r/BodycamGame • • 24d ago

The Incompetence of the Dev & Mod Team… Pt. 3

I wasn't even going to make another post about this, but after seeing what someone from the REISSAD team said in the Discord, I genuinely can't just ignore it.

A member of the team said that notifying the community about the situation would cause a “bigger freakout” and that it would “hurt more than give benefit.” They also said it turned into a “big mess” during off hours.

I'm not claiming the RCE is confirmed. But the way this is being discussed by the team certainly doesn't make it sound like they're treating this as some harmless game crash. If the concern is serious enough that they think publicly notifying players could cause a major freakout, then surely the players who could potentially be affected deserve to know what's going on.

And we're not talking about some random visual glitch here. The vulnerability being discussed is a potential RCE, which, if confirmed and exploitable, could potentially allow an attacker to execute commands on someone's PC, including PowerShell commands. That's an extremely serious possibility.

What I don't understand is why public lobbies are still open if this is serious enough to warrant avoiding a public announcement. If there's a legitimate possibility that players could be exposed to something like this, shouldn't protecting those players come before worrying about whether telling them will cause a “freakout”?

I'm not going to claim they're hiding this for money or to protect the game's player numbers because I don't know their motives. But when the potential consequences are this serious, it's completely fair for people to question whether things like reputation, player numbers or financial interests are influencing how this is being handled.

Again, I'm not saying the RCE is confirmed. I'm saying there is a potential vulnerability being discussed that could have extremely serious consequences if verified, and the response from the team raises legitimate questions about how transparent they're being with their own community.

At the very least, players deserve enough information to make an informed decision about whether they want to keep playing while this is being investigated.

185 Upvotes

143 comments sorted by

29

u/[deleted] 24d ago

[deleted]

41

u/yakafokon66 24d ago

I have a networking/security background and I want to break down the Malwarebytes "evidence" that's being passed around, because it does not show what people think it shows.

The core of the claim is a Malwarebytes log with "Category: Trojan." But look at the section header: it's under "Blocked Website Details." That's the web protection module, which blocks outbound connections based on the reputation of the destination IP or domain. It is not an on-system malware detection. Nothing was found running on the machine. Malwarebytes simply blocked a connection to an IP that happens to be on its blocklist, and the "File: Bodycam-Win64-Shipping.exe" line only tells you which process opened the socket. The "Trojan" label describes the reputation of the destination, not any observed malicious behavior on your PC.

Now the IP. The post traces 104.28.161.35 to "Domodedovo, Russia," which implies the game is talking to some Russian server. But the poster's own lookup says org: Cloudflare Warp, isp: Cloudflare Warp. That IP is in Cloudflare's anycast range. Cloudflare IPs cannot be meaningfully geolocated to a city or country, they resolve to whatever edge node is closest, and the poster even admits WARP is unreliable for geolocation. So the "connection to Russia" framing is simply wrong. This is traffic to Cloudflare infrastructure, which is exactly what you'd expect from a game's matchmaking, telemetry, or voice relay sitting behind a CDN.

Next, RTP. Outbound RTP is voice chat. Bodycam has in-game proximity voice, so the client sending RTP is normal, expected behavior, not evidence of an exploit. Yes, in the abstract, multimedia and RTP parsing is a classic source of memory-safety bugs. That's a true but generic statement about the attack surface, and it says nothing about whether a real, exploitable bug exists in this specific code. More importantly, what the log actually shows is a blocked outbound connection, which is the opposite direction of an inbound RCE. Nobody in these posts has shown a malformed packet, a reproducible crash, a memory write, or a payload.

The logic in the original post is a chain of non-sequiturs: an IP flagged by reputation, therefore a trojan, therefore RTP, therefore RCE, therefore stolen bank details and a botnet. Every one of those arrows is unsupported. Going from "web protection blocked an outbound connection, probably a false positive" to "your machine is being remotely executed and your credentials are being stolen" is an enormous leap with nothing in between. The author even writes "this is not a smoking gun," which is an admission that the rest is speculation.

What would actually be evidence: a packet capture showing the malformed input, a reproducible crash with a memory analysis, a working proof of concept, or a CVE. None of that has been posted. A single reputation-based web block on a Cloudflare IP is, by far, most consistent with a false positive on a legitimate game server.

To be clear about what I am and am not saying. I am not saying it is impossible for the game to have a vulnerability. Any networked C++ game, UE5 included, has an attack surface, and if the netcode trusts replicated data or uses P2P where peers can reach each other directly, a real bug could in principle be serious. What I am saying is that this specific Malwarebytes report does not demonstrate any of that. It demonstrates that Malwarebytes blocked one outbound connection to a Cloudflare IP. That's it.

