Lightquake

5K posts

Lightquake

Lightquake

@Lightquake1

Some random guy

Katılım Mart 2019
3.7K Takip Edilen41 Takipçiler
🦀 YORA 🦀
🦀 YORA 🦀@yoracrab·
girl who is OBSESSED with YOU
🦀 YORA 🦀 tweet media
English
248
4.3K
55.7K
818.7K
Lightquake retweetledi
RivalsInfo
RivalsInfo@RivalsInfo·
Hello Everyone, In a previous life, I used to do offensive and defensive anti-cheat research professionally, and one thing I’d like to say is that this game is doing the absolute bare minimum to secure and protect itself against cheaters. To give the team some credit, combating cheating is extremely difficult because cheat developers are constantly adapting (especially with AI) and testing new methods faster than most of these developers can realistically respond to. I’m going to outline what the anti-cheat team does right and what they do wrong, and then let you come to your own conclusions about the overall state of the game’s anti-cheat efforts. Vocabulary: - DLL: This term will be used heavily, and it refers to a piece of software that is injected into a process (for ex. Marvel Rivals) and is capable of executing arbitrary code within the game process. This allows cheaters to modify or manipulate different parts of the game in order to gain an unfair advantage (f.ex reading from or writing to the game state). - DLL Sideloading // hijacking: Replacing a legitimate DLL that the game uses with a malicious DLL that allows an actor to execute arbitrary code within the game process while masquerading as the legitimate DLL. - XIM: A cheating device primarily used on consoles to for example mask a keyboard and mouse as a controller allowing malicious actors to essentially have aim-assist, and run a ton of other scripts that give malicious actors to gain a competitive edge over players - Function Hooking: This allows a malicious user to redirect how the code normally works, giving them control over how the program behaves and letting them change the result of certain functions. What they do right: - Sending telemetry from the game process to the anti-cheat backend server, even without the kernel anti-cheat running, to determine whether a game session appears legitimate or illegitimate (cheating). What they do wrong: - The Kernel Anti-Cheat component is pretty useless. It’s really only meant to serve a few purposes (it does a bit more, but these are the main components you should actually care about), and the entire system becomes redundant when you can simply disable the kernel component. The first purpose is acting as a preventative measure against DLL injection, which it does a poor job at because you can use DLL Sideloading and the game will blindly accept illegitimate DLLs and inject them into the game process. Another purpose is sending telemetry to the anti-cheat backend, which collects data about the process and scans for cheat signatures, abnormal process conditions, and unauthorized modifications. The Kernel Anti-Cheat probably does more than that, but it becomes pretty useless when you can just disable the kernel anti-cheat component entirely. - There have been claims that if you run a certain command line argument it completely disables the anti-cheat, but this is only partially false. It disables the kernel anti-cheat component, but it does not disable the anti-cheat that lives inside the game process, “QSec.” QSec is another anti-cheat component inside the game process, and it does a bit of the heavy lifting by sending increased telemetry about your aim score, XIM score, and other unusual process events. This can also be disabled by patching the game executable on disk, preventing the system from even being initialized. (I’ve sent this directly to the developers a while ago, and they’ve done nothing with it.) One thing I will give them credit for is that they’ve at least attempted to protect this code, but they’ve done a terrible job executing it. There’s also another component they use called “AC (Anti-Cheat) SDK.” This component exists in an extremely niche location within the game process, but I won’t explain it further because it could lead to additional attack vectors, although the team already knows where it lives. From what I understand, this component also sends additional telemetry and periodically sends screenshots of your game to the anti-cheat backend (at least for high-risk players) in an attempt to detect cheats like ESP, which gives exact player locations through walls. This component can also be disabled. - The anti-cheat team also has an additional QSEC (anti-cheat) component that is completely server-side. This anti-cheat automatically scans replay files and match data to determine whether a player is cheating based on heuristics. This approach is extremely flawed because a cheater can disable the components I explained above and “humanize” their cheats to avoid detection. It can also lead to false bans if the system’s assumptions are incorrect, which appears to happen periodically. - The Anti-Cheat team actually does nothing to validate whether the kernel component is running or not, this is one thing some anti-cheats like "Easy Anti Cheat" does right, the game server will kick you out if it doesn't receive a valid token from the client generated by the anti-cheat. Sure some telemetry may give the team some insight saying "Hey so this user isn't running our anti-cheat, they're probs sus asf", but when those telemetry components are disabled and your only component is the server sided anti-cheat it makes the entire system super redundant. - The Marvel Rivals team claims that a user who gets banned will get device bans, and IP bans. From my understanding they don't IP ban, but they do attempt to device ban (HWID Ban) and they do a terrible job at it, since you can disable the kernel component of the anti-cheat the game process is left with only one way.. do call windows functionality to generate a Hardware Identifier based on the limited functionality that Microsoft gives them. This is completely redundant when you can disable all of the components I've mentioned earlier and the use Function Hooking to essentially "spoof" your hardware identifier, and once you get banned, you can clean all of the traces the game process leaves and create a brand new account as if nothing happened. There's a few more components that I haven't talked about or may not completely know about, but I hope this gives you a slight idea on how the team actually handles cheating. I've actually sent most of what is currently in this post directly to the team months ago, and they haven't done anything with it. You know where to contact me NetEase. Chào👋
Marvel Rivals@MarvelRivals

