ps5-hen

April 15, 2026 · View on GitHub

Homebrew Enabler for the PlayStation 5.

Defeats the Hypervisor on firmware <= 4.51 and enables supports for homebrew and ps4 fpkg's.

Supports firmwares:

  • 1.xx - 1.00 1.01 1.02 1.05 1.10 1.11 1.12 1.13 1.14

  • 2.xx - 2.00 2.20 2.25 2.26 2.30 2.50 2.70

  • 3.xx - 3.00 3.10 3.20 3.21

  • 4.xx - 4.00 4.02 4.03 4.50 4.51

Download

Download

How can I use this?

  • Download the payload from button above
    • its automatically the latest dev build
  • Start elfldr by running UMTX or Y2JB
  • Close application
    • Y2JB, UMTX etc. to allow pinning to all cores
  • Send the HEN payload and wait until the notification popup occurs
    • netcat, socat, host everything works
  • Have fun

Changelog

  • For full changelog see CHANGELOG.md
  • Latest 1.3 (04/15/26)
    • PR: replace std::print with printf macro
    • PR: Simplify compilation on platforms other than x86_64
    • Feature: Added Testkit/Devkit support

Known Issues

  • All firmwares have crashes after launching multiple ps4 fpkgs (needs to be investigated)
  • Currently does not support Restmode
  • Speed can be improved for ps4 fpkg loading (already commented out logging)

Credits

Thanks to every single one of you - without your help it wouldn't be possible.

How It Works

StageNameDescription
0DiscoveryDetect firmware, locate kernel base, map HV structures
1TMR RelaxationPatch IOMMU for unrestricted memory access
2VMCB DiscoveryLocate Virtual Machine Control Blocks
3VMCB PatchingDisable HV intercepts and nested paging
3bXOTEXT RemovalRemove execute-only page protections
4VerificationConfirm successful HV bypass
5Kernel PatchingApply firmware-specific kernel patches
6Kexec InstallInstall kernel execution primitive
7HEN PayloadLoad HEN kernel module for homebrew/ps4 fpkg support

Building

Requires the PS5 Payload SDK. Set PS5_PAYLOAD_SDK to your SDK path.

make          # build everything
cd hen && make  # build HEN module only

Deploying

make test     # send payload to PS5
make debug    # deploy with GDB support