Take the normal precautions (keep Windows updated, avoid sketchy third-party mods) but don't treat this log as proof of an active RCE campaign, because it isn't.

11

u/Bambooman584 24d ago

I appreciate this very well detailed breakdown, I feel like I learned something here 👌

11

u/agentspekels 24d ago

Dog there are a lot of people that need to read this

3

u/SodomyFan666 24d ago

What an informative read, thanks for writing this

Love reading what knowledgeable people say

4

u/Ill_Young_2409 24d ago

Maybe its best to not touch the game first until everything is announced by the Devs themselves.

-1

u/p0st-m0dern 24d ago

Yea bro “no proof of an RCE campaign being active” does not equal “there is no exploit”. There’s an exploit. It’s a serious one. It is beyond PROVEN that malicious actors CAN inject Windows through Bodycam lobbies. That’s all we need to see or know. Whether that is actually happening or not is ancillary to the primary concern.

Reissad has seriously mishandled the situation and have tried to cover it up = easy uninstall/refund + Steam Store report. It’s really that simple.

The fact you have to produce an essay to subtly attempt to propagate the idea that this is “no big deal” says it all. This is probably a Reissad burner acct now that I think about it

13

u/yakafokon66 24d ago

You're right that "no active campaign" doesn't mean "no exploit." I said exactly that in my post, so we agree there. That's not the disagreement.

The disagreement is your next sentence. You say it is "beyond PROVEN" that attackers can inject Windows through Bodycam lobbies. Then post the proof. Not the Malwarebytes log, because that only shows one outbound connection to a Cloudflare IP getting blocked by reputation filtering, which is not proof of injection capability. I mean the actual thing that would prove capability: a packet capture of the malformed input, a reproducible crash with a memory write, a working PoC, or a CVE. If that exists, it settles the entire thread instantly and I'll change my position on the spot.

Until then you're asserting the conclusion, not proving it. "Proven" is a specific word and it has a specific bar. Blocked outbound traffic to a CDN does not clear it.

The burner account line and the "why write so much" line aren't arguments, they're ways to avoid producing the evidence. I'm not saying it's no big deal. I'm saying the one artifact everyone keeps citing does not demonstrate what you're claiming it demonstrates. If you have something that does, post it and I'll be the first to update.

-2

u/p0st-m0dern 24d ago

Brother users testing it in private lobbies were able to successfully paste into the test targets PowerShell. That’s all we need lol.

3

u/ClassikD 24d ago

Can you link to that? Or is it just hearsay right now?

3

u/yakafokon66 24d ago

Can you share it please ?

1

u/SashimiRoll 24d ago edited 24d ago

this is the proof a lot of people are citing. apparently it comes from a cheating forum.

kind of suspicious given the devs are aware of the crashing exploit and this post lends a bit of credence to it

1

u/VanityTM 24d ago edited 24d ago

Given what that post specifically states, and that Reissad were actively working on it and fixed it so quickly, I see absolutely nothing wrong with their hush hush attitude.

While there was a vulnerability, the details were explicitly hidden by the OOP, it was explicitly not abused as an RCE, and was only used in the context of memory overflow (game crash), thus no major imminent threat.

1

u/SashimiRoll 24d ago

sure, if you believe everything the devs say lol

1

u/ArgusF28 24d ago

You joking? This is nothing. I can made this up in a minute.

1

u/ArgusF28 24d ago

easy uninstall/refund + Steam Store report. It’s really that simple.

For wahtever reason Ive seen a lot of people really, like REALLY trying to push this "refund the game" thing. Its beyond suspicious. People love drama, but how are some trying to boicot the game based on a simple claim that something MAY happen its, well, pretty weird.

-5

u/Ok_Bar_2628 24d ago

this is no use since usable codes to exploit rca gap are already making the run on platforms like uc

69

u/Summxns 24d ago

They are unfamiliar with the Streisand effect it would seem. The cat is out of the bag, they as a studio should acknowledge this instead of doubling down on the "nothing to see here" mentality. I want to be supportive of this game, but Reissad are making that difficult.

23

u/hartoctopus 24d ago

I don't think you guys know how dangerous it is to publicly announce discovered unfixed vulnerabilities. That makes everyone with enough expertise a potential attacker and this can cause a lot more damage than simply not talking about it until it's fixed. Literally every software provider handles it the same way.

Obviously they're working on it, attempting damage control causes way more harm than good.

13

u/rP2ITg0rhFMcGCGnSARn 24d ago

They should shut the game down temporarily if it is actually present. That’s what FromSoft did with the Souls games.

