4 ms·
back.engineering folks seem to imply that Denuvo is another case of virtualization based obfuscator being vulnerable to a symbolic execution/optimization approa
by not_a9 2mo ago
back.engineering folks seem to imply that Denuvo is another case of virtualization based obfuscator being vulnerable to a symbolic execution/optimization approach.
> As AI assisted static deobfuscation continues to improve we will see more virtual machine based obfuscators fold away. In an upcoming article we will publish details on how we fully statically devirtualized Denuvo anti(tamper/cheat). One of the most attacked pieces of software second only to anticheats.
…or you can not bother with analyzing at all and just feed correct CPUID/shared data/whatever values to Denuvo, like the hypervisor thing does.
https://back.engineering/blog/31/07/2026/ https://back.engineering/blog/31/07/2026/
- not_a9 2mo agoTo add to this, the obfuscation used for their anticheat seems to be… kinda bad? Worse than Epic’s virtualizer/Griffin probably https://k0mkc.hatenablog.com/entry/2026/08/06/032440 https://k0mkc.hatenablog.com/entry/2026/08/06/032440 Mind you, odds are their anti-tamper/DRM is a different case.