logoalt Hacker News

ndom91yesterday at 11:16 PM1 replyview on HN

This is just not true anymore. The only things that don't work anymore are a few AAA titles that use particular types of anti-cheat systems that rely on Windows kernel drivers (League of Legends is one that comes to mind).

If I remember correctly, after the Crowdstrike BSOD-all-windows-instances update last year Microsoft wanted to make some changes to their kernel driver program and these anti-cheat measures on Windows might need to find a new mechanism soon anyway. That's a long way of saying, it's plausible that even that last barrier might come down sooner rather than later.


Replies

not_a9today at 3:09 AM

Anticheat has very different requirements to antimalware.

Some interesting reads on what modern anticheats do:

https://github.com/0avx/0avx.github.io/blob/main/article-3.m...

https://github.com/0avx/0avx.github.io/blob/main/article-5.m...

https://reversing.info/posts/guardedregions/

https://game-research.github.io/ (less in detail and less IDA pseudo)