Security News > 2023 > January > Riot Games breached: How did it happen?

Riot Games breached: How did it happen?
2023-01-25 12:37

The hackers who breached Riot Games last week are asking for $10 million not to leak the stolen source code for the company's popular League of Legends online game.

Last week, Riot Games said that systems in their development environment were compromised via a social engineering attack and promised more details soon.

"We're committed to transparency and will release a full report in the future detailing the attackers' techniques, the areas where Riot's security controls failed, and the steps we're taking to ensure this doesn't happen again," the company said this Tuesday.

The operator of malware repository vx-underground has professedly spoken to the attacker, who said they got in by social engineering a Riot Games employee via SMS, that they managed to pivot through the company network and escalate privileges by social engineering a company director, but that they did not deploy malware on company systems.

Riot Games' investigation into the breach is underway.

"While this attack disrupted our build environment and could cause issues in the future, most importantly we remain confident that no player data or player personal information was compromised," Riot Games said.


News URL

https://www.helpnetsecurity.com/2023/01/25/riot-games-breached/