PS5 Relapse Exploit

331 points · 207 comments on HN · read original →

Points and comments are a snapshot, not live.

GitHub repo publishes an exploit chain for PS5 firmware 7.00 through 13.60.

The Relapse Exploit targets PS5 firmwares 7.00 through 13.60. It uses a browser-stage webkit exploit involving JSC info leaks and a structured clone object pool mismatch to corrupt a typedarray, combined with a kernel exploit leveraging an address leak and an `aio_multi_wait` use-after-free race to establish kernel read/write. Usage involves setting primary DNS to 45.56.67.85 on the PS5 or running `serve.py` locally. The README notes stability issues: webkit may need several attempts, and the kernel exploit can hang or panic the console.

What commenters are saying

Commenters are hopeful this exploit leads to Linux on the PS5, though several note a full hypervisor exploit is still needed for firmware 13.6. One commenter recalls early Navy days hacking PS3s into clusters, while others discuss the PS3's Cell processor and RAM constraints. The conversation also shifts to Apple TV as a gaming console, with commenters noting its limitations and the broader console market trends. One user mentions modding a BC-250 (PS5 on a board) into a gaming PC for about a third of a PS5's price.