Sploitus New PS5 Exploit Disclosed for Firmware v14.00+
Article Content
- •A new exploit for PS5 firmware v14.00+ has been disclosed.
- •The exploit allows unauthorized kernel access through a two-stage browser attack.
- •Users are advised to use the exploit only on devices they own and comply with legal regulations.
On September 29, 2026, a new exploit targeting PS5 firmware versions v14.00 and above was disclosed. The exploit, known as 'Relapse', was developed by Nathan Fargo and others, allowing unauthorized kernel access through a browser-based attack. The method involves a two-stage process: a browser stage that exploits JavaScript engine vulnerabilities and a kernel stage that leverages a use-after-free condition. Users are advised to set their Primary DNS to `45.56.67.85` and run a local server to deploy the exploit. This project is intended for educational and security research purposes only, emphasizing compliance with laws and regulations. The exploit may cause system instability and requires users to reboot their consoles if it hangs. No specific vulnerabilities (CVEs) were mentioned, and the exploit is currently available as proof-of-concept code. The impact is limited to users with the specified PS5 firmware versions who attempt to use the exploit.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Bollarz in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Exploits Target F5 and Check Point Products F5 Networks released emergency hotfixes for a critical zero-day vulnerability, CVE-2026-94127, in its BIG-IP Access Policy Manager on September 22, 2026, after confirming active exploitation. This flaw allows unauthenticated remote code execution (RCE) and has a CVSS score of 9.8. Concurrently, Check Point disclosed…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…