A verified Steam game, Block Blasters, was weaponized with a cryptodrainer component, resulting in the theft of over $150,000 in cryptocurrency from hundreds of users. The attack specifically targeted individuals identified as holding significant crypto assets, with credentials and wallet information exfiltrated via a batch script and Python backdoor. Victims are advised to reset Steam passwords and move digital assets to new wallets immediately.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
Subsequent coverage explicitly connected the Stellantis incident to the broader ShinyHunters campaign targeting Salesforce environments. This added attribution and clarified the likely intrusion path through a compromised third-party service provider.
Stellantis confirmed that customer data was compromised in the incident, with reports indicating exposure of information related to Jeep, Dodge, and other North American vehicle buyers. Multiple outlets described the breach as affecting millions of records or customers.
Stellantis disclosed it was investigating a cyber incident involving unauthorized access linked to a third-party provider. Early reports said the company was assessing the scope and impact on customer information across its brands.
A compromise of a third-party provider's Salesforce environment exposed Stellantis customer data, with later reporting attributing the intrusion to the ShinyHunters threat actor. The breach affected Stellantis data held by the external vendor rather than Stellantis' own core systems.
9 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcethecyberthrone.in
Open sourcego.theregister.com
Open sourcehackread.com
Open sourcebleepingcomputer.com
Open sourcebleepingcomputer.com
Open sourcesecurityaffairs.com
Open sourcehackread.com
Open sourcetherecord.media
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.