3 Sources
[1]
GeForce NOW exploit lets you access the full Windows desktop through a simple file swap -- Modder runs local AI models on Ultimate tier with 48GB of VRAM and no restrictions
Nvidia's GeForce NOW cloud gaming service has been a popular way to access your games on the go without worrying about hardware. It has a free tier with titles like Fortnite, not even requiring a purchase, but the paid subscription enjoys much better specs and rate limits. As such, using the "Ultimate" tier, modder Zortos was able to gain full access to the Windows desktop inside GeForce NOW, allowing him to use it as a normal computer that can (ironically) run local AI models on it. For context, GeForce NOW is only meant for gaming; Nvidia does not advertise it as a general, all-purpose cloud streamer like Shadow PC, for instance. Hence, doing all this is certainly against the terms of service, and you run the risk of your account getting banned. With that being said, ethically, you are paying for renting hardware, so trying to gain desktop access is predicated on how far your own moral scruples allow you to go. Anyhow, the exploit begins with an I2P (Install-to-Play) game that you download from Steam -- Zortos uses Trove. You click on the publisher's name to open the built-in browser, from where you go to your C: drive through the address bar and essentially hijack the index. You open the steamapps folder that was just created for Trove and copy the path of the main executable from the contents. This file is replaced with a decoy that deceives Steam into thinking you're actually starting Trove when you click on the "Play" button. In reality, it's a modified executable developed by another modder, dpadGuy, that just opens the desktop instead. Once inside, it really is the full Windows environment with no apparent restrictions. The video below even shows Zortos installing Wallpaper Engine and customizing the taskbar. However, users have reported some discrepancies between their experiences, such as GeForce NOW simply closing the session when it sees the File Explorer open, or the service blocking file downloads, which is a necessary step to replace the executable. Zortos insists that the exploit is still working on his X account, and he even says that if you have persistent storage, the exploit will remain active between different sessions. Keep in mind that you need a paid tier of GeForce NOW to be able to pull this off, and even if you do, it's against Nvidia's ToS as you're not allowed to venture beyond games. Running local AI models on a setup like this doesn't make sense because of the session rate limits, but the Ultimate tier Zortos used does give you access to 48GB of VRAM (thanks to an RTX Pro 6000D) so it might be worthwhile for some. Follow Tom's Hardware on Google News, or add us as a preferred source, to get our latest news, analysis, & reviews in your feeds.
[2]
This GeForce Now exploit turns Nvidia's cloud gaming platform into a full desktop computer that can run AI models
* A Modder has used GeForce Now Ultimate to unlock a full Windows desktop and run local apps/AI models. * They swapped a game executable to launch a desktop via GeForce Now's browser and a file path trick. * The exploit violates Nvidia's terms of service, is inconsistent across users, and will likely be patched soon. Nvidia's GeForce Now is the go-to way to stream games on PC if you care about high resolutions and frame rates, given the cloud platform offers up to 4K at 120fps. However, it looks like the platform's $20/month Ultimate team might be good for more than just gaming. Modder Zortos was able to get access to a full Windows desktop inside GeForce Now, allowing them to use the platform like a normal computer and even run local AI models on it. Zoros first used an I2P (Install-to-Play) game downloaded from Stream (in this case, they used Trove). Next, they clicked on the publisher's name to open the platform's built-in browser. From there, they went to the PC's C: drive through the address bar, opened the SteamApps folder related to Trove, and copied the path of the main executable. They then replaced this file with another file that tricks Steam into thinking you're launching Trove, when it's actually a modified executable file developed by another modder (dpadguy) that opens up a desktop (via Tom's Hardware). It's all pretty wild when you see the exploit in action (check it out in the video below). The trick doesn't seem work for everyone Some users say that GeForce Now closes as soon as File Explorer opens Taking advantage of this exploit is clearly a violation of GeForce Now's terms of service, given Nvidia's cloud-based platform is focused entirely on gaming and isn't advertised as a general-purpose cloud platform. With this in mind, anyone taking advantage of this exploit will likely end up getting banned from GeForce Now. Still, there is the ethical argument that you're already paying for access to GeForce Now, so you should be able to do whatever you want with the service. That said, some people have found that the exploit works for them, while other users have reported that GeForce Now closes as soon as File Explorer opens, so it doesn't seem like the trick is guaranteed to work every time. Zortos also still claims that the exploit works on his Twitter account, so it doesn't seem like Nvidia has patched it out yet. That said, it's likely only a matter of time before it gets shut down.
[3]
GeForce NOW Exploit Reportedly Opens Full Windows Desktop on Cloud Gaming Servers
