Security News

Massive Twitch hack: Source code and payment reports leaked
2021-10-06 13:13

Twitch source code and streamers' and users' sensitive information were allegedly leaked online by an anonymous user on the 4chan imageboard. The leaker shared a torrent link leading to a 120GB archive containing data allegedly stolen from roughly 6,000 internal Twitch Git repositories.

OMIGOD, an exploitable hole in Microsoft open source code!
2021-09-16 18:55

The relevant bug fixes were officially available in the OMI source code back on 12 August 2021, more than a month ago. Like WMI, the OMI code runs as a priviliged process on your servers so that sysadmins, and system administration software, can query and control what's going on, such as enumerating processes, kicking off utility programs, and checking up on system configuration settings.

Babuk ransomware's full source code leaked on hacker forum
2021-09-03 15:22

A threat actor has leaked the complete source code for the Babuk ransomware on a Russian-speaking hacking forum. As first noticed by security researcher vx-underground, an alleged member of the Babuk group released the full source code for their ransomware on a popular Russian-speaking hacking forum.

Paradise Ransomware source code released on a hacking forum
2021-06-15 15:56

The complete source code for the Paradise Ransomware has been released on a hacking forum allowing any would-be cyber criminal to develop their own customized ransomware operation. Security Joes researcher Tom Malka, who shared the source code with BleepingComputer, compiled the package and found it creates three executables - a ransomware configuration builder, the encryptor, and a decryptor.

Fallout of EA source code breach could be severe, cybersecurity experts say
2021-06-11 17:37

Potential buyers could be interested in using the source code to game the game to make millions, perhaps sounding EA's death knell in the process. The news that games giant Electronic Arts was hacked and the source code and software development kits to many popular games like FIFA 21 and 22 as well as the source code to Frostbite, the games engine that powers many of popular titles such as Madden, Need for Speed and Battlefield, has spread like wildfire in the past 24 hours.

Hackers Steal FIFA 21 Source Code, Tools in EA Breach
2021-06-11 11:43

Hackers have breached computer game maker Electronic Arts and stolen source code and related tools for the company's extensive game library, the company has confirmed. EA said it's investigating "a recent incident of intrusion into our network where a limited amount of game source code and related tools were stolen," according to a statement published in numerous online reports.

Gaming Giant EA Confirms Breach, Theft of Source Code
2021-06-11 10:58

California-based gaming giant Electronic Arts has confirmed that hackers gained access to some of its systems and managed to steal source code, but claimed that no user data was compromised. Posts published on various cybercrime forums in the past few days have claimed that EA had been breached and that 780 Gb of data has been stolen from the company, including source code and tools.

Hackers breach gaming giant Electronic Arts, steal game source code
2021-06-10 16:59

Hackers have breached the network of gaming giant Electronic Arts and claim to have stolen roughly 750 GB of data, including game source code and debug tools. EA confirmed the data breach in a statement sent to BleepingComputer saying that this "Was not a ransomware attack, that a limited amount of code and related tools were stolen, and we do not expect any impact to our games or our business."

Codecov hackers gained access to Monday.com source code
2021-05-18 06:33

As reported by BleepingComputer last month, popular code coverage tool Codecov had been a victim of a supply-chain attack that lasted for two months. During this two-month period, threat actors had modified the legitimate Codecov Bash Uploader tool to exfiltrate environment variables from Codecov customers' CI/CD environments.

Rapid7 Source Code Breached in Codecov Supply-Chain Attack
2021-05-14 00:02

Cybersecurity company Rapid7 on Thursday revealed that unidentified actors improperly managed to get hold of a small portion of its source code repositories in the aftermath of the software supply chain compromise targeting Codecov earlier this year. "A small subset of our source code repositories for internal tooling for our service was accessed by an unauthorized party outside of Rapid7," the Boston-based firm said in a disclosure.