This matter of plug-in is a bit clichéd. When the game was born, the plug-in was like a shadow. During this period, there are offenses and defenses. Whether it is a small workshop or a large company, as long as your game needs to be connected to the Internet, multiple players, and PVP, it is almost inevitable that you will encounter plug-ins. And Ubisoft, who is keen on this approach, may be one of the most favored manufacturers.
Not long ago, Ubisoft filed a lawsuit in the US court for making and selling the "Rainbow Six: Siege" plug-in for hundreds of thousands of dollars in profit from MizuSoft. Players only need to pay 12 Euros (equivalent to RMB 94) a day to MizuSoft to get perspective, improved weapon damage, wider field of view, automatic aiming, etc. In fact, since the release of "Rainbow Six: Siege" (hereinafter referred to as Color 6) in 2015, the plug-in has never stopped.
The road is one foot high, the magic is one foot high
彩6 The early use of FairFight (all used in Battlefield 4/1), this anti-plug system will detect based on abnormal match data , As long as your KD exceeds a certain value, it will be directly banned, regardless of whether you really have this level. At this time, there are indeed few hangs, but normal players are also miserable. As long as your skills are slightly "different from ordinary people", you will be BAN. Later, Ubisoft relaxed this policy, so plug-ins began to proliferate, but the anti-plug-ins still only stayed at the stage of player reporting, and it was quite troublesome to report. You need to record the suspect ID and record URL by yourself, and distinguish the authenticity of the video (sometimes true) Shot through a wall), save strong cheating evidence and send it to the official. The official handling was extremely cautious, because this time it was a permanent ban instead of 15 days, which resulted in extremely low efficiency and no control over the situation.
The game using BattlEye
2016 Ubisoft introduced the anti-cheat protection system BattlEye used in "H1Z1" in the second half of 2016. Compared with the original FairFight based on abnormal result data, afterwards The mode of settlement. BattlEye is even more rude, it is more like an anti-virus software, directly scanning your hard drive to check if you have cheating software running. As long as you find it, regardless of whether your plug-in is used for color 6, it will be banned (accelerators may be banned). But the later facts proved that the Dao is one foot higher, and the Demon is one foot higher. Not only did the plug-in not die, but as the game became more popular, it became more and more bells and whistles. Teleport, stealth, take off hostages, force the enemy team to surrender.
If you're a little bit, you will play a normal person, and you will be a little bit irritable and output directly on your face.
In 2018, a developer named BattlEyeTM didn't mind editing the first perspective of the opening into a video and posting it to the Internet. The famous name was to help Ubisoft fix the vulnerability. In fact, his films all have the effect of beautifying the plug-in, which is more enjoyable, and has a plot setting, with editing and music. After some people watch it, they will contact him to buy or give a reward. In addition, he also consciously provoke the official, in order to attract more attention and traffic. Of course, he was finally defeated by Ubisoft.
Before the game started, BattlEyeTM killed others.
But one was overthrown, and there were thousands of openers who came out. They are scattered in every corner, reaping illegal happiness. Most of the brothers of Cailiu were not spared.
Ubisoft games and plug-ins
"Ghost Recon: Breakpoint" is the latest work of Ubisoft. After the word of mouth exploded, there were not many players left. But there are fewer people and there are fewer benefits, that is, there are no plug-ins. After all, it is really a "wrong investment" to plug-in a work with low traffic and worrying future, and the previous work "Ghost Recon: Wilderness", which has frequently topped the sales charts, is much more lively. Not to mention the conventional plug-in packages such as self-sight, fluoroscopy, and blood lock, drones have become a new toy. People sit at home and hang them from the sky. The most embarrassing thing is that the opener will not kill you, follow you with teleport, mark you, the mark is permanent, and then in order to avoid KD anomalies, watch your teammates to kill you, at this moment, he seems to be an incarnation of God enteringThe theater mode.
A little bit further away in "The Blockade" is even worse. In 2016, games are still in Beta testing stage, and a large number of plug-ins have emerged. Change the dark area money, ammunition quantity, equipment level and character value, etc. Although the community manager said that he is aware of the serious problem of the plug-in, he will do his best to solve it. However, after the game was officially launched, the opening behavior not only showed no signs of improvement, but because of the skyrocketing BUG and explosive potato servers in The Blockade, the fire took advantage of the wind and the wind helped the fire.
