Github scam investigation: Thousands of "mods" and "cracks" stealing your data
Submitted 2 days ago by jandoenermann@feddit.org to technology@lemmy.world
https://timsh.org/github-scam-investigation-thousands-of-mods-and-cracks-stealing-your-data/
truthfultemporarily@feddit.org 2 days ago
I always wondered about the security aspect of gaming and mods. It feels understudied.
sem@lemmy.blahaj.zone 2 days ago
Yeah it’s difficult how to know which mods are trustworthy
FarceOfWill@infosec.pub 2 days ago
There have been cases of crypto miners embedded but once discovered they’re nuked so quick it’s hard to get more than rumours.
C# modding is the most likely vector (rimworld, cities skylines, unity stuff) but Skyrim skse mods are raw code too. All can be misused.
Usually lua mods have a sandbox so they’re safe. Eg.factorio. and, um, more but my mind has gone blank.