DRM

Xbox Series X DRM Makes It Near Impossible To Play Games Offline (ign.com) 54

It seems that Microsoft's digital rights management decisions for the Xbox Series X are a serious cause for concern. From a report: According to a video from YouTuber and game developer Modern Vintage Gamer, the Xbox Series X is unable to play games without connecting to Microsoft's servers. He tried games off a disc like Rise of the Tomb Raider as well as Hitman 3 and both refused to work offline. While Microsoft recommends keeping your Xbox Series X as your 'Home Console' in its settings, it's a solution that's described as a 'band-aid' as it doesn't seem to work with every game as it should.

Native Xbox Series X physical games like Devil May Cry 5 Special Edition work fine. It installed off the disc and ran as it should offline. This should in theory mean that games that are solely for the Xbox Series X should work both offline and online. However with Microsoft's focus on Smart Delivery, it means that the current crop of Xbox Series X discs that run on Xbox One as well are essentially coasters. All of this essentially means that you won't be able to play your Xbox games when Microsoft decides to take its servers offline.

DRM

Hardware Hacker Breaks the DRM On a Mini Dishwasher (gizmodo.com) 148

Developer dekuNukem has detailed a methodology for refilling the DRM-protected detergent cassettes for a $486 portable dishwasher called Bob. Gizmodo reports: Bob is basically a small dishwasher that sits on your counter. It holds half a dozen dishes and some silverware, and you add water to the system by hand. It looks like a great alternative to a larger installed dishwasher or something nice for an apartment dweller. But it has a secret bit of DRM built in that keeps you wedded to the company's products. The Bob uses cassettes, called Rock and Pop (LOL!), that contain concentrated detergent and rinse liquids. The cassettes are similar to inkjet cartridges in that they store a small amount of information on a built-in chip -- in this case, a simple I2C EEPROM that can store a small amount of information. This chip stores the number of washes and will "cancel" a cassette when it's technically empty. The machine will then order new cassettes automatically. To Bob's credit, you can use your own detergent, but it isn't easy. And the cassettes aren't cheap.

"With shipping and VAT added, it costs a whopping $60 for 90 washes! That is 48p (67c) per wash. It might not sound like much, but it quickly adds up," wrote dekuNukem. "Over a year of daily washes, it would have cost $242 in Bob cassettes alone! Imagine paying that much recurring cost for a dishwasher!"

Using an EEPROM reader, they were able to pull the data from the cassette and even modify it, resulting in a simple system to reset the cartridges back to their original wash counts or, in one case, forcing the cassette to run about 70 more washes than originally advertised. Once dekuNukem figured out the coding mechanism, they had to figure out a way to refill the cassettes. They searched the internet for concentrated detergent offerings and found one that matched the website description exactly. "Refilling it yourself is more than 60 times cheaper, resulting in a massive 98% cost saving compared to buying new!" they wrote.
The plans are available on dekuNukem's Github. You can also purchase the Cassette Rewinder, a pre-soldered board that will automatically reset the cassette EEPROM, for $29.99.
GNU is Not Unix

The FSF Says ThinkPenguin's Wireless-N Mini Router 'Respects Your Freedom' (fsf.org) 36

Friday the Free Software Foundation awarded their coveted "Respects Your Freedom" (RYF) certification to another new product: the Free Software Wireless-N Mini Router v3 (TPE-R1300) from ThinkPenguin, Inc.

Just 45 products currently hold the FSF's certification "that these products meet the FSF's standards in regard to users' freedom, control over the product, and privacy." (That is to say, they run on 100% free software, allow the installation of modified software, and are free from DRM, spyware and tracking.) The FSF writes: As with previous routers from ThinkPenguin, the Free Software Wireless-N Mini Router v3 ships with an FSF-endorsed fully free embedded GNU/Linux distribution called libreCMC. It also comes with a custom flavor of the U-Boot boot loader, assembled by Robert Call, who is the maintainer of libreCMC and a former FSF intern.

The router enables users to run multiple devices on a network through a VPN service, helping to simplify the process of keeping their communications secure and private. While ThinkPenguin offers a VPN service, users are not required to purchase a subscription to their service in order to use the router, and the device comes with detailed instructions on how to use the router with a wide variety of VPN providers...

