├── LICENSE ├── OneByteWallhack.py └── README.md /LICENSE: -------------------------------------------------------------------------------- 1 | MIT License 2 | 3 | Copyright (c) 2020 Daniel Krupiński 4 | 5 | Permission is hereby granted, free of charge, to any person obtaining a copy 6 | of this software and associated documentation files (the "Software"), to deal 7 | in the Software without restriction, including without limitation the rights 8 | to use, copy, modify, merge, publish, distribute, sublicense, and/or sell 9 | copies of the Software, and to permit persons to whom the Software is 10 | furnished to do so, subject to the following conditions: 11 | 12 | The above copyright notice and this permission notice shall be included in all 13 | copies or substantial portions of the Software. 14 | 15 | THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR 16 | IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, 17 | FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE 18 | AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER 19 | LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, 20 | OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE 21 | SOFTWARE. 22 | -------------------------------------------------------------------------------- /OneByteWallhack.py: -------------------------------------------------------------------------------- 1 | import pymem 2 | import re 3 | 4 | pm = pymem.Pymem('csgo.exe') 5 | client = pymem.process.module_from_name(pm.process_handle, 6 | 'client.dll') 7 | 8 | clientModule = pm.read_bytes(client.lpBaseOfDll, client.SizeOfImage) 9 | address = client.lpBaseOfDll + re.search(rb'\x33\xC0\x83\xFA.\xB9\x20', 10 | clientModule).start() + 4 11 | 12 | pm.write_uchar(address, 2 if pm.read_uchar(address) == 1 else 1) 13 | pm.close_process() 14 | -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- 1 | # OneByteWallhack 2 | CS:GO wallhack achieved by patching one byte of game memory. Written in Python 3. 3 | 4 | This does the same as **r_drawothermodels 2** command but without touching the cvar, so it's VAC - safe. 5 | 6 | ## How it works 7 | This program patches assembly code produced by compiling the [following line of the game code](https://github.com/ValveSoftware/source-sdk-2013/blob/0d8dceea4310fde5706b3ce1c70609d72a38efdf/mp/src/game/client/c_baseanimating.cpp#L3149): 8 | ```cpp 9 | int extraFlags = 0; 10 | if ( r_drawothermodels.GetInt() == 2 ) 11 | { 12 | extraFlags |= STUDIO_WIREFRAME; 13 | } 14 | ``` 15 | 16 | The **r_drawothermodels** check is modified to make the `if` expression evaluate to **true** when **r_drawothermodels** cvar is set to default value (1). --------------------------------------------------------------------------------