The PlayStation 5 homebrew scene takes another step forward with the release of Y2JB Stabilized (Version 1.0 ), a tool that exploits a vulnerability in the console’s YouTube app to achieve userland code execution.

What is Y2JB?

Y2JB is an exploit that allows arbitrary code execution in userspace (userland) using the YouTube application on PS5 up to firmware 12.02. This represents a crucial gateway for developers and researchers looking to explore the console’s capabilities beyond Sony’s limitations.

The “Stabilized” 1.0 release aims to make this process more reliable and accessible.

System Requirements

Using Y2JB requires different configurations depending on whether your PS5 is already modified (jailbroken) or not:

  • For PS5 with Jailbreak:
    • A PS5 with Webkit, Lua, or BD-JB exploits already enabled.
    • YouTube app version 1.03 in PKG format installed on the console.
    • FTP access to the PS5.
  • For PS5 Without Jailbreak:
    • A pre-compiled backup file (provided in the package).

Setup Instructions

1. For PS5 with Jailbreak:

  1. Make sure you have version 1.03 PKG of the YouTube app installed on your PS5.
  2. Access your console via FTP.
  3. Navigate to (or create, if not present) the folder:/user/download/PPSA01650
  4. Download the file download0.dat from the Y2JB release page and transfer it via FTP into the folder you just created.

2. For PS5 Without Jailbreak:

  1. Download the pre-built backup file from the release page.
  2. Follow Sony’s official guide to restore backup data from a USB device.

Credits and Acknowledgements

The development of Y2JB would not have been possible without the work of the community. Special thanks to:

  • shahrilnet and null_ptr: for the reference code taken from their “Remote Lua Loader ” project.
  • ntfargo: for providing information on V8 CVEs and related CTF writeups.

Source: Github.com

Categorized in: