Epic Games Allegedly Hacked - Targeted for Ransomware (updated)

Published by

Click here to post a comment for Epic Games Allegedly Hacked - Targeted for Ransomware (updated) on our message forum
https://forums.guru3d.com/data/avatars/m/248/248291.jpg
Time to change your account password.
https://forums.guru3d.com/data/avatars/m/238/238382.jpg
I opened epic launcher this morning and it actually asked me for my username and password.... guess that's related? epic must have just force logged out everyone. Did this happen for anyone else?
https://forums.guru3d.com/data/avatars/m/262/262085.jpg
KissSh0t:

I opened epic launcher this morning and it actually asked me for my username and password.... guess that's related? epic must have just force logged out everyone. Did this happen for anyone else?
Nope mine auto logged as normal
https://forums.guru3d.com/data/avatars/m/180/180832.jpg
Moderator
KissSh0t:

I opened epic launcher this morning and it actually asked me for my username and password.... guess that's related? epic must have just force logged out everyone. Did this happen for anyone else?
This would have nothing to do with the ransomware though. There is a difference between your account being hacked or holding a company ransom for the data they have.
https://forums.guru3d.com/data/avatars/m/258/258664.jpg
EGS at it again. After 2000something when they leaked my data for the first time... then 2019 when they warend 250mio accounts they might be compromised... Also, 2FA or whatever they advise you... JUST DON'T SAVE PAYMENT INFORMATION on your account, 50% of dangers avoided. And if EGS gets hacked via their general payment processing, it would mean user accounts don't matter anyway, since any hacker is outright grabbing company financial data, not user account data.
https://forums.guru3d.com/data/avatars/m/271/271213.jpg
WhiteLightning:

This would have nothing to do with the ransomware though. There is a difference between your account being hacked or holding a company ransom for the data they have.
True, but since the alleged data on sale includes payment information and passwords, it might lead to compromising accounts. So changing password should be a good idea, or? Also, guys, check and activate at least one form of 2FA, they offer one via e-mail which is quite convenient.
https://forums.guru3d.com/data/avatars/m/265/265988.jpg
I would also use this to sign you out of everywhere in your account too. Like linked Prime Accounts
Sign Out Everywhere.png
In the password and security section
https://forums.guru3d.com/data/avatars/m/228/228650.jpg
just to be clear - there is no actual confirmation ( that i saw ) from Epic's side. i just saw the headlines on it in plenty of websites.
Horus-Anhur:

Time to change your account password.
no EGS account here so im just delivering those news. but yeah, i hope that everyone with EGS accounts are safe and no real harm will happen to those accounts.
https://forums.guru3d.com/data/avatars/m/227/227994.jpg
fantaskarsef:

EGS at it again. After 2000something when they leaked my data for the first time... then 2019 when they warend 250mio accounts they might be compromised... Also, 2FA or whatever they advise you... JUST DON'T SAVE PAYMENT INFORMATION on your account, 50% of dangers avoided. And if EGS gets hacked via their general payment processing, it would mean user accounts don't matter anyway, since any hacker is outright grabbing company financial data, not user account data.
That's the first thing i do after buying something from a website, delete payment methods if they were required, like Amazon does for example.
https://forums.guru3d.com/data/avatars/m/248/248291.jpg
coc:

no EGS account here so im just delivering those news.
I have one, but only with free games. I never bought anything there.
https://forums.guru3d.com/data/avatars/m/211/211636.jpg
I never use my actual debit/credit card on Epic. When I bought AW2, I used a pre-paid credit card.
https://forums.guru3d.com/data/avatars/m/258/258664.jpg
coc:

just to be clear - there is no actual confirmation ( that i saw ) from Epic's side. i just saw the headlines on it in plenty of websites.
I trust EGS to be the first to tell me they messed up or their security got compromised.
Horus-Anhur:

I have one, but only with free games. I never bought anything there.
True, but you still get the whole array of spam mails with every leak they have. THAT's what's annoying me...
https://forums.guru3d.com/data/avatars/m/277/277212.jpg
If this is true, for Epic's sake I hope their IT guys are not as lame as my company's are. They had the backup server and its storage array on the same domain as everything else, and on site, so when the ransomware attack hit the backups were all corrupted too. The only reason production wasn't halted is because none of the production machines were on the same domain. Now, they want to exactly that - put all the production machines on the domain. The SFBs don't understand how the ransomware was spread in the first place. 🙄
https://forums.guru3d.com/data/avatars/m/252/252758.jpg
Yeah i changed my email address just in-case
https://forums.guru3d.com/data/avatars/m/304/304226.jpg
I cannot find any confirmation from epic themselves. There is a lot of 'alleged and potential' chatter from news outlets. If true, this is disappointing. Changed password regardless. Thank you.
https://forums.guru3d.com/data/avatars/m/121/121885.jpg
https://www.bleepingcomputer.com/news/security/epic-games-zero-evidence-we-were-hacked-by-mogilevich-gang/
Epic Games said they found zero evidence of a cyberattack or data theft after the Mogilevich extortion group claimed to have breached the company's servers. "We are investigating but there is currently zero evidence that these claims are legitimate," Epic Games told BleepingComputer in a statement. "Mogilievich has not contacted Epic or provided any proof of the veracity of these allegations."
data/avatar/default/avatar19.webp
Ok, ill change my password tonight. Btw, not sure about this two step factor authorization concept in the first place. You only give another vector of attack for the hackers once they breach the company data. Now they have your account, your password AND the device / mail you use for two factor authorization (much worse if , as 99% of the people you use the same password. Yes, its good to tell people not to do that, but you should live in the real world , not in la la land).
https://forums.guru3d.com/data/avatars/m/228/228650.jpg
indeed no confirmation yet that it really happened. might be false all around and nothing was hacked on Epic servers.
data/avatar/default/avatar20.webp
KissSh0t:

I opened epic launcher this morning and it actually asked me for my username and password.... guess that's related? epic must have just force logged out everyone. Did this happen for anyone else?
I rarely use it and It asks me all the time (sometimes not, but mostly yes), one of the reasons I dont like it Never happens with steam