Live data from Hacker News

Keyhole – Forge own Windows Store licenses

massgrave.dev

291–300 of 319 posts

Re: Keyhole – Forge own Windows Store licenses

#291

Earlier quoted context omitted.

You don't have to be "pro-piracy" to be anti media propaganda that tries to equate duplication with denial of a person's right to their own property. They're very different things. If you think copyright infringement and theft are synonymous then presumably you'd be happy with people paying for copyrighted goods with a picture of some money, because a copy that doesn't involve a transference of control is identical w…

If I watch you type in your bank password, I haven't stolen it from you, because you still know your bank password. No theft occurred, so everything's fine, right?

You're right, you didn't steal my bank password, you can use that to commit fraud, deceiving the bank systems to then enable stealing.

Some might says you did steal the password, because you made it unusable for me, but that's a pretty subtle position I'm content with either side of.

Perhaps you'd understand better if you consider a physical key - if you take it then I cannot open the lock (with that key at least). If you only copy it, I can still open the lock, so you didn't steal it from me; but the possibility of use allowed you to deny me the use of whatever the lock protects. Not so with most copyright works. If you copy my music I can still listen to my copy as often a I like.

Maybe you understand the distinction now?

Re: Keyhole – Forge own Windows Store licenses

#292

Earlier quoted context omitted.

good thing i disable IPv6 at home because it's an annoying pita and i run no machines with windows in the cloud, checkmate :P on a more serious note though I don't think machines with ipv6 enabled that are behind a NAT are likely to be vulnerable to this, i suppose maybe wormable if you can natpunch through some p2p voip or gaming service, it's the sort of patch i would probably install if i were made aware of it (if…

>I don't think machines with ipv6 enabled that are behind a NAT are likely to be vulnerable to this Would you be interested in educate yourself about IPv6? https://ipv6.he.net/certification/

No, I'd rather just keep turning it off. Though if you're interested in telling me why I'm wrong concisely instead of being snarky I'll read that.

Re: Keyhole – Forge own Windows Store licenses

#293
post #203

Earlier quoted context omitted.

right, so at this point you dont own the device any more, you are renting it.

Which is exactly what you agreed to in the terms of service you evidently did not read I want to be the only cheater in my lobby.

How can I read the terms of service when I need to pay for the device first?

Re: Keyhole – Forge own Windows Store licenses

#294

Earlier quoted context omitted.

I'm genuinely curious to know how VISA helps (or doesn't) in your analogy - what is a 'VISA problem'?

Mostly a joke, but I swipe a card and the problem goes away. No need to worry anymore.

Ah, thank you; I get it now: you don't need to worry about data theft because the drive was encrypted, so the only remaining problem is buying a replacement - a 'VISA' problem. I rather like that way of putting it; I might use it myself :)

Re: Keyhole – Forge own Windows Store licenses

#295

Earlier quoted context omitted.

Where can I read more about how this is done.

Just when you enable 2fa on some site and it shows you a qr code (or however it gives you the code, it might be a regular url, and sometimes they even display the string in plain text) save that string. If it's a qr code, save the qr code and read it with a regular qr code reader (probably just your camera app these days) and it will have a string or a url with the string as the query string. That string is not just…

That is very helpful. Thank you.

Re: Keyhole – Forge own Windows Store licenses

#296

Earlier quoted context omitted.

Where can I read more about how this is done.

Just when you enable 2fa on some site and it shows you a qr code (or however it gives you the code, it might be a regular url, and sometimes they even display the string in plain text) save that string. If it's a qr code, save the qr code and read it with a regular qr code reader (probably just your camera app these days) and it will have a string or a url with the string as the query string. That string is not just…

I'm a bit late but FWIW Google Authenticator has a QR code export option, it generates a giant QR code (potentially multiple) that contain all the accounts and secrets. It's designed for you to scan into Google Authenticator on another device, but you can also read the contents of that QR code yourself with various open source utilities to get the accounts and secrets (or just print a copy for a physical backup of them). Overall it's not a terrible way to go, though like you said if you can save the original QR codes that's a nicer way to do it.

