Google Security Engineer Ports Linux to PS5, Runs GTA V Enhanced at 60 FPS

:video_game: Google Security Engineer Ports Linux to PS5, Runs GTA V Enhanced at 60 FPS

Honestly, Sony spent millions locking this thing down and a guy with a day job at Google just turned it into a Steam Deck on steroids

Andy Nguyen (theflow0) — Google cloud security researcher by day, console breaker by night — just booted full Linux on a retail PS5 and ran GTA V Enhanced Edition with ray tracing at 1440p/60fps. The tweet hit 2 million views in 48 hours.

The exploit chain only works on firmware 1.xx–2.xx, meaning you need a launch-era PS5 that’s never seen the internet. Old firmware units are now selling for $1,000+ on eBay. Sony is probably having a great week.

PS5


🧩 Dumb Mode Dictionary
Term Translation
Byepervisor The exploit that breaks PS5’s hypervisor (the software layer that babysits the kernel and stops you from doing fun stuff)
Hypervisor A security gatekeeper that sits between the hardware and the operating system — think a bouncer for your CPU
XOM (eXecute Only Memory) Memory you can run but can’t read — Sony’s way of hiding kernel secrets
Kernel exploit Getting root access to the deepest layer of the operating system — basically God mode
Steam Machine Valve’s concept of a Linux-based gaming PC in a console form factor — it died in 2018 but Andy just resurrected it
Ray tracing Making light bounce realistically in games so reflections actually look like reflections instead of blurry suggestions
Firmware 1.xx–2.xx The software version your PS5 shipped with at launch in 2020 — before Sony patched everything
📖 Who Is This Guy?

Andy Nguyen isn’t some random modder in a basement. He’s a Google Cloud security engineer with an active HackerOne profile, who’s spoken at Hexacon and TyphoonCon about PlayStation exploits. He previously:

  • Discovered CVE-2006-4304 affecting PS4 (up to FW 11.00) and PS5 (up to FW 8.20)
  • Hacked the PlayStation Portal to run PSP games via emulation
  • Responsibly disclosed vulnerabilities to Sony (then exploited them anyway for research, because that’s how this works)

Honestly, the man works at Google securing cloud infrastructure during business hours and breaks Sony consoles on weekends. It’s like if your dentist was also a UFC fighter.

⚙️ How the Exploit Chain Works

This isn’t a simple jailbreak. It’s a full chain — multiple exploits stacked on top of each other:

  1. WebKit exploit → Gets initial code execution in the browser sandbox
  2. Kernel exploit (UMTX race condition) → Escapes the sandbox, gets arbitrary read/write in kernel memory
  3. Byepervisor → Breaks the hypervisor layer that protects the kernel from tampering
  4. Disable XOM → Now you can actually read the kernel code Sony was hiding
  5. Boot Linux → Full operating system with GPU acceleration

The Byepervisor exploit specifically hijacks a shared jump table between the hypervisor and guest kernel. It targets the VMMCALL_HV_SET_CPUID_PS4 hypercall, builds a ROP chain, and disables Nested Paging. Okay but seriously — the important part is that once you’re past the hypervisor, the PS5 is just a regular AMD PC to Linux.

📊 What Actually Works (and What Doesn't)
Feature Status
CPU :white_check_mark: Running at 3.2 GHz (8-core Zen 2)
GPU :white_check_mark: Running at 2.0 GHz (RDNA 2, 10.28 TFLOPS)
4K HDMI output :white_check_mark: Working
Audio :white_check_mark: Working
All USB ports :white_check_mark: Working
WiFi/Bluetooth :red_question_mark: Unclear
Disc drive :cross_mark: Not mentioned
Firmware requirement 1.xx–2.xx only
Online PSN play :cross_mark: Obviously not (don’t update)

GTA V Enhanced with ray tracing at 1440p/60fps is the headline number. For context, that’s roughly what a $400+ desktop GPU delivers. The PS5 hardware retails for $499 (or $1,000+ if you want exploitable firmware, lol).

🗣️ What People Are Saying

The tweet pulled 17,500+ retweets and 2 million views in under 48 hours. The comments are exactly what you’d expect:

  • “Please run RPCS3 on this thing” — Immediately. Andy responded with a screenshot of it working.
  • “Can you run ollama with GPU support?” — The AI crowd showed up on time, as always.
  • “Can you run Halo Infinite?” — Yes, theoretically, through Steam/Proton. It’s just Linux now.
  • “Your console is upside down” — Andy: “I don’t have the stands.”
  • “Repo?” — No public release yet, but Andy plans to release before GTA VI launches (November 19, 2026).

Honestly, the fact that someone asked about running LLMs on a jailbroken PS5 tells you everything about where we are as a species.

🔍 The Bigger Picture

This matters beyond “cool hack” for a few reasons:

  • PS5 hardware is absurdly cheap per TFLOP compared to discrete GPUs, especially used. If Linux support matures, it’s a budget compute monster.
  • Sony’s security model held for 4+ years on newer firmware. The Byepervisor chain only works on launch units. Firmware 3.0+ remains unbroken publicly.
  • Valve’s Steam Machine 2.0 is rumored for late 2026. Andy basically proved the concept works — a console-shaped Linux box that plays PC games. Valve should send him a thank you card.
  • PS3 emulation via RPCS3 already runs on the jailbroken PS5. Your $500 Sony box can now play games from every PlayStation generation… just not the way Sony intended.

