Hacker Used Steam Games to Steal Cryptocurrency: Arrested by FBI
A 21-year-old infected 8,000 computers with malware through seemingly legitimate titles on Valve's platform, stealing over $220,000 in cryptocurrency.
July 20, 2026 · 4 min read

TL;DR: A 21-year-old hacker was arrested by the FBI after stealing over $220,000 in cryptocurrency through infected games published on Steam. The malware was distributed via Discord, LinkedIn, and Telegram, affecting 8,000 people.
What Happened?
The FBI arrested Zyaire Wilkins, a 21-year-old Florida student, accused of stealing over $220,000 in cryptocurrency through malware-infected games published on Steam. According to the criminal complaint (TechCrunch, 07/17/2026), Wilkins and his accomplices uploaded titles such as BlockBlasters, Dashverse, Lampy, Lunara, and PirateFi, which appeared legitimate but contained malware designed to steal passwords and drain cryptocurrency wallets. The operation spanned several months, with attackers promoting the games on Discord, LinkedIn, and Telegram, leveraging gaming and developer communities. An estimated 8,000 people downloaded the games, and attackers compromised around 80 digital wallets. Wilkins faces hacking charges and could be sentenced to several years in prison. The case was investigated by the FBI in collaboration with Valve, which removed the games after being alerted.
Why Is This Important?
This case marks a milestone in cybersecurity for several reasons. First, Steam is a platform with over 120 million active users and enjoys a reputation for security. That an attacker managed to publish malicious games and keep them active for months demonstrates vulnerabilities in Valve's review processes. Second, the combination of gaming and cryptocurrency is an emerging attack vector: gamers often have digital wallets and are less cautious with entertainment applications. Third, the use of multiple social platforms for distribution shows increasing sophistication in malware campaigns.
Compared to previous attacks, such as malware in Google Play apps (2019) or ransomware in Steam games (2023), this case is notable because the malware not only infected the system but directly targeted cryptocurrency wallets, suggesting specialization in digital asset theft. Moreover, the scale of the attack—with 8,000 downloads and 80 compromised wallets—places it among the largest incidents of its kind on gaming platforms. According to Chainalysis data, cryptocurrency theft via malware increased by 30% in 2025, and this case could accelerate the adoption of stricter security measures.
Consequences for the Ecosystem
For Valve, the incident creates pressure to strengthen quality and security controls on Steam. The company is likely to implement stricter code reviews and dynamic malware analysis before approving games, as well as a system for continuous monitoring of updates. For Steam users, the lesson is clear: even on trusted platforms, games from unknown developers can be risky. It is recommended to verify the developer's reputation, avoid games with few downloads, and keep security software up to date.
For the cryptocurrency market, this case underscores the need for multi-factor authentication and wallets with anti-malware measures. Victims who lost their funds likely cannot recover them, reinforcing the importance of not storing large amounts in active wallets and using hardware wallets for cold storage. Additionally, the case could influence future regulations: in the U.S., the SEC has already shown interest in classifying cryptocurrency theft as an aggravated federal crime. At the corporate level, cybersecurity companies like CrowdStrike and McAfee have reported an increase in inquiries about protection against crypto-targeting malware.
What Should Readers Know?
- Do not download games from unknown developers on Steam without verifying their legitimacy through reviews and forums. In this case, the games had fake reviews and few downloads, which should have been a red flag.
- Use unique passwords and two-factor authentication on Steam accounts and cryptocurrency wallets. The malware stole credentials stored in browsers; using a password manager can mitigate this risk.
- Keep your operating system and antivirus updated, and run regular scans. The malicious games exploited known Windows vulnerabilities that had been patched months earlier.
- Be wary of promotions on Discord and Telegram offering free or heavily discounted games. Attackers used bots to generate artificial interest.
- Consider using cold wallets for cryptocurrencies not used daily. Victims who lost funds had all their assets in active wallets.
The Wilkins case is a reminder that cybersecurity is a shared responsibility among platforms, developers, and users. The FBI arrest demonstrates that law enforcement is taking these crimes seriously, but prevention remains the best defense. Valve, for its part, has announced it will review its publishing policies and improve malware detection before games reach the store. For cryptocurrency investors, this incident underscores the importance of digital security education and diversifying storage methods. In an ecosystem where digital assets are increasingly valuable, trust in platforms and individual vigilance are key to avoiding catastrophic losses.