New ‘Erbium’ info-stealer distributed as fake cheats for video games

September 27, 2022

Researchers from Cluster25 have reported a new information-stealing malware called “Erbium,” which is being spread as fake cracks and cheats for popular video games.

The goal of the malicious campaign is to steal the credentials of victims and cryptocurrency wallets. Just like other information-stealing malware, Erbium steal data stored in web browsers (Chromium or Gecko-based), such as passwords, cookies, credit cards, and autofill information.

The malware also tries to exfiltrate data from many cryptocurrency wallets installed on web browsers as extensions. Cold desktop wallets such as Exodus, Atomic, Armory, Bitcoin Core, Bytecoin, Dash-Core, Electrum, Electron, Coinomi, Ethereum, Litecoin-Core, Zcash, and Jaxx are also stolen.

The malware also steals two-factor authentication codes from Trezor Password Manager, EOS Authenticator, Authy 2FA, and Authenticator 2FA. It can grab screenshots from all monitors, steal Steam and Discord tokens, steal Telegram Auth files, and profile the host based on the operating system and hardware.

Erbium deployment in the wild has yet to be verified, although it has been promoted on Russian-speaking forums since July 2022. The info-stealer cost $9 a week, and the price of the malware has since risen to $100 a month, or $1,000 a year for a license, after gaining popularity in August.

As a security precaution, users are advised to avoid downloading pirated software, make sure they scan all downloaded files on an AV tool, and keep the software up to date by installing the latest security patches available.

The sources for this piece include an article in BleepingComputer.

Top Stories

Related Articles

April 1, 2026 Anthropic has inadvertently exposed the full source code of its Claude Code tool for the second time more...

April 1, 2026 Cisco suffered a cyberattack after attackers used stolen credentials from a compromised developer tool to access its more...

March 30, 2026 Google has expanded its “Results about you” tool, allowing users to remove highly sensitive personal data, including more...

March 27, 2026 Microsoft is updating GitHub Copilot to train on real-world developer interactions, expanding beyond public code datasets to more...

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn