Key takeaways
- Valve removed Beyond The Dark after malware allegations surfaced.
- The malicious payload allegedly stole passwords, browser data, and crypto wallet information.
- Attackers reportedly hijacked an existing Steam game instead of publishing a new one.
- The malware hid inside a modified UnityPlayer.dll file.
- Anyone who installed the game should run antivirus scans and change passwords immediately.
Steam removes horror game after malware steals player data
https://www.bitdefender.com/en-us/blog/hotforsecurity/steam-horror-game-malware
21 Comments
Corngood@lemmy.ml · 25 pts · 104d
I'd rather not use flatpack, but I really should figure out better sandboxing. Not just for games, but for supply chain attacks, etc.
It's kind of nuts that a game has access to my browser profile and all sorts of other stuff in ~.
DampCanary@lemmy.world · 2 pts · 103d
I know firejail nicely packs my Firefox & co. to only have access to select few /home/ sub-dirs
Mordikan@kbin.earth · 2 pts · 102d
This is what I do as well. Process inheritance helps prevent any game that Steam runs from misbehaving outside it's whitelisted directories.
DampCanary@lemmy.world · 2 pts · 101d
Its reasuring, knowing that any potentially spawned process is also sandboxed to the same environment and while it doesn't isolate (in terms of e.g. Docker) it does contain it to less risky (with correct set up) part of the system.
A big bonus to it, is that it provides basic profile versions for the whole plethora of programs which can be simply expanded/adjusted with custom user profile.
magikmw@piefed.social · 1 pts · 104d
Selinux should help with this, but by default all 'non-server' apps can just access anything across the user's home. Maybe I should look into this. Hmmmm.
Edit: then again, steam games usually run via wine, using a simulated windows filesystem... Maybe they are isolated already? I really should look into this.
tomalley8342@lemmy.world · 13 pts · 103d
No, the Z drive in wine maps to your linux file system.
Mordikan@kbin.earth · 4 pts · 103d
Imagine being a dev and having this happen to you. Still, MFA is a thing.
Katana314@lemmy.world · 3 pts · 103d
Long ago when Linux was a complete underdog (0.001% of users or something) it was touted as being vastly more secure than Windows, and that was probably true. But, convenience always battles with security in adverse ways, and Steam does aim to be very convenient.
I remember for a time any Xbox-app game would prop up a UAC permissions dialog each time you'd newly installed a game. Those apps are also un-moddable due to package signing. It was very annoying, but part of me thought "...Theoretically, Steam should be doing at least something like this."
Rai@lemmy.dbzer0.com · 2 pts · 103d
The “FAQ” on this article feels like they just took an LLM sum marry and added it to the bottom hahaha
SaltySalamander@fedia.io · 3 pts · 103d
🙄
Rai@lemmy.dbzer0.com · 2 pts · 103d
You entered seen a mobile phone autocorrect mistake before, I take it?
SaltySalamander@fedia.io · 7 pts · 103d
🙄
ArcaneSlime@lemmy.dbzer0.com · 2 pts · 103d
Locks like they make alot of them.
Rai@lemmy.dbzer0.com · 2 pts · 103d
I’ll read what I type before sending when I’m dead
diabetic_porcupine@lemmy.world · 1 pts · 103d
stephen01king@lemmy.zip · 3 pts · 103d
You should re-read your comment before posting them.
Rai@lemmy.dbzer0.com · 0 pts · 103d
Nah
stephen01king@lemmy.zip · 1 pts · 103d
You do you.
Hairyfishnuts@feddit.online · -20 pts · 104d
EnderofGames@sh.itjust.works · 29 pts · 104d
Go ahead and remove your internet browser, too, since they can also hijack that.
Oka@sopuli.xyz · 15 pts · 104d
Might as well delete your System32 folder as well, they'll go for that next.
tidderuuf@lemmy.world · 10 pts · 104d
Probably easier to just not download and install every game in your library, which I'm guessing is like 5.