Pcgamesn Malware Exploit in Meccha Chameleon Steam Workshop Maps Leads to Discord Takeover
Article Content
- •Malicious maps in Meccha Chameleon infected players' PCs with a Remote Access Trojan.
- •The game's developer confirmed the vulnerability was patched in update 3.1.0.
- •Players are urged to scan their systems and avoid the original Discord server due to a takeover.
A malware exploit was discovered in the indie game Meccha Chameleon, affecting players who downloaded custom maps from the Steam Workshop. The initial malware was found in a map called Laser Tag Neon, which contained a dropper that wrote malicious batch files to players' devices. This led to the installation of a Remote Access Trojan (RAT) on compromised systems. The game's developer, Haganeiro, confirmed the vulnerability was patched in update 3.1.0, and all identified malicious maps have been removed. However, players are advised to scan their systems for signs of compromise. The attack also resulted in a breach of the game's official Discord server, where an attacker gained control and spread false information. The incident has raised significant concerns within the gaming community regarding the safety of user-generated content on platforms like Steam.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (16)
Following this threat?
Track Meccha Chameleon in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…