Well in the last couple of years, we've heard that Youtube has been a target for cyber criminals as well. I think there were a period wherein a lot of accounts has been hack specially those who have a lot of subscribers and then used it to spread crypto scams, and it was a very effective method as it netted money for this cyber actors.
And so recently, there was a particular malware that is only target Youtube, called:
YTStealer Malware.YTStealer is a malware whose objective is to steal YouTube authentication cookies.
So you might ask the question, how is this malware spread?
Well, some of us who are in Youtube obviously, needs some video editing software and that's where the criminals spread it.
One of the groups is “Digital, Image, and Video software”. We found fake installers for OBS Studio, an open-source streaming software. Additionally, we identified a few video editing software installers which included Adobe Premiere Pro, Filmora, and HitFilm Express. In the audio category, we identified fake installers for digital audio workstation (DAW) applications and plugins. This included the DAWs Ableton Live 11 Suite and FL Studio. The plugins included the infamous Antares Auto-Tune Pro, but also Valhalla DSP, FabFilter Total, and Xfer Serum.
And then the next target is the gamers.
The second group is what we call “Game mods and cheats”. The games match popular games used by streamers and content creators. We identified fake installers for the FiveM Grand Theft Auto V mod, different “hacks” for Roblox, and cheats for Counter-Strike Go, and Call of Duty. A variant of the Valorant hack reported on by AhnLab earlier was also discovered. Valorant “gamers” were also targeted by a “Skin Changer”.
And in conjunction with this, the device drivers:
n this group, we found fake installers for tools such as “Driver Booster” and “Driver Easy”.
And the last group, and this is universal and "some" of us might fall in this category:
The last group is for other software and “cracks”. Here we identified anything from fake installers for security products, such as Norton Security and Malwarebytes to “token generators” and “cracks” for services such as Discord Nitro, Stepn, and Spotify Premium.
The overwhelming part of these fake installers are for pirated versions of the software, but we also see some fake installers for game mods. This finding should further stress the importance of only obtaining software from trusted sources. Only obtain software directly from the vendor or “modding” group.
For a detailed technical explanation you can read it here:
https://www.intezer.com/blog/research/ytstealer-malware-youtube-cookies/
So again, we shouldn't be practicing downloading fake and crack softwares specially if you are into crypto because this is where these hackers and cyber criminals get a hold of your PC and laptop and then going into stealing all the personal data specially crypto from our machine, and once you are affected, you really don't know about it until it's too late.