Penalty Announcement: Zero Tolerance on Cheats Hi Rivals, Recently, our telemetry detected that following the weekend update, a faction of rogue players began promoting and deploying unauthorized third-party enhancements. This blatant disruption of our fair battlefield has sparked widespread concern across the Chronoverse. In response, our security teams have initiated an immediate, targeted purge. Maintaining a fair and honorable arena is our primary directive. We continuously combat cheats, scripts, and illicit tech through multi-layered anti-cheat monitoring, abnormal behavior detection, historical data reviews, and manual verification. This recent enforcement wave is a targeted crackdown addressing newly updated cheats, building upon our foundational security frameworks. Following our investigation, accounts confirmed to be involved in violations; such as using cheats, illicit assist programs, or client tampering, have been permanently banned. The signatures for these cheats have already been logged by our security team and integrated into our automated penalty system. Moving forward, any account verified to be using related cheats or illicit assist software will be permanently banned immediately. For severe cases involving repeated violations, organized distribution, or penalty evasion, we will implement further restrictive measures as necessary. These include, but are not limited to: account bans, device bans, and IP bans, to continuously safeguard our fair gaming environment. For full details and the complete list of affected accounts, please visit the official website >> marvelrivals.com/announcements/… We urge all rivals: DO NOT download, purchase, distribute, or use any cheats, scripts, game modifiers, or illicit third-party tools. If you believe you were unjustly penalized, you may submit an appeal through our official Customer Support channels for review. Thank you for standing with us to protect the Chronoverse. If you spot a suspected anomaly or cheater in your matches, report them immediately. We will continually level up our anti-cheat arsenal to ensure that true skill, not forbidden tech, reigns supreme. Please note: Rumors circulating online claiming that the anti-cheat system can be bypassed using launch parameters are completely false. Our anti-cheat launches concurrently with the game client and cannot be disabled independently. The parameter in question merely hides the pop-up window; it does not deactivate the anti-cheat software in any capacity.