"ThinkPenguin once again demonstrates a long-standing commitment to protecting the rights of their users. With the latest iteration of the Wireless-N Mini Router, users know that they'll have up to date hardware they can trust for years to come," said the FSF's licensing and compliance manager, Donald Robertson, III.

Phoronix points its readers to the device's page at ThinkPenguin.com "should you be looking to build out your wireless network using the decade old 802.11n standard."
DRM

Apple Told to Pay $308.5 Million for Infringing DRM Patent (bloomberg.com) 44

Apple infringed on a digital rights management patent, and must pay $308.5 million, a federal jury in Texas decided this week.

"Apple said it was disappointed with the ruling and would appeal," reports Bloomberg: "Cases like this, brought by companies that don't make or sell any products, stifle innovation and ultimately harm consumers," the company said in an emailed statement...

U.S. District Judge Rodney Gilstrap last week also adopted a magistrate's recommendation denying Apple's request to find the patent invalid.

Iphone

Apple Fined $2 Million in Brazil for Selling iPhones Without a Charger (engadget.com) 97

Brazil's consumer protection agency Procon-SP has fined Apple nearly $1.92 million for selling iPhone without a charger, reports Engadget (citing two technology blogs.) Apple's move was a violation of the country's Consumer Defense Code, according to the watchdog.

Procon-SP told Apple about the alleged violation in December. Apple responded by reiterating its environmental angle, arguing that it would reduce CO2 emissions and rare earth mining. It noted that many customers already had spare chargers. The agency clearly wasn't satisfied with that answer, however. In issuing the fine, Procon-SP executive director Fernando Capez told Apple it needed to respect Brazilian law.

The fine also covers allegedly misleading water resistance claims. Apple supposedly declined to repair iPhones that had suffered water damage under warranty despite touting the devices' ability to survive immersion for extended periods.

DRM

Twitch Censors Live Metallica Performance with Dorkiest Music Imaginable (avclub.com) 43

In the year 2000, Metallica drummer Lars Ulrich answered questions from Slashdot's readers.

Late Friday night, the AV Club described Metallica's appearance at the opening ceremonies for the (now online) version of Blizzard Entertainment's annual event BlizzCon: The opening ceremonies were being broadcast online, both through the official BlizzCon page, YouTube, and Twitch. And you know what happens when licensed music gets played on the internet, don't you, folks? That's right: Copyright issues!

Per Uproxx, the audio of James, Lars, and the boys' performance apparently went out as per usual on YouTube and the BlizzCon page — although the whole thing appears to have been excised from the YouTube upload of the event. But on Twitch... On Twitch, things did not go so well. Which is to say that, even though it was being hosted on the company's official twitchgaming channel, the performance was ominously preceded by a chyron noting that "The upcoming musical performance is subject to copyright protection by the applicable copyright holder."

And then this happened....

Can we prove that someone at Twitch intentionally picked the dorkiest, most Zelda forest-ass music imaginable to have Metallica rock their little hearts out to, instead of broadcasting their extremely copyrighted music (and thus having to deal with the possibility of issuing one of their ubiquitous DMCA takedown notices to themselves)? Obviously not.... On the other hand, we can prove that it is extremely funny to watch this happen, especially — as many people have pointed out — since Metallica is at least partially responsible for the restrictive character of many online musical streaming laws that dominate the internet today, after their high-profile campaign against Napster way back at the dawn of the MP3.

In other news, Diablo II is being remastered and re-released later this year.
Cellphones

The US Could Soon Ban the Selling of Carrier-Locked Phones (wired.com) 62

An anonymous reader quotes a report from Wired: In the U.S., a complicated combination of corporate interests and pre-smartphone era legislation has resulted in more than two decades of back and forth about the legality of phone locking. It's looking like that battle could ramp up again next year. The transition to a Biden administration could shake up the regulatory body that governs these rules. The timing also coincides with a congressional proceeding that takes place every three years to determine what tweaks should be made to digital rights laws. 2021 could be the year of the truly unlocked phone. For some activists, it's a glimmer of light at the end of a very long tunnel.