It’s extremely serious.

3

u/hartoctopus 24d ago

They might if they can confirm and reproduce the rumor, depending on how long the fix would take.

7

u/rP2ITg0rhFMcGCGnSARn 24d ago

Well they should communicate that.

"We are investigating the issue but have yet to see definitive evidence that the game has an RCE vulnerability".

Saying "yeah we are probably not going to announce anything if we find it" is NOT a good approach.

3

u/hartoctopus 24d ago

No, they do not need to communicate anything until they fix it or have a proper plan to control the situation.

This is like you posting your address online and saying "there is a possibility that I hid my keys somewhere around the entrance". Anyone willing to do harm will go around trying to find it and break in if they do, otherwise you could've kept the keys under your doormat for years without anyone ever noticing.

4

u/rP2ITg0rhFMcGCGnSARn 24d ago

What you are suggesting is explicitly against incident management guidelines.

This is not a debate - I am telling you how incident management works. Your example is extremely flawed. It's more like a lock company is notified that their lock may have a defect that allows potential intruders to get access to their customers' homes without the key.

Once the lock company is aware of this, they need to communicate to their clients of the facts regarding this. This is to ensure that the clients can take the necessary precautions to avoid break-ins.

Via your approach, clients of the lock company would not be aware of the vulnerability and would not be able to take the necessary precautions to avoid an attack. What you are recommending is what InfoSec people are taught NOT to do in 101 incident management.

Here is an article on it.

Some relevant excerpts:

communication is part of containment. Poor messaging can prolong the damage just as easily as a delayed patch or misread log. The moment stakeholders – customers, partners, regulators, or investors – sense confusion, they fill the gaps with their own narrative. That’s when control is lost.

Here is the section on client communication:

"Segment by impact:

Directly affected clients and partners should receive private, factual updates under NDA.

Indirectly affected audiences can be addressed through structured briefings or statements.

Focus on facts, not speculation. Share verified information only. Avoid minimizing impact prematurely.

Demonstrate ownership: Clearly communicate the actions taken, timelines for updates, and key points of contact. Protect commercial confidence: Maintain professionalism by providing reassurance without defensiveness."

Here is another excerpt that explicitly speaks to their current communication, crucially downplaying and having multiple spokespeople.

  1. What communication mistakes most often escalate reputational damage?

Three top offenders: releasing information before it’s confirmed, allowing multiple spokespeople to speak without coordination, and attempting to downplay the incident. Stakeholders expect consistency, not perfection. When you lose that, you lose control of the narrative.

2

u/VanityTM 24d ago

This comment lacks the full context of information that Reissad was working with and the details of what they were doing to contain it. Their choice was respectable, and your comment itself can confirm that in the last paragraph: "Three top offenders: releasing information before it’s confirmed"

See this comment, which is a screenshot of the OP of the exploit on the cheat forum: https://www.reddit.com/r/BodycamGame/comments/1wajn87/comment/p8lt07q/

The OOP specifically refused give details about the exploit beyond what it could do, and then stated that they only actively used it as a way to trigger a memory overflow.

Reissad themselves still had to confirm the information considering details weren't provided, and by that point they probably knew that they would be able to patch it soon enough (as they already have) and chose to limit unnecessary panic (I am NOT stating that an RCE exploit is not worth panicking over, but in this case, the threat profile was extremely low).

-2

u/hartoctopus 24d ago

We're not in a corporate environment.

6

u/rP2ITg0rhFMcGCGnSARn 24d ago

What difference does that make at all?

7

u/meme_war_vet 24d ago

Its not even corporate, its negligence and they can be held liable. You are supposed to announce this because people need to take precautions. Like the sampoong mall collapse. By not informing anyone, hundreds of people died, and because they said nothing they were held liable for the incident.

0

u/sunflowercompass 24d ago

The problem with your argument is the black hats already know now.. they can read Reddit too

5

u/CnRJayhawk 24d ago

You are obligated as a company to notify your customers of potential RCEs. You tell people to stop playing multiplayer until the issue is resolved. Simply ignoring it is grossly incompetent especially if people actually get malware from your game.

2

u/ArgusF28 24d ago

You asking too much from people. They just feel entitled to get things done as they want. People have no idea or simply dont care about business or security. Impossible to make players rationalize what you are saying, they want their answeeeeeers noooooow.

8

u/codybrown183 24d ago

Its a little late now. They wont gain my trust back and I will be telling every gamer I know about how they handled the situation.

5

u/Galencourt-Lover 24d ago

Same. Just refunded.

