Daily Guardian UAEDaily Guardian UAE
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
What's On

3 underrated movies on Netflix you should watch this weekend (August 21-23)

August 22, 2026

3 underrated TV series on Peacock you should watch this weekend (August 21-23)

August 22, 2026

New battery tech could make home solar batteries safer and last for decades.

August 22, 2026

Riot is ending 2XKO development less than a year after launch

August 22, 2026

Hyundai’s new Ioniq V undercuts the cheapest EV in US by over $10,000

August 22, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian UAE
Subscribe
  • Home
  • UAE
  • What’s On
  • Business
  • World
  • Entertainment
  • Lifestyle
  • Sports
  • Technology
  • Travel
  • Web Stories
  • More
    • Editor’s Picks
    • Press Release
Daily Guardian UAEDaily Guardian UAE
Home » The hottest indie game on Steam just had a malware scare
Technology

The hottest indie game on Steam just had a malware scare

By dailyguardian.aeJuly 26, 20263 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

One of Steam’s biggest success stories of 2026 has suddenly found itself at the center of a security scare. A security researcher has discovered that a community-made Meccha Chameleon Workshop map contained code designed to write files outside the game and launch a hidden PowerShell process that attempted to download an additional payload from an external server.

How did a custom map become malware?

The investigation, published by security researcher Feint, began after players noticed a Command Prompt window briefly flashing on screen while Steam downloaded a custom Workshop map called Laser Tag Neon. Digging deeper, the researcher found that the map wasn’t hiding an executable file in the traditional sense. Instead, it abused Unreal Engine 5 Blueprint logic to write a batch file into the user’s Documents folder before launching a hidden PowerShell process.

According to the reverse engineering analysis, the script then attempted to download a second-stage batch file from a hardcoded external server and execute it. During testing, however, that download returned a 404 error, meaning the final payload was never retrieved and its intended purpose remains unknown. Even so, the behavior itself — writing executable files outside the game directory and invoking PowerShell — is highly unusual for a Workshop map and strongly suggests malicious intent.

The researcher stopped short of identifying the final malware family because the second-stage payload was unavailable during analysis. However, they concluded that the Workshop item should be treated as malicious based on multiple indicators, including hidden execution logic, disguised Blueprint assets, and attempts to retrieve external code.

Why this matters

Meccha Chameleon isn’t just another indie game. Since launching last month, the multiplayer hit has sold around 15 million copies, and industry analysts recently reported that it generated the second-highest PC game revenue of the month, behind only Fortnite. That massive audience makes it an attractive target for attackers looking to abuse community-created content.

MECCHA CHAMELEON logo featured

Unlike installing a traditional mod manually, Workshop content is often downloaded automatically when joining multiplayer lobbies or subscribing to community maps. In this case, the malicious behavior was embedded inside what appeared to be a perfectly normal Unreal Engine asset, making it difficult to spot through a quick inspection.

Although the vulnerability has now been patched and the malicious Workshop map has been removed, the incident serves as a reminder to be cautious with community-created content. Gamers should stick to maps and mods from trusted creators, check community ratings and comments before downloading, keep their antivirus enabled, and ensure both Steam and their games are up to date. While most Workshop content is perfectly safe, this case shows that a single malicious upload can slip through and pose a security risk.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

3 underrated movies on Netflix you should watch this weekend (August 21-23)

3 underrated TV series on Peacock you should watch this weekend (August 21-23)

New battery tech could make home solar batteries safer and last for decades.

Riot is ending 2XKO development less than a year after launch

Hyundai’s new Ioniq V undercuts the cheapest EV in US by over $10,000

Apple is cutting Vision Pro jobs as smart glasses move up the priority list

Nintendo just wiped out 400 more Switch emulator repositories on GitHub

Oura hit with lawsuit over allegedly misleading sleep-tracking claims

BYD’s $37,000 Da Han EV offers range and features usually reserved for luxury cars in the US

Editors Picks

3 underrated TV series on Peacock you should watch this weekend (August 21-23)

August 22, 2026

New battery tech could make home solar batteries safer and last for decades.

August 22, 2026

Riot is ending 2XKO development less than a year after launch

August 22, 2026

Hyundai’s new Ioniq V undercuts the cheapest EV in US by over $10,000

August 22, 2026

Subscribe to News

Get the latest UAE news and updates directly to your inbox.

Latest Posts

Apple is cutting Vision Pro jobs as smart glasses move up the priority list

August 22, 2026

Nintendo just wiped out 400 more Switch emulator repositories on GitHub

August 22, 2026

Oura hit with lawsuit over allegedly misleading sleep-tracking claims

August 21, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian UAE. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.