Hackers Use Fake GTA 6 Downloads to Deploy RATs, Infostealers and Data-Wiping Malware
ID: d3277556-e6ef-576d-8ba6-43385451746d
STIX ID: report--d3277556-e6ef-576d-8ba6-43385451746d
Feed Name: cybersecurityNews.com
Analysts report a multi-component malware campaign that lures users with fake GTA VI downloads; the installer deploys NJRAT and DCRAT remote-access tools, the Mercurial Grabber infostealer, and Chaos ransomware that acts as a wiper, targeting personal files and cloud-synced data. Distribution uses poisoned search results, torrent listings, forums, and social posts; the report provides numerous IoCs (file hashes, filenames, IPs, domains, hosts-file entries, a Discord webhook) and remediation advice including network isolation, password resets, 2FA, and full system reinstallation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
