Trade Haven Hub - Investing and Stock News
  • Investment Tips
  • Trade Tips
  • Crypto News
  • Economy News
  • Stock Market
  • Investment Tips
  • Trade Tips
  • Crypto News
  • Economy News
  • Stock Market
No Result
View All Result
Trade Haven Hub - Investing and Stock News
No Result
View All Result
Home Crypto News

Gamers at Risk as Fake Roblox Mods Spread Crypto-Stealing Malware

by
December 23, 2025
in Crypto News
0
Gamers at Risk as Fake Roblox Mods Spread Crypto-Stealing Malware
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

Kaspersky researchers have uncovered Stealka, a sophisticated infostealer masquerading as game mods and pirated software that targets crypto wallets and browser credentials across over 115 extensions.

The malware spreads through trusted platforms, including GitHub, SourceForge, and Softpedia, where attackers create professional-looking fake websites and repositories to distribute the threat under the guise of popular game cheats for titles like Roblox and GTA V.

Attackers exploited the website. | Source: Kaspersky

The discovery marks the latest escalation in a broader pattern of gaming-focused malware campaigns, as cybercriminals increasingly exploit the trust gamers place in modding communities.

Attackers leverage popular search terms and authentic-looking download pages to lure victims, with some sites falsely claiming that virus scans are conducted before downloads, even though no such verification occurs.

The malicious files appear deliberately deceptive; one fake site advertised Half-Life 3 while describing it as “professional software solution designed for Windows,” using popular gaming titles merely as bait to maximize search engine visibility.

Source: Kaspersky

Extensive Arsenal Targets Crypto Wallets

According to the security firm, Stealka’s capabilities extend far beyond basic credential theft, targeting data from browsers built on Chromium and Gecko engines, putting over 100 applications, including Chrome, Firefox, Opera, and Edge, at immediate risk.

The malware extracts autofill data, session tokens, and cookies that allow attackers to bypass two-factor authentication and hijack accounts without passwords, while simultaneously targeting 115 browser extensions for crypto wallets, password managers, and authentication services.

High-value targets include crypto wallets such as Binance, Coinbase, MetaMask, Trust Wallet, and Phantom, as well as password managers such as 1Password, Bitwarden, LastPass, and NordPass.

The stealer downloads local configurations from 80 wallet applications, encompassing Bitcoin, Ethereum, Exodus, Monero, and Dogecoin, that may contain encrypted private keys and seed phrase data sufficient to compromise holdings.

Beyond crypto assets, Stealka infiltrates messaging apps like Discord and Telegram, email clients including Outlook and Thunderbird, gaming platforms such as Steam and Roblox launchers, VPN clients like ProtonVPN and Surfshark, and note-taking apps where users often improperly store sensitive information.

The malware additionally harvests system data, installed program lists, hardware specifications, and captures screenshots to maximize intelligence gathering.

Attackers have used compromised accounts to spread the malware further, with Kaspersky discovering the stealer in a GTA V mod posted by a previously hijacked account on a dedicated modding site.

Industry Faces Mounting Security Crisis

The Stealka campaign emerges amid catastrophic industry-wide security failures, as crypto platforms have lost $9.1 billion in 2025 alone, which is 10% of the $90 billion stolen over the past 15 years.

In November, losses exceeded $276 million, pushing the annual total past historical records.

“Crypto is facing a security reckoning,” said Mitchell Amador, CEO of Immunefi, a crowdsourced security platform protecting $180 billion in assets.

“Most hacks this year haven’t occurred due to poor audits—they’ve happened after launch, during protocol upgrades, or through integration vulnerabilities.“

Amador emphasized that 99% of Web3 projects operate without basic firewalls while fewer than 10% deploy modern AI security tools, calling the sector’s approach “willful negligence.“

The human element has become the primary attack surface, with threat actors shifting from code vulnerabilities to operational security breaches as smart contracts become harder to exploit.

“The threat landscape is shifting from on-chain code vulnerabilities to operational security and treasury-level attacks,” Amador explained. “As code hardens, attackers target the human element.”

North Korea’s Famous Chollima hides malware in smart contracts via EtherHiding, posing as job recruiters after stealing $1.3B in 2024 and $2.2B in H1 2025.#NorthKorea #Blockchainhttps://t.co/8W6Pfj41u8

— Cryptonews.com (@cryptonews) October 17, 2025

Kaspersky’s broader research reveals a sustained malware ecosystem, having previously documented the GitVenom campaign involving hundreds of fake GitHub repositories, SparkKitty mobile malware that infiltrated Apple’s App Store and Google Play to steal seed phrase screenshots via OCR, and ClipBanker trojans hidden in fake Microsoft Office downloads.

