3

Elden Ring Publisher Confirms Security Breach, Says Customer Data May Be Impacte...

 2 years ago
source link: https://www.slashgear.com/926840/elden-ring-publisher-confirms-security-breach-says-customer-data-may-be-impacted/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

Elden Ring Publisher Confirms Security Breach, Says Customer Data May Be Impacted

Elden Ring artwork smartphone
Sergei Elagin/Shutterstock
By Nadeem Sarwar/July 13, 2022 4:17 pm EDT

Bandai Namco — the publisher behind big names like "Elden Ring," "Dark Souls," and the "Tekken" franchise — has confirmed that it suffered a data breach earlier this week and that it's still investigating the scope of the damage. The notorious ransomware group ALPHV, which also goes by the name BlackCat, claimed to have broken into Bandai's systems. The revelation was shared by malware source code repository vx-underground.

00:00/04:56
liveView.php?hash=ozcmPTEznXRiPTEzqzyxX2V2ZW50PTUjJaNypaZypyRcoWU9MTY1NmtjNmU0OCZ2nWRspGkurWVlVzVlPTMhMS4jJaM9MTEjMDxkJaN0YT0jJat9NwQjJax9NDQjJaZcZF9jYXNmRG9gYWyhPXq3ql5moGFmnGqyYXIhY29gJaN1YxyxPXq3ql5moGFmnGqyYXIhY29gJzRyYaVaSW5zo3JgYXRco249JzymQXBjPTAzp2Reqw0zpzx9NxM2OTp2NwU1Mmp0NwE3NDpmN0M3MmZCMmE3QwU0MmA3RDqCNwQmMwMjMmImMwJEMmAmNmJEMmEmNDVGMmEmNmqEN0I3MmMkMmpmMTM1MmAmNmM2MmY3RDqCNDMmMTM2MmY3RDqCNTM2NDMmNwQmMmRDNxU0RTpmNTx1ODRFNxY1QTMlNTY2ODYmNwxmNTZBNwImMwMjM0Q3RDqCNwI2MmY4NmI2RwZENwU3RDqCNmE2NDY1NmM2Qwp0NxY3MDqEN0I2RwZDNwx2RTp1Nmt3RDqCNTtmNwM0MmA3RDqCNTxmNDM0MmA3RDqCNwYmMTqEN0I0QmMkMmImOTMjMmx3REZFRxUzZGyunWQ9JaVmZXJJpEFxZHI9MwAjMSUmQTE5ZwAyM0E3MDAkJTNBMzRxNlUmQTU0MDAyM0E0ZzYyM0FzZTBxJTNBNzU5YlZ1p2VlVUE9TW96nWkfYSUlRwUhMCUlMCUlOFtkMSUmQvUlMEkcoaV4JTIjrDt2XmY0JTI5JTIjQXBjoGVXZWJLnXQyMxY1MmphMmYyMwAyMwuLSFRNTCUlQlUlMGkcn2UyMwBHZWNeolUlOSUlMEuyYWRfZXNmQ2ulo21yJTJGMTAkLwAhNDx1MS42NCUlMFNuZzFlnSUlRwUmNl4mNvZwp3V1nWQ9NwJxMDIlYzFyNDY1ZvZwo250ZW50RzyfZUyxPTAzoWVxnWFQoGF5TGymqEyxPTAzoWVxnWFMnXN0SWQ9MCZaZHBlPTAzZ2RjpxNioaNyoaQ9JzymV2VQYXNmR2Rjpw0kJzNwpGE9MCZwY3BuQ29hp2VhqD0zY2J1p3Rypw0kNwU3ODA3NTUmOTA0JaVcZD1TZWgcozRiU1BfYXyypwYlZDAlMzJwYmMjMwtzpHVvVXJfPWu0qHBmJTNBJTJGJTJGq3q3LaNfYXNbZ2Vupv5wo20yMxY5MwY4NDAyMxZyoGRyov1lnW5aLXB1Yzkcp2uypv1wo25znXJgpl1mZWN1pzy0rS1vpzVuY2tgp2F5pl1wqXN0o21ypv1xYXRuLW1urS1vZS1coXBuY3RyZCUlRvZzoG9uqFN0YXR1pm1zYWkmZSZynWRmpD1cnXE=liveView.php?hash=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.php?hash=ozcmPTEznXRiPTEzqzyxX2V2ZW50PTI1JaNypaZypyRcoWU9MTY1NmtjNmU0OCZ2nWRspGkurWVlVzVlPTMhMS4jJaM9MTEjMDxkJaN0YT0jJat9NwQjJax9NDQjJaZcZF9jYXNmRG9gYWyhPXq3ql5moGFmnGqyYXIhY29gJaN1YxyxPXq3ql5moGFmnGqyYXIhY29gJzRyYaVaSW5zo3JgYXRco249JzymQXBjPTAzp2Reqw0zqXNypxyjQWRxpw0lMDAkJTNBMTyzMCUmQTpjMDEyM0ElZGQ3JTNBNTQjMCUmQTRzZvUmQWZyMGQyM0E2ZTywJaVmZXJVQT1No3ccoGkuJTJGNS4jJTIjJTI4WDEkJTNCJTIjTGyhqXtyMwB4ODZsNwQyMwxyMwBBpHBfZVqyYxgcqCUlRwUmNl4mNvUlMCUlOEgIVE1MJTJDJTIjoGyeZSUlMEqyY2giJTI5JTIjSGVuZGkyp3NDnHJioWUyMxYkMDEhMC40OTUkLwY0JTIjU2FzYXJcJTJGNTM3LwM2JzNmqXVcZD02MzQjMwJvYWU0NwVzJzNioaRyoaRGnWkySWQ9MCZgZWRcYVBfYXyMnXN0SWQ9MCZgZWRcYUkcp3RJZD0jJzR1pw04MDAzZ2Rjpw0jJzqxpHJDo25mZW50PSZcp1qyUGFmp0qxpHI9MSZwY3BuPTAzY2NjYUNioaNyoaQ9JzNvqXN0ZXI9MTY1NmtjNmU2OTx1NlZ1nWQ9U2VenW5xo1NQoGF5ZXI2MzQjMwJvY2MmMDI4JaB1YyVloD1bqHRjplUmQSUlRvUlRaq3ql5moGFmnGqyYXIhY29gJTJGOTI2ODQjJTJGZWkxZW4gpzyhZl1jqWJfnXNbZXIgY29hZzyloXMgp2VwqXJcqHxgYaJyYWNbLXNurXMgY3VmqG9gZXIgZGF0YS1gYXxgYzUgnW1jYWN0ZWQyMxYzZzkiYXRTqGF0qXM9ZzFfp2UzZWyxp3A9nWykliveView.php?hash=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.php?hash=ozcmPTEznXRiPTEzqzyxX2V2ZW50PTI1JaNypaZypyRcoWU9MTY1NmtjNmU0OCZ2nWRspGkurWVlVzVlPTMhMS4jJaM9MTEjMDxkJaN0YT0jJat9NwQjJax9NDQjJaZcZF9jYXNmRG9gYWyhPXq3ql5moGFmnGqyYXIhY29gJaN1YxyxPXq3ql5moGFmnGqyYXIhY29gJzRyYaVaSW5zo3JgYXRco249JzymQXBjPTAzp2Reqw0zqXNypxyjQWRxpw0lMDAkJTNBMTyzMCUmQTpjMDEyM0ElZGQ3JTNBNTQjMCUmQTRzZvUmQWZyMGQyM0E2ZTywJaVmZXJVQT1No3ccoGkuJTJGNS4jJTIjJTI4WDEkJTNCJTIjTGyhqXtyMwB4ODZsNwQyMwxyMwBBpHBfZVqyYxgcqCUlRwUmNl4mNvUlMCUlOEgIVE1MJTJDJTIjoGyeZSUlMEqyY2giJTI5JTIjSGVuZGkyp3NDnHJioWUyMxYkMDEhMC40OTUkLwY0JTIjU2FzYXJcJTJGNTM3LwM2JzNmqXVcZD02MzQjMwJvYWU0NwVzJzNioaRyoaRGnWkySWQ9MCZgZWRcYVBfYXyMnXN0SWQ9MCZgZWRcYUkcp3RJZD0jJzR1pw0lOTUzZ2Rjpw0jJzqxpHJDo25mZW50PSZcp1qyUGFmp0qxpHI9MSZwY3BuPTAzY2NjYUNioaNyoaQ9JzNvqXN0ZXI9MTY1NmtjNmU4MDxkMSZ1nWQ9U2VenW5xo1NQoGF5ZXI2MzQjMwJvY2MmMDI4JaB1YyVloD1bqHRjplUmQSUlRvUlRaq3ql5moGFmnGqyYXIhY29gJTJGOTI2ODQjJTJGZWkxZW4gpzyhZl1jqWJfnXNbZXIgY29hZzyloXMgp2VwqXJcqHxgYaJyYWNbLXNurXMgY3VmqG9gZXIgZGF0YS1gYXxgYzUgnW1jYWN0ZWQyMxYzZzkiYXRTqGF0qXM9ZzFfp2UzZWyxp3A9nWyk

