{"id":10431,"date":"2025-07-25T12:31:58","date_gmt":"2025-07-25T05:31:58","guid":{"rendered":"https:\/\/infosec.new88088.net\/?p=10431"},"modified":"2026-02-05T12:32:05","modified_gmt":"2026-02-05T05:32:05","slug":"game-tren-steam-bi-cai-ma-doc-nguoi-choi-vo-tinh-test-game-giup-hacker-trom-du-lieu","status":"publish","type":"post","link":"https:\/\/infosec.new88088.net\/2025\/07\/25\/game-tren-steam-bi-cai-ma-doc-nguoi-choi-vo-tinh-test-game-giup-hacker-trom-du-lieu\/","title":{"rendered":"Game tr\u00ean Steam b\u1ecb c\u00e0i m\u00e3 \u0111\u1ed9c: Ng\u01b0\u1eddi ch\u01a1i v\u00f4 t\u00ecnh \u201ctest game\u201d gi\u00fap hacker tr\u1ed9m d\u1eef li\u1ec7u"},"content":{"rendered":"<p><b>M\u1ed9t chi\u1ebfn d\u1ecbch ph\u00e1t t\u00e1n m\u00e3 \u0111\u1ed9c tinh vi v\u1eeba b\u1ecb ph\u00e1t hi\u1ec7n tr\u00ean n\u1ec1n t\u1ea3ng ph\u00e2n ph\u1ed1i game Steam, khi t\u1ef1a game sinh t\u1ed3n \u201cChemia\u201d b\u1ecb hacker ch\u00e8n m\u00e3 \u0111\u1ed9c \u0111\u1ec3 \u0111\u00e1nh c\u1eafp th\u00f4ng tin c\u00e1 nh\u00e2n ng\u01b0\u1eddi d\u00f9ng. \u0110i\u1ec1u \u0111\u00e1ng lo ng\u1ea1i l\u00e0 ng\u01b0\u1eddi ch\u01a1i g\u1ea7n nh\u01b0 kh\u00f4ng ph\u00e1t hi\u1ec7n ra g\u00ec b\u1ea5t th\u01b0\u1eddng, v\u00ec m\u00e3 \u0111\u1ed9c kh\u00f4ng l\u00e0m gi\u00e1n \u0111o\u1ea1n tr\u1ea3i nghi\u1ec7m ch\u01a1i game.<\/b><\/p>\n<div style=\"text-align: center\"><a class=\"js-lbImage\" style=\"cursor: pointer\" href=\"https:\/\/whitehat.vn\/attachments\/steam-header-new-jpg.17370\/\" target=\"_blank\" rel=\"noopener\" data-lb-sidebar-href=\"\" data-lb-caption-extra-html=\"\" data-fancybox=\"lb-thread-18603\" data-caption=\"&lt;h4&gt;steam-header-new.jpg&lt;\/h4&gt;&lt;p&gt;&lt;a href=&quot;https:&amp;#x2F;&amp;#x2F;whitehat.vn&amp;#x2F;threads&amp;#x2F;game-tren-steam-bi-cai-ma-doc-nguoi-choi-vo-tinh-test-game-giup-hacker-trom-du-lieu.18603&amp;#x2F;#post-44112&quot; class=&quot;js-lightboxCloser&quot;&gt;WhiteHat Team \u00b7 25&amp;#x2F;07&amp;#x2F;2025 l\u00fac 6:00 PM&lt;\/a&gt;&lt;\/p&gt;\"><img fetchpriority=\"high\" decoding=\"async\" class=\"bbImage \" title=\"steam-header-new.jpg\" src=\"https:\/\/whitehat.vn\/data\/attachments\/17\/17705-86e32977b9c87fa2ba896ecf19a5fab1.jpg\" alt=\"steam-header-new.jpg\" width=\"712\" height=\"400\" \/><\/a>\u200b<\/div>\n<p>Nh\u00f3m hacker c\u00f3 t\u00ean EncryptHub (c\u00f2n \u0111\u01b0\u1ee3c bi\u1ebft v\u1edbi b\u00ed danh Larva-208) \u0111\u01b0\u1ee3c cho l\u00e0 th\u1ee7 ph\u1ea1m \u0111\u1ee9ng sau v\u1ee5 vi\u1ec7c. Nh\u00f3m n\u00e0y t\u1eebng n\u1ed5i ti\u1ebfng v\u1edbi h\u00e0ng lo\u1ea1t chi\u1ebfn d\u1ecbch l\u1eeba \u0111\u1ea3o quy m\u00f4 l\u1edbn v\u00e0 \u0111\u1eb7c bi\u1ec7t&#8230; C\u00f3 ti\u1ec1n s\u1eed v\u1eeba khai th\u00e1c l\u1ed7 h\u1ed5ng zero-day trong Windows, v\u1eeba g\u1eedi b\u00e1o c\u00e1o b\u1ea3o m\u1eadt cho Microsoft, \u0111\u00fang ch\u1ea5t \u201cn\u1eeda thi\u1ec7n n\u1eeda \u00e1c\u201d.<\/p>\n<p>Theo c\u00f4ng ty an ninh m\u1ea1ng Prodaft, v\u00e0o ng\u00e0y 22\/7 EncryptHub \u0111\u00e3 ch\u00e8n m\u00e3 \u0111\u1ed9c v\u00e0o t\u1ec7p c\u00e0i \u0111\u1eb7t c\u1ee7a Chemia tr\u00ean Steam. T\u1ef1a game n\u00e0y \u0111ang \u0111\u01b0\u1ee3c ph\u00e1t h\u00e0nh d\u01b0\u1edbi d\u1ea1ng \u201cearly access\u201d (truy c\u1eadp s\u1edbm), ch\u01b0a ra m\u1eaft ch\u00ednh th\u1ee9c v\u00e0 \u00edt \u0111\u01b0\u1ee3c ki\u1ec3m duy\u1ec7t ch\u1eb7t nh\u01b0 c\u00e1c b\u1ea3n ph\u00e1t h\u00e0nh ho\u00e0n ch\u1ec9nh.<\/p>\n<p>C\u1ee5 th\u1ec3:<\/p>\n<ul>\n<li data-xf-list-type=\"ul\">M\u00e3 \u0111\u1ed9c \u0111\u1ea7u ti\u00ean l\u00e0 HijackLoader (CVKRUTNP.exe), \u0111\u01b0\u1ee3c d\u00f9ng \u0111\u1ec3 t\u1ea1o \u201cch\u00e2n\u201d trong m\u00e1y n\u1ea1n nh\u00e2n, t\u1ea3i v\u1ec1 m\u00e3 \u0111\u1ed9c ch\u00ednh.<\/li>\n<li data-xf-list-type=\"ul\">M\u00e3 \u0111\u1ed9c th\u1ee9 hai l\u00e0 Vidar infostealer (v9d9d.exe), chuy\u00ean \u0111\u00e1nh c\u1eafp d\u1eef li\u1ec7u nh\u01b0 m\u1eadt kh\u1ea9u, cookie tr\u00ecnh duy\u1ec7t, v\u00ed ti\u1ec1n m\u00e3 h\u00f3a.<\/li>\n<li data-xf-list-type=\"ul\">Sau \u0111\u00f3, ch\u1ec9 trong 3 gi\u1edd, nh\u00f3m ti\u1ebfp t\u1ee5c c\u00e0i Fickle Stealer th\u00f4ng qua m\u1ed9t th\u01b0 vi\u1ec7n DLL (cclib.dll), \u0111i\u1ec1u khi\u1ec3n b\u1eb1ng PowerShell k\u1ebft n\u1ed1i \u0111\u1ebfn m\u00e1y ch\u1ee7 t\u1eeb trang soft-gets[.]com.<\/li>\n<\/ul>\n<p>C\u1ea3 hai lo\u1ea1i m\u00e3 \u0111\u1ed9c \u0111\u1ec1u ho\u1ea1t \u0111\u1ed9ng ng\u1ea7m, kh\u00f4ng \u1ea3nh h\u01b0\u1edfng hi\u1ec7u n\u0103ng game, khi\u1ebfn ng\u01b0\u1eddi ch\u01a1i kh\u00f4ng h\u1ec1 nghi ng\u1edd.<\/p>\n<h4>C\u01a1 ch\u1ebf ho\u1ea1t \u0111\u1ed9ng: Tinh vi v\u00e0 kh\u00f3 ph\u00e1t hi\u1ec7n\u200b<\/h4>\n<ul>\n<li data-xf-list-type=\"ul\">Vidar v\u00e0 Fickle Stealer \u0111\u1ec1u l\u00e0 infostealer chuy\u00ean tr\u1ed9m th\u00f4ng tin t\u1eeb tr\u00ecnh duy\u1ec7t nh\u01b0 m\u1eadt kh\u1ea9u, form t\u1ef1 \u0111\u1ed9ng, cookie, v\u00ed ti\u1ec1n m\u00e3 h\u00f3a.<\/li>\n<li data-xf-list-type=\"ul\">M\u00e3 \u0111\u1ed9c l\u1ea5y l\u1ec7nh t\u1eeb k\u00eanh Telegram, cho th\u1ea5y kh\u1ea3 n\u0103ng \u0111i\u1ec1u khi\u1ec3n linh ho\u1ea1t theo th\u1eddi gian th\u1ef1c.