BlockBeats News, October 3rd, the Unity game platform is quietly rolling out a patch to address a vulnerability. This vulnerability allows third-party code to run in Android-based mobile games, potentially targeting mobile crypto wallets.
Sources say that the vulnerability affects projects dating back to as early as 2017. While the bug primarily impacts the Android system, Windows, macOS, and Linux systems are also affected to varying degrees. Unity has begun privately distributing fix tools and standalone patch tools to some partners, with official public guidance expected to be released next Monday or Tuesday, according to sources.
Sources have described this threat as "in-process code injection," but have not confirmed whether devices could be fully compromised. However, they note that under certain conditions, this vulnerability could escalate to a device-wide compromise on Android devices. Even without full device access, malicious code may attempt "screen overlay, input capture, or screen capture" to steal personal credentials or crypto wallet seed phrases.