Meccha Chameleon hit by malware in steam maps and discord hack

User-created maps for the indie game Meccha Chameleon were found to contain malware, coinciding with a breach of the game's official Discord server. The developer responded with clarifications and a patch.

The indie game Meccha Chameleon faced issues over the weekend when independent researcher Feint reported malware in Steam Workshop maps. One map called Laser Tag Neon was removed after analysis showed a malware dropper, followed by another titled Chroma Grid Arena.

Developer Lemorion_1224 stated the game itself contains no malware. The claims originated from a hacker who compromised a single admin account on the official Discord server.

The breach occurred while investigating the maps, infecting a system engineer's PC. The hacker bypassed two-factor authentication and banned official staff.

On Saturday the developer released patch version 3.1.0 to address the vulnerability. The Discord server was restored earlier today, with the game having sold 15 million copies in one month.

関連記事

Illustration of a hacker exploiting Meta's AI chatbot to hijack Instagram accounts by changing email addresses and bypassing security.
AIによって生成された画像

Meta patches ai chatbot flaw used to hijack instagram accounts

AIによるレポート AIによって生成された画像

Hackers exploited Meta's AI support chatbot to take over Instagram accounts by tricking it into changing associated email addresses. The vulnerability allowed password resets without two-factor authentication after matching locations via VPN. Meta resolved the issue with an emergency patch on May 29.

Malware has been distributed through multiple maps on the Steam Workshop for Meccha Chameleon. An independent researcher identified the issue on July 24. Developers released a patch the following day while the game's official Discord server was hacked.

AIによるレポート

Indie game Meccha Chameleon has sold 7 million copies less than two weeks after release. The artsy hide-and-seek title gained traction mainly through word of mouth and influencer support.

Daemon Tools, a popular disk image mounting app, was compromised in a supply-chain attack starting April 8, delivering malware through official updates. Security firm Kaspersky reported infections on thousands of machines across over 100 countries. Users are urged to scan their systems immediately.

AIによるレポート

Seventy-three Microsoft open source packages were compromised late last week with malware that steals credentials from cloud services and developer tools. The malicious code activates when opened in AI coding agents.

このウェブサイトはCookieを使用します

サイトを改善するための分析にCookieを使用します。詳細については、プライバシーポリシーをお読みください。
拒否