FuckDenuvo. Let's see to which lengths they'll go to block hypervisor.
This crack sounds too scary to use. Impressive, but scary.
As usual for any DRM company or publisher, Irdeto also claimed that downloading games with the bypass is a security concern, but this time around, the company has a valid point.
Using the hypervisor bypass, even in its latest incarnation, requires users to... [install] a community-made hypervisor (HV) with Windows running on top of it. This HV fakes responses to the checks that Denuvo makes, and runs with higher permissions... than the operating system itself and has full, nearly untraceable access to hardware and software.
If you think that’s scary wait til you hear about what it’s circumventing is capable of.
Nasty stuff I don't want on my computer either. As an amateur, was really hoping the cracks would remove it, not circumvent it...
Wow, wait until you hear about the Intel Management Engine
Do you have a moment for our lord and savoir Coreboot? Also RISC
Empress building a high end botnet?
I wouldn't touch this without air-gapping the machine it's run on. The funny thing here is that Denuvo can't do much to prevent this hack.
The HV is intentionally malicious and modifies the guest on the fly to archive the Denuvo hack. The hack requires to disable all major security protections in the victim OS, so the HV can more freely poke at the victim kernel. A jne-instruction to check if running under a compromised HV? It's now a nop-instruction.
The HV has access to everything that is plugged in physically, or run on top of it. In theory it e.g. extract encryption keys of https connections from any process in the guest.
Would running an os in a separate partition just for games mitigate the risks?
Not really? No reason it couldn't just read those separate partitions too
Well, you could potentially get a cheap office special PC to use as a guinea pig. (Depending on what it takes to run this software)
The problem with well-coded malware is it won't execute unless it thinks it's not being watched. And based on everything else in this article, it sounds like you'd also be opening your computer up to other parties exploiting security holes in the process.
So a separate computer might work, but it would have to stay separate.
lol, get rekd, malware.
Suck my balls Denuvo
Lmao, fucking fantastic. Hope they crash and burn.
DRM to prevent copying games without official license has always been a waste of money. It is always just a matter of time until even the hardest DRM measure is broken. Always has been like this. I remember when Ubisoft was very proud of their new fancy DRM shitware that prevented running unlicensed copies of some Assassin's Creed title, only for it to be cracked a month later and the crackers saying "thanks for this interesting challenge".
Sure, it's always been a question of time, but Denuvo has been very effective for decades. There were very few people who were able or willing to crack Denuvo games before. Publishers really only cared about the initial release anyway, and after a few months, it wasn't worth paying for it anymore so they'd remove it from their games.
Not only has that always been the case, but that's the only possibility: DRM, on a fundamental level, is just encryption where Bob and Eve are the same person.
(For the uninitiated, the basic problem statement for cryptography is that Alice wants to send a message to Bob without Eve knowing what it says.)
Noice
Hypervisor is too much of a security risk for me to want to use it. I'll either get the game without Denuvo on console, wait for it to be removed, or not play it at all.
There is 0 details on specifics of how Denuvo was broken. Article goes into detail why Denuvo is bad and not much more (which is also debatable because vast majority of Denuvo implementations do not cause performance impact).
A custom driver emulates the environment of an already activated token to the DRM. It's comparable to root hiding techniques on Android.
Thank you, I found it - just commenting on how entirely unhelpful this article was.
FitGirl wrote some decent information about the tactic on their website. There's already repacks specifically marked as Hypervisor repacks.
Every single aspect of DRM, whether it is denuvo or otherwise, is either neutral or negative for the end user.
Correct but irrelevant to what I’ve said, which is that the performance impact of Denuvo is usually minimal. There’s a couple of very bad cases that got a lot of publicity but there’s boatloads of Denuvo games running fine.
It’s cool Denuvo was cracked. It’ll be fixed eventually and the never ending game of cat and mouse continues.
article goes into why Denuvo is bad but not much more (which is debatable...
I mentioned why denuvo is bad. I wasn't replying specifically to your argument about performance, because that's only a slice of the reason why denuvo is bad.
Sounds useful for reverse-engineering use but impractical for end users.
Technology
News community around technology, social media platforms, information technology and governmental policy surrounding it.
What doesn't fit here?
The core of the story has to be technology focused.
- If article mentions "AI" in a sentence and then talks about business economics that doesn't make it tech news.
- Gaming is too many layers removed from technology. There are many dedicated communities that are a better fit for it.
- Transporation is too many layers removed from technology. EVs while use many cool technologies have many dedicated communities that are a better fit for it.
- Entertainment is too many layers removed from technology. While sometimes it can fit here, business or cultural aspects of it are a better fit for dedicated communities.
- Cybersecurity. While it heavily focuses on technology, most of the time it's too technical for most people who are not already invested in it. Should be posted in a dedicated communities unless it has broader connection to other tech areas.
Post guidelines
Title format
Post title should mirror the news source title. If you don't like the title of article, look for an alternative source instead of editorializing it.
URL format
Post URL should be the original link to the article (even if paywalled) and archived copies left in the body. It allows avoiding duplicate posts when cross-posting.
[Opinion] prefix
Opinion (op-ed) articles must use [Opinion] prefix before the title. Opinion articles refer to articles that their publisher doesn't explictly endorse.
Country prefix
Country prefix can be added to the title with a separator (|, :, etc.) if the news is from a local publisher who doesn't clearly mention the country.
Rules
1. English only
Title and associated content has to be in English.
2. Use original link
Post URL should be the original link to the article (even if paywalled) and archived copies left in the body. It allows avoiding duplicate posts when cross-posting.
3. Respectful communication
All communication has to be respectful of differing opinions, viewpoints, and experiences.
4. Inclusivity
Everyone is welcome here regardless of age, body size, visible or invisible disability, ethnicity, sex characteristics, gender identity and expression, education, socio-economic status, nationality, personal appearance, race, caste, color, religion, or sexual identity and orientation.
5. Ad hominem attacks
Any kind of personal attacks are expressly forbidden. If you can't argue your position without attacking a person's character, you already lost the argument.
6. Off-topic tangents
Stay on topic. Keep it relevant.
7. Instance rules may apply
If something is not covered by community rules, but are against lemmy.zip instance rules, they will be enforced.
Companion communities
!globalnews@lemmy.zip
!interestingshare@lemmy.zip
Icon attribution | Banner attribution
If someone is interested in moderating this community, message @brikox@lemmy.zip.