28 votes

Denuvo DRM has been cirmumvented using hypervisor based bypass

13 comments

  1. [2]
    Tiraon
    Link
    I am actually not sure whether this is better suited to ~tech or ~games. It is a blend of the two so It is not straightforward. I chose ~tech due to the method of bypass and its implications but...

    I am actually not sure whether this is better suited to ~tech or ~games. It is a blend of the two so It is not straightforward. I chose ~tech due to the method of bypass and its implications but if people feel it would be better in ~games then I have no objections.

    This actually pretty well illustrates several points about hw ownership, effective sw ownership, DRM measures and mainly AAA game markets.

    9 votes
    1. macleod
      Link Parent
      Works best in ~tech, this is encryption security hardware/software related, not specific to any game.

      Works best in ~tech, this is encryption security hardware/software related, not specific to any game.

      7 votes
  2. [3]
    macleod
    Link
    How do you go deeper than the kernel?

    promising that "performance will not be compromised" by said improvements and that they will not go deeper into the operating system.

    How do you go deeper than the kernel?

    5 votes
    1. arch
      Link Parent
      The hypervisor bypass method seems to be a ring -1 based exploit. The Windows kernel itself is a higher level, ring 0. There's already some security components that utilize ring -2, and Intel...

      The hypervisor bypass method seems to be a ring -1 based exploit. The Windows kernel itself is a higher level, ring 0. There's already some security components that utilize ring -2, and Intel Management Engine at ring -3. I'm not security focused enough to offer any insight into how these things work, or how they might use them for copy protection.

      12 votes
    2. whs
      Link Parent
      I suppose this is a promise that, unlike when cheats goes into/under the kernel and anticheats has to become kernel mode, Denovo will not become kernel mode anti tamper.

      I suppose this is a promise that, unlike when cheats goes into/under the kernel and anticheats has to become kernel mode, Denovo will not become kernel mode anti tamper.

      1 vote
  3. pete_the_paper_boat
    Link
    Oh we're getting into some serious voodoo now

    Installing a community-made hypervisor (HV) with Windows running on top of it. This HV fakes responses to the checks that Denuvo makes, and runs with higher permissions (ring level -1) than the operating system itself and has full, nearly untraceable access to hardware and software.

    Oh we're getting into some serious voodoo now

    5 votes
  4. [7]
    Gummy
    Link
    Does this have anything to do with recent crack for DOOM: the dark ages? I heard from a friend that the fitgirl repack just works. As far as I knew that game still has Denuvo.

    Does this have anything to do with recent crack for DOOM: the dark ages? I heard from a friend that the fitgirl repack just works. As far as I knew that game still has Denuvo.

    3 votes
    1. AugustusFerdinand
      Link Parent
      Fitgirl doesn't crack, just repacks. The crack was by voice38, which is what Fitgirl's repack is based off of.

      Fitgirl doesn't crack, just repacks. The crack was by voice38, which is what Fitgirl's repack is based off of.

      6 votes
    2. xothist
      Link Parent
      Doom's Denuvo was cracked, yes. I couldn't tell you if this is related though.

      Doom's Denuvo was cracked, yes. I couldn't tell you if this is related though.

      3 votes
    3. [3]
      CptBluebear
      (edited )
      Link Parent
      I don't know the specific reason for Doom Dark Ages. Most Denuvo protections are time limited anyway. Because it's so expensive to keep licensed you often see games drop Denuvo protection a couple...

      I don't know the specific reason for Doom Dark Ages. Most Denuvo protections are time limited anyway. Because it's so expensive to keep licensed you often see games drop Denuvo protection a couple of weeks after launch. They figure sales are highest in the first week, so let's protect that the most.

      But at this point this hypervisor workaround means almost all Denuvo games have been circumvented, and as far as I can tell the only games still on the list aren't all that interesting anyway.

      Fitgirl specifically left a message last week that only about 60 games were left, so they're saying they're actively working on it.

      3 votes
      1. [2]
        AugustusFerdinand
        Link Parent
        Circumvented ≠ Cracked Hypervisor isn't a crack.

        Circumvented ≠ Cracked

        Hypervisor isn't a crack.

        1 vote
        1. CptBluebear
          Link Parent
          Good correction, thanks. Call it flippancy from my end more than anything, but for the sake of accuracy I'll give it the ol' edit.

          Good correction, thanks. Call it flippancy from my end more than anything, but for the sake of accuracy I'll give it the ol' edit.

          1 vote
    4. Carrow
      Link Parent
      Doom dark ages was 'properly' cracked, not HV bypassed like what's described in this article. No need to drop the security protections for it.

      Doom dark ages was 'properly' cracked, not HV bypassed like what's described in this article. No need to drop the security protections for it.

      1 vote