An entry point gives code somewhere to run. Its application, firmware, account and delivery requirements must be satisfied before a separate kernel payload can do its job. Start with the firmware matrix, then choose a route you can actually prepare on your console.
Reviewed 10 October 2026. Check the selected project's current revision before preparing discs, saves, backups or application files.
Browser entry points
UMTX2 documents the older PSFree browser route for 1.00–5.50. Relapse provides a newer browser/kernel chain with a different firmware allowlist. These names identify different code; replacing one host's frontend with another project's script is not a supported firmware upgrade.
Browser access itself is a prerequisite. A guide may redirect the console's User's Guide using local DNS, use an already available browser launcher, or offer another documented access path. A browser launcher installed after a jailbreak cannot bootstrap a clean console by itself. For local hosting, preserve the entire project and follow its host implementation; paths, certificates and cached resources can matter. See offline hosting.
Blu-ray Java: BD-JB5 and earlier loaders
BD-JB5 is a Blu-ray Java sandbox escape and Remote JAR Loader, documented for stock firmware through 13.42. Its instructions for 13.60 and higher explicitly require prior jailbreak access to apply bdj_unpatch. That patch restores an entry route after another route has already succeeded. It must not be described as a fresh exploit for an untouched newer console.
A BD-J route requires a usable optical-disc setup. Java JAR delivery and native ELF delivery are different stages: BD-JB5 lists JAR port 9025 and log port 18194. A kernel payload can then establish its own ELF loader. The earlier Remote JAR Loader describes burning a BD-R/BD-RE with UDF 2.50 and using Java 11/Maven for development. Its older through-7.61 scope belongs to that project; newer BD-JB5 compatibility does not change the old release.
YouTube userland: Y2JB
Y2JB uses the PS5 YouTube application. It names PPSA01650 version 01.000.003 for 4.03–12.40 and 01.000.030 for 12.60 and later. The project offers an existing-jailbreak setup and a backup-restoration setup. The latter erases console data. Account preparation also differs from conventional PSN activation; follow the current instructions instead of assuming any signed-in account is suitable.
Y2JB's JavaScript receiver commonly uses 50000 but can select another port. Read the reported receiver address before sending a script. A working receiver proves the userland framework is active. For a later kernel stage, use a payload with an explicit firmware claim. The Relapse Y2JB port reports a concrete 12.60 test and currently warns to keep YouTube open after exploitation. Do not import the close-app instructions from a different chain.
Artemis game saves: Remote Lua Loader
Remote Lua Loader loads arbitrary Lua through supported Artemis-engine games. The README lists exact title IDs, including Raspberry Cube CUSA16074, Aibeya CUSA17068 and Hamidashi Creative CUSA27389; the full list should be checked before buying or preparing a title. Its reported PS5 Pro 10.40 userland test is not evidence of a 10.40 UMTX or Lapse kernel exploit.
The save setup guide uses an activated destination account and a compatible jailbroken PS4 to prepare a matching encrypted PS4 save, with a separate option for an already jailbroken PS5. Game identity, account ID and save-format compatibility matter. An arbitrary decrypted save copied onto USB is not equivalent to an importable, correctly signed save. Preserve a backup of the original before substituting exploit data.
PS2 emulator route: Luac0re
Luac0re develops the mast1c0re idea using the PS2 emulator's embedded Lua interpreter and a JIT technique. It requires Star Wars Racer Revenge USA CUSA03474 or EU CUSA03492, either a suitable disc or digital installation. The supplied larger save image must be resigned; the README says existing save images are too small. Launching the Hall of Fame is the documented trigger.
Its userland/JIT capability and included kernel payload have separate bounds: Poopsploit is documented for PS5 12.00 or lower. Projects built on the userland route can provide native homebrew without a kernel exploit. CTurt's original mast1c0re research is useful background on escaping an emulator and then obtaining practical native execution, but contemporary Luac0re instructions should determine the present setup.
Choose by prerequisites, then preserve the working route
Compare exact firmware support, whether the application is already installed, availability of correctly prepared saves, account activation, optical-drive access and how much destructive setup is required. Prefer the route with a documented match to your situation. Record every version and keep your working files together. Changing entry applications, kernel payloads and loaders at the same time makes failures harder to isolate. Continue with stage-based troubleshooting after an unsuccessful attempt.