VALORANT KERNEL LEVEL ANTI-CHEAT DRIVER EXPLAINED (PRIVACY)

preview_player
Показать описание
Are you curious what the difference between a Kernel Level and User Level application are and what that means for your privacy? I will talk about the uses for VALORANT by Riot Games Kernel Level Driver as an Anti-cheat in gaming. I will discuss what privacy concerns there are with this Kernel Driver and what it means for the people using it.

#Valorant #Kernel #Ring0 #Privacy #KernelDriver

Source Code for Simple Keylog and Screenshot

Follow my socials:
Рекомендации по теме
Комментарии
Автор

Second verse same as the first. It's already game over once you run anything on your PC. Just roll over.

downthecrop
Автор

User level: ability to steal some data (but likely detected by antivirus)
Kernel level: ability to make the malware almost impossible to remove by modifying the bios and your firmware.
-- Just because you can already do bad things does not mean you can't do worse things

MaxmWotan-hmzk
Автор

Lmao, I do not trust Riot at all, kernel level programs can do more than just keylogging. They can load themselves in MBR, work and now even showing up in the task manager, send packets that wont be noticed by a firewall, it can load an UEFI module that will be rewriting MBR sections of all your USB flash drives, so you wont even be able to reinstall Windows without catching that virus back, onyl if you reset BIOS itself. It can modify operative memory of processes, fetch logins, passwords, whole sessions from browser, it can literally break your HDD by intensive writing different sectors. I don't think that you understand what you are talking about.

jusin
Автор

this was the exact video i was looking for thank you well done

ReeceLain
Автор

good shit, even as a comp sci dev i tend to forget things like this and get caught up in the headlines, love ur other security vids as well

jesalbeta
Автор

this is such a good fucking explanation dude massive w

edcdecl
Автор

TL;DW: Kernel level anti-cheats are not "insecure". Windows is, and any proprietaty program you run on Windows.

Zambito
Автор

Still not playing it. Keyloggers are possible in JS for goodness sakes, that doesn't mean browsers should run in ring 0.

You're saying monitoring system state isn't dangerous so why have CPU rings at all?

Should stop using Windows altogether, it's spyware itself.

deoxal
Автор

You are 100% missing the point it's about not knowing if the anti-cheat has bugs that hackers can exploit. If they do have bugs that can be exploited then attackers could write programs for those bugs and exploit them. I believe that's what the modern vintage gamers video talked about but you conveniently skipped that point because it didn't fit with your ideas.

oliviadrinkwine
Автор

I did this class online that had a certification at the end. It used a pic that was me standing up in my house looking at my phone. Which was scary because I probably only used my phone to pay for it and I probably started the class standing up then ended. Spooky when my face I don't remember capturing is shown to me. It was like a face I didn't want to see as well as others

XenoTravis
Автор

L take. You basically trapped yourself, by explaining how ring 0 is much more powerful and intrusive and has much higher control (you forgot to mention that it is also a lot more obscure than processes you ran), but then just accompanied it by bs like "oh, but what if your calculator is malicious too", and you truly believe you proved anything?
The thing is, my calculator is not created by chinese owned company, and Valorant`s anti-cheat - is.
And for average user identifying suspicious processes and connections on application level will be much easier, compared to ever figuring out what the heck is Vanguard doing.
If your point was, that ignorant user can accidentally infect himself with app level malware - yeah, no s**t sherlock.
If your point was that just because s**t happens on app level - it should now be pushed to kernel level - then you are shilling hard.

MgelikaXevi
Автор

It can now cut on your computer while you gone at work or sleep in key logs in

JayFlyMastering
Автор

well this aged well with all the exploits

Misaki
Автор

the problem with Denuvo is that almost make your pc explode, it causes a lot of performance issues and make piracy look a lot better cause it disable it and make some games playable

RPGEmperor
Автор

So does this mean we should be concerned about the anticheat or should we not

experttags
Автор

When does this compromise of security become beneficial for the sake of having a game free of cheaters? Specially when it's still possible to cheat or completely bypass the anti-cheat. The ones to blame are the users that allow this kind of things and Microsoft that allows this to happen. Like seriously... kernel are for drivers and operating system operations, not some random software that might compromise system security and stability! And yes there is a big difference between user level applications and kernel level applications, it's tied mostly to the agency users can have on it, user level applications we can stop what it is doing, and we can check what it's doing... kernel level, it have more privileges that the user as admin, it can do things without one even be aware... not to mention that it opens possible vectors of vulnerabilities that a third person might use to exploit multiple systems, not to mention that it can have conflicts with other devices... I can't see anything good out of this kernel anti-cheat approach.

filipepinho
Автор

So, do we trust Hackivision with anti-cheat on Warzone?

DarylNotDead
Автор

I see HotFudgeSundae color theme in Notepad++ I click subscribe.

sjsushi
Автор

changing mouse sensor data is mad easy using the windows api and it’s not detectable by easyanticheat or battleeye lol

endorphfn
Автор

This why warzone is full of hackers, since Activision AC runs Kernel Drive Ring3 and cheats runs on Kernel Drive Ring0.

rommi_rusina
join shbcf.ru