deleted by creator
Joke’s on them. I just put games in my library and never install them.
That’s the horror part. It’s part of the immersion.
Shouldn’t Valve be scanning for these types of things!? The alarming part is that players had to find it
There are so many games on Steam and every day a few hundred more are added. I assume there are automated checks and rudimentary malware scans in place but those aren’t fault proof.
Couldn’t they just put the malware in encrypted compression files that the game unpacks on the client end?
This appears to have originally been published as a totally different non-malware game. Either the original dev got their account taken over or turned heel, because the entire game was replaced with the malware game as an update to an existing game rather than a new published game.
I’m only speculating as I don’t know much about the Steam publishing process, but I wonder if that helped the malware sneak past more rigorous checks which would happen on a totally-new upload.
When I first published a game on steam, valve kept blocking it because I had checked “controller support” and they tested it and said it didn’t work with controllers. I tried to find any controller that didn’t work, asked a lot of people to test it for me as well, no issues whatsoever. Gave up and unchecked that option. Game got approved. Players used controllers just fine, I went back and checked it and never heard anything from valve again.
Alright, setting you up for a shameless plug! What game did you make?
I’ll let the opportunity pass, as the game is no longer mine and I’m not proud of how it ended up.
That sucks, sorry to hear. Hopefully you’ll be able to create what you want someday.
Scanners are only going to pick up known “off the shelf” malware. They are never going to pick up something bespoke that the developers wrote themselves.
Maybe? Games are huge nowadays and looking through all of them will probably be impossible and not sure how well it’ll prove? Google does that and there still are a lot of malware on play store.
With the amount of games published every day, they can’t. They should, but really can’t. Either they keep it this way, or review each and every game under the Sun to find malware before they get published.
When is valve removing windows 11?
Isn’t that exactly what SteamOS is doing?
When you buy a Steam Deck or Steam Machine.
They can’t. It’s not sold through Steam.
Well, that’s pretty horrifying.
“Valve removes free game”
What? Why are they removing free games??? Oooooh, they must want you to pick the paid games…
“after players discover it contains malware that steals your data”
Oh. Well that’s a very good reason to remove it. Thanks Valve!
Once wasm 64 bit deploys more, we should migrate as much as possible to it.
That at least will make it harder to access random files and keys from disk due to the sandboxing.
Sandbox escapes are still possible, but that’s an additional level of control we can enforce.
Nothing’s free in Waterworld.
to be devils advocate, that is pretty scary.
Yikes!
laughs in proton
Proton does not protect you from harm. It’s not a sandbox.
No but it also doesn’t have windows on the other side, someone would have to target a proton setup to get much of anything.
Ye no. If i made malware for windows that goes over all reported drives wine will just happily translate that. Hell, by default wine will map root as z: so no, wine/proton will not help.
Even wannacry was able to cause some damage to linux if ran through wine
Thanks! That’s very useful to know - I’d have assumed it can only see it’s own files within the wineprefix folder.
It looks like trying Steam within flatpak, and limiting the flatpak’s access might offer some protection. Or maybe getting stem to run as a different user.
Why wouldn’t they? Linux is gaining market share.
Yeah, it’s slowly gaining market share, but it’s still a minuscule size of the user base
what about bazzite set to immutable?
That does not stop things from stealing your data.
Would that even help? Windows malware can run on Linux precisely thanks to Wine and Proton.
You don’t actually believe this, right?
My uneducated guess is that it would run inside the prefix but would have troubles with basic Windows dependencies not availiable/running, prefix’s folder structure being cut down to the most basic components and barebones, and that nothing actually runs like in Windows but is rather translated from Linux commands to Windows one and back? Meaning there’s no processes or services like in a VM, no way to run cmd or powershell scripts, nothing to steal without leaving containment? Am I wrong somewhere?
I recall there was a wave of dread about Proton leaving host system easily accessible and not implementing any security measures as they are out of scope, but if we assume it’s a virus targeting Windows, I’m half sure it would have troubles doing anything the usual way.
Hey PieFed user, posting a 5-minute meme video where the guy struggles to make a custom virus do something through Proton isn’t the own you think it is. It literally corroborates my point. Windows viruses and malware will not work through Proton.
They had to do one thing…
But it was a “feature”


















