Malware Targets Roblox Cheaters in Disguise

Lua Malware Targets Cheaters in Roblox and Other GamesCheaters Never Prosper, As Fake Cheat Scripts Contain Malware

Often, the allure of gaining an edge in competitive online games can be a powerful motivator. However, this desire to win is being exploited by cybercriminals who are deploying a malware campaign disguised as cheat scripts. This malware is written in the Lua scripting language and is targeting gamers across the globe, with researchers reporting infections in North America, South America, Europe, Asia, and Australia.
The attackers are capitalizing on the popularity of Lua scripting within game engines and the prevalence of online communities dedicated to sharing cheats. As reported by Morphisec Threat Labs’ Shmuel Uzan, attackers employ "SEO poisoning," a tactic that makes their malicious websites appear legitimate to unsuspecting users. These malicious scripts are disguised as push requests on GitHub repositories, often targeting popular cheat script engines like Solara and Electron—"popular cheating script engines frequently associated" with the popular children's game "Roblox." Users are lured to these scripts through fake advertisements promoting fake versions of these cheat scripts.

However, once the malicious batch file is executed, the malware establishes communication with a command and control server (C2 server) controlled by the attackers. This can then send "details about the infected machine" and allow it to download additional malicious payloads. The potential consequences of these payloads are vast, ranging from personal and financial data theft and keylogging to complete system takeover.
Prevalence of Lua Malware in Roblox

Since Roblox allows users to create their own games, many young developers use Lua scripts to build in-game features, which leads to a perfect storm of vulnerability. Cybercriminals have taken advantage of this by embedding malicious scripts in seemingly benign tools like the "noblox.js-vps" package, which, according to ReversingLabs, was downloaded 585 times before it was identified as carrying the Luna Grabber malware.

-
The great controversy storyEmbark on a compelling journey through time with The Great Controversy Story app, tracing the epic struggle between good and evil—from the fall of Jerusalem to the Second Coming of Jesus. Discover vivid historical accounts, including Roman Empire pe -
President onlineMultiplayer Card GameEnjoy the classic game of President with 3, 4, or up to 7 players. Play solo against highly realistic AI opponents or compete with real players from around the world.Be the first to play all your cards and earn the title of Presi -
Graffiti CreatorCustom Graffiti CreatorDesign Your Own Urban MasterpieceEver wanted to create eye-catching street art with your personal touch? Graffiti Creator lets you design custom works featuring:Your nameSpecial messagesTributes to loved onesPowerful Creation T -
Biblia Reina Valera - RVREnhance your spiritual journey with daily inspiration using the free Biblia Reina Valera - RVR app! Designed for Spanish speakers, this offline Bible app lets you read daily verses, track your progress, take personal notes, and share meaningful pass -
Bhabhi TholaExperience the thrill of Bhabhi Thola, a dynamic card game that hails from the lively Punjab region across India, Pakistan, and Bangladesh. The goal is straightforward yet exhilarating: be the first to GET AWAY by playing all your cards. But beware— -
Travel DuckJoin Corgi & Duck on a time-traveling match-3 puzzle journey!Pack your bags and get ready for a match-3 puzzle adventure!Best friends Corgi and Duck have built a time machine. Now, they're traveling across time and space, creating their own unique st