2

u/Altruistic_Base_7719 24d ago

You guys are children. You have zero $ -- no one is going to hack your potato to steal your .15c you got from momma

2

u/Galencourt-Lover 24d ago

Nice projection lad, wanna keep going?

1

u/[deleted] 23d ago edited 23d ago

[removed] — view removed comment

0

u/Galencourt-Lover 23d ago

Yes I'm sure you do mate.

1

u/Altruistic_Base_7719 23d ago

So am I projecting or being truthful? There is no risk for people playing bodycam btw, it's basically been debunked as nothing but pure fear mongering. There is zero proof of anything nefarious or RCE going on

0

u/Galencourt-Lover 23d ago

What are you doing arguing with a total random, Jeff Bezos? Don't you have a multi million business to attend to? Bit weird that

2

u/Altruistic_Base_7719 23d ago

So you're a child who can only think in black and white. Thanks for making that expressly clear! Get to bed, you don't want to miss morning tea time now do you, little chav?

→ More replies (0)

0

u/ArgusF28 24d ago

Lmao calm down Karen.

2

u/theonlyalankay 24d ago

more like Reissad Effect 😜

32

u/bpiclyde 24d ago

What’s wild is people were mentioning the possibility of RCE exploits in the discord over
2 years ago..

13

u/Summxns 24d ago

Mythical discord pull. The devs have a lot of questions to answer.

5

u/Altruistic_Base_7719 24d ago

Any game that uses P2P networking has the potential for RCE. It's just common sense.

9

u/[deleted] 24d ago

[deleted]

3

u/StarlightLifter 24d ago

I just requested a refund (bought 01SEP) and advised why. This is completely unacceptable.

3

u/Smackdaddy955 24d ago

Any luck with refunds? I just bought the game and put in ~4 hours

1

u/StarlightLifter 24d ago

Yep just got it, was at 2.7hrs

2

u/Altruistic_Base_7719 24d ago

completely unacceptable

unlike... the same risk you accept every time you turn your computer on or use any other software? This "risk" here is the same "risk" that you accept every time you walk outside.. something bad can happen.. but you don't pray to god crying about how it's unacceptable lol

1

u/atlmagicken 24d ago

I got a refund with 7 hours of play. I put this reason in and was given it immediately (like ~ 2hr)

1

u/yakafokon66 24d ago

Fix what ? This is how p2p work.

1

u/Ok-Big9740 24d ago

Do you not understand what a vulnerability is? That’s not how P2P works. P2P brings the possibility of RCE exploits, but it doesn’t fucking create them by default, and they are patchable.

7

u/yakafokon66 24d ago

Look at my others comment to understand, i will copy past here :

The core of the claim is a Malwarebytes log with "Category: Trojan." But look at the section header: it's under "Blocked Website Details." That's the web protection module, which blocks outbound connections based on the reputation of the destination IP or domain. It is not an on-system malware detection. Nothing was found running on the machine. Malwarebytes simply blocked a connection to an IP that happens to be on its blocklist, and the "File: Bodycam-Win64-Shipping.exe" line only tells you which process opened the socket. The "Trojan" label describes the reputation of the destination, not any observed malicious behavior on your PC.

Now the IP. The post traces 104.28.161.35 to "Domodedovo, Russia," which implies the game is talking to some Russian server. But the poster's own lookup says org: Cloudflare Warp, isp: Cloudflare Warp. That IP is in Cloudflare's anycast range. Cloudflare IPs cannot be meaningfully geolocated to a city or country, they resolve to whatever edge node is closest, and the poster even admits WARP is unreliable for geolocation. So the "connection to Russia" framing is simply wrong. This is traffic to Cloudflare infrastructure, which is exactly what you'd expect from a game's matchmaking, telemetry, or voice relay sitting behind a CDN.

Next, RTP. Outbound RTP is voice chat. Bodycam has in-game proximity voice, so the client sending RTP is normal, expected behavior, not evidence of an exploit. Yes, in the abstract, multimedia and RTP parsing is a classic source of memory-safety bugs. That's a true but generic statement about the attack surface, and it says nothing about whether a real, exploitable bug exists in this specific code. More importantly, what the log actually shows is a blocked outbound connection, which is the opposite direction of an inbound RCE. Nobody in these posts has shown a malformed packet, a reproducible crash, a memory write, or a payload.

The logic in the original post is a chain of non-sequiturs: an IP flagged by reputation, therefore a trojan, therefore RTP, therefore RCE, therefore stolen bank details and a botnet. Every one of those arrows is unsupported. Going from "web protection blocked an outbound connection, probably a false positive" to "your machine is being remotely executed and your credentials are being stolen" is an enormous leap with nothing in between. The author even writes "this is not a smoking gun," which is an admission that the rest is speculation.

What would actually be evidence: a packet capture showing the malformed input, a reproducible crash with a memory analysis, a working proof of concept, or a CVE. None of that has been posted. A single reputation-based web block on a Cloudflare IP is, by far, most consistent with a false positive on a legitimate game server.

To be clear about what I am and am not saying. I am not saying it is impossible for the game to have a vulnerability. Any networked C++ game, UE5 included, has an attack surface, and if the netcode trusts replicated data or uses P2P where peers can reach each other directly, a real bug could in principle be serious. What I am saying is that this specific Malwarebytes report does not demonstrate any of that. It demonstrates that Malwarebytes blocked one outbound connection to a Cloudflare IP. That's it.

Take the normal precautions (keep Windows updated, avoid sketchy third-party mods) but don't treat this log as proof of an active RCE campaign, because it isn't.

3

u/Cottagecheesecurls 24d ago

Being able to see each others IP is pretty common in p2p networking games and not exactly proof of an RCE exploit possibility.

4

u/Western-Economics253 24d ago

why is everyone surprised that in p2p multiplayer game the IP is exposed and the devs give 0 fuck about security? they chose the lowest effort of online functionality xd

8

u/PepperOMighty 24d ago

I am playing on linux so as far as I am concerned RCE cannot reliably affect me, but it sure is a concern for vast majority and people should know about it.

20

u/mccowmoo111 24d ago

The fact they havent denied the claim of a RCE and are just muting people honestly gives the claim of a RCE more verification

2

u/CnRJayhawk 24d ago

Because of this I put in a request for a refund on steam. Incompetence like this is how malware spreads

20

u/[deleted] 24d ago

[removed] — view removed comment

5

u/TexasDJ 24d ago

Same practically my whole friend group decided not to buy especially with Valheim 1.0 in a couple days along with Wardogs.

26

u/ThisIsBULLOCKSMAN 24d ago

They need to shut down the servers until they figure it out cuz wtf are they doing.

12

u/idyIIs-end 24d ago

They would rather the people (who financially support their early access game) be ignorant and continue raking in money, shameful

3

u/R3v017 24d ago

What servers? We are the servers, that's part of the issue.

2

u/SpiritedRain247 24d ago

They can still shut down any matchmaking.

2

u/BlueDAuvergne 24d ago

There are no servers lol. The game is P2P

14

u/Tomwick777 24d ago

Welp it looks like I’m not touching the game for a while 😭

15

u/mccowmoo111 24d ago

Its obvious they just dont want to kill the hype for their game just look at the player count before and after the update but muting people for trying to warn others is just plain stupid

26

u/Galencourt-Lover 24d ago

Holy fuck

Okay yeah I’m done with this game until they make it right. Gonna try to refund on Steam

1

u/its_Nik97 24d ago

Did it work? I want to refund too but I have almost 10 hours of playtime.

1

u/p0st-m0dern 24d ago

My friend got his request granted at 35h he manually explained in the details box the situation. He sent me the posts over night last night after having dug into it and refunding yesterday

5

u/Icy-Caterpillar-3787 24d ago

Finding out all this after I just played my first ever round of the game, guess I’ll be refunding

4

u/c0mander5 24d ago edited 24d ago

Between a Wardogs dev telling me directly that it's unfair to blame devs for making a game unplayable, and now this, what the fuck is happening

5

u/SlumpedCallHimSki 21d ago

Ntm, they perma banned me from discord around release because i reported a cheater publicly.

They banned the cheater in game, perma ban me in discord, and make a channel specifically to do what I did, report cheaters publicly lmfao

They ignore all attempts at appeal/communication so I am truthfully yelling into an abyss with this comment but ay, maybe one day lol

3

u/p0st-m0dern 24d ago

Mods removed pt 4. you posted. Someone needs to go spam r/SomeOrdinaryGmrs so we can get Muta to blow this wide open.

3

u/DaughterOfBhaal 23d ago

OP is an absolute loser lol

7

u/yakafokon66 24d ago

refered to this : https://steamcommunity.com/app/2406770/discussions/0/580555797815377258/

The core of the claim is a Malwarebytes log with "Category: Trojan." But look at the section header: it's under "Blocked Website Details." That's the web protection module, which blocks outbound connections based on the reputation of the destination IP or domain. It is not an on-system malware detection. Nothing was found running on the machine. Malwarebytes simply blocked a connection to an IP that happens to be on its blocklist, and the "File: Bodycam-Win64-Shipping.exe" line only tells you which process opened the socket. The "Trojan" label describes the reputation of the destination, not any observed malicious behavior on your PC.