[H]ow could carriers be forced to provide phones that are unlocked by default? There are a couple of promising avenues, though neither are a given. The "agenda" here meaning something to be decided by a regulating body. In the UK, the regulator Ofcom made that call. The US Ofcom equivalent is the Federal Communications Commission. Under its current leadership of Trump appointee Ajit Pai, the FCC has been staunchly pro-business, passing legislation like the repeal of net neutrality at the behest of companies like AT&T. "Getting this done in an Ajit Pai FCC would be extremely difficult and very unlikely, given how friendly that FCC has been toward private companies and broadband providers," Sheehan says. "Whether or not that could happen in a Biden administration, we don't know. I think it would be much more possible."

Another route would be to take the problem back to its source: Section 1201 itself. Every three years, the US Library of Congress and Copyright Office hold a rulemaking proceeding that takes public comment. It's a chance for advocates to make their case for amending Section 1201, assuming they can afford the legal fees necessitated by such an involved, drawn out process. It's a less overtly political process, as the key decisionmakers at the two institutions don't come and go with each presidential administration like they usually do at the FCC. These sessions have already yielded positive outcomes for fans of repairability, like an exemption that took effect in 2016 that made it legal to hack car computers and other devices. The next proceeding is currently underway. If citizens want to urge the government to amend Section 1201, the first round of comments are required to be in by December 14. Responses and additional proposals will go back and forth through the spring of 2021, until the Copyright Office ultimately decides which changes to implement. Both Sheehan and Wiens are working with other advocates to make their case for a future of unlockability.

Electronic Frontier Foundation

HP Replaces 'Free Ink for Life' Plan With '99 Cents a Month Or Your Printer Stops Working' (eff.org) 193

In a new essay at EFF.org, Cory Doctorow re-visits HP's anti-consumer "security updates" that disabled third-party ink cartridges (while missing real vulnerabilities that could actually bypass network firewalls).

Doctorow writes that it was just the beginning: HP's latest gambit challenges the basis of private property itself: a bold scheme! With the HP Instant Ink program, printer owners no longer own their ink cartridges or the ink in them. Instead, HP's customers have to pay a recurring monthly fee based on the number of pages they anticipate printing from month to month; HP mails subscribers cartridges with enough ink to cover their anticipated needs. If you exceed your estimated page-count, HP bills you for every page (if you choose not to pay, your printer refuses to print, even if there's ink in the cartridges). If you don't print all your pages, you can "roll over" a few of those pages to the next month, but you can't bank a year's worth of pages to, say, print out your novel or tax paperwork. Once you hit your maximum number of "banked" pages, HP annihilates any other pages you've paid for (but continues to bill you every month).

Now, you may be thinking, "All right, but at least HP's customers know what they're getting into when they take out one of these subscriptions," but you've underestimated HP's ingenuity. HP takes the position that its offers can be retracted at any time. For example, HP's "Free Ink for Life" subscription plan offered printer owners 15 pages per month as a means of tempting users to try out its ink subscription plan and of picking up some extra revenue in those months when these customers exceeded their 15-page limit. But Free Ink for Life customers got a nasty shock at the end of last month: HP had unilaterally canceled their "free ink for life" plan and replaced it with "a $0.99/month for all eternity or your printer stops working" plan...

For would-be robber-barons, "smart" gadgets are a moral hazard, an irresistible temptation to use those smarts to reconfigure the very nature of private property, such that only companies can truly own things, and the rest of us are mere licensors, whose use of the devices we purchase is bound by the ever-shifting terms and conditions set in distant boardrooms. From Apple to John Deere to GM to Tesla to Medtronic, the legal fiction that you don't own anything is used to force you to arrange your affairs to benefit corporate shareholders at your own expense. And when it comes to "razors and blades" business-model, embedded systems offer techno-dystopian possibilities that no shaving company ever dreamed of: the ability to use law and technology to prevent competitors from offering their own consumables. From coffee pods to juice packets, from kitty litter to light-bulbs, the printer-ink cartridge business-model has inspired many imitators.

HP has come a long way since the 1930s, reinventing itself several times, pioneering personal computers and servers. But the company's latest reinvention as a wallet-siphoning ink grifter is a sad turn indeed, and the only thing worse than HP's decline is the many imitators it has inspired.

