Odaily Planet Daily reports: The SlowMist security team has disclosed a GitHub repository impersonating the Qwen 3.8 27B local quantized model. Although the repository claims the model size should exceed 16 GB, the actual downloaded content is only about 487 KB, containing disguised files, a LuaJIT interpreter, and obfuscated Lua scripts.
SlowMist emphasized that the official Qwen project has not been compromised; after execution, the malicious program collects host data, takes screenshots, and sends them to the attacker’s C2 server. When the hardcoded server becomes unavailable, it retrieves backup C2 addresses from a contract on the Polygon chain, allowing attackers to rotate their infrastructure via on-chain transactions. Subsequent payloads can steal browser login credentials, cookies, browsing history, email accounts, WinSCP and Steam credentials, as well as wallet-related files and extension data.