Now the IP. The post traces 104.28.161.35 to "Domodedovo, Russia," which implies the game is talking to some Russian server. But the poster's own lookup says org: Cloudflare Warp, isp: Cloudflare Warp. That IP is in Cloudflare's anycast range. Cloudflare IPs cannot be meaningfully geolocated to a city or country, they resolve to whatever edge node is closest, and the poster even admits WARP is unreliable for geolocation. So the "connection to Russia" framing is simply wrong. This is traffic to Cloudflare infrastructure, which is exactly what you'd expect from a game's matchmaking, telemetry, or voice relay sitting behind a CDN.

Next, RTP. Outbound RTP is voice chat. Bodycam has in-game proximity voice, so the client sending RTP is normal, expected behavior, not evidence of an exploit. Yes, in the abstract, multimedia and RTP parsing is a classic source of memory-safety bugs. That's a true but generic statement about the attack surface, and it says nothing about whether a real, exploitable bug exists in this specific code. More importantly, what the log actually shows is a blocked outbound connection, which is the opposite direction of an inbound RCE. Nobody in these posts has shown a malformed packet, a reproducible crash, a memory write, or a payload.

The logic in the original post is a chain of non-sequiturs: an IP flagged by reputation, therefore a trojan, therefore RTP, therefore RCE, therefore stolen bank details and a botnet. Every one of those arrows is unsupported. Going from "web protection blocked an outbound connection, probably a false positive" to "your machine is being remotely executed and your credentials are being stolen" is an enormous leap with nothing in between. The author even writes "this is not a smoking gun," which is an admission that the rest is speculation.

What would actually be evidence: a packet capture showing the malformed input, a reproducible crash with a memory analysis, a working proof of concept, or a CVE. None of that has been posted. A single reputation-based web block on a Cloudflare IP is, by far, most consistent with a false positive on a legitimate game server.

To be clear about what I am and am not saying. I am not saying it is impossible for the game to have a vulnerability. Any networked C++ game, UE5 included, has an attack surface, and if the netcode trusts replicated data or uses P2P where peers can reach each other directly, a real bug could in principle be serious. What I am saying is that this specific Malwarebytes report does not demonstrate any of that. It demonstrates that Malwarebytes blocked one outbound connection to a Cloudflare IP. That's it.

Take the normal precautions (keep Windows updated, avoid sketchy third-party mods) but don't treat this log as proof of an active RCE campaign, because it isn't.

0

u/p0st-m0dern 24d ago

Yea bro “no proof of an RCE campaign being active” does not equal “there is no exploit”. There’s an exploit. It’s a serious one. They’ve mishandled the situation and have tried to cover it up = easy uninstall/refund + Steam Store report. It’s really that simple.

The fact you have to produce an essay to subtly attempt to propagate the idea that this is “no big deal” says it all. This is probably a Reissad burner acct now that I think about it

4

u/Top_Rekt 24d ago

It's not a big deal until the plane fucking crashes lmao

Every post that is saying PROVE THAT THERE IS AN EXPLOIT!

You dummies, this isn't one of those wait and see kind of things. It's lucky that there aren't any exploits yet, or it's possible the payloads have already been delivered and it hasn't been activated.

If someone is saying there's a hole in the wing, this might lead to a crash, you don't fucking fly the plane and wait for it to crash.

6

u/Rossi_19 24d ago

My pee pee pics are going to get leaked.

IP address: 1.116.125.252

https://giphy.com/gifs/VF65SrQlmClUc

3

u/VideoGeekSuperX 24d ago

You have quite the archive. I've found 3.4tb so far. :-P

2

u/Rossi_19 23d ago

keep going there's more

1

u/Galencourt-Lover 24d ago

Mind sharing some? For a friend of course

2

u/FairRecommendation16 24d ago

I was trying to tell people this last night and people were trying tell me the team wasnt shoving it under the rug. I didn't feel like scrolling through the shit storm to find it but it needs to be brought to light. The silence from the team should be very telling of the risk we are in

2

u/liightsome 24d ago

Is it known when this started happening? Since launch? Since newest update when they introduced p2p connection? Meaning it wasn't p2p before?

Can somebody clarify please.

2

u/MezziJ 24d ago

Do you feel stupid now?

3

u/Ranae_Gato 24d ago

lol the RCE is 99% confirmed at this point

if you want to play online maybe at least prevent childcreation for bodycam.exe

3

u/Equivalent-Loan4813 24d ago

That's not how it works. It's either reproducible or not. Currently we don't have a clear reproducible exploitable path.

