


This communication cannot happen by itself, however. A website can pretend to be an authorized source and communicate with the agent. However, this authorization logic was flawed, allowing attackers to use DNS rebinding attacks. Madden 24 Week 1 roster update: When is it coming?.PS Plus leak for September 2023: Saints Row could be free for PS5.League of Legends: When is Arena Mode coming back?.Mortal Kombat 1 to feature guest Kameo fighters.Modder adds CJ from GTA: San Andreas to Armored Core VI in less than 24 hours.Websites can send requests to this agent, which checks if it is an authorized source, then executes the commands it receives, such as downloading and installing the latest Overwatch patch. The launcher utilizes a special process running on your local machine called an “update agent”.
Battle.net blizzard update agent install#
Millions and millions of gamers use the Blizzard desktop client application to install and update all of their Blizzard games, from World of Warcraft to Diablo to Starcraft. Tavis Ormandy, a security vulnerability researcher for Google’s Project Zero, recently disclosed a huge security flaw in Blizzard’s game client via its “update agent.” This vulnerability allows any website to trick the agent into thinking it’s an authorized source and run whatever code it wants via the agent, including downloading and running unwanted executable files. By Matt Becker 5 years ago A vulnerability researcher at Google tracked down a huge security flaw in the Blizzard game client that allows any website to run arbitrary code.
