The scheme relied on a simple but effective pipeline: market games like BlockBlasters, Chemia, and Dashverse across Discord, Telegram, and LinkedIn, then wait for unsuspecting users to download them. Once installed, the malware granted the group access to private data, allowing them to drain 80 separate crypto wallets. The operation gained notoriety last year when one of the games, BlockBlasters, was linked to the theft of $150,000, including funds a streamer had been collecting to cover cancer treatment costs.
Investigators tracked Wilkins by linking his crypto wallet address to account activity on Bitrefill, a platform used for purchasing gift cards with digital currency. While Valve, the parent company of Steam, has removed the malicious titles from its store, the legal fallout is just beginning in a Washington court. Federal agents continue to solicit information from victims as they untangle the scope of the infection, which spanned from May 2024 through early 2026.

Comments (0)
No comments yet. Be the first!