Hamster Kombat Players Threatened by Spyware & Infostealers

Share This Post

Malicious actors are targeting users of a mobile currency game by using fake Android and Windows software that installs spyware and other malware.

Hamster Kombat launched in March and already has more than 250 million users, likely due to the promises of winning TON-based cryptocurrency. The game is for Android users, who can earn in-game currency by completing certain tasks within the game.

To play, users must join the game’s Telegram channel, scan a QR code, and then launch a Web app on their device. When users first search for the game’s Telegram channel, they are likely to come across other Hamster-branded channels attempting to distribute Android malware. One channel, named “HAMSTER EASY,” even distributes Ratel Android spyware as an APK file.

This malware can allow the threat actors to subscribe the victim to different services and hide the notifications so that they remain unaware.

Other fake websites include “hamsterkombat-ua.pro” and “hamsterkombat-win.pro,” which redirect visitors to advertisements to generate money instead of the real game. 

On the Windows platform, researchers discovered GitHub repositories that promise its victims Hamster Kombat farm bots and autoclickers but instead deliver cryptors that contain Lumma Stealer, info-stealer malware.

As the game continues to grow in popularity among users, it will continue to attract malicious actors, so users should be wary of being tricked by threat actors and copycat apps and remain vigilant when downloading software.

https://eu-images.contentstack.com/v3/assets/blt6d90778a997de1cd/blt8811725c0011f454/66a128d022f1111ee435a62e/hamsters_1800_Science_Photo_Library_alamy.jpg?disable=upscale&width=1200&height=630&fit=crop

This post was originally published on this site

More Articles

Article

Navigating SEC Regulations In Cybersecurity And Incident Response

Free video resource for cybersecurity professionals. As 2024 approaches, we all know how vital it is to keep up to date with regulatory changes that affect our work. We get it – it’s a lot to juggle, especially when you’re in the trenches working on an investigation, handling, and responding to incidents.