Emorrow
New Member
OBS Studio's Game Capture feature loads graphics hook DLLs (`graphics-hook64.dll`) without verifying their integrity or authenticity. An attacker who can replace this DLL can execute arbitrary code with whatever privileges OBS is running with—typically Administrator, since many users run OBS elevated for game streaming.
This is only a thing if OBS is installed to a user writable location. still...
This is only a thing if OBS is installed to a user writable location. still...