Re: Keyhole – Forge own Windows Store licenses

#297
post #112

Earlier quoted context omitted.

Total tangent, but extremely interested in the use of the Yen/Yuan sign as a footnote marker. Is there some history here I’ve overlooked or is this just arbitrary?

Haha - i was looking for ¹, ² or § but couldn‘t find them on my german ipad onscreen keyboard, so i improvised.

So many memories just flooded my brain of using § for Minecraft Pocket edition...

Re: Keyhole – Forge own Windows Store licenses

#298

Earlier quoted context omitted.

Wow, so it's a ticking time bomb, that should be illegal.

I agree that the device updating without your consent should be illegal, but new games requiring the updates seems fair enough: the Xbox can still run all of the games it was advertised to be able to do so at launch, and if game developers could not rely on the presence of system updates, Microsoft would just release an entirely new, incompatible Xbox instead. I think that updates are fine so long as you can update a…

The PSP had firmware updates as well, and certain games strongly encouraged you to do so. But many had a workaround: The firmware loaded from the UMD itself. This meant your minimum firmware version could be rolled back, or that in some cases you didn't need to update and then rollback at all, as it was all loaded from the UMD. No matter what though, Sony mandated that all games support a minimum version. The last minimum version I remember was 3.00 from 2007 that introduced MemoryStick verification as an alternative to UMD verification because the PlayStation Store necessitated the ability to run without UMDs, and the final firmware update being 6.60 from 2011.

We could easily go back to installing firmware on-disc or in-download and only calling it at runtime. We won't because devs are in a desperate and futile campaign to outrun console modding (and to some extent piracy) they can't control. With consoles moving to common PC hardware rather than custom hardware like Flipper or Cell they're just going to get broken into faster and faster, so the only bet is harsher and harsher DRM on the software side. AMD straight up sold PlayStation 5 defects as the AMD 4700S "all in one" board.

Re: Keyhole – Forge own Windows Store licenses

#299
post #298

Earlier quoted context omitted.

I agree that the device updating without your consent should be illegal, but new games requiring the updates seems fair enough: the Xbox can still run all of the games it was advertised to be able to do so at launch, and if game developers could not rely on the presence of system updates, Microsoft would just release an entirely new, incompatible Xbox instead. I think that updates are fine so long as you can update a…

The PSP had firmware updates as well, and certain games strongly encouraged you to do so. But many had a workaround: The firmware loaded from the UMD itself. This meant your minimum firmware version could be rolled back, or that in some cases you didn't need to update and then rollback at all, as it was all loaded from the UMD. No matter what though, Sony mandated that all games support a minimum version. The last mi…

>and the final firmware update being 6.60 from 2011

6.61 from January 2015[1].

[1] https://www.psdevwiki.com/psp/index.php?title=Official_Firmw...

Re: Keyhole – Forge own Windows Store licenses

#300
post #98

Earlier quoted context omitted.

Gamers don't want cheaters, but gamers also don't want malware. Some people won't care, others will care. The real problem is that publishers don't give anybody a choice on this. They sneak these invasive anti-piracy measures into their games without asking since they don't want to fragment their player base. The reasonable, fair, common-sense pro-consumer thing to do is to split the online play in two: a non-antiche…

> The reasonable, fair, common-sense pro-consumer thing to do is to split the online play in two: a non-anticheat server and an anti-cheat server. Players can opt-in to installing a rootkit/sharing their SSN/whatever if they want to play on the hardened server. This costs nothing, and makes all types of gamers happy. This is a very good point! And I'd like to point out that there is an analogue to the problem of smur…

>but if enough people don't want that, then Riot could simply split the ranked queue into two: one where (soft, ie phone #) identity verification is required, and one where it isn't.

The phone number requirement is only there if you want to play Clash. Normal ranked play works flawlessly with no number.

Post reply on HN