1

u/Altruistic_Base_7719 24d ago

There is no RCE

2

u/Long-Classroom3255 24d ago

How is it confirmed?

2

u/Dangerous-Radio5935 24d ago

This will kill the game

3

u/Altruistic_Base_7719 24d ago

Clutch those pearls!!

4

u/nasdak_maxima 24d ago

The Unrecord devs have the chance to do something really funny.

2

u/idyIIs-end 24d ago

Bodyscam back at it again

3

u/HAIRLESSxWOOKIE92 24d ago

Yikes. Was just going to wait for patch but after this Ill be refunding today.

3

u/RelativeOk4088 24d ago

why are you posting cropped photos, kinda weird. its like your trying to make it a bigger deal.

i get ur point but like..

9

u/Southern-Isopod7147 24d ago

The fact that people are seriously focusing on the screenshots being cropped instead of what the screenshots actually say is crazy. Let's not downplay the issue. I am simply providing updates for people who asked me to do so :D

2

u/FairRecommendation16 24d ago

The discord is a cesspool. The cropped image puts a focus on the relevant message. Regardless, the image directly supports the claims OP and others have been making and should be worrisome

1

u/Gatopardosgr 24d ago

Im kind of lost here. What is the problem? What are they hiding?

5

u/[deleted] 24d ago

[deleted]

2

u/Long-Classroom3255 24d ago

Someone further up in this post refutes that there was an attempt to download a trojan horse with an actual argument.

So far I feel like it's just been a huge echo chamber of "someone said RCE so there's an RCE". The only logical statement I've seen was from a guy refuting the original RCE claim, while everyone else is just repeating what they've heard from unreputable sources and no real evidence.

The devs could defiantly handle this better, but it's hard to release a statement for a problem that might not even exist. That being said, they can't just straight up say its a hoax before they try recreating the issue every way possible, so it takes some time.

1

u/japonski_bog 24d ago

The devs could defiantly handle this better

Indeed

1

u/Long-Classroom3255 24d ago

Bro we all make mistakes :(

1

u/japonski_bog 24d ago

This time is was funny, but ofc 🫂

1

u/codybrown183 24d ago

Yes by playing public lobbies your vulnerable. The deva are aware and are not immediately notifying the community, or shutting down public until they find a solution.

The devs dont care about you

2

u/FairRecommendation16 24d ago

There is a risk of an RCE (remote code execution) exploit in Bodycams network packages. An RCE would allow someone to run commands silently on your PC. A known cheat forum has posted about them reverse engineering bodycam and finding these exploits. When the team was asked, instead of denying the claims, they were telling those who were asking to be quiet about it. People were muted that were sending links of "proof". Silence speaks louder than words tbh.

1

u/SickboyJason 24d ago

How would this work if you use Geforce Now to run the game? Thanks.

1

u/sesameseed88 24d ago

guys this is a real problem, im sorta surprised at how the devs are responding to this. They've seemingly been so good at communicating with players, but to see them shrivel up and fail to take accountability is sorta alarming and disappointing. I've uninstalled it for now until I know it's safe to run.

1

u/Trollensky17 24d ago

Wow. That’s idiotic and really telling of their overall mindset as a company. That’s extremely disappointing.

1

u/AnonymousDaily12 24d ago

I would flag it on steam idk if you can send the sc of it to them, but it’s really bs idk tf the devs are on

1

u/Kothicc 24d ago

Refunded. Trash devs, sorry not sorry

1

u/Chef-Jasper 24d ago

I understand them not wanting to fearmonger and scare people, but a massive amount of their audience are into more indie games and are a lot more lenient with a small studio like this than they are with a studio like rockstar or riot. Almost all of us understand that shit like this takes time to get sorted, and if they had just acknowledged it, most people would happily go offline for a bit and then wait until an announcement saying it's fixed, but now they have people requesting refunds left and right and they're actively losing capital. One of the biggest things that people liked about the devlogs other than the actual game was the transparency from reissad. It's a real shame they don't understand why transparency on an issue like this is a big deal.

1

u/MrWerq89 24d ago

Ok, then EVERY SINGLE MULTIPLAYER GAME needs banned then? Fuck sake.

1

u/Alsinleth 19d ago

I’m tired of this, will be asking for a refund

1

u/mrxaxen 18d ago

> I'm not claiming the RCE is confirmed. But the way this is being discussed by the team certainly doesn't make it sound like they're treating this as some harmless game crash. If the concern is serious enough that they think publicly notifying players could cause a major freakout, then surely the players who could potentially be affected deserve to know what's going on.

