HN user

stepupmakeup

226 karma

wake up

Posts0
Comments79
View on HN
No posts found.

There's a lot of ways the cheater problem can be mostly neutralized, for example a dedicated matchmaking pool for players who ONLY have allowed devices, hardware, drivers. No ifs or buts or stupid exceptions like for LAN cafes.

For years, gamers have been told install xyz rootkit for your safety, enable xyz option in your BIOS, get a TPM, install the latest versions of windows, it's all for your security to make your experience better and cheat-free with state-of-the-art technology! across like 3 or 4 different vendors, and the outcome has been the same ever since the beginning: cheaters find ways to skirt basic restrictions, because companies don't _want_ to actually put an end to cheating. Especially more so for companies like valve that get cheaters constantly re-buying their games or "premium" status, not sure if this exists in the valorant realm

Just end the "gary's pool cleaning" problem once and for all rather than continue to play stupid games just on the off 0.00001% chance Gary's business (incorporated last week) decided to branch out to software. Let Gary come appeal to Riot directly and let them manually analyze whatever they need BEFOREHAND.

They're focusing on DETECTION rather than PREVENTION.

Ironically, osu! had it's own built-in spyware until 2016, automatically uploading window and process names as well as manual commands to take full monitor screenshots in the name of preventing cheaters (both software-wise e.g Cheat Engine.exe is running, and sharing/boosting accounts, by checking if someone is logged into the same Skype account).

I've been skeptical ever since they were trying to claim the xz backdoor was from a state actor. All it took was 3 sockpuppet accounts, a lot of time and actual code contributions, something literally anybody with a computer science degree can do. Name: Jia Tan? Must be a CCP agent, never mind the fact that anybody can make their name and timezones anything...

I was under the impression that persistent, but SILENT access was China's goal. Dropping files in home and /tmp/ seems like the total opposite of that and any competent sysadmin would detect these anomalies manually real quick with a simple "ls -a", even possibly by accident.

What's the point of these kinds of articles? Most Linux malware (including this one) are not sophisticated at all, built off of pre-existing rootkit code samples off Github and quite sloppy with leaving files and traces (".Xl1", modifying bashrc, really?). And there's a weird fixation on China here, is it just more anti-China propaganda?

Just like the evolution of sim swapping and how it went from hijacking celebrity accounts for a day to stealing millions from crypto investors, cybercriminals slowly realized that it's far more easier to get personal data through bribing/hacking companies (telecoms, amazon) or even by directly sending emergency data requests from stolen law enforcement email addresses.

No amount of opsec can save you from corrupt employees making below minimum wage.

For the past couple weeks or months, twitter has been shuffling the order of sidebar buttons to make room for new features e.g "Premium", "Grok", "Verified Orgs" "Jobs" "Communities"... with no way of disabling this helpful 'feature' or changing the order. "Lists" is now hidden in the same submenu as settings. Way to kill my muscle memory...

A clear distinction should be made, this isn't kids hacking companies for 'fun' or some kind of Kevin Mitnick-esque story where the thrill was having something they shouldn't or bypassing systems. These people wanted money and notoriety and got it by any means necessary, yet it took THREE arrests to finally put an end to it. They weren't just targetting multibillion dollar corporations, either.

Meanwhile in the very same country, the teenage criminal who helped ransom MGM casinos and London's transportation (twice arrested) is also free and likely actively deploying ransomware and sim swapping as we speak. I get that they're legally "children", but it's not like they're 9 year olds being tricked into do other peoples bidding, these are quite literally criminal masterminds working for themselves, and should be charged as one. "I promise I won't go online again" and supervision for a couple months obviously isn't working when you have companies getting hacked from a hotel room.