When the community manager who spoke before to rectify the plug-in was broadcasting "The Blockade", under the crowd of hundreds of thousands of viewers, he was directly killed by the plug-in in the dark area. The players all said "deserve it". You now know the plug-in That's awesome.
suddenly disappeared
The number of simultaneous online users on the second day of the game was still 114,225. After 7 weeks, the number of active players dropped by 81%, leaving only 22,130. The dark area after the loss of a large number of users can be said to be a dance of demons and the eight immortals crossing the sea. The dark zone is precisely the core experience of "The Division", the most different part from other games, the most profitable gameplay in the game, so plug-ins and bugs undoubtedly ruin everything. Later, "The Division 2" failed to reverse the situation. There were 2,000 plug-in groups everywhere, and some players also launched anti-plug-in actions. To a certain extent, plug-ins and bugs have become the talk of the players all over the world.
"Far Cry" series of plug-ins are not too many, to a large extent thanks to the lack of competition in this game, although the latter part of the game has a multiplayer part, but it is just an addition, most players still focus on PVE Content. "Far Cry 5" is relatively more, but it is far from affecting the game experience, because there is really no need to open the game, and the income is too low, and most of them are just for fun. "Benefit" in "For Honor" is not a shooting game. The plug-in function is finally not a self-seeing perspective. They are replaced by automatic parry, block, and rebound. From a behavioral standpoint, it is difficult for you to distinguish whether the opponent is a real master or a plug-in. And due to revenue reasons, many plug-in scripts are mainly for man-machine brushing equipment and money. Used to simulate human operations, various combos, executions, blocks, etc., against a level 1 computer, the winning rate can reach 80%.
Everyone is afraid of plug-in
The big factories at the same level as Ubisoft are not much better, and they may be doing worse. EA's "Battlefield" series has been accompanied by plug-ins and private servers. Official inaction led to "Battlefield 1", there are hangings everywhere, no matter whether it is foe or foe. If you play a few more games, you can still often meet "old acquaintances." Some celebrities have been active for months and haven't been blocked. In "APEX", it was also ridiculed by the plug-in producer: Compared with "Fortnite", the plug-in of "APEX" is much easier to develop and will not be blocked. As for Activision's "Call of Duty", as the handle of FPS games, it naturally can't escape the intrusion. In fact, Activision has a strong pressure on plug-ins, especially after COD15 has completely cancelled the single player part. Unfortunately, as long as you are lucky enough, you can always meet some Force Warriors.
Fortunately, these players can escape to the console version. The host platform is like Apple. Because the platform is not open, you must first crack the machine to run unauthorized software. Strictly speaking, the anti-plugging of the host is the anti-cracking. If the main host is not cracked, the plug-in has no way. And even if there is a cracked version of the host, you can only change the local data, which is cool on a single machine (including the PS4 Cheats previously released, and the games that can be used are limited). As long as you are connected to the Internet, it is easy to be banned. It is not a ban for 15 days, but the whole account. And your reason for BAN is not that it was opened or not, but that it was broken. This makes the detection efficiency very high, and the cost of opening and hanging is simply unacceptable. Of course, there is not absolutely no plug-in on the console. For example, in "Nioh" and "Dark Soul", there have been cases where cheats were used to change data before going online to kill other players. But this is also aFor example, it is largely due to the lack of attention paid to the PVP part by the manufacturers. Others cheat by plugging in USB macros, but their functions are insignificant compared to real fighting sects.
Due to the early anti-plug-in awareness and weak technical ability, the genes of plug-in have been engraved from the early days of recklessness. "Magic Baby", "Legend" and "Ragnarok" are all spared. Compared with shooting games, the plug-in functions of MMO are very rich. The automatic one-stop process of spawning monsters and leveling, walking leading tasks, increasing blood acceleration, experience and adding money, etc., is basically equivalent to the modifier in a stand-alone game. Some plug-ins can be used directly without installing the game, you can say It is very magical. The operation logic of these plug-in scripts is very close to that of real people, and you can hardly tell them unless you have a conversation. On the other hand, because the threshold for learning and making plug-ins is very low, you don't need to study the source code of the game, you only need to open the data package to start fiddle with plug-ins. If you encounter any difficulties, there are plenty of tutorials for making web game plug-ins on the Internet to teach you self-taught.
And the mobile game next door, it can be said that it is the "first year of plug-in" recently. According to the "2018 Game Security Industry Report" released by Tencent Game Security this year, there are more than 4,000 mobile game plug-ins that have been monitored, which is 11 times as high as that of 2017. With complete functions and complex mechanisms, the proportion of mobile game plug-ins for professional customization has exceeded 50%. This is largely due to the popularity of the battle royale game category last year. For a while, everyone opened their eyes: the giant, the Luffy, the vehicle goes to the sky, and the gourd baby fights Thanos.
