Earlier quoted context omitted.
At my previous client, the scrum master didn't decide 100% of the work, we could pick a small percentage of technical items to work on.
The scrum master decides the work? Why has agile become such a mess?
Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
111–120 of 122 posts
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#112Earlier quoted context omitted.
Why is it fundamentally impossible to stop aimbots?
because it requires you to distinguish between a human's aim and a bot's aim, which is pretty much impossible with a good enough bot
But I also think a lot of the hackers in both GTA and CS are cheating in ways that no regular user input could trigger, they're compromising the software at a lower level than that.
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#113Earlier quoted context omitted.
because it requires you to distinguish between a human's aim and a bot's aim, which is pretty much impossible with a good enough bot
I think Steam actually primarily catches cheaters by it seeing the other running software rather than looking at the input patterns. I'm not sure whether it would detect a cheat implemented via a camera and custom mouse hardware that sends usb events you didn't do. But I also think a lot of the hackers in both GTA and CS are cheating in ways that no regular user input could trigger, they're compromising the software…
The bigger problem is that even with input recognition, one of the biggest problems are wallhacks, meaning you can see other players through walls which is an advantage that's almost as large as aimbotting in tactical shooters like CS.
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#114Full disclosure or no disclosure.
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#115Earlier quoted context omitted.
because it requires you to distinguish between a human's aim and a bot's aim, which is pretty much impossible with a good enough bot
I think Steam actually primarily catches cheaters by it seeing the other running software rather than looking at the input patterns. I'm not sure whether it would detect a cheat implemented via a camera and custom mouse hardware that sends usb events you didn't do. But I also think a lot of the hackers in both GTA and CS are cheating in ways that no regular user input could trigger, they're compromising the software…
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#116Earlier quoted context omitted.
The kind of hacking that happens in first person shooters has nothing to do with security failures. It is fundamentally impossible to stop aim bots. All you can do is continually play cat and mouse games to make it harder.
Why is it fundamentally impossible to stop aimbots?
The only way to prevent this is to remove elevated access from the player's computer. This has been done with varying levels of success on consoles, but even then it's only a matter of time.
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#117Earlier quoted context omitted.
This seems common in the industry at large. At my job it's impossible to fix an issue unless someone specifically puts in a ticket for it. I look at all the bugs in the code taunting me. Little landmines either nobody has stepped on yet or was too lazy to write a ticket for. Some tickets languish for years in the tracking system we use until the almighty scrum master doles it out. I am in hell.
At my previous client, the scrum master didn't decide 100% of the work, we could pick a small percentage of technical items to work on.
Our lead says that all work must come from the scrum master but in practice it is selectively enforced.
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#118Dozens of Counter-strike exploits exist and the cheating scene has just grown too rampantly. Valve simply doesn't care about the source engine. Any new CSGO player will tell you the anti-cheat doesn't work, I know first-hand. The lack of care regarding source engine netcode extends to every part of the source engine, including Valve Anti-cheat. The anti-cheat is trivial to reverse (several PUBLIC bypasses have existe…
Normally, I can handle some cheating in games, you just kinda deal with it, but holy fuck csgo was just nope. Between foul mouthed children and essentially watching God hackers play against eachother while you just die over and over. Yeah....no not exactly fun.
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#119Earlier quoted context omitted.
> CSGO player will tell you the anti-cheat doesn't work, I know first-hand. > It is in my opinion the greatest loss to gaming that a classic, legendary game like Counter-strike got completely ruined by lack of care by a company that profits millions off of the case unboxings. have you played the game in recent years? this has not been the case for me or the people I play with at all. when playing on high trust-factor…
>when playing on high trust-factor accounts, cheating is basically eliminated. Yes, but this is not a technical fix. You just hope that accounts with more "value" cheat less. Which is true in most cases.
Trust does actually work a lot of the time. But you'd think account security would be easy for them to crack down upon.
Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years
#120Earlier quoted context omitted.
This is the way. Many games package in outright spyware that siphon all kinds of data off your machine including browsing history. Kerbal Space Program was infamous for this (they removed the spyware at some point but I haven't checked recently if it was ever added back in).
> Many games package in outright spyware that siphon all kinds of data off your machine including browsing history. Please post details. Were they literally mining user data?