Live data from Hacker News

Valve accused of ignoring existing RCE vulnerability in Source games for 2 years

twitter.com

121–122 of 122 posts

Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years

#121

Earlier quoted context omitted.

> Many games package in outright spyware that siphon all kinds of data off your machine including browsing history. Please post details. Were they literally mining user data?

The spyware is called Red Shell and it got packaged with a bunch of popular games. Yes, it mines user data.

Thanks for the reference.

Re: Valve accused of ignoring existing RCE vulnerability in Source games for 2 years

#122
post #37

Earlier quoted context omitted.

Genshin Impact is a recent game that has included a kernel mode anti-cheat. I would be very surprised if the majority of players know that it exists, or understand what it means to have it run in kernel mode. The Genshin website previously allowed anyone to view the phone number you have linked to your account via the password reset mechanism. Due to common reports of accounts getting stolen (and unable to be recover…

Even if the security is bad does it even matter? User mode is enough for malware. "Sure an attacker could mine crypto, DoS people, use me as a proxy, keylog me, use my webcam, steal my saved usernames and passwords, but at least they can't upgrade my graphics drivers", said no one ever.

Oh, there's a lot more "fun" stuff you can do in kernel mode. One comedic example is setting the CPU Vcore offset to +2.2V for fun/revenge. I don't know if it will destroy CPUs permanently, but it would be an interesting experiment.

More importantly though, once you're in the kernel, its much easier to hide your presence to all manner of Windows sysadmin tools.

Post reply on HN