Ubisoft halts a 900GB data breach attempt by hackers
December 25, 2023It is said that Ubisoft stopped hackers from carrying off 900GB of data--including information on users playing the video game Rainbow Six Siege.
Behind: In an article published in BleepingComputer, the organization said it shut off hackers 'access before they could steal any data after discovering 48 hours had passed since its intrusion.
But it has been rumoured that the hackers stole into Confluence and Mongo DB Atlas, Ubisoft's SharePoint server, as well as Microsoft Teams discussions.
Pictures of what appeared to be Ubisoft's internal system were released by the research organisation VX-Underground, and subsequently, Ubisoft launched an investigation into who had allowed such information out.
The Threat Actor would not share how they got initial access. Upon entry they audited the users access rights and spent time thoroughly reviewing Microsoft Teams, Confluence, and SharePoint.
They attempted to exfiltrate R6 Siege user data but were unsuccessful pic.twitter.com/EPRraDl3MT— vx-underground (@vxunderground) December 22, 2023
They say that the hackers told VX-Underground they were trying to take data from Rainbow 6 Siege, but by then we couldn't have gotten in. This came after the disclosure of 1.6 TB stolen from PlayStation Studio Insomniac Games by a ransomware group.