Vidar Stealer 2.0 distributed via fake game cheats on GitHub and Reddit

News Archive
4 Replies 698 Views

Khushal

Level 16
Verified
Top Poster
Well-known

👾 Hundreds of GitHub repositories delivering malware to gamers under the guise of free game cheats were discovered by Acronis Threat Research Unit. Among the malware found is Vidar 2.0, a recently updated information stealer that has risen to popularity following the disruption of other leading infostealers.

Vidar 2.0 represents a substantial advancement: it has been fully rewritten from C++ to C, introduces polymorphic builds and multi-threaded execution and is distributed via trusted platforms like GitHub and Reddit, making detection and takedown harder.

Research authored by Eliad Kimhy and Darrel Virtusio provides a complete overview of this novel variant alongside an analysis of the broader attack vector.
 
The PowerShell loader performs multiple malicious operations. It adds a Windows Defender exclusion for a specified attacker-controlled directory. This will disable scanning of upcoming payloads dropped in that directory.
Would CLM stop this step?
 
In light of this malware that steals sensitive information and leverages trusted platforms to gain credibility, the 👉 recommendation is to avoid downloading “free cheats” from unofficial sources and to always keep your antivirus/antimalware up to date.
 
My advice, stop playing games, life is hard 😆
Dog Puppy GIF by FaZe Clan
 

Recently browsing

Members who viewed this thread in the last 5 minutes

Back
Top