• unhrpetby@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    4
    ·
    edit-2
    12 hours ago

    If you tell me that all I need to do to negate the security concern of the kernel level anticheat is to run the dualboot windows partition…

    …it makes intuitive sense that installing a kernel level anticheat would only affect the windows kernel it was installed on not the linux kernel on the other drive partition.

    The intuition is incorrect as the kernel-level anticheats are not necessarily trusted. Operating systems interact with low-level hardware and firmware on the system. As such, it is not self-contained.

    https://www.kaspersky.com/about/press-releases/more-elusive-and-more-persistent-the-third-known-firmware-bootkit-shows-major-advancement

    There exists both UEFI bootkits and firmware implants. Its intuitive if you understand it like this: if there exists a communication pathway from (A) lower-privilege code -> (B) higher-privilege code, there exists the potential for vulnerabilities.

    This is due to (A) now having an effect on the code execution for (B).