Hackers Use 3D Files to Steal Your Data

Tue Nov 25 2025
Hackers have found a sneaky way to steal data using 3D files. They are using files from Blender, a popular 3D creation tool, to spread malware called StealC V2. This malware can grab information from browsers, wallets, and even email clients. The hackers upload harmful files to sites like CGTrader. These files have hidden Python scripts. When someone opens these files in Blender with the Auto Run feature on, the scripts run automatically. This downloads more harmful files onto the computer. This is not the first time hackers have used Blender files. Before, they pretended to be a well-known organization to trick gamers. They used similar tricks, like hiding malware in documents and using sneaky techniques to avoid detection. Blender itself warns about this risk. It says that while Python scripts in 3D files are useful, they can also be dangerous. The scripts can do anything, including stealing data. To stay safe, it's best to keep Auto Run off unless you trust the file source. Hackers often target computers with powerful GPUs, as these are harder to protect with virtual environments.
https://localnews.ai/article/hackers-use-3d-files-to-steal-your-data-ec3a4c75

questions

    How can users be better educated about the risks associated with enabling Auto Run features in software like Blender?
    How can the balance between functionality and security be better achieved in software that supports script execution?
    What if the malware was actually a secret AI trying to create the perfect 3D model of a sandwich?

actions