North Korean threat groups have also escalated tactics by weaponizing blockchain technology itself, embedding malware payloads in smart contracts on the BNB Smart Chain and Ethereum, creating a decentralized command-and-control infrastructure that law enforcement cannot shut down.

For now, Kaspersky recommends users to do the following:

Deploy reliable antivirus software. Avoid storing sensitive credentials in browsers. Exercise extreme caution with game cheats and pirated software. Enable two-factor authentication with backup codes stored in encrypted password managers rather than text files. Refrain from downloading software from untrusted sources despite the convenience they may offer.

The post Gamers at Risk as Fake Roblox Mods Spread Crypto-Stealing Malware appeared first on Cryptonews.

Previous Post

Ethereum Is Emerging as a Global Public Good – and That Changes How It Should Be Valued, Says William Mougayar

Next Post

Bybit to Exit Japan in 2026 Over Regulatory Compliance Issues

Next Post
Bybit to Exit Japan in 2026 Over Regulatory Compliance Issues

Bybit to Exit Japan in 2026 Over Regulatory Compliance Issues

  • Trending
  • Comments
  • Latest
Buy Bitcoin Under $100K Before The Next Bull Run

Buy Bitcoin Under $100K Before The Next Bull Run

April 22, 2025
Zeldin, McCain hammer Crockett on Epstein donations claim

Zeldin, McCain hammer Crockett on Epstein donations claim

November 20, 2025
Best Altcoin Coin to Buy During the Crypto Crash – 21 November

Best Altcoin Coin to Buy During the Crypto Crash – 21 November

November 22, 2025
Target is eliminating 1,800 corporate jobs as it looks to reclaim its lost luster

Target is eliminating 1,800 corporate jobs as it looks to reclaim its lost luster

October 24, 2025
New Found Gold

New Found Gold

0
Quantum Computing: its Evolution and its Potential Future

Quantum Computing: its Evolution and its Potential Future

0
Quantum Computing: its Evolution and its Potential Future

Quantum Computing: its Evolution and its Potential Future

0
Air Direct Capture – Reducing CO2 from the Atmosphere

Air Direct Capture – Reducing CO2 from the Atmosphere

0
New Found Gold

New Found Gold

December 23, 2025
Xen Baynham-Herd on Building Base: From Experimental L2s to Real On-chain Adoption

Xen Baynham-Herd on Building Base: From Experimental L2s to Real On-chain Adoption

December 23, 2025
Mavryk CEO Alex Davis on Tokenizing Real-World Assets and Building On-chain Yield at Scale

Mavryk CEO Alex Davis on Tokenizing Real-World Assets and Building On-chain Yield at Scale

December 23, 2025
Koinly Warning: Third-Party Breach Exposes User Emails – Is Your Tax Data Safe?

Koinly Warning: Third-Party Breach Exposes User Emails – Is Your Tax Data Safe?

December 23, 2025

    Stay updated with the latest news, exclusive offers, and special promotions. Sign up now and be the first to know! As a member, you'll receive curated content, insider tips, and invitations to exclusive events. Don't miss out on being part of something special.


    By opting in you agree to receive emails from us and our affiliates. Your information is secure and your privacy is protected.

    Recent News

    New Found Gold

    New Found Gold

    December 23, 2025
    Xen Baynham-Herd on Building Base: From Experimental L2s to Real On-chain Adoption

    Xen Baynham-Herd on Building Base: From Experimental L2s to Real On-chain Adoption

    December 23, 2025
    Mavryk CEO Alex Davis on Tokenizing Real-World Assets and Building On-chain Yield at Scale

    Mavryk CEO Alex Davis on Tokenizing Real-World Assets and Building On-chain Yield at Scale

    December 23, 2025
    Koinly Warning: Third-Party Breach Exposes User Emails – Is Your Tax Data Safe?

    Koinly Warning: Third-Party Breach Exposes User Emails – Is Your Tax Data Safe?

    December 23, 2025
    • About us
    • Contact us
    • Privacy Policy
    • Terms & Conditions

    Copyright © 2025 tradehavenhub.com | All Rights Reserved

    No Result
    View All Result
    • Investment Tips
    • Trade Tips
    • Crypto News
    • Economy News
    • Stock Market

    Copyright © 2025 tradehavenhub.com | All Rights Reserved