Ubisoft DRM opens the back door PC
See the list of games that put your computer in danger
A Ubisoft's most widely used anti-piracy measure opening the computer to attack by hackers, according to Geek website.
UPDATE: Ubisoft has apologized for the error, and has posted an update to block the obvious vulnerabilities in Uplay.
- They have added a mandatory update to correct the error in the browser add-in for PC application Uplay, which we were made aware in mind earlier today. We recommend all Uplay users to update the program without having any browsers open. This will allow the supplement to update properly, said the release from Ubisoft.
An update is also available via Uplay.com and Ubisoft promise on my honor that this is something they take very seriously, and that they will continue to follow up on feedback about security weaknesses in their programs.
Open to all
Security hole consists mainly of a well in the browser, which could potentially provide sites free access to the files in the PC it is installed. There was a security technician sneaked in Google, Travis Ormandy, who discovered the appendix when he installed Assassin's Creed: Revelations on his laptop.
A total of 21 games are, or will, according to Ormandy be equipped with the technology, which theoretically any site can use to access the file system. The list is as follows:
The Games
Assassin’s Creed II
Assassin’s Creed: Brotherhood
Assassin’s Creed: Project Legacy
Assassin’s Creed Revelations
Assassin’s Creed III
Beowulf: The Game
Brothers in Arms: Furious 4
Call of Juarez: The Cartel
Driver: San Francisco
Heroes of Might and Magic VI
Just Dance 3
Prince of Persia: The Forgotten Sands
Pure Football
R.U.S.E.
Shaun White Skateboarding
Silent Hunter 5: Battle of the Atlantic
The Settlers 7: Paths to a Kingdom
Tom Clancy’s H.A.W.X. 2
Tom Clancy’s Ghost Recon: Future Soldier
Tom Clancy’s Splinter Cell: Conviction
Your Shape: Fitness Evolved
This puts Ubisoft's hardly very controversial DRM policy in much better light, but we hope the publisher comes with an official statement shortly.
Well thats a little scary. 0.o