Poker players are being spied on by money-making malware

Poker chips

Two of the world's largest poker sites have been affected by a new piece of malware that allows cheats to prosper.

First reported by the Eset Security Blog, the Win32/Spt.Odlanor allows attackers to view cards in the victim's hand and then join the game on PokerStars or Full Tilt Poker in order to fleece the victim of their chips.

Victims are infected with the trojan when downloading software from elsewhere and it has been known to masquerade as Daemon Tools or mTorrent. It has also reached systems through various poker-specific programs such as player databases and poker calculators.

When the malware has been successfully executed it takes a screenshot of either the PokerStars or Full Tilt Poker client and this are relayed back to the attacker. From here on in screenshots can be obtained that reveal the hand and player ID thus making it very simple to find the exact table the person is playing at because each client allows you to search for tables by player ID.

Serial targets

Most of the victims are in Eastern Europe, particularly Russia and the Ukraine, and as of September 16 several hundred users have fallen victim to the malware.

Poker players are often targeted by cyber criminals and you can go as far back as 2008 to find warnings from one researcher about the threat posed, and PokerStars security product manager Trent Wyatt admitted in last year that poker players are definitely open to cyber crimes.

Latest in Security
Representational image depecting cybersecurity protection
GitLab has patched a host of worrying security issues
China
Volt Typhoon threat group had access to American utility networks for the best part of a year
Abstract image of cyber security in action.
MassJacker malware targets those looking for pirated software
Code Skull
US government warns Medusa ransomware has hit hundreds of critical infrastructure targets
An American flag flying outside the US Capitol building against a blue sky
The FCC is creating a security council to bolster US defenses against cyberattacks
Image depicting hands typing on a keyboard, with phishing hooks holding files, passwords and credit cards.
Microsoft warns about a new phishing campaign impersonating Booking.com
Latest in News
Man using iMessage on an iPhone
Apple will finally enable encrypted RCS messages between iOS and Android, and it's about time
Jason Sudeikis' Ted Lasso pointing at someone in Ted Lasso season 2
Believe it, baby: Ted Lasso season 4 is officially in development for Apple TV+ and Jason Sudeikis will reprise his role as the titular soccer coach
Quordle on a smartphone held in a hand
Quordle hints and answers for Saturday, March 15 (game #1146)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Saturday, March 15 (game #377)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Saturday, March 15 (game #643)
Wix automation
The world's leading website builder aims to save businesses time with new tool