Electronic Frontier Foundation

EFF Argues RIAA is 'Abusing DMCA' to Take Down YouTube-DL (eff.org) 49

While the RIAA has objected to a tool for downloading online videos, EFF senior activist Elliot Harmon responds with this question. "Who died and put them in charge of YouTube?"

He asks the question in a new video "explainer" on the controversy, and argues in a new piece at EFF.org that the youtube-dl tool "doesn't infringe on any RIAA copyrights." RIAA's argument relies on a different section of the DMCA, Section 1201. DMCA 1201 says that it's illegal to bypass a digital lock in order to access or modify a copyrighted work. Copyright holders have argued that it's a violation of DMCA 1201 to bypass DRM even if you're doing it for completely lawful purposes; for example, if you're downloading a video on YouTube for the purpose of using it in a way that's protected by fair use. (And thanks to the way that copyright law has been globalized via trade agreements, similar laws exist in many other jurisdictions too.) RIAA argues that since youtube-dl could be used to download music owned by RIAA-member labels, no one should be able to use the tool, even for completely lawful purposes.

This is an egregious abuse of the notice-and-takedown system, which is intended to resolve disputes over allegedly infringing material online. Again, youtube-dl doesn't use RIAA-member labels' music in any way. The makers of youtube-dl simply shared information with the public about how to perform a certain task — one with many completely lawful applications.

Harmon wants to hear from people using youtube-dl for lawful purposes. And he also links to an earlier EFF piece arguing that DMCA 1201 "is incredibly broad, apparently allowing rightsholders to legally harass any 'trafficker' in code that lets users re-take control of their devices from DRM locks..."

And EFF's concern over DMCA 1201 has been ongoing: DMCA 1201 has been loaded with terrible implications for innovation and free expression since the day it was passed. For many years, EFF documented these issues in our "Unintended Consequences" series; we continue to organize and lobby for temporary exemptions to its provisions for the purposes of cellphone unlocking, restoring vintage videogames and similar fair uses, as well as file and defend lawsuits in the United States to try and mitigate its damage. We look forward to the day when it is no longer part of U.S. law.

But due to the WIPO Copyright Treaty, the DMCA's anti-circumvention provisions infest much of the world's jurisdictions too, including the European Union via the Information Society Directive 2001/29/EC.

Books

Cory Doctorow Crowdfunds His New Audiobook to Protest Amazon/Audible DRM (kickstarter.com) 76

Science fiction writer Cory Doctorow (also a former EFF staffer and activist) explains why he's crowdfunding his new audiobook online. Despite the large publishers for his print editions, "I can't get anyone to do my audiobooks. Amazon and its subsidiary Audible, which controls 90% of the audiobook sales, won't carry any of my audiobooks because I won't let them put any of their digital rights management on it.

"I don't want you locked in with their DRM as a condition of experiencing my work," he explains in a video on Kickstarter. "And so I have to do it myself."

He's promising to sell the completed book through all the usual platforms "except Audible," because "I want to send a message. If we get a lot of pre-orders for this, it's going to tell something to Amazon and Audible about how people prioritize the stories they love over the technology they hate, and why technological freedom matters to people.

"It's also going to help my publisher and other major publishers understand that there is an opportunity here to work with crowdfunding platforms in concert with the major publishers' platforms to sell a lot of books in ways that side-step the monopolists, and that connect artists and audiences directly."

it's the third book in a series which began with the dystopian thriller Little Brother (recommended by Neil Gaiman) and continued with a sequel named Homeland. ("You may have seen Edward Snowden grab it off his bedstand and put it in his go bag and go into permanent exile in Hong Kong in the documentary Citizen 4," Doctorow says in his fundraising video.) The newest book, Attack Surface, finds a "technologist from the other side" — a surveillance contractor — now reckoning with their conscience while being hunted with the very cyber-weapons they'd helped to build. "There are a lot of technologists who are reckoning with the moral consequences of their actions these days," Doctorow says, adding "that's part of what inspired me to write this...

"Anyone who's been paying attention knows that there's been a collision between our freedom and our technology brewing for a long time."

