Cyberpunk 2077 for Android is Malware

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,172
A threat actor is distributing fake Windows and Android installers for the Cyberpunk 2077 game that is installing a ransomware calling itself CoderWare.

To trick users into installing malware, threat actors commonly distribute them as gamer installers, cheats, and cracks for copyrighted software.

This week, Kaspersky malware analyst Tatyana Shishkova discovered an Android ransomware masquerading as a mobile version of the Cyberpunk 2077 game. The game was being distributed from a fake website impersonating the legitimate Google Play Store.

Shishkova tweeted that the CoderWare ransomware utilizes a hardcoded key, which means a decryptor can be made if necessary to recover files for free.
"RC4 algorithm with hardcoded key (in this example - "21983453453435435738912738921") is used for encryption. That means that if you got your files encrypted by this #ransomware, it is possible to decrypt them without paying the ransom."
 

SeriousHoax

Level 47
Verified
Top Poster
Well-known
Mar 16, 2019
3,634
How on earth people would expect to run Cyberpunk on a phone while the last-gen consoles are struggling to get a stable framerate 🤦‍♂️
There are two very popular local gaming groups on Facebook and once in a while some kids will comment on a gaming post asking if the game is available on Android. There are plenty of guys like that lacking knowledge who may fall victim to such cases.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top