The plug-in is like a flood, some people have survived, some people don’t.
"Legend" is a game that is plugged into the core gameplay. The first thing many players do when they go online is to open it. Later, after the source code of the game was leaked, taking advantage of the chaos between the official agents, private servers grew in large numbers. Too many restrictions on official uniforms? A large number of players naturally flow into the environment of "click to send dragon sword".
"Stone Age" is also similar to "Legend", the plug-in is basically equal to a scripting aid, everyone can open it. At that time, the officials did not have any anti-plug-in awareness, resulting in the later full maps are all scripts. Although "Adventure Island" does not have any PVP mechanism, due to the limited resources of the map mobs, others will not have them if they hit you. Players will give priority to the careers that are easy to grab. It is a normal operation to open the hook to suck the monsters, because if you don't buy the hook, you may not even be able to upgrade. After that, such as "Miracle", "Blood Jianghu", "Aion" and so on, there were too many online games that died or were assisted by external plug-ins at that time, and they would eventually evolve into "you can't play without plug-ins".
In fact, the cause of death of each game is not simple, just relying on an external plug, it will not completely fall. The inaction of the operator, the wrong design of the economic system, the speed of content update, and the poor atmosphere of the player community will all affect the direction of the entire game.
This is also the reason why anti-plugin is so difficult, because plug-in problems are far more than plug-in problems.
Where is the difficulty of anti-plugin
Player motivation
To some extent, plug-in is just needed for players.
Except for the one-time buyout of pure stand-alone, most games are to be profitable. It has natural requirements for the player's online time and activity. Generally, the core gameplay of the PVE game itself is not enough to support the consumption of so many players for a long time, so the main line process is set up layer by layer, and the development line is too many to explode, magic weapons, equipment, gems, and pets. The repetitive work between each refreshing point has been continuously lengthened, and playing games every day has become a clock at work.
The comparison between other people is constantly being strengthened, whether it is PVE or PVP games. Battle power, rank, top-up ranking, skin appearance, title special effects, the marquee on the head tells you that others have drawn SSR, and the world window tells youOthers have exploded their magical outfits, telling players anytime and anywhere: where you are, where is the gap between you and others, and what you should do to surpass them.
Compared with myself, I hope that the efficiency of collecting vegetables and hanging on the machine every day can be higher; compared with others, I hope to step on the head and dominate. Figures save trouble and are better than people. It is the most primitive motivation for opening and hanging. It is also the original purpose of these game designs. Without creating such a motivation, why do players go to the liver, practice, and go to gold?
As long as there is market demand, the plug-in will always exist. The main PVE can be adjusted through the design of the game itself. Putting the automatic path finding and handing over tasks, automatic blood supplementing and killing monsters and releasing skills, one-key replacement and one-key sweeping into the past can be called plug-in functions, which can be converted into in-game features. The auxiliary functions in some games are almost no different from real plug-ins. How much blood is lower than A, and higher than how much blood is used B; Monsters can be fixed-point, fixed-range, and fixed-quantity types; if the equipment is broken, it will be automatically repaired. If there is a new one, it will be automatically replaced, and if the player is attacked, it will be automatically offline. Later, on-hook itself has become a popular category.
is highly customizable and frees your hands.
PVP is a zero-sum game, so it can’t be operated like this. What the official can do is to make every effort to eliminate it. But as the demand for plug-ins is high, the market for plug-ins will be large. The more money you make, the more professional the industry.
工业化
According to Tencent Game Security's monitoring data, in 2018, the overall scale of black production reached more than RMB 1 billion. The upstream and downstream industrial chain is extremely complete, and the division of labor from tool production to final realization is clear, and peer competition in all links is quite fierce. Within 12 hours of the game update plug-in detection system, the author can find vulnerabilities and update the plug-in to a new version; within 24 hours, channel vendors (distributors/agents) can package them into dummies and sell them to counterpart players; within 3 days, you You can meet various gods in the game again.
The most upstream plug-in producer, masters the core technology. They are responsible for disassembling the local encryption program, breaking the server firewall, and modifying related parameter files. This group of people are either former employees with relevant work experience, or technology enthusiasts who spend many years in hacker forums. In foreign countries, there is a forum dedicated to discussing reverse technology (cracking), Unknowncheats, which is divided into sub-sections according to different games. Each section has research on the anti-plug mechanism of this game, ideas for making plug-ins, and so on. For the novice plug-in, a lot of introductory textbooks are also prepared to let you understand the mystery. Some mature plug-ins have also released the source code, so you can just use it directly.