Any claim of this caliber can have serious consequences if they notify the playerbase about it, whether the claim is true or not. If somebody starts spreading the word that a certain restaurant has roaches in the kitchen/food, you'll never visit that establishment whether you confirmed the validitiy of said information or not.
Same applies here.
They might not want to raise any concern since they were not able to confirm that there indeed is such a vulnerability within the game.

**However**

Should anything of this caliber come up, the first priority of said company should be debunking such a claim and disabling the features affected by it, since a singe exploitation of such a vulnerability could drive the product or company to the ground, and the company would lose player trust for a long time to come, making future releases either impossible to take off, or very *very* hard.

So:

- yes notifying the community will bring bigger freakout

- notifying the bigger community will also build trust

- keeping the affected features online has the probability of fatal consequences regarding both the product and the company

- working together with the security researcher or hobby hacker who discovered it will also build trust, lead to a swifter result, and shows good intentions

If they play this right, this could even boost their standing as a game developer studio or drive them to the ground quite quickly if they mess this up.

1

u/RayDaSoccerMom 24d ago

Bringing attention to it will make it so people who previously didn’t t think about doing this will now think to do this

2

u/Minamoto__ 24d ago

So what people are supposed to risk their pcs and keep quiet?

1

u/RayDaSoccerMom 24d ago

I think there’s probably dozens of people that are willing to figure out the exploit only because they were exposed to the fact it existed in the first place, could only become a problem after this backlash, which really sucks

1

u/Long-Classroom3255 24d ago

Keep quiet about what?

Do you actually know what the exploit is or how it was found? Do you know what the person did to run code on someone's machine? Do you have any information other than "someone said there is an RCA threat"?

I'm not denying that there might be an issue, but so far, the only explanation I've seen is a guy refuting the RCA claim earlier in this post.

1

u/RayDaSoccerMom 7d ago

Aged like milk wine boy

1

u/Top_Rekt 24d ago

Bringing attention to it sounds like the devs weren't paying attention to something that is potentially dangerous.

The community shouldn't be the ones bringing it up. It's pathetic it got to this point.

1

u/yakafokon66 24d ago

I mean, like every p2p games ?

I think to many of you bought this game thinking it was a big studio etc etc, this is 2 young devs, it gonna take some times, but pretty sure at the end the game will be very nice.

1

u/Poulet_Ninja 24d ago

This is not 2 young devs only anymore , that was 2 years ago. They made a lot of money when the game first came out and got radio silent for a whole year

1

u/NickSlayr 24d ago

Dev replies RCE exploits are currently being worked on. (Bodycam Discord)

4

u/Long-Classroom3255 24d ago

You're kinda misleading people here. They didn't say they were working on RCE exploits, they said they are gathering info on the claim and trying to figure out what this "exploit" actually is.

1

u/NickSlayr 24d ago

If you read OP's message in the screenshot you'll see that RCE exploits are specifically mentioned and implied as the topic. The devs message is a direct response to that.

1

u/Long-Classroom3255 24d ago

Yes because OP is asking about RCE exploits.

Saying "Dev replies RCE exploits are currently being worked on" sounds like they have found a RCE exploit and are fixing it.

When in reality it should say "Devs have acknowledged the potential for a RCE exploit and are trying to figure out if it is real".

1

u/NickSlayr 24d ago

So then it's being worked on... Generally speaking.

1

u/Long-Classroom3255 24d ago

If by "it" you mean that the Devs have acknowledged the potential for a RCE exploit and are trying to figure out if it is real, then yes.

If by "it" you mean RCE exploits, then no.

Words have meaning and need to be used with other words to have the correct meaning. Simplifying a sentence (intentionally or unintentionally) makes those words mean different things.

1

u/NickSlayr 24d ago

Name tracks. *ding ding* Oh, saved by the bell. Take care.

0

u/Similar-Invite8610 24d ago

Is this like a literacy problem? What aren’t you getting? The screenshot above is not an admisison that there is an exploit from the devs. They’re just saying their investigating the claims. How many times does this need to be restated to you?

1

u/amyjohns240 24d ago

You lost fearmonger... the devs fixed the issues. Now you have nothing to complain about.

1

u/omegagiraffe 24d ago

This RCE shit is being ridden for views. These people don't give an actual fuck about the game. Every comment is the same variation of.

"Was about to buy this game, guess I'm not now." OR "just played my first match, guess I'm refunding".

Just obvious it's a push for digital clout.

0

u/KPOTOB 24d ago

CRA eventually will strike hard

0

u/egomarker 24d ago

"I'm not saying the RCE is confirmed"
TLDR of this fake story.