<\/li>\n<li data-xf-list-type=\"ul\">Do game \u0111\u01b0\u1ee3c t\u1ea3i t\u1eeb Steam ch\u00ednh ch\u1ee7, ng\u01b0\u1eddi ch\u01a1i ho\u00e0n to\u00e0n tin t\u01b0\u1edfng v\u00e0 kh\u00f4ng nghi ng\u1edd, khi\u1ebfn \u0111\u00e2y l\u00e0 chi\u00eau tr\u00f2 l\u1ee3i d\u1ee5ng ni\u1ec1m tin v\u00e0o n\u1ec1n t\u1ea3ng \u2013 kh\u00f4ng c\u1ea7n k\u1ef9 thu\u1eadt l\u1eeba \u0111\u1ea3o tinh vi, ch\u1ec9 c\u1ea7n\u2026 ng\u01b0\u1eddi ch\u01a1i b\u1ea5m &#8220;Install&#8221;.<\/li>\n<\/ul>\n<p>C\u00e1c t\u1ef1a game d\u1ea1ng Early Access nh\u01b0 Chemia th\u01b0\u1eddng \u00edt \u0111\u01b0\u1ee3c ki\u1ec3m duy\u1ec7t k\u1ef9 l\u01b0\u1ee1ng. Trong n\u0103m 2025, \u0111\u00e3 c\u00f3 \u00edt nh\u1ea5t 3 v\u1ee5 m\u00e3 \u0111\u1ed9c t\u01b0\u01a1ng t\u1ef1 chui l\u1ecdt l\u00ean Steam, bao g\u1ed3m <i>Sniper: Phantom\u2019s Resolution<\/i> v\u00e0 <i>PirateFi<\/i>. \u0110i\u1ec1u n\u00e0y \u0111\u1eb7t ra c\u00e2u h\u1ecfi v\u1ec1 c\u01a1 ch\u1ebf ki\u1ec3m so\u00e1t n\u1ed9i dung c\u1ee7a Steam, nh\u1ea5t l\u00e0 v\u1edbi c\u00e1c game \u0111ang trong giai \u0111o\u1ea1n ph\u00e1t tri\u1ec3n.<\/p>\n<p>Vi\u1ec7c ch\u00e8n m\u00e3 \u0111\u1ed9c c\u0169ng c\u00f3 th\u1ec3 li\u00ean quan \u0111\u1ebfn r\u00f2 r\u1ec9 n\u1ed9i b\u1ed9, ho\u1eb7c t\u00e0i kho\u1ea3n c\u1ee7a nh\u00e0 ph\u00e1t tri\u1ec3n b\u1ecb chi\u1ebfm quy\u1ec1n.<\/p>\n<h4>Khuy\u1ebfn ngh\u1ecb t\u1eeb c\u00e1c chuy\u00ean gia:\u200b<\/h4>\n<ul>\n<li data-xf-list-type=\"ul\">Ng\u01b0\u1eddi d\u00f9ng h\u1ea1n ch\u1ebf c\u00e0i \u0111\u1eb7t game \u00edt ng\u01b0\u1eddi ch\u01a1i, ch\u01b0a ra m\u1eaft ch\u00ednh th\u1ee9c, nh\u1ea5t l\u00e0 nh\u1eefng game mi\u1ec5n ph\u00ed \u0111\u01b0\u1ee3c \u0111\u1ec1 xu\u1ea5t ch\u01a1i th\u1eed (Playtest). C\u1ea7n c\u1ea9n tr\u1ecdng n\u1ebfu m\u00e1y xu\u1ea5t hi\u1ec7n d\u1ea5u hi\u1ec7u b\u1ea5t th\u01b0\u1eddng sau khi c\u00e0i \u0111\u1eb7t.<\/li>\n<li data-xf-list-type=\"ul\">Steam v\u00e0 nh\u00e0 ph\u00e1t h\u00e0nh: C\u1ea7n n\u00e2ng cao c\u01a1 ch\u1ebf ki\u1ec3m duy\u1ec7t \u0111\u1ed1i v\u1edbi c\u00e1c t\u1ef1a game Early Access, \u0111\u1eb7c bi\u1ec7t l\u00e0 ki\u1ec3m tra t\u1ec7p th\u1ef1c thi v\u00e0 th\u01b0 vi\u1ec7n \u0111i k\u00e8m.<\/li>\n<li data-xf-list-type=\"ul\">Qu\u1ea3n tr\u1ecb h\u1ec7 th\u1ed1ng, doanh nghi\u1ec7p: Theo d\u00f5i c\u00e1c IOC (Indicators of Compromise) li\u00ean quan t\u1edbi chi\u1ebfn d\u1ecbch, c\u00e1ch ly v\u00e0 r\u00e0 so\u00e1t m\u00e1y t\u00ednh n\u1ebfu c\u00f3 th\u00e0nh vi\u00ean c\u00e0i \u0111\u1eb7t Chemia ho\u1eb7c nghi ng\u1edd d\u00ednh m\u00e3 \u0111\u1ed9c.