Just three days after launching the Kickstarter campaign, Doctorow had already raised over $120,000 over his original goal of $7,000 — with 26 days left to go. And he also promises that the top pledge premium is for real....
$10,000 You and Cory together come up with the premise for his next story in the "Little Brother" universe.
$75 or more All three novels as both audiobooks and ebooks
$40 or more All three novels as audiobooks
$35 or more All three novels as ebooks
$25 or more The audiobook and the ebook of Cory's new novel, Attack Surface
$15 or more The audiobook for Attack Surface
$14 or more The new book Attack Surface in ebook format as a .mobi/.epub file
$11 or more The second book in the series, Homeland, in ebook format as a .mobi/.epub file
$10 or more The first novel in the series in ebook format as a .mobi/.epub file
$1 or more Cory will email you the complete text of "Little Brother," the first book in the series, cryptographically signed with his private key

DRM

Archivists Want Broader DMCA Exemption for 'Abandoned' Online Games (torrentfreak.com) 45

Several organizations have asked the Copyright Office to renew the exemption to the DMCA's DRM circumvention restrictions. This would allow, they argued, abandoned online games to be preserved for future generations. In addition, the Software Preservation Network and the Library Copyright Alliance have asked for an expansion to allow these games to be made available more broadly.
Classic Games (Games)

Pandemic Sends Videogame Museum Into Two-Year Shutdown (gamesindustry.biz) 25

Oakland's nonprofit "Museum of Art and Digital Entertainment" housed 40,000 historic pieces of videogame memorabilia — including 11,000 playable games. In 2017 they were the ones urging America's copyright office to allow museums and libraries to circumvent DRM to preserve abandoned online games like FIFA World Cup, Nascar and The Sims. The museum's sponsors include GitHub, Google, PlayStation, and Dolby Digital.

But now the MADE is "set to close its doors, with uncertainty ahead about whether it'll ever be able to reopen," reports GamesIndustry.biz: Founder and director Alex Handy said in an interview with GamesBeat that the group managing the museum couldn't reach an agreement on rent for the place during the COVID-19 crisis... 80% of its budget comes from admissions, its website says, and since it's been closed since March due to the pandemic, it's now forced to shut down and move its collections to storage.

Storage will be paid for thanks to donations — still open on this page and will also go towards eventually finding a new space for the museum. "The current plan is to stay in storage for two years while we raise the funds and make plans to create our dream video game museum," the museum's website reads. "When we're ready, we will be back and better than ever, mark our words."

DRM

HBO Max Cranks Up the Widevine DRM, Leaves Linux Users in the Cold (arstechnica.com) 112

Jim Salter, reporting for ArsTechnica: A reader tipped us off today that HBO Max stopped working a couple of weeks ago for Linux users, under any Web browser. Any attempt to play back a video on the streaming service on a Linux system -- regardless of distribution or browser -- returns an error saying, "We're having trouble playing this video. Please try again later." Unfortunately, trying again later won't help -- the root cause of the problem is that the Widevine DRM attempting to protect HBO Max's content from pirates is refusing to recognize any Linux system as a known platform.

We saw the same thing happen in January, when CBS All Access suddenly stopped working on Linux in the same way. When we asked CBS executives if they had enabled the Verified Media Path (VMP) requirement on their Widevine server, they suddenly clammed up -- but later that day, the service miraculously worked for Linux users again. We did verify that HBO Max will not work on Linux browsers and that the problem is -- once again -- Widevine DRM refusing to issue a license. Although HBO Max has not returned requests for comment at press time, it seems very likely that the cause here is the same as it was for CBS All Access back in January. It seems like somebody enabled Verified Media Path on the Widevine server, and since the Linux kernel is not a verified media path, Linux users can't get a license and can't watch the content.

