U.S. law enforcement officials have apprehended a Florida resident accused of uploading malicious video games to Steam, a well-known PC gaming platform. The malware hidden within these games was reportedly designed to compromise victims’ computers, pilfer their passwords and sensitive information, and deplete their cryptocurrency wallets, as outlined in a criminal complaint.
FBI Arrests Zyaire Wilkins
On Tuesday, the FBI took Zyaire Wilkins, a 21-year-old student from Florida, into custody. The following day, prosecutors accused him, along with several unnamed associates, of engaging in hacking activities. Over the past two years, Wilkins and his collaborators are believed to have released multiple malware-infected games on Steam, such as BlockBlasters, Dashverse, Lampy, Lunara, and PirateFi. The FBI claims that this illicit operation infected approximately 8,000 victims and led to the hacking of around 80 cryptocurrency wallets, resulting in the theft of at least $220,000 in digital assets.
Marketing Tactics Revealed
According to authorities, Wilkins and his co-conspirators promoted their harmful video games through platforms like Discord, LinkedIn, and Telegram.
Legal Representation Remains Silent
As of now, Wilkins’ attorney has not responded to requests for comments regarding the case.
FBI Investigations and Warnings
In March, the FBI disclosed its investigation into a hacker suspected of utilizing malware-laden video games on Steam to target victims. In a public announcement, the bureau urged individuals who had downloaded the harmful games mentioned in this week’s criminal complaint to come forward and assist in the ongoing investigation.
Valve’s Response to Malware Threats
In the past year, Valve, the company behind Steam, has removed several games from its platform after discovering they contained malware, including PirateFi. These games were crafted to appear legitimate, allowing players to install and play them, yet they were embedded with harmful software.
Tracing the Cryptocurrency Trail
Following the identification of another individual involved in the scheme, federal agents conducted interviews with that person. This unnamed individual revealed that they collaborated with others to secure funding for the launch and marketing of the malicious games, in exchange for a share of the stolen cryptocurrency. The FBI managed to pinpoint a specific crypto account tied to the operation and traced subsequent cryptocurrency transactions made from this account to purchase various gift cards, including those for Uber Eats. After issuing a subpoena to Uber, federal agents discovered that the gift cards were linked to an account that facilitated deliveries to Wilkins, who was known online by the alias Sibel.eth, as per the complaint.
The investigation culminated in a search warrant executed at Wilkins’ residence, where authorities confiscated his MacBook, cell phones, additional devices, and digital wallets. The complaint indicates that Wilkins chose not to engage in conversation or respond to any inquiries during this process.