Monsters and Memories (Project_N) - Old School Indie MMO

your_mum

Trakanon Raider
422
274
I think they encrypt everything client side so it's not really possible
doesn't really matter, because the client must decrypt the memory itself to read (and if they've actually encrypted the memory, or done other tricks to obfuscate pointers) that decryption algorithm, key, obfuscation techniques are are available within the client itself to be decompiled. you can read how this jabroni pwned p99's packet encryption techniques 7 years ago

they're not capable of doing anti cheats like big players (and even those big players get pwned)... big players can only prevent publicly released cheats AFTER dissecting their mechanism or just the binary's checksum.

most of the time that is simply banning applications that match "fingerprints" of known cheat applications. so private or personal cheats will almost never be preventable. they can detect when other programs access their programs memory and then crash the application. thats kind of primitive and easily circumvented by kernel level memory reads... thats why you have additional applications, like battle-eye or w/e unity uses by default because it has kernel level memory protection checks. those programs require microsoft registration to sign the certificates allowing those programs kernel level access... something MNM isnt going to do, thus if they did anything would use the built in anti-cheat (but that costs tons of money as a game company). and furthermore those kernel level access programs are circumvented these days by kids buying DMA PCI controllers. (a piece of hardware plugged directly into the motherboard). you then create a fake driver, like for a set of usb speakers, via a plethora of fake or released signatures... now that driver is then coded to access kernel memory and the anti cheats just think that device/driver accessing something is a regular plug-n-play device...
 
  • 1Truth!
Reactions: 1 user

GuardianX

Perpetually Pessimistic
<Bronze Donator>
8,295
21,516
doesn't really matter, because the client must decrypt the memory itself to read (and if they've actually encrypted the memory, or done other tricks to obfuscate pointers) that decryption algorithm, key, obfuscation techniques are are available within the client itself to be decompiled. you can read how this jabroni pwned p99's packet encryption techniques 7 years ago

they're not capable of doing anti cheats like big players (and even those big players get pwned)... big players can only prevent publicly released cheats AFTER dissecting their mechanism or just the binary's checksum.

most of the time that is simply banning applications that match "fingerprints" of known cheat applications. so private or personal cheats will almost never be preventable. they can detect when other programs access their programs memory and then crash the application. thats kind of primitive and easily circumvented by kernel level memory reads... thats why you have additional applications, like battle-eye or w/e unity uses by default because it has kernel level memory protection checks. those programs require microsoft registration to sign the certificates allowing those programs kernel level access... something MNM isnt going to do, thus if they did anything would use the built in anti-cheat (but that costs tons of money as a game company). and furthermore those kernel level access programs are circumvented these days by kids buying DMA PCI controllers. (a piece of hardware plugged directly into the motherboard). you then create a fake driver, like for a set of usb speakers, via a plethora of fake or released signatures... now that driver is then coded to access kernel memory and the anti cheats just think that device/driver accessing something is a regular plug-n-play device...


Naah, let people think that NWC is this super crazy titan of tech security.

It's funny to read that shit on the MNM discord.
 

Noodleface

A Mod Real Quick
40,337
20,313
doesn't really matter, because the client must decrypt the memory itself to read (and if they've actually encrypted the memory, or done other tricks to obfuscate pointers) that decryption algorithm, key, obfuscation techniques are are available within the client itself to be decompiled. you can read how this jabroni pwned p99's packet encryption techniques 7 years ago

they're not capable of doing anti cheats like big players (and even those big players get pwned)... big players can only prevent publicly released cheats AFTER dissecting their mechanism or just the binary's checksum.

most of the time that is simply banning applications that match "fingerprints" of known cheat applications. so private or personal cheats will almost never be preventable. they can detect when other programs access their programs memory and then crash the application. thats kind of primitive and easily circumvented by kernel level memory reads... thats why you have additional applications, like battle-eye or w/e unity uses by default because it has kernel level memory protection checks. those programs require microsoft registration to sign the certificates allowing those programs kernel level access... something MNM isnt going to do, thus if they did anything would use the built in anti-cheat (but that costs tons of money as a game company). and furthermore those kernel level access programs are circumvented these days by kids buying DMA PCI controllers. (a piece of hardware plugged directly into the motherboard). you then create a fake driver, like for a set of usb speakers, via a plethora of fake or released signatures... now that driver is then coded to access kernel memory and the anti cheats just think that device/driver accessing something is a regular plug-n-play device...

You don't need to even know anything about the security to be honest. Claude cracked it in 3 minutes