Comment by ndom91
19 hours ago
This is just not true anymore. The only things that don't work anymore are a few AAA titles that use particular types of anti-cheat systems that rely on Windows kernel drivers (League of Legends is one that comes to mind).
If I remember correctly, after the Crowdstrike BSOD-all-windows-instances update last year Microsoft wanted to make some changes to their kernel driver program and these anti-cheat measures on Windows might need to find a new mechanism soon anyway. That's a long way of saying, it's plausible that even that last barrier might come down sooner rather than later.
Anticheat has very different requirements to antimalware.
Some interesting reads on what modern anticheats do:
https://github.com/0avx/0avx.github.io/blob/main/article-3.m...
https://github.com/0avx/0avx.github.io/blob/main/article-5.m...
https://reversing.info/posts/guardedregions/
https://game-research.github.io/ (less in detail and less IDA pseudo)