WeedHack malware campaign infects over 116,000 Minecraft systems via fake mods and cheats
By
BleepingComputer
The bagel they save for the regulars. Don't skim, savour.
Summary
McAfee has identified a large-scale Malware-as-a-Service campaign called WeedHack that targets Minecraft players. Since January, it has infected over 116,000 systems by spreading malicious mods, clients, cheats, and utilities through YouTube videos and SEO poisoning. The infostealer captures credentials, browser data, and cryptocurrency information, with a premium tier offering remote-access capabilities.
Key quotes
· 2 pulledWeedHack is a large-scale Malware-as-a-Service infostealer campaign targeting Minecraft players through malicious mods, clients, cheats, and utilities spread via YouTube and SEO poisoning.
McAfee says the operation has infected more than 116,000 systems and steals credentials, browser data, and cryptocurrency information while offering remote-access features in its premium tier.
You might also wanna read
ShadyPanda's 7-Year Malware Campaign Infected 4.3 Million Browsers Through Malicious Extensions
Koi researchers have uncovered a seven-year malware campaign by threat actor ShadyPanda that infected 4.3 million Chrome and Edge browsers t
Shai-Hulud: Largest npm Supply-Chain Compromise Affecting CrowdStrike and Hundreds of Packages
The Shai-Hulud malware campaign represents the largest and most dangerous npm supply-chain compromise in history, affecting hundreds of pack
.jpg)
Minecraft: Java Edition Removes Code Obfuscation to Support Modding Community
Minecraft: Java Edition is removing code obfuscation, a practice that has been used for years to hide parts of the game's code. This change
Bitwarden CLI 2026.4.0 Compromised in Checkmarx Supply Chain Attack via GitHub Action
Socket researchers discovered that Bitwarden CLI version 2026.4.0 was compromised as part of the ongoing Checkmarx supply chain campaign. Th
GitLab Identifies Large-Scale npm Supply Chain Attack with Destructive Malware
GitLab's security researchers have uncovered a large-scale supply chain attack in the npm ecosystem involving a destructive malware variant
Major NPM Supply Chain Attack: Over 1,000 Packages Infected via Fake Bun Runtime
A major cybersecurity incident occurred where over 1,000 NPM packages and 27,000+ GitHub repositories were infected within hours via a fake
