Dozens of malicious wallpapers found on Steam Workshop: gamers’ accounts at risk
2026-06-22T08:51:55Z•b3b6d43a92909b216de6240e64249874abe517129f471b78c0c8f6bf0299ffd7
APTArgamalCVE-2026-3102ChinaCloud AtlasExifToolPowerCloudRATReverseSocksRussiaSSHSteam WorkshopTorWi‑FiWorld Cup 2026container securitygamingmacOS vulnerability','SparkCat','Triadamalwareminerspiracyprivilege misconfigurationsupply chainwallpaperswardriving
What happened
Feed of Kaspersky Securelist posts (May–Jun 2026) describing multiple active threats and security assessments: malware spreading via Steam Workshop wallpapers targeting gamers (China, Russia); Argamal RAT distributed with infected hentai games; a piracy-focused campaign delivering miners and RAT modules to consumers of pirated media; Cloud Atlas APT activity against Russian/Belarusian public and diplomatic sectors using ReverseSocks, SSH, Tor and a new PowerCloud tool; an ExifTool vulnerability (CVE-2026-3102) that enables macOS compromise via crafted images; container attack vectors and risks
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- kaspersky_securelist
- Record identifier
- b3b6d43a92909b216de6240e64249874abe517129f471b78c0c8f6bf0299ffd7
- Enrichment time
- 2026-06-22T08:51:55Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.