<\/li>\n<\/ul>\n<p>Chi\u1ebfn d\u1ecbch ph\u00e1t t\u00e1n m\u00e3 \u0111\u1ed9c qua game Chemia l\u00e0 l\u1eddi nh\u1eafc nh\u1edf r\u1eb1ng kh\u00f4ng ph\u1ea3i th\u1ee9 mi\u1ec5n ph\u00ed n\u00e0o c\u0169ng an to\u00e0n, ngay c\u1ea3 khi \u0111\u01b0\u1ee3c ph\u00e2n ph\u1ed1i qua n\u1ec1n t\u1ea3ng uy t\u00edn nh\u01b0 Steam. Khi hacker t\u1eadn d\u1ee5ng \u0111\u01b0\u1ee3c l\u00f2ng tin v\u00e0 l\u1ed7 h\u1ed5ng ki\u1ec3m duy\u1ec7t, ng\u01b0\u1eddi d\u00f9ng b\u00ecnh th\u01b0\u1eddng d\u1ec5 tr\u1edf th\u00e0nh n\u1ea1n nh\u00e2n m\u00e0 kh\u00f4ng hay bi\u1ebft. Cho \u0111\u1ebfn khi c\u00f3 th\u00f4ng b\u00e1o ch\u00ednh th\u1ee9c t\u1eeb Valve ho\u1eb7c nh\u00e0 ph\u00e1t tri\u1ec3n, t\u1ed1t nh\u1ea5t l\u00e0 kh\u00f4ng n\u00ean t\u1ea3i ho\u1eb7c ch\u01a1i Chemia trong th\u1eddi gian n\u00e0y.<\/p>\n<div style=\"text-align: right\"><b><i>Theo Bleeping Computer<\/i><\/b>\u200b<\/div>\n<div style=\"text-align: right;margin-top: 16px\"><i>Theo: <a href=\"https:\/\/whitehat.vn\/threads\/game-tren-steam-bi-cai-ma-doc-nguoi-choi-vo-tinh-test-game-giup-hacker-trom-du-lieu.18603\/\" target=\"_blank\" rel=\"noopener noreferrer\">https:\/\/whitehat.vn\/threads\/game-tren-steam-bi-cai-ma-doc-nguoi-choi-vo-tinh-test-game-giup-hacker-trom-du-lieu.18603\/<\/a><\/i><\/div>\n","protected":false},"excerpt":{"rendered":"<p>M\u1ed9t chi\u1ebfn d\u1ecbch ph\u00e1t t\u00e1n m\u00e3 \u0111\u1ed9c tinh vi v\u1eeba b\u1ecb ph\u00e1t hi\u1ec7n tr\u00ean n\u1ec1n t\u1ea3ng ph\u00e2n ph\u1ed1i game Steam, khi t\u1ef1a game sinh t\u1ed3n \u201cChemia\u201d b\u1ecb hacker ch\u00e8n m\u00e3 \u0111\u1ed9c \u0111\u1ec3 \u0111\u00e1nh c\u1eafp th\u00f4ng tin c\u00e1 nh\u00e2n ng\u01b0\u1eddi d\u00f9ng. \u0110i\u1ec1u \u0111\u00e1ng lo ng\u1ea1i l\u00e0 ng\u01b0\u1eddi ch\u01a1i g\u1ea7n nh\u01b0 kh\u00f4ng ph\u00e1t hi\u1ec7n ra g\u00ec b\u1ea5t [&hellip;]<\/p>\n","protected":false},"author":46,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[33],"tags":[],"class_list":["post-10431","post","type-post","status-publish","format-standard","hentry","category-tin-tuc-cua-vien"],"_links":{"self":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/posts\/10431","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/users\/46"}],"replies":[{"embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/comments?post=10431"}],"version-history":[{"count":0,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/posts\/10431\/revisions"}],"wp:attachment":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/media?parent=10431"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/categories?post=10431"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/tags?post=10431"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}