The FBI arrested 21-year-old Florida student Zyaire Wilkins on Tuesday after US federal prosecutors accused him of deploying malware-infected video games on Steam to drain more than $220,000 (£170,000) from victims’ cryptocurrency wallets, according to a criminal complaint.
How the Steam Malware Scheme Operated
Wilkins, alongside several unidentified co-conspirators, allegedly spent the last two years publishing malicious titles on the popular PC gaming platform. These games, which included BlockBlasters, Dashverse, Lampy, Lunara, and PirateFi, were designed to look entirely legitimate. Once downloaded, the embedded malware infected approximately 8,000 computers, allowing the hackers to harvest passwords, steal sensitive data, and breach around 80 cryptocurrency wallets.
To lure unsuspecting players, the group actively marketed these compromised titles across popular online communication platforms, including Discord, LinkedIn, and Telegram. Wilkins’ legal representative has not yet responded to requests for comment regarding the charges.
The Federal Investigation and Valve’s Response
The arrest follows an ongoing investigation initiated by the FBI in March, which targeted hackers using malicious gaming software on Steam. In the announcement, the bureau urged affected gamers who downloaded any of the flagged titles to come forward with evidence to assist with the prosecution.
Valve Purges Malicious Titles
Over the past year, Steam’s parent company, Valve, has actively removed multiple titles from its store, including PirateFi, after discovering they contained hidden malware. Despite their malicious nature, the games were fully functional, allowing victims to play them normally while their personal data was being compromised in the background.
How the FBI Traced the Suspect
The breakthrough in the case came after federal agents interviewed another individual connected to the conspiracy. This unnamed accomplice admitted to collaborating with others to secure funding for launching and promoting the malicious games, in exchange for a share of the stolen cryptocurrency.
By analysing the blockchain, the FBI tracked transactions from a specific digital wallet used in the operation. They discovered the stolen funds were used to purchase gift cards, including several for Uber Eats. Investigators then subpoenaed Uber, linking the gift cards directly to an account registered to Wilkins, who operated online under the alias “Sibel.eth”.
var playerInstance_jwplayer_6a7a071d9f9d6 = jwplayer( “jwplayer_6a7a071d9f9d6” );
playerInstance_jwplayer_6a7a071d9f9d6.setup({
playlist: “https://cdn.jwplayer.com/v2/media/lv0GaEwB”,
});
The Arrest and Seizure
Armed with this evidence, federal agents executed a search warrant at Wilkins’ Florida residence. Authorities seized his MacBook laptop, mobile phones, other electronic hardware, and multiple digital wallets. Upon his arrest, Wilkins exercised his right to remain silent and refused to answer any questions from investigators.
