Security Analysis: Vulnerabilities in Tower of Fantasy's Anti-Cheat Driver Expose BYOVD Risks
By
svespalec
Master baker tier. Every paragraph earns its place on the tray.
Summary
A technical analysis of Tower of Fantasy's anti-cheat driver (GameDriverX64.sys) that reveals significant security vulnerabilities. The author investigates the driver while waiting for the game to install, discovering that despite having four layers of authentication, the anti-cheat system essentially provides a complete Bring Your Own Vulnerable Driver (BYOVD) toolkit. The article details how the driver's security mechanisms can be bypassed, exposing serious flaws in a production anti-cheat system used by a major game.
Key quotes
· 4 pulledThis all started because I wanted to delete my Tower of Fantasy account from over 4 years ago.
Tower of Fantasy is over 100 GB so it would be a long install. I already knew the game shipped with an anti-cheat driver from past experience.
That's when I noticed GameDriverX64.sys.
How four layers of authentication in a production anti-cheat driver still hand you a complete BYOVD toolkit
You might also wanna read
Valve removes free horror game "Beyond The Dark" from Steam after malware discovery
Valve removed the free horror game "Beyond The Dark" from Steam after players discovered it contained malware designed to steal personal dat
PlayStation 5 ROM Keys Leaked, Potentially Enabling Future Jailbreak Development
The PlayStation 5's ROM keys have been leaked, providing hardware codes that could enable jailbreakers to decrypt and analyze the console's
ARC Raiders 'Rebellion Incident' PvE Map Condition Spotted in Chinese Version Testing
Embark Studios is testing a new Chinese version of ARC Raiders, their extraction adventure shooter released in October 2025. A newly discove
Xbox Insider Alpha Skip-Ahead update adds customization options and service status indicator
Microsoft is rolling out a new Xbox Insider update for Alpha Skip-Ahead ring members, featuring additional customization options, a "What's
New FROST Technique Enables Browser-Based SSD Tracking of Website Visitors
A new browser-based tracking technique called FROST (Fingerprinting Remotely Using OPFS-based SSD Timing) allows websites to spy on visitors
How Generative AI Is Disrupting Creative Roles in the Games Industry
Generative AI and large language models are significantly impacting the games industry, particularly in fields like localization and voice a
gamesmarket.global·1h ago