ALPHV ransomware group (alternatively referred to as BlackCat ransomware group) claims to have ransomed Bandai Namco.

Bandai Namco is an international video game publisher. Bandai Namco video game franchises include Ace Combat, Dark Souls, Dragon Ball*, Soulcaliber, and more. pic.twitter.com/hxZ6N2kSxl

— vx-underground (@vxunderground) July 11, 2022

The ransomware attack was allegedly executed on July 3, 2022, but it seems to have taken Bandai Namco more than a week to assess and confirm that its internal servers were targeted. The publisher has since taken remedial steps to deal with the issue, including blocking access to the affected servers, and is currently assessing whether any sensitive information was leaked, aside from tracing the attack source.

In a statement shared with Eurogamer, Bandai Namco revealed that "there is a possibility that customer information related to the Toys and Hobby Business in Asian regions (excluding Japan) was included in the servers and PCs." While the publisher is playing it safe with its admission, past attacks on fellow gaming companies have led to the theft of source code, details of in-development projects, and controversial internal communication logs, among other sensitive information. 

Why is the ALPHV (BlackCat) group infamous?

Bandai Namco logo outdoor sign
Michael Vi/Shutterstock

The attacker behind the Bandai Namco security breach is a well-known name. According to the FBI, the BlackCat/ALPHV group has been documented as the perpetrator of attacks on 60 entities across the globe, so far. It is also the first known ransomware group to use the RUST programming language for launching cyberattacks. Renowned malware researcher Michael Gillespie described the group's eponymous attack vector as "very sophisticated ransomware."

Know to collect their ransom bounty in the form of Bitcoin and Monero crypto coins, the group is also linked to the famous Colonial Pipeline hack. In May 2022, the group launched an attack on the Austrian federal state of Carinthia, disrupting multiple critical government services linked to traffic management, passport generation, and more (via Euractiv). The group demanded $5 million in ransom to unlock the affected computer network.

In June, the ALPHV/BlackCat ransomware group adopted a new strategy that involved publicly sharing the stolen data in order to force the victim into paying the ransom, according to KrebsOnSecurity. While a majority of ransomware groups publish the leaked data on the dark net, which can only be accessed via Tor services, ALPHV/BlackCat put their haul on the World Wide Web, which means it was available for anyone to see, increasing the pressure on victims.


Recommend

About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK