Malware Targets Roblox Cheaters in Disguise

Lua Malware Targets Cheaters in Roblox and Other GamesCheaters Never Prosper, As Fake Cheat Scripts Contain Malware
Often, the allure of gaining an edge in competitive online games can be a powerful motivator. However, this desire to win is being exploited by cybercriminals who are deploying a malware campaign disguised as cheat scripts. This malware is written in the Lua scripting language and is targeting gamers across the globe, with researchers reporting infections in North America, South America, Europe, Asia, and Australia.
The attackers are capitalizing on the popularity of Lua scripting within game engines and the prevalence of online communities dedicated to sharing cheats. As reported by Morphisec Threat Labs’ Shmuel Uzan, attackers employ "SEO poisoning," a tactic that makes their malicious websites appear legitimate to unsuspecting users. These malicious scripts are disguised as push requests on GitHub repositories, often targeting popular cheat script engines like Solara and Electron—"popular cheating script engines frequently associated" with the popular children's game "Roblox." Users are lured to these scripts through fake advertisements promoting fake versions of these cheat scripts.
However, once the malicious batch file is executed, the malware establishes communication with a command and control server (C2 server) controlled by the attackers. This can then send "details about the infected machine" and allow it to download additional malicious payloads. The potential consequences of these payloads are vast, ranging from personal and financial data theft and keylogging to complete system takeover.
Prevalence of Lua Malware in Roblox
Since Roblox allows users to create their own games, many young developers use Lua scripts to build in-game features, which leads to a perfect storm of vulnerability. Cybercriminals have taken advantage of this by embedding malicious scripts in seemingly benign tools like the "noblox.js-vps" package, which, according to ReversingLabs, was downloaded 585 times before it was identified as carrying the Luna Grabber malware.
-
A4 Wheel of fortuneDo you like Challenges? Try the app by the world-famous blogger Vlad A4!Do you like Challenges? Be ready to push your luck! Try the app by the world-famous blogger Vlad A4, spin the wheel of fortune, and dive into a world of positive emotions!--- CHOOSE ROULETTE FOR ANY OCCASION ---Funny punishment
-
Gartic.ioGartic.io invites you to dive into a world of creativity and fun, where drawing and guessing games come to life! Each round challenges players to sketch a chosen word, while others race to guess what's being drawn. The thrill of the game lies in reaching the points goal first and claiming the top sp
-
Genius Quiz SoccerIntroducing the thrilling new game, Genius Quiz Soccer, which is packed with a fresh set of challenging questions that will test your soccer knowledge to the limit! Whether you're a die-hard fan or a casual observer, this game promises to keep you on your toes with its unique twist on the traditiona
-
Genius Quiz 15Introducing the highly anticipated **Genius Quiz 15**, now available in English for the first time! This latest installment brings a fresh set of challenges with a whopping 50 unique questions designed to test your knowledge and problem-solving skills to the limit. Brace yourself, as some of these q
-
Vulgarity testLooking for a fun and engaging way to spice up your evening with friends or a romantic partner? The "Truth or Dare" game is the perfect choice for an unforgettable night filled with laughter, revelations, and perhaps a bit of mischief. Designed for adults 18+, this interactive offline game offers a
-
Genius Quiz 3Experience the thrill of Genius Quiz 3, now available in English for the first time! This engaging game challenges your knowledge with a fresh set of 50 unique questions. Be prepared for a twist: some answers might not be found among the given options, adding an extra layer of challenge. It's report