logo

The tap-estry of threats targeting Hamster Kombat players

ID: a36c134a-2a48-5dc3-8d05-e06d39ecdce2

STIX ID: report--a36c134a-2a48-5dc3-8d05-e06d39ecdce2

Feed Name: WeLiveSecurity (ESET Research)

Threat Score
75/100

Date Published: 2024-07-23

Date Updated: 2026-05-01

...
...

ESET Research discovered cybercriminal activity leveraging the popularity of the Telegram clicker game Hamster Kombat: an Android spyware (Ratel) distributed via an unofficial Telegram channel that steals SMS, hides notifications, and accepts SMS-based commands; fake app storefronts that deliver unwanted ads; and GitHub-distributed cryptors that deploy Lumma Stealer to Windows victims. The report includes technical analysis of each threat, sample hashes, C2 IPs/domains, code and delivery details (RC4/AES-GCM embedding, process hollowing, FTP download), and MITRE ATT&CK mappings to support detection and mitigation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.