|
@vm_call | |||||
|
And yes, you read that correctly, literally the entire driver on disk will be sent over UDP if it matches a very vague name check :( ouch oof oowie my intellectual property
|
||||||
|
||||||
|
Carl Schou / vm
@vm_call
|
13. sij |
|
BattlEye is uploading device drivers from your machine as a part of its larger system enumeration routine, which sends unfiltered dumps of process names, window titles, module names, certificates and more to their server - stay put pic.twitter.com/Jcxbtifswh
|
||
|
|
||
|
🥝🐶
@diwidog
|
13. sij |
|
thanks for documenting this
|
||
|
|
||
|
Carl Schou / vm
@vm_call
|
13. sij |
|
I enjoy documenting malware
|
||
|
|
||
|
Kasif Dekel
@kasifdekel
|
14. sij |
|
Did they mention it in the EULA? still not very legit tho, but interesting.
|
||
|
|
||