deniz.in

Markets

Weather

Loading weather

· via Hacker News – Front Page (native)

PS5 jailbreak released covering firmware 7.00 through 13.60

A new exploit chain published on GitHub jailbreaks PlayStation 5 consoles running firmware 7.00 through 13.60, pairing a WebKit browser flaw with a kernel use-after-free to gain kernel-level access.

PS5 jailbreak released covering firmware 7.00 through 13.60

A new jailbreak for the PlayStation 5 covers system software versions 7.00 through 13.60, an unusually wide span that extends to recent console firmware. The exploit chain, published on GitHub under the name Relapse-Exploit by a researcher using the handle ntfargo, drew broader attention on September 29, 2026 after reaching Hacker News's front page.

How the exploit is delivered

According to the project's documentation, little more than the PS5's built-in browser is needed. A user points the console's primary DNS at an address run for the project, or serves the files locally with a bundled Python script, then opens the hosted page on the console. After a successful run, an ELF loader begins listening on port 9021 to receive payload files placed in the project's payloads directory.

Inside the exploit chain

The attack works in two stages. The first targets WebKit, the engine behind the PS5 browser, combining information leaks in JavaScriptCore with a mismatch in the object pool used by the structured clone implementation to corrupt a typed array. That corruption is what turns a browser bug into code execution within the browser process.

The second stage carries the attack into the kernel. It pairs an address leak with a race condition in aio_multi_wait, an asynchronous I/O kernel interface, producing a use-after-free that the exploit converts into kernel-level read and write access. With kernel memory under its control, the chain can load and run custom ELF binaries on the console.

The repository credits a long list of console-security researchers, among them TheFlow, Sleirsgoevy, Flatz and ufm42, suggesting the release consolidates contributions from across the PS5 hacking scene rather than a single overnight discovery.

Stability and warnings

The documentation is candid about rough edges. The WebKit stage may take several attempts, and users are told to reload the page if the browser stalls. The kernel stage is more fragile still: it can hang or panic the console outright, and the recommended recovery is a reboot followed by another try.

The project also carries an explicit disclaimer. The code is described as intended for education and security research, the authors state that they do not endorse piracy or unauthorized access to commercial devices, and users are warned of system instability, data loss and possible account bans. Use is limited to devices the operator owns or is authorized to test, and the software ships with no warranty.

Why it matters

Console exploits are typically tied to particular firmware versions, so a chain that reaches version 13.60 affects machines kept up to date rather than only consoles deliberately stranded on old system software. That materially widens the population of PS5 units open to homebrew development and security research, which is why the release registered with the modding community.

The publication also exposes the underlying weaknesses. With the WebKit object-pool bug and the aio_multi_wait race now documented in public, Sony has a concrete roadmap for patching both in future firmware updates, and other platform vendors running similar WebKit code may want to check whether they share the browser-side flaw. For would-be users, the project's own warnings deserve weight: kernel panics, data loss and network bans are listed as realistic outcomes, and the maintainers accept no liability for resulting damage.

  • #playstation-5
  • #jailbreak
  • #security
  • #homebrew
  • #exploit

Related posts