
How one Twitch chat message became code execution on a streamer’s PC
Researchers discovered that a single message posted in a Twitch chat was able to trigger code execution on a streamer’s computer. The incident involved a vulnerability in a third‑party overlay tool that parsed chat text without proper sanitization, allowing malicious input to run commands locally. The finding highlights security risks in streaming software that processes user‑generated content.