Quake

You Can Now Play an Ultra-Rare Quake Arcade Cabinet at Home (arstechnica.com) 17

Since its 1996 PC release, id's seminal shooter Quake has been ported to everything from flip phones and smartphones to game consoles and Web browsers. But even many serious fans of the series don't know about Quake Arcade Tournament Edition (Quake ATE), an officially licensed version of the game that ran on custom arcade cabinets. From a report: Even among those who know about it, few ever got a chance to play it during the brief time it was in arcades, and hardware-based DRM built into the cabinet meant the game wasn't playable on home emulators. That state of affairs now seems set to change thanks to the recent release of a Windows executable that can decrypt the data dumped from those aging arcade hard drives for play on a modern home computer.
Microsoft

Microsoft's New KDP Tech Blocks Malware By Making Parts of the Windows Kernel Read-Only (zdnet.com) 43

Microsoft today published technical details about a new security feature that will soon be part of Windows 10. From a report: Named Kernel Data Protection (KDP), Microsoft says this feature will block malware or malicious threat actors from modifying (corrupting) the operating system's memory. According to Microsoft, KDP works by giving developers access to programmatic APIs that will allow them to designate parts of the Windows kernel as read-only sections. "For example, we've seen attackers use signed but vulnerable drivers to attack policy data structures and install a malicious, unsigned driver," Microsoft's Base Kernel Team said today. "KDP mitigates such attacks by ensuring that policy data structures cannot be tampered with." Microsoft says this new technology was developed with security in mind but that it also has other applications, such as anti-cheat and digital rights management (DRM) software.
DRM

Hacker Bypasses GE's Ridiculous Refrigerator DRM (vice.com) 127

An anonymous reader quotes a report from Motherboard: Earlier this year, we brought you the sordid tale of the GE refrigerator that won't dispense filtered water unless consumers pay extra for "official" filters from the company. This sort of digital rights management and artificial, software-enforced monopoly is a scourge on consumer rights. Now, finally, a fed up customer has found a way to bypass GE's refrigerator DRM, and has posted instructions online.

The anonymous person registered a website called gefiltergate.com, and explained that by swapping the RFID tag from an official GE refrigerator to a third-party filter they bought on Amazon, they can get the refrigerator to continue filtering water as normal. For reference, third-party filters cost as little as $13; GE filters cost $55. I'm gonna go ahead and call this a "hack," because they're bypassing an artificial software lock to circumvent DRM, which is, at least in spirit, a hack, and a cool one at that. The hack was also done by Jack Busch over at GroovyPost last month. To make your fridge use "unauthorized" filters, you need to take the old filter out, flip it over, and carefully remove the RFID chip. This chip tells the fridge that it's a "real" filter. This chip is glued down, and the person on gefiltergate suggested that rather than try to pry it up, you can simply cut around it with a Dremel or a saw. They then taped the RFID chip to the circuit board that checks whether a filter is authorized. This then allows them to use third-party filters, no problem. As Busch explains in his blog post, the refrigerator will say "not filtering," but it will dispense water that goes through the new filter, so it does indeed work.

Data Storage

Western Digital's SMR Disks Won't Work For ZFS, But They're Okay For Most NASes. (arstechnica.com) 74

An anonymous reader shares a report: Western Digital has been receiving a storm of bad press -- and even lawsuits -- concerning their attempt to sneak SMR disk technology into their "Red" line of NAS disks. To get a better handle on the situation, ArsTechnica purchased a Western Digital 4TB Red EFAX model SMR drive and put it to the test ourselves. [...] Recently, the well-known tech enthusiast site Servethehome tested one of the SMR-based 4TB Red disks with ZFS and found it sorely lacking. The disk performed adequately -- if underwhelmingly -- in generic performance tests. But when Servethehome used it to replace a disk in a degraded RAIDz1 vdev, it required more than nine days to complete the operation -- when all competing NAS drives performed the same task in around sixteen hours.

[...] We want to be very clear: we agree with Seagate's Greg Belloni, who stated on the company's behalf that they "do not recommend SMR for NAS applications." At absolute best, SMR disks underperform significantly in comparison to CMR disks; at their worst, they can fall flat on their face so badly that they may be mistakenly detected as failed hardware. With that said, we can see why Western Digital believed, after what we assume was a considerable amount of laboratory testing, that their disks would be "OK" for typical NAS usage. Although obviously slower than their Ironwolf competitors, they performed adequately both for conventional RAID rebuilds and for typical day-to-day NAS file-sharing workloads. We were genuinely impressed with how well the firmware adapted itself to most workloads -- this is a clear example of RFC 1925 2.(3) in action, but the thrust does appear sufficient to the purpose. Unfortunately, it would appear that Western Digital did not test ZFS, which a substantial minority of their customer base depends upon.

