If the company lacks the competency to write secure driers, they should outsource the work or have it validated externally.
These things could be solved by spending money. Stop excusing dangerous actions performed in the name of greed.
If the company lacks the competency to write secure driers, they should outsource the work or have it validated externally.
These things could be solved by spending money. Stop excusing dangerous actions performed in the name of greed.
How do you do this in modern system with TPMs and IOMMU enabled?
For debugging you would either not have this feature or enabled, or you would build a custom build that included a debugger in the secure environment. If you needed to connect to production servers you could whitelist your account to be ignored by the anticheat since your server would know you are not playing with an official build.
Or a cheat program combining itself with the game executable, and setting the flag so other processes can't interrogate whether it contains a cheat.
And you would sign your files, which get verified by the integrity platform and allow you to authenticate with the servers securely.
The responsibility of securing a platform should not fall on application developers anyway.
I think you’d agree that it would be far easier to technically and socially lock mobile devices to signed deployments only, with jailbreaks becoming rarer and more valuable over time, than to do the same with desktop and laptop computers, due to their requirement to support many different functional requirements (PcIe, thunderbolt peripherals, distributed compute, etc).
I’m not saying I like this, but I think phones will become a single viable OS and locked down ecosystem in the next 5 years. Desktops will follow, but not at the same rate.
By the way, in some countries apartment buildings need several licenses, including one from fire department, before been allowed to have people living on them.
Games should never have kernel level access.