medium.com
Malware Exploit in Meccha Chameleon Steam Workshop Maps Leads to Discord Takeover
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A malware exploit was discovered in the indie game Meccha Chameleon, affecting players who downloaded custom maps from the Steam Workshop. The initial malware was found in a map called Laser Tag Neon, which contained a dropper that wrote malicious batch files to players' devices. This led to the installation of a Remote Access Trojan (RAT) on compromised systems. The game's developer, Haganeiro, confirmed the vulnerability was patched in update 3.1.0, and all identified malicious maps have been removed. However, players are advised to scan their systems for signs of compromise. The attack also resulted in a breach of the game's official Discord server, where an attacker gained control and spread false information. The incident has raised significant concerns within the gaming community regarding the safety of user-generated content on platforms like Steam.
Key Points: • Malicious maps in Meccha Chameleon infected players' PCs with a Remote Access Trojan. • The game's developer confirmed the vulnerability was patched in update 3.1.0. • Players are urged to scan their systems and avoid the original Discord server due to a takeover.