First Person Shooters (Games)

'Doom Eternal' Is Using Denuvo's New Kernel-Level Anti-Cheat Driver (arstechnica.com) 68

"Doom Eternal has become the latest game to use a kernel-level driver to aid in detecting cheaters in multiplayer matches," reports Ars Technica: The game's new driver and anti-cheat tool come courtesy of Denuvo parent Irdeto, a company once known for nearly unbeatable piracy protection and now known for somewhat effective but often cracked piracy protection. But the new Denuvo Anti-Cheat protection is completely separate from the company's Denuvo Anti-Tamper technology... The new Denuvo Anti-Cheat tool rolls out to Doom Eternal players after "countless hours and millions of gameplay sessions" during a two-year early access program, Irdeto said in a blog post announcing its introduction. But unlike Valorant's similar Vanguard system, the Denuvo Anti-Cheat driver "doesn't have annoying tray icons or splash screens" letting players monitor its use on their system. "This invisibility could raise some eyebrows," Irdeto concedes.

To assuage any potential fears, Irdeto writes that Denuvo Anti-Cheat only runs when the game is active, and Bethesda's patch notes similarly say that "use of the kernel-mode driver starts when the game launches and stops when the game stops for any reason...."

"No monitoring or data collection happens outside of multiplayer matches," Denuvo Anti-Cheat Product Owner Michail Greshishchev told Ars via email. "Denuvo does not attempt to maintain the integrity of the system. It does not block cheats, game mods, or developer tools. Denuvo Anti-Cheat only detects cheats." Greshishchev added that the company's driver has received "certification from renown[ed] kernel security researchers, completed regular whitebox and blackbox audits, and was penetration-tested by independent cheat developers." He said Irdeto is also setting up a bug bounty program to discover any flaws they might have missed.

And because of Denuvo Anti-Cheat's design, Greshishchev says the driver is more secure than others that might have more exposure to the Internet. "Unlike existing anti-cheats, Denuvo Anti-Cheat does not stream shell code from the Web," Greshishchev told Ars. "This means that, if compromised, attackers can't send down arbitrary malware to gamers' machines...."

If a driver exploit is discovered in the wild, Greshishchev told Ars that revocable certificates and self-expiring network keys can be used as "kill switches" to cut them off.

DRM

Bethesda Apparently Broke Its Own Denuvo Protection For Doom Eternal (arstechnica.com) 105

According to users on Reddit and ResetEra, Bethesda launched Doom Eternal with a DRM-free copy of the game's executable sitting in plain sight amid the download package. Ars Technica reports: Forum users on Reddit and ResetEra were among the first yesterday to report on the "official" DRM-free leak, which sat in a sub-folder titled "Original" for the Bethesda Launcher version of the game. That 67MB file can reportedly replace the 370MB, DRM-protected executable in the main game folder with minimal effort and no practical effect on playability. Ars has been unable to independently verify these reports, as a subsequent patch has apparently removed the DRM-free executable. But the trackers at CrackWatch and repackers in the cracking community have confirmed that the DRM-free version was distributed and working shortly after launch. And while the DRM-free version still requires a Bethesda account login the first time it's run, forum reports suggest crackers have already discovered a simple method to patch that check for a completely offline pirated experience.
Social Networks

Activision Fights 'Call of Duty' Leaks With Subpoenas to Reddit (gizmodo.com) 29

Gizmodo shares the saga of a now-deleted video claiming to show Call of Duty's new "battle royale" mode: The YouTube video, initially posted by a user who goes by TheGamingRevoYT, was slammed with a copyright claim and ripped from the platform. Meanwhile, other gamers noticed that Reddit posts and Twitter threads even mentioning the upcoming release were being taken down for "copyright infringement." Last week, when one Redditor found a leak of what appeared to be the cover art for the new game, that got hit with a copyright claim too — and some other legal action. According to court documents obtained by TorrentFreak, Activision has spent the last week actively subpoenaing Reddit to uncover the identity of the Reddit user who leaked the initial artwork...

It's worth noting, as TorrentFreak points out, that there wasn't technically any "infringing content" posted to the thread itself — just an external link to a site that hosted the image in question.

Slashdot Top Deals