Researchers and bloggers have demonstrated a method for escaping a GeForce NOW game session into the underlying Windows desktop environment. The reported vulnerability uses behavior involving a supported game and Steam's embedded browser. Once triggered, the cloud instance exposes a usable Windows desktop capable of launching software outside the intended game environment. Demonstrators reportedly ran a development environment and loaded a local AI model through LM Studio. That proves the escape provides more than a cosmetic view of Windows and may permit unauthorized use of NVIDIA's compute infrastructure. The method reportedly works only with paid GeForce NOW subscriptions and not the free service or partner-operated regional versions. Normal session-duration restrictions remain active. Closing selected system processes can terminate the complete cloud session. Download functionality also remains restricted, limiting what can be done without additional techniques. The report raises isolation and abuse concerns. Cloud-gaming providers need to permit complex game launchers and storefronts while preventing users from reaching administrative tools, persistent storage or neighboring workloads. There is no evidence in the available report that users accessed other customers' data or escaped the individual virtual-machine boundary. A Windows desktop escape and a cross-tenant security breach are not the same severity. NVIDIA had not publicly responded when the report was published. Users should not attempt to reproduce the technique on production infrastructure because it can violate service terms and potentially trigger account action. GeForce NOW vulnerabilityReported behavior ResultAccess to underlying Windows desktop Affected servicePaid GeForce NOW membership Free tierReportedly unaffected by this method Partner-operated regionsReportedly incompatible Session limitsStill apply Cross-customer accessNot demonstrated NVIDIA responseNone at publication time Source: ITHome
Share
Copy Link
A modder named Zortos discovered a GeForce NOW exploit that grants access to the full Windows desktop through a file swap technique. The security exploit allows users to run local AI models on Ultimate tier hardware with 48GB of VRAM, though it violates Nvidia's terms of service.
A modder named Zortos has discovered a GeForce NOW exploit that enables users to access the full Windows desktop environment on Nvidia's cloud gaming platform, effectively transforming the service into a general-purpose computing system
1
. The security exploit involves a straightforward file swap technique that bypasses the intended gaming-only restrictions of Nvidia's cloud gaming service. Using the Ultimate tier subscription priced at $20-per-month, Zortos demonstrated the ability to run local AI models on hardware equipped with 48GB of VRAM from an RTX Pro 6000D graphics card1
.The vulnerability exploits Install-to-Play games available through Steam integration within cloud gaming environments. Zortos used the game Trove as the entry point, clicking on the publisher's name to activate GeForce NOW's built-in browser
2
. From there, users navigate to the C: drive through the browser's address bar and locate the steamapps folder created for the installed game. The crucial step involves copying the path of the main executable file and replacing it with a modified executable developed by another modder, dpadGuy1
. This decoy file tricks Steam into believing the legitimate game is launching when users click the "Play" button, but instead opens the complete Windows environment with apparently no restrictions.
Source: Guru3D
Once inside the Windows desktop, users gain access to a fully functional computing environment capable of running software beyond gaming applications. Zortos demonstrated this capability by installing Wallpaper Engine and customizing the taskbar, while researchers and bloggers showed the system running a development environment and loading AI models through LM Studio
3
. The Ultimate tier hardware provides substantial computing power with 48GB of VRAM, making it technically viable for AI workloads, though session rate limits present practical challenges for sustained general-purpose computing tasks1
.The exploit's effectiveness varies significantly across different users and sessions. While Zortos claims the technique remains functional and posted confirmation on his X account, other users report that GeForce NOW automatically closes their session when File Explorer opens
1
2
. Some users encounter blocked file downloads, which prevents the necessary executable replacement step. The exploit reportedly works only with paid GeForce NOW subscriptions and not the free service or partner-operated regional versions3
. Zortos indicates that users with persistent storage can maintain the exploit's functionality between different sessions.Related Stories
This technique clearly violates Nvidia's terms of service, as GeForce NOW is designed exclusively for gaming and not advertised as a general-purpose cloud platform like Shadow PC
1
. Users attempting this exploit risk account bans from NVIDIA2
. The vulnerability raises isolation and abuse concerns for cloud gaming providers, who must balance supporting complex game launchers and storefronts while preventing unauthorized access to administrative tools, persistent storage, or neighboring workloads3
. However, available reports contain no evidence that users accessed other customers' data or escaped individual virtual-machine boundaries—a Windows desktop escape differs significantly from a cross-tenant security breach3
.NVIDIA had not publicly responded when initial reports surfaced
3
. Given the public disclosure of this security exploit, a patch from NVIDIA appears imminent. Users should not attempt to reproduce this technique on production infrastructure, as it violates service terms and can trigger account action3
. The incident highlights ongoing challenges cloud gaming providers face in securing their infrastructure while delivering flexible gaming experiences. Whether this leads to broader discussions about user rights regarding paid cloud computing resources remains to be seen, particularly given the ethical argument that subscribers are already paying for hardware access.Summarized by
Navi
[2]
19 Aug 2025•Technology

06 Nov 2025•Technology

17 Jun 2025•Technology

1
Technology

2
Science and Research

3
Technology
