Eris Loris
Attribution profile
STIX characteristics
Threat actor characteristics are available to members.
Profile narrative
Eris Loris is the alias used by the threat actor responsible for the disruptive attacks on the mobile game Among Us in October 2020. The actor’s location is noted as the United States of America, though no further personal or organizational details are publicly available. The alias appears consistently in the promotional messages that were sent during the incidents.
The attacks targeted players of the popular online multiplayer game Among Us, which at the time had millions of downloads and a large active user base. The actor flooded game servers with automated spam that advertised a YouTube channel and a Discord server operating under the same name. The spam also included a political endorsement referencing “Trump 2020,” indicating that the messages served both promotional and ideological purposes. No evidence in the source material indicates a financial extortion motive or espionage goal beyond the dissemination of these messages.
The primary tactic observed was the deployment of bots that joined game sessions and inundated the chat with repetitive messages, overwhelming server capacity and disrupting gameplay. This method relied on automated account creation and message scripting rather than malware deployment or exploitation of software vulnerabilities. The actor’s tooling style appears to be focused on high‑volume messaging campaigns designed to attract attention to external platforms. No specific malware families or exploit techniques are described in the reporting.
Attribution information is limited to the alias and the stated geographic location; no connections to state actors, criminal syndicates, or other threat groups have been established in the public sources. The actor has not been linked to any broader campaign outside the Among Us incidents, and no additional identifiers such as IP addresses, cryptocurrency wallets, or infrastructure details are provided.
The most notable operation attributed to Eris Loris occurred on October 23 2020, when the actor’s bots spammed Among Us servers with ads and political messages, rendering matches unplayable for many users. In response, the game’s developer InnerSloth issued an emergency server update aimed at identifying and removing the malicious accounts, acknowledging that legitimate players might also be affected. The incident prompted the studio to cancel plans for a sequel and concentrate on improving the original game’s infrastructure and security. This episode remains the primary publicly documented activity associated with the Eris Loris alias.
Incidents
Attributed incidents are available to members.
1 incident