Today i'll be sharing some non conventional cheats which don't exactly fit into the traditional catergory of external and internal and will also get little bit of technical about the exploits and experience on using them with the goal being that yall can make better decisions. Do note this may seem biased but this is not a sponsored post i don't have any alliances to any provider or supplier, I'm just sharing my experience here.
DMA
wtf is even DMA ?
- its basically a physical FPGA board plugged into a PCIe slot on the gaming PC. it reads the game's memory directly from the gaming PC's RAM, bypassing the CPU and OS, so no cheat code runs on the gaming machine.
Now why is this a big deal and how is this more safe than your traditional external or internal products ?
Because at the end of the day every bypass or exploit is manipulating and reading the game memory. just by reading memory you don't have much to have a exploit you need to write memory as well which is a heuristical problem.
With DMA you easily read the game memory via the card and the second PC which is connected to the DMA card runs the actual software (DMA cheat) which takes all that data and knows player location, hitbox, etc and the MAKCU basically acts as bridge between the two PC (you gaming pc and the pc which running exploit) and can emulate the mouse movements for aimbot or recoil compensation.
why a firmware is needed ?
I don't want to go in much detail but firmware is what makes the DMA card work think of it as a bridge between the hardware and software, in laymen terms it what makes the DMA card work so that it can read memory and send data packet back and make sure to spoof stuff so that the anti cheat thinks its a harmless USB device.
But its a cat and mouse game, every once in a while EAC will update and sends a PCIe blacklist which will catch your DMA if you don't update it. So the so called UD is only UD until the next EAC update. Also depending on the anti cheat your are targetting you would be charged differently.
But overall its a solid option you do spend a good amount of money for the setup and the DMA cheat, typical setups and cheat cost around 2-3k or more depending on what all you have included and which FUSER you are going with.
Firmware providers
-
Nvidia (don't confuse this with Nvidia GPU company lol)
-
Occlusion
DMA Cheat providers
-
Blurred
-
Atomic
-
NT Nigu
some keynotes before the next section, there are lot of scammers out there when it comes to firmware providers so be cautious do your research don't take any word for granted. If you have a 240hz screen for gaming PC and play at 4k there is no FUSER developed till date which supports 4k and 240hz so u need to play at 1440p not a deal breaker imo but can be for some.
Virtual DMA
i'll keep this short because its mostly similar to traditional DMA and yes you need all the setup if you want aim bot or ESP (Fuser + MAKCU/FERRUM) the only major difference being how you read the game memory and its transmission to the second PC where your cheat runs.
Network Card/Adapter VDMA
- if you are using vulnerable network driver you can pretty much do the same thing which DMA cards do, i haven't done a deep dive into how that works because i'm lazy, but there is a POC i saw on github[
only things which you need to make sure in general is that your network card good bandwidth so data can flow easily like a 2.5ghz card is prefered.
Overall i personally haven't use RDMA, maybe someone can explain their experience in the thread. based on the providers i know they cost around $90-100/month which to me sounds cheaper than regular DMA. Also not all DMA cheats are compatible with the VDMA you need to ask them which provider supports them.
Known Providers for Virtual DMA
-
Wrymalith
-
VDMA
Kernel Virtual Machine
This is kind of my personal favorite because there is some solid work needed to achieve this, its very tricky.
Your gaming PC does not use windows but a custom Linux based OS which uses its Kernel Based Virtualisation to run Windows. I don't know much about how it works because i'm a noob here but your cheat has higher privileges than the windows os here since its virtualised.
The best thing is, most anti cheats are supported using this method you name it Vanguard, EAC, javelin, etc you have your own cheating OS so to speak.
some providers for this also claim unlimited spoofing so you can rage cheat all you want.
The cheat installation can be tricky for a novice since you are installing a new linux os and then there are intricate things which may differ from provider to provider and can be tedious but imo this is a ultimate tool in a cheaters arsenal.
Know KVM providers
-
Apex KVM Celestial (edit - users have had mixed experience using this so kindly be careful with the provider, there can be many reasons for this but my guess it their thing does not work for every machine )
Bootkits/UEFI
external cheats rely on some bypass mechanism for most cases its a kernel driver but there are others which load the bypass before the OS (you typicall need to turn off secure boot for this) by embedding themselves into the motherboard's UEFI firmware or the EFI system partition.
it typically works by placing a custom .efi driver on a hidden partition or directly into the BIOS flash chip. Think of it like a backdoor which already has planted some know way to read and write memory without touching any suspicious kernel driver that EAC would normally scan for.
Known Providers
-
gregorius
you do sometimes run into BSOD with this depending on the winver due to PatchGuard there maybe ways around it i haven't tested it yet.
Thats pretty much it. Note that this might come as biased because its based on my personal experience you are free to argue and i encourage it because thats how we grow and learn. I'm not affiliated with any of the providers so pls do your own research as well things change quickly in the scene, your so called cheat is only UD till the next EAC update.
cheerio