D3B213351F8904A499F862401F
4E60AC2131CD4BB9FDDFD590C8E22B7D
F96D015A41C549F3EA0DEDFC32CEC32D
72C534934AEF3DD12B58DB357DD04D9A
9311A3833FF8557A0B85B454CD21DAB9
0D714AEA2DEC42E6F4EF20453CF6DBF3
954E73A87691CFA03F4759455C8B96F1
D0B69DD3DD6262E9438DCC2696CFE64B
930C6E7D4E0151F6D1B15D1A4BE2E60F
0B36118C60F253FDBCE227A8A4C9CDF2
260858584AB8D71C629CD421EC666059

Exponent = 0x10001