Kaspersky revealed cyber attacks targeting Steam users via Wallpaper Engine. Here are the ways to defend your accounts and the details of the attack.
Kaspersky security researchers have uncovered an insidious cyber raid campaign carried out through the Wallpaper Engine application, which has millions of users around the world. Hackers, who place malicious codes in some popular wallpaper packages shared on the Steam Workshop platform, especially aim to take over Steam accounts and infect victims’ systems with malicious software.
By misusing the technical infrastructure offered by the application, cyber attackers manipulate users through documents that appear to be a normal visual document, but function like a program running on Windows in the background. This situation raises important questions about Wallpaper Engine security in the cyber security world.
Cyber attackers abuse users’ trust by using technical vulnerabilities on Wallpaper Engine.
How the Attack Procedure Works
According to researchers’ findings, the formula used by attackers offers a structure that is quite different from conventional techniques. While wallpapers are usually uploaded to the system as simple JPEG or PNG documents, some documents on Wallpaper Engine actually serve as executable programs.
This technical ability gives attackers a great opportunity to hide their malicious software inside an ordinary wallpaper package. Users remain unaware that these documents they download to obtain an aesthetic image actually open a backdoor into their systems.
Documents that look like a simple wallpaper can fundamentally undermine system security.
Affected Regions Increase Globally
The information shared by Kaspersky shows that this cyber operation has spread over a wide geography. Regions with a high density of Steam users, especially Russia and China, are the primary targets of attackers.
However, the danger is not limited to these two countries only; It is reported that many Steam users were victims of these attacks in countries such as Singapore, Hong Kong, Germany, Vietnam, India and Canada. Such a security breach on central platforms such as Steam Workshop forces game lovers to be more cautious.
It is vital that users question not only the highly popular content, but also the background permissions when uploading. While control processes for content shared on the platform are expected to be tightened, personal security measures are becoming more valuable than ever.
Do you pay attention to security measures when downloading content from Steam Workshop? What do you think about this vulnerability on Wallpaper Engine? Share your opinions with us in the comments section.