Nokia Engineer Shares How to Pirate Games From Windows 8 Store
December 11, 2012 12:44 PM
comment(s) - last by
Microsoft is not going to be happy about this
, an engineer working on Finnish phonemaker Nokia Oyj.'s (
) Windows Phone team, has made the curious decision of going public with details of security flaws in partner Microsoft Corp.'s (
) Windows 8, which allow users to pirate games.
Windows 8 users can grab games via
. Paid titles typically come with a "Trial" option, which allow users to play a level or two of the game, before being prompted to purchase the title if they want to keep playing. The trial process is controlled by a Microsoft API.
But Mr. Angel reveals a fatal flaw in the scheme: Microsoft stores the key/hash in plaintext and the algorithm to encrypt/decrypt the data next to the app itself. In other words, while not for the novice, power users can write small programs to decrypt the program's permissions, write new permissions to make the game look legitimately purchased, and then re-encrypt the permissions.
By exploit the flaws users cannot only get games for free, but they can rid themselves of ads, albeit in a somewhat unethical manner.
Cut The Rope
Microsoft Windows Store apps are vulnerable to piracy due to poor security implementation. [Image Source: ZDNet]
The flaws are a big deal as they could rob developers of essentially every way to monetize their content on Windows Store. Microsoft has not yet responded on these issues.
Mr. Angel's page has been overloaded with traffic (or maybe yanked after Nokia brass realized what he posted) and is
. However, a cached version is
. Just remember, readers, every time you pirate a game another kitten dies.
On his Twitter account, responding to criticism about the post he writes, "These are fundamental flaws in the app platform, not individual apps. No secure storage, no wrote protection, etc.... Offline activation & execution mandate secure local storage. That's how apps differ from fully connected web pages."
The issues echo those of Apple, Inc. (
experienced rampant piracy
in the early days of the Mac App Store, due to poor rights management implementation. The take-home message is that it's a lot harder to manage apps on a personal computer, where users have full access to the files, versus on a smartphone, where user access to the file system is limited.
Justin Angel [Google Cache]
This article is over a month old, voting and posting comments is disabled
RE: Who cares?
12/11/2012 4:38:01 PM
Is this just a terrible joke about how "Made by Microsoft" somehow translates to "Has a bunchof malware," or are you just really dumb?
"Young lady, in this house we obey the laws of thermodynamics!" -- Homer Simpson
Microsoft to Give Windows Store Developers More Money Than Competitors
December 7, 2011, 6:01 PM
As Apple Boasts of One Million Downloads for Mac App Store, Piracy Already a Problem
January 7, 2011, 11:00 AM
WhatsUp with WhatsApp?
August 29, 2016, 5:23 AM
Fuchsia – Google’s New Open Source Operating System
August 17, 2016, 6:30 AM
Windows 10: End of an Era & A New Beginning
August 1, 2016, 9:59 AM
Free Windows 10 offer ends July 29th, 2016: 10 Reasons to Upgrade Immediately
July 22, 2016, 9:19 PM
Quick Note: Whoops, Microsoft Pushed Unwanted Windows 10 to Some Users
October 15, 2015, 9:04 PM
Quick Note: Windows 10 Insider Preview Build 10565 Fixes Boot Camp 6.0 Issues
October 13, 2015, 11:39 AM
Most Popular Articles
Smartphone Screen Protectors – What To Look For
September 21, 2016, 9:33 AM
UN Meeting to Tackle Antimicrobial Resistance
September 21, 2016, 9:52 AM
Walmart may get "Robot Shopping Carts?"
September 17, 2016, 6:01 AM
5 Cases for iPhone 7 and 7 iPhone Plus
September 18, 2016, 10:08 AM
Update: Problem-Free Galaxy Note7s CPSC Approved
September 22, 2016, 5:30 AM
Latest Blog Posts
Burlington Gun Attack
Sep 27, 2016, 5:00 AM
Who is in Risk of Getting Oral Cancer?
Sep 23, 2016, 6:02 AM
France Bans Plastic Eating Utensils in Restaurants
Sep 18, 2016, 10:49 AM
Progress Against Acute Myeloid Leukemia
Sep 17, 2016, 5:30 AM
Apple Watch Series 2 - Number 1 in the Customer Satisfaction.
Sep 7, 2016, 6:19 PM
More Blog Posts
Copyright 2016 DailyTech LLC. -
Terms, Conditions & Privacy Information