Domestic Kanxue Forum and My Love Crack also have a lot of high-quality content. However, the overall atmosphere is closer to learning technology, involving software debugging, language writing, virus analysis, etc., and there will be no separate discussion sections based on the game.
There is money to be made, there is a place to learn, and the threshold is not high. It can be said that as long as they are willing, plug-in producers can continue to be mass-produced. There may be some gaps in some key skills, but the big difference is not bad, the big things are sold cheaper. No matter how bad, there will be cases of copying and picking up source code between authors. This leads to the fact that unless it is the top of the pyramid, the average author's share is not high. Unless it is supported by some large studio team (exclusive), if the author sells it by himself, the sales are very worrying. Just as most games now have to rely on channel sniffs, although the plug-in author is very powerful, the channel is the real big brother, because the capital advantage of the big channel cannot be copied.
Channel sales
Like all regular agents, the external agents are also divided into general agent, single generation, first-level and second-level agents. Only the most core agents have the contact information of the plug-in author . Then find dealers and specific sales personnel, and send the plug-in program to the sales, but if you want to use it normally, you must have card secret verification. The card secret comes from a regular automatic card issuance platform, agentMerchants use black identities to register and collect money from black accounts. Dealers can choose to purchase card codes of different levels, hourly, daily, monthly, and annual cards according to their needs. After receiving the money, the agent will go to places such as the Philippine gambling platform to launder the money and transfer it back to the country in the form of virtual items.
even the plug-in must be marked as [the only official]
issued by the agent layer by layer, the task of making money still has to fall on the specific sales. Target customers have large orders and scattered orders. The most common big orders are large studios/guilds, which usually buy a large amount of resource currency in various games, and then sell them to real users (including copying with the boss), using the game economy system to realize virtual resources, or sign up The second is Internet cafes. The bosses directly install the plug-in program in the computer and set up a special area for the plug-in, eliminating the need for users to install and debug by themselves, and you can use it immediately. The accounts used are all general accounts, and there is no fear of being blocked; the last one is sold to the MCN company that signed the anchor, and the company provides “targeted assistance” according to the game content and audience attributes of different anchors.
scattered orders are ordinary players, and when selling to the company/organization, asking about the purchase price, what level of agency, and whether there are author resources is different, selling to users is much more grounded. Public accounts, e-commerce platforms, short videos, and information streams are all pervasive. The best conversion effect is to sell directly in the game. After all, the target customers are clear. So there is a classic scene from the previous "PlayerUnknown's Battlegrounds": outside the galloping car window, the figure is gradually approaching, "a lot of hard work" catches up with the player, just want to greet the player kindly: "Brother, buy it?"
The payment page also added Alipay and WeChat payment intimately.
After the product is sold successfully, it is not over yet. According to the popular saying, you have to establish contact with customers and pull a group. , Establish a closed loop with good after-sales service.
1. Announce the latest version of the plug-in, and sell plug-ins with different discounts;
2. Bring acquaintances through acquaintances to increase the reputation of repeat customers and yourself;
3. Encourage customers to use plug-ins in the group The screenshots of the successful eating chicken trigger discussion on the plug-in function and actual performance;
4. In order to avoid using it after buying, the sales will also provide one-to-one remote debugging service, hands-on until you get started;
5. Regularly organize promotions, return, competitions and other activities, and the rewards for entering the server are all money.
From the perspective of sales, these customers themselves are the best billboards. The more people use plug-ins in a game, the more people use plug-ins. If you can't beat them, joining is a true portrayal of most people.
Even now, you can also search
官方太南了
Anti-plugin is much more difficult than doing plug-in. Like viruses and crimes, the prerequisite for you to prevent something from happening is that it has already happened. To make up for the loopholes, the loopholes must first be exposed. As the offensive party, the plug-in has firmly grasped the initiative from the beginning. On the other hand, the game official, but because of the need to protect the hostages (players), they are restrained.
In most games, in order to improve the running efficiency of players and reduce latency, most of the files needed to run the game are placed locally, which is difficult to monitor at any time, but the plug-in producer can repeatedly research until they find and exploit code vulnerabilities. . What about putting everything on the server? Not to mention that the server will also be compromised. By tampering with data packets to deceive the server, it will also bring a huge amount of data storage and maintenance costs to the game company. The player experience will also decrease due to the increase of data return time. The injury came out).