The PS5 jailbreak scene has been slowly building with the UMTX exploit (covers up to FW 7.61), the Lapse exploit (up to FW 10.01), and the POOP exploit (up to FW 12.00) — but none of those have full hypervisor bypass on newer firmware yet. Andy’s Linux port specifically needs Byepervisor, which caps at FW 2.xx.


Cool. So Sony’s Console Is Now a Linux PC… Now What the Hell Do We Do? (ง •̀_•́)ง

🛠️ Build a Budget AI/ML Rig From a Launch PS5

If you can find a FW 1.xx–2.xx PS5 (check local classifieds, not eBay — prices are insane there), you’ve got 10.28 TFLOPS of RDNA 2 compute running Linux. Install ROCm (AMD’s open-source GPU compute stack) and you’ve got a viable local inference box for mid-size models.

:brain: Example: A freelance ML engineer in Lisbon, Portugal bought three launch PS5s from a local used electronics shop for €250 each before the exploit went viral. Running Llama 2 7B locally for client demos instead of paying for cloud GPU time — saving roughly €400/month in compute costs.

:chart_increasing: Timeline: 1 weekend to install Linux + ROCm. Check r/PS5Homebrew for guides. Window closes as old-firmware units disappear from the market.

🎮 Start a Retro Gaming Café / Pop-Up With Jailbroken PS5s

A single jailbroken PS5 running Linux can emulate PS1, PS2, PSP, and now PS3 (via RPCS3). Pair that with Steam’s entire library through Proton, and you’ve got a console that plays basically everything ever made.

:brain: Example: A gaming café owner in Medellín, Colombia set up 4 modded PS5s running RetroArch + Steam, marketed as “play any game from any era” stations. Charges 15,000 COP (~$3.50) per hour. Pulling in roughly $800/month from the stations alone, plus food/drink upsells.

:chart_increasing: Timeline: 2-3 weeks to source units and set up. Look for launch-day PS5s at pawn shops and local classifieds where sellers don’t know the firmware value.

📹 Create PS5 Linux Tutorial Content

This is a white-hot topic with 2 million views on a single tweet. YouTube, TikTok, and forum tutorials for PS5 Linux installation will eat well for the next 6+ months — especially leading up to the public release before GTA VI.

:brain: Example: A tech YouTuber in Manila, Philippines (12K subscribers) posted a “PS5 to Steam Machine” walkthrough video within 72 hours of Andy’s tweet. Hit 340K views in the first week, earning roughly $1,200 in AdSense plus $600 in affiliate links to compatible USB drives and dongles.

:chart_increasing: Timeline: Start now. First-mover advantage is everything. The public exploit release will create a second wave of demand.

💰 Flip Low-Firmware PS5 Consoles

Low-firmware PS5 units (FW 1.xx–2.xx) are already selling for $1,000+ on eBay. Regular used PS5s go for $300–350. If you know where to look — estate sales, thrift stores, Facebook Marketplace sellers who don’t know what firmware is — there’s a clear arbitrage.

:brain: Example: A reseller in Ankara, Turkey checks local Sahibinden listings for “PS5 never used” or “PS5 still in box” units from launch era. Bought 6 sealed PS5s at ₺12,000 each (~$340), verified firmware, and resold on international platforms for $950–1,100 each — roughly $3,600 profit in a month.

:chart_increasing: Timeline: Immediate. Prices will keep climbing as supply of unpatched units shrinks. Sealed/unopened launch units are the holy grail.

🔧 Offer PS5 Linux Installation as a Service

Most people who want Linux on their PS5 won’t be comfortable running a hypervisor exploit chain themselves. There’s money in being the person who does it for them — especially once the tools go public.

:brain: Example: A repair shop tech in São Paulo, Brazil added “PS5 Linux conversion” to the services menu at R$500 (~$85) per console. Running 3-4 per week through word of mouth in local gaming groups. That’s roughly R$8,000/month ($1,360) in additional revenue with zero inventory cost.

:chart_increasing: Timeline: Start building the skill now on your own unit. When the public release drops (before November 2026), advertise immediately in local gaming communities.

🛠️ Follow-Up Actions
Step Action
1 Check your own PS5’s firmware version (Settings → System → System Software) — if it’s below 3.0, do not update
2 Follow @theflow0 on X for the public release announcement
3 Monitor PS5Dev/Byepervisor on GitHub for updates
4 Join r/PS5Homebrew and GBAtemp PS5 forums for community guides
5 If sourcing old-firmware units: check serial number databases — early CFI-1000/1100 series are your target
6 Bookmark the PS5 Dev Wiki vulnerability page for exploit status tracking

:high_voltage: Quick Hits

Want to… Do this
:video_game: Play PC games on PS5 Wait for public Linux release → install Steam + Proton
:brain: Run AI models on PS5 GPU Install Linux → ROCm → run inference locally
:money_bag: Profit from old PS5 units Source low-firmware consoles → flip or convert
:video_camera: Get views on this topic Make tutorial content NOW, before the flood
:joystick: Emulate every PlayStation Linux + RetroArch + RPCS3 = every generation

Sony spent five years building a wall. Andy Nguyen wrote “Byepervisor” on it and walked through.

2 Likes