English
64
243
4.2K
352K
Lightquake
Lightquake@Lightquake1·
@basedbinkie Could be worse, at least you're not fighting this guy.
Lightquake tweet media
English
0
0
46
2K
BasedBinkie
BasedBinkie@basedbinkie·
I'm hurting...
BasedBinkie tweet media
English
192
3K
40.1K
380K
Lightquake retweetledi
きな粉
きな粉@__hisagikinako·
最後の大盤振る舞い
きな粉 tweet media
日本語
8
5.4K
33.2K
558.9K
Lightquake
Lightquake@Lightquake1·
@wanderjegson The Kaiju is very polite to let the heroes discuss their teamwork issue.
Lightquake tweet media
English
0
0
5
517
Wanderjegson
Wanderjegson@wanderjegson·
(One-shot) Magical Girl versus Masked Hero versus Giant Robot:
Wanderjegson tweet mediaWanderjegson tweet mediaWanderjegson tweet mediaWanderjegson tweet media
English
27
457
2.7K
131.1K
Marvel Rivals
Marvel Rivals@MarvelRivals·
Season 8.0 is coming soon, and so is a fresh wave of Twitch Drops! 📺 Join your favorite streamers, watch live, and earn exclusive rewards including a spray, nameplate, emote, and Rogue's Will of Galacta costume! Event Time: Starts: ​May 15, 12PM UTC Ends: June 12, 9AM UTC
Marvel Rivals tweet media
English
60
415
6.1K
233.1K
Lightquake
Lightquake@Lightquake1·
@basedbinkie Very true, Sergant Avery Johnson is a good example.
Lightquake tweet media
English
4
1
70
2.6K
BasedBinkie
BasedBinkie@basedbinkie·
The existence of supersoldiers in a setting serves to elevate the badassery of normal soldiers when they somehow manage to keep up with them
English
137
606
11K
376.4K
Lightquake retweetledi
Inker comics
Inker comics@Inker_comics·
Inker comics tweet media
ZXX
101
2.2K
40.9K
542.9K
Lightquake
Lightquake@Lightquake1·
@merrivius Elf, the maiden of the forest, a few minutes later.
Lightquake tweet media
English
0
0
165
6.1K
Lightquake
Lightquake@Lightquake1·
@beetlemoses The monkey spoke with his hands but the zookeeper heard his soul.
English
0
1
323
40.1K
BasedBinkie
BasedBinkie@basedbinkie·
Post your character and I’ll sniff them then tell you what I think they smell like
BasedBinkie tweet media
English
572
225
6.5K
185.5K
Lightquake
Lightquake@Lightquake1·
@DailyMutantsX Generation X is a hidden gem in the lore of mutants. Need the team to get back together.
English
0
0
3
371
Daily X-Men!
Daily X-Men!@DailyMutantsX·
Today’s Mutant of the day is Paige Guthrie A.K.A Husk! First Appearance: Rom Annual #3 (September 1984) Created by: Bill Mantlo & William Johnson Powers: Husk has the mutant ability to shed her outer layer of skin and reveal a new state or shape underneath!
Daily X-Men! tweet mediaDaily X-Men! tweet mediaDaily X-Men! tweet mediaDaily X-Men! tweet media
English
17
123
1.1K
26K
Hidden Bushi
Hidden Bushi@HiddenBushi·
🛑 STOP COMMANDERS 🛑
Hidden Bushi tweet media
English
740
99
3K
107.7K
Lightquake
Lightquake@Lightquake1·
@wanderjegson "Magic Books? Yeah, I know a guy with a few of them. Tell ya what, you hook me up that silver fox and we got a deal, yeah?"
English
0
3
308
5.8K
Lightquake retweetledi
BasedBinkie
BasedBinkie@basedbinkie·
You're late mercenary! We're wasting credits here! Choose your faction! Who are you gunning for?
BasedBinkie tweet media
English
769
1.7K
18.3K
495.2K
Lightquake
Lightquake@Lightquake1·
@wwarrior_1 Did they forget Azula was basically a super-soldier through a selective breeding project? Then there's this guy who hardly can be defined as 'regular'.
English
2
0
4
1.8K
Lightquake retweetledi
DillonGoo Studios
DillonGoo Studios@dillongoostudio·
ANIME PHYSICS IN BLENDER After years of R&D, we're finally releasing our custom-built physics solution for Blender! Introducing: Goo Physics Goo Physics brings bouncy, floppy, and gooey stylized bone simulation to your rigs with a single click of a button. Available now at ➡️ dillongoostudios.com/add-ons
English
161
5.1K
45.7K
3.3M
Lightquake
Lightquake@Lightquake1·
@iamyomas Exiles had a great run with her on the team
English
0
0
0
517