Minecraft players warned of mods stealing passwords & personal data

A recently published Minecraft study has brought attention to a harmful operation that specifically aims at mods with the objective of pilfering various types of personal data.

The reason for the Minecraft community’s ongoing vitality, even though the game is over a decade old, lies in its boundless creative possibilities. Additionally, the ability to add mods enhances the fun, offering an enriched gaming experience by introducing new layers of gameplay.

In light of this, gamers need to exercise greater care when downloading modifications (mods) for Minecraft. As uncovered by Check Point Research, there’s been a widespread, harmful operation aimed at contaminating Minecraft mods. Installing such mods could potentially infect your Windows devices.

If that occurs, there’s a chance that their credentials, authentication keys, digital wallets for cryptocurrencies, and critical information may be compromised or taken unlawfully.

Minecraft players risk getting their personal data stolen from fake mods

According to Check Point Research’s findings, the Stargazers Ghost Network has been found to distribute harmful software through malicious repositories, with their method involving the use of both Minecraft modding and GitHub to target a vast number of potential victims.

As per the explanation, the report states that the malware was disguised as “Oringo” and “Taunahi”, which are scripts or cheats used in Minecraft. Both stages of this malware were created using Java and will only run if the Minecraft runtime is present on the host computer.

These files will carry out a “sequential assault” on systems, aiming to infiltrate them and swipe personal information from affected individuals.

Since March 2025, Check Point Research has been diligently monitoring suspicious GitHub repositories. These repositories, disguised to seem legitimate, have gone undetected by all antivirus software on VirusTotal due to their specific targeting of Minecraft users.

If these were to somehow make their way into my system, it paints a bleak picture. According to their findings, a wide array of sensitive information could potentially be at risk – from login credentials for browsers, to valuable cryptocurrency wallet details, confidential Discord messages, and much more. It’s a chilling thought.

Read More

2025-06-20 07:18