NSKBL

NSBL is a program that performs emmc setup, base kernel module loading, etc. when vita boot

Module
The non-secure kernel bootloader contains an embedded and likely stripped version of SceSysmem, SceKernelModulemgr, SceSblSmschedProxy, SceExcpmgr, SceKernelIntrMgr, SceProcessmgr (maybe), SceSdif, SceIofilemgr (Simple version?), and some other core drivers.

How to debug NSBL
NSBL reads from sd0: instead, if a read error(?) Occurs in os0: during vita startup.

but, in order to generate os0: read errors, os0: must be damaged in some way, so there must be a way to physically recover vita.

SceKblForKernel_0x08E9FAEB
In 3.60 this function is at 0x510172BD

SceKblForKernel_0x13A5ABEF
In 3.60 this function is at 0x510137A9

SceKblForKernel_0x161D6FCC
In 3.60 this function is at 0x510123DD

SceKblForKernel_0x1DB28F02
In 3.60 this function is at 0x510123A1

SceKblForKernel_0x261F2747
Related to initialization?

In 3.60 this function is at 0x51001321

SceKblForKernel_0x314AA770
In 3.60 this function is at 0x510124FD

sceKblIsDEXForKernel
In 3.60 this function is at 0x51017159

sceKblLoadModuleForKernel
In 3.60 this function is at 0x51001551

SceKblForKernel_0x752E7EEC
In 3.60 this function is at 0x51013841

SceKblForKernel_0x79241ACF
Related to initialization?

In 3.60 this function is at 0x51001345

SceKblForKernel_0x807B4437
In 3.60 this function is at 0x510124E5

sceKblIsVITAForKernel
In 3.60 this function is at 0x51017299

sceKblIsCEXForKernel
In 3.60 this function is at 0x510171B5

SceKblForKernel_0x943E7537
In 3.60 this function is at 0x5101711D

sceKblStartModuleForKernel
In 3.60 this function is at 0x51001571

SceKblForKernel_0x9B868276
In 3.60 this function is at 0x51013765

SceKblForKernel_0x9F4F3F98
In 3.60 this function is at 0x51001561

SceKblForKernel_0xA7BD4417
In 3.60 this function is at 0x510172A1

SceKblForKernel_0xB506A10E
In 3.60 this function is at 0x510147C9

SceKblForKernel_0xB6C9ACF1
In 3.60 this function is at 0x51017139

sceKblIsGenuineDolceForKernel
In 3.60 this function is at 0x510171E5

SceKblForKernel_0xC011935A
get some info?

In 3.60 this function is at 0x51013921

sceKblIsCEXJpFatForKernel
In 3.60 this function is at 0x51017175

SceKblForKernel_0xC7B77991
In 3.60 this function is at 0x5101297D

sceKblCheckDipswForKernel
In 3.60 this function is at 0x51015851

SceKblForKernel_0xCE94F329
some qaf function

ret = *(uint8_t *)(sysroot + 0x2D) & 1;

In 3.60 this function is at 0x51016FD1

SceKblForKernel_0xD3A516D5
get some device info function

In 3.60 this function is at 0x510128AD

sceKblCpuSwitchInterruptsForKernel
In 3.60 this function is at 0x51003554

SceKblForKernel_0xF7AF8690
In 3.60 this function is at 0x5100124D