GameIndustry.eu Logo

2019 2017 2019 2019   2018  2023   2015 
GameIndustry.eu /  Blog /
English Game mod Downfall compromized


Game mod Downfall compromized

Published: 30.12.2023

Steam
Downfall, a mod created by the community for the game Slay the Spire, was abused for distributing malware through the Steam update. This was made possible by compromising the Steam and Discord accounts of the Downfall developers.

The attack occurred on December 25, 2023 - Affected users are advised to replace ALL used passwords on their device and online accounts.


According to the Bleepingcomputer   website and the developer's statement, a device was infected with malware (Epsilon Stealer) that went undetected.

The malware itself aims to steal cookies, passwords, and credit card information from compromised computers using browsers such as Google Chrome, Yandex, Microsoft Edge, Mozilla Firefox, Brave, Vivaldi, as well as from Steam and Discord.

Additionally, affected systems are searching for documents with the term "password" in the filename, as well as other login credentials. This includes data from the Telegram messenger as well as the Windows login system. Users who store passwords on their devices should reconsider their approach and/or securely encrypt their passwords. Convenience is not everything.

A detailed statement from the developers can be found in the Steam-Forums  .

How the incident could occur remains unclear, as the Valve Corporation has implemented various security mechanisms on their Steam platform. The last announcement regarding Security improvements for managing builds and Steamworks users   was made in October 2023 on the Steamworks Forum.

 

Your opinion is important – please leave a comment!

×

BB-Code Explanations

Here are the BB-Codes you can use:

  • [b] for bold text: [b]Text[/b] turns into Text
  • [i] for italic text: [i]Text[/i] turns into Text
  • [u] for underlined text: [u]Text[/u] turns into Text
  • [spoiler] for hidden Text: [spoiler]Hidden Text[/spoiler] turns into Hidden Text
  • [url] for hyperlinks: [url]http://example.com[/url] becomes a clickable link  
  • [url=link]text[/url] for named hyperlinks: [url=http://example.com]Visit me[/url] turns into Visit me  
  • [github] for GitHub links: [github]http://github.com/example[/github] turns into a  GitHub-Link

0 Comments