4 comments

  • beart56 minutes ago
    So this vulnerability isn&#x27;t directly the result of using Steam, or any of the Steam profile customizations, such as avatars and profile page backgrounds. But rather, it is a vulnerability in a third-party application &quot;Wallpaper Engine&quot; which is available on Steam.<p>I recall when screen savers were a common malware vector on Windows. I suppose everything old is new again.
    • nottorp50 minutes ago
      First thing I thought of when I saw the title was &quot;since when does Steam have wallpapers?&quot;.<p>The article is at the least titled misleadingly and an attempt to sell fear.
    • wnevets26 minutes ago
      Why do you need an &quot;Engine&quot; for wallpapers in the first place?
      • jjmarr5 minutes ago
        So you can have an animated or interactive &quot;wallpaper&quot;. The malicious wallpapers in the OP are hentai games.
      • some_random5 minutes ago
        Because it&#x27;s one of the only ways to get porn in China
      • nosioptar19 minutes ago
        Opensuse (pre 11 iirc) used to have a really cool background where the lighting changed throughout the day, that probably used an engine of some sort.
      • wongarsu14 minutes ago
        Because they are not static images. That&#x27;s the whole gimmick
    • fckgw33 minutes ago
      The malicious wallpapers, which use &quot;Wallpaper Engine&quot; are also published through Steam Workshop. It&#x27;s still a Steam problem.
      • gchamonlive17 minutes ago
        Irrelevant comment, op said &quot;this vulnerability isn&#x27;t directly the result of using Steam&quot;, not that steam doesn&#x27;t share responsibility
        • wccrawford5 minutes ago
          It said they are &quot;on Steam&quot; which is true. They are distributed through the Steam Workshop, which Valve runs and attempts to protect from abuse.<p>While it&#x27;s not as high-profile as the official profile backgrounds and avatars, it&#x27;s still in an area that most gamers would think was safe by default, since Valve moderates it.
  • jjmarr48 minutes ago
    I love how the post is clearly written by AI. A human might&#x27;ve noticed all the screenshots appear to be of interactive hentai games distributed through Wallpaper Engine. And wouldn&#x27;t have said:<p>&gt; On the surface, this wallpaper sample (above) we uncovered in December 2025 looks completely harmless.<p>In reference to a screenshot of an anime woman with ripped clothes, eyes in fear, being monitored by CCTV camera.<p>From my knowledge, &quot;adult entertainment&quot; is targeted by malware because it&#x27;s socially embarrassing to admit that was the attack vector. It&#x27;s relevant to point that out.
    • jerf35 minutes ago
      Sexual arousal also tends to inhibit rational thought. I don&#x27;t mean that in a snarky or sarcastic way, I mean that it is a biological process that has been well-studied and well-established [1]. This has obvious uses for scamming people and doing other things that their executive function might normally catch and prevent.<p>This is also why sexual imagery should generally be kept out of public spaces, not because of &quot;puritanism&quot; but because it just generally isn&#x27;t a good idea to go around letting bad actors inhibiting people&#x27;s executive function willy-nilly. That should generally be denied as a tool to bad actors like scammers.<p>[1]: For instance <a href="https:&#x2F;&#x2F;people.duke.edu&#x2F;~dandan&#x2F;webfiles&#x2F;PapersPI&#x2F;Sexual%20Arousal%20and%20Decision%20making.pdf" rel="nofollow">https:&#x2F;&#x2F;people.duke.edu&#x2F;~dandan&#x2F;webfiles&#x2F;PapersPI&#x2F;Sexual%20A...</a> - note while the title mentions &quot;sexual decision making&quot; it also covers some &#x27;bad decisions&#x27; that aren&#x27;t particularly sexual on their own.
      • mrguyorama20 minutes ago
        &gt;This is also why sexual imagery should generally be kept out of public spaces, not because of &quot;puritanism&quot; but because it just generally isn&#x27;t a good idea to go around letting bad actors inhibiting people&#x27;s executive function willy-nilly<p>Okay but presumeably humans adapt to the level of &quot;sexuality&quot; around them to some degree (like they do nearly every other stimulus), because otherwise you could show less prude cultures having lower ability to do &quot;rational thought&quot;.<p>Nudity is normal all over the world and yet people seem to function just fine. What constitutes content that justifies sexual arousal is <i>socially constructed</i>!
        • jerf8 minutes ago
          I cited my sources. You&#x27;re welcome to seek out studies on the question of how it varies between societies, they probably exist somewhere. However as part of the &quot;adaptation&quot; you cite is precisely scammers getting better at scamming people, this isn&#x27;t something we should treat casually.<p>It&#x27;s not as if it&#x27;s news or anything. &quot;Sex sells&quot; isn&#x27;t a new phrase. But I think most people assume it&#x27;s just because it&#x27;s ambiently appealing, the fact that it also objectively lowers rational barriers to buying what is being sold is less well understood and changes the question from just a matter of appeal to one of psychological abusiveness.<p>That&#x27;s how I&#x27;ve come to see it; that sexy chick (sexist language chosen advisedly) on the billboard isn&#x27;t just a company nicely providing me a beautiful thing to look at for no reason at all, it&#x27;s an <i>attack on my executive function</i>. It&#x27;s an incredibly hostile thing to do and should be treated as such.
        • vel0city8 minutes ago
          Note the above commenter specifically used the language &quot;sexual imagery&quot; and not &quot;nudity&quot;. As you point out, what can be considered &quot;sexual imagery&quot; can vary somewhat based on the cultural norms of the society.
    • jmuguy38 minutes ago
      Centipedes? In my waifu?!
  • wxw17 minutes ago
    &gt; The whole concept of “application wallpapers” essentially allows foreign code to be run directly on your computer. Cybercriminals took note of this feature and started embedding malware right into these types of wallpapers.<p>&gt; Because Wallpaper Engine relies on Steam Workshop for content sharing, anyone can create a wallpaper and publish it for the community to download and install for free.<p>RIP
  • ApolloFortyNine32 minutes ago
    Wallpaper Engine is pretty old now, and I remember using it years ago reading warning about not downloading unknown wallpapers. I believe there&#x27;s even settings in the configuration not to run arbitrary code. 8 year old post about it, but honestly pretty sure it&#x27;s been warned since day 1. [1]<p>[1] <a href="https:&#x2F;&#x2F;www.reddit.com&#x2F;r&#x2F;wallpaperengine&#x2F;comments&#x2F;7xg27d&#x2F;remote_access_alert&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.reddit.com&#x2F;r&#x2F;wallpaperengine&#x2F;comments&#x2F;7xg27d&#x2F;rem...</a>