In addition, player privacy is also a problem, as mentioned above in BattlEye. It is to scan through anti-virus software to find the plug-in program in the local file. There are always people who worry about the leakage of key information such as personal credit cards. Player reporting is a way, but it is very inefficient. It takes a lot of manpower to verify one by one, and many players will just report if they are killed.Or the materials provided cannot prove that others have cheated. Like FairFight, if the limit is too large, it will lead to false sealing; if the limit is too small, it will lose its effectiveness.
Dachang can rather kill by mistake and not let it go. For example, Blizzard, Ubisoft, Tencent, as long as you open the link, you will directly ban them permanently. Blizzard blocked 100,000 "World of Warcraft" accounts in 2015; Tencent TP is notoriously harsh, CF professional players were blocked on the spot for 30 days, and DNF official games were not let go; CSGO even certified Sesame Credit (Alipay), binding ID card, BAN is a lifetime ban. However, small manufacturers do not have such confidence. Their games are not irreplaceable on the market. Direct ban means directly losing users and draining other games. So there is the internal hanging and auxiliary tools mentioned above.
also tried to increase the frequency and intensity of the update to achieve "As long as I patch it fast enough, it will not catch up", but if you block this, he will update that. Game 2.0, the plug-in is 2.1. Relying on updates to stop plug-ins is purely a war of attrition until one party can't stand the continuous cost input and gives up. This is not something that a large company with strong capital cannot do.
is even more deadly. Just like a virus, the plug-in continues to grow and evolve through constant battles with the security department. The level of the plug-in increases with the pressure. If the local program doesn’t work, it’s the entire server data package. If the server doesn’t work, you can use the hardware. Mouse macro + USB driver, one button can complete the "gun press", 40 rounds of bullets are hit at one point, double the rate of fire, super long visual range Not to mention it. Use multiple terminal devices to use group control scripts and use VPNs to bypass detection.
Legal identification of these hardware is also very difficult, you can now directly search on the e-commerce platform.
Facts have proved that anti-cheating behavior against a single player is far from enough. If you want an immediate effect, you still have to hit the industry itself.
Alarm, Zhaoan or cloud gaming?
Since the country’s first online game “plug-in” crime was convicted in 2011, the court’s judgments have ranged from difficult to sentence to crimes of illegal business operations to crimes of destroying computer information systems and crimes of copyright infringement. The legal boundary has been constantly clear. The amount involved in the case has also ranged from tens of thousands to hundreds of thousands, reaching the order of millions and tens of millions, with sentences ranging from three to five years, ten years, and fifteen years. Last year, Tencent cracked a huge external case of PlayerUnknown's Battlegrounds, involving more than 50 million yuan, spanning more than 20 provinces and cities, and arrested a total of 141 criminal suspects. Uproot the entire industrial chain of plug-in production, agency, promotion and sales. After several major reshuffles, the large-scale plug-in studio group began to disintegrate, and its scale became smaller. It changed from its own actual trader to the external sales of a complete set of operation plans.
Who is not afraid of going to jail?
Don’t be afraid to master the core technology.
In fact, recruiting anti-link authors is a common method in the industry to reverse crack plug-ins, but considering the risk of public opinion, they generally choose to keep secret. In addition to a few well-known cases, in 2018 Riot absorbed Perma, the famous plug-in producer of "League of Legends", as a member of Riot's anti-cheat team; in the same year, Blizzard also wrote the "Heroes of the Storm" plug-in with a member of the top plug-in team bossland Producer James Enright reached a settlement, forcing him to hand over all the source code of the plug-in Stormbuddy. The cost of recruiting security is actually not high, and it can be turned into a defensive force after entering the company system. Once the plug-in team loses its core members, it is very difficult to find a substitute in a short time, and the entire plug-in update will be unsustainable, which has a certain deterrent effect on other members of the plug-in team.
Can cloud games completely solve the plug-in?
is not necessarily.
First of all, if the delay and bandwidth cost problems of cloud games when playing games have not been substantially resolved, if the detection player data packet is includedWith the additional calculations performed, the delay and bandwidth costs further increase. Secondly, for hardware plug-ins such as mouse macros, cloud games cannot be detected like local games, or it is impossible to judge whether they are plug-ins. Finally, and most importantly, the game can evolve, and so can plug-ins. At present, some studios have used the cloud hang-up platform to upload scripts to be mixed with real player groups to increase the difficulty of official detection. When real cloud games become popular, plug-ins must be different now.
and the more cruel reality is that as long as people have what they want, plug-ins will never stop.
Author: Game repairman