Weedhack malware campaign infects 116,000 mod-hungry Minecraft players systems through SEO poisoning and YouTube
- Weedhack spreads via poisoned Minecraft mods on YouTube
- Malware disables defenses and enables remote access
- Offered as MaaS with free and paid tiers
Cybercriminals are using YouTube to disseminate malware that targets Minecraft users and takes full control over their computers.
In January this year, security researchers McAfee Labs spotted a new malicious campaign dubbed Weedhack. In the campaign, the malicious actors created countless YouTube channels and standalone websites, through which they promoted links to Minecraft clients and mods.
With the help of Weedhack (apparently an enterprise-grade dashboard that also allows crooks to inject the malware into legitimate Minecraft mods), they created poisoned mods and clients which delivered a .JAR file called DonutDupe.jar.
Industry support
This is a Java ARchive package format used in the Java ecosystem to bundle multiple files into a single archive. This file starts a chain reaction that results in Windows Defender being disabled, system...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE