{"id":13486,"date":"2023-02-23T16:08:21","date_gmt":"2023-02-23T16:08:21","guid":{"rendered":"https:\/\/gridinsoft.com\/blogs\/?p=13486"},"modified":"2023-02-23T16:08:21","modified_gmt":"2023-02-23T16:08:21","slug":"activisions-slack","status":"publish","type":"post","link":"https:\/\/gridinsoft.com\/blogs\/activisions-slack\/","title":{"rendered":"Hackers Broke into Activision&#8217;s Slack and Stole Data"},"content":{"rendered":"<p><h4>Activision, the publisher of computer games (including the Call of Duty franchise), reported a security breach that occurred back in early December 2022 through the corporate messenger Slack.<\/h4>\n<\/p>\n<p>Let me remind you that we also wrote that <a href=\"\/blogs\/slack-repositories-on-github\/\">Hackers compromised <strong>Slack<\/strong> private <strong>GitHub<\/strong> repositories<\/a>, and also that <a href=\"\/blogs\/mirai-botnet-rapperbot\/\"><strong>Mirai Botnet RapperBot<\/strong> Conducts <strong>DDoS<\/strong> Attacks on Game Servers<\/a>.<\/p>\n<p>It turned out that hackers gained access to one of the company&#8217;s internal Slack channels and stole data, and the incident became publicly known only thanks to a report by <strong>Vx-underground<\/strong> security experts and media publications.<\/p>\n<p>Vx-underground specialists <a rel=\"noopener noreferrer nofollow\" target=\"_blank\" href=\"https:\/\/twitter.com\/vxunderground\/status\/1627477748359872513\">posted on <strong>Twitter<\/strong> a number of edited screenshots<\/a> received directly from the attackers. The screenshots, dated December 4, 2022, showcase <strong>Activision&#8217;s<\/strong> confidential working papers related to the Call of Duty franchise, as well as the content release schedule for the coming year, through November 17.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/gridinsoft.com\/blogs\/wp-content\/uploads\/2023\/02\/content-release-schedule.png\" alt=\"Activision&#039;s Slack\" title=\"\"><\/p>\n<p>The researchers reported that the hack was carried out due to a successful phishing attack on one of the company&#8217;s employees. After that, the hackers penetrated the Activision Slack channel, and also tried to compromise other employees, but no one else fell for phishing.<\/p>\n<p>Let me remind you that the media wrote that <a target=\"_blank\" href=\"https:\/\/adware.guru\/russian-hackers-and-spear-phishing\/\" rel=\"noopener nofollow\">Russian Hackers Launched a Massive Spear-Phishing Campaign<\/a>.<\/p>\n<p>At the same time, Vx-underground emphasized that Activision generally kept silent about this attack.<\/p>\n<p>Now, after numerous questions from the media, <a rel=\"noopener noreferrer nofollow\" target=\"_blank\" href=\"https:\/\/www.vice.com\/en\/article\/pkg7pn\/hacker-breaches-activision-slack-steals-call-of-duty-info\">company representatives were forced to confirm the hack<\/a>. At the same time, the company assures that the incident did not affect the source codes of the games and the personal data of the players.<\/p>\n<div class=\"su-quote su-quote-style-default su-quote-has-cite\"><div class=\"su-quote-inner su-u-clearfix su-u-trim\">On December 4, 2022, our information security team promptly responded to an SMS phishing attempt and stopped it. After a thorough investigation, we have determined that access to confidential employee data, game code, or player data has not been obtained.<span class=\"su-quote-cite\">Activision said in an official statement.<\/span><\/div><\/div>\n<p>At the same time, the company did not specify what kind of data the hackers still got access to (in addition to the content release schedule for Call of Duty).<\/p>\n<p>The publication <strong>Insider Gaming<\/strong>, which claims <a rel=\"noopener noreferrer nofollow\" target=\"_blank\" href=\"https:\/\/insider-gaming.com\/activision-data-breach\/\">to have received and analyzed this leak<\/a> in its entirety, reports that among the stolen information there are full names, email addresses, phone numbers, salaries and other data of employees. Moreover, according to journalists, the compromised Activision employee works in the personnel department and has access to a large amount of confidential data.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Activision, the publisher of computer games (including the Call of Duty franchise), reported a security breach that occurred back in early December 2022 through the corporate messenger Slack. Let me remind you that we also wrote that Hackers compromised Slack private GitHub repositories, and also that Mirai Botnet RapperBot Conducts DDoS Attacks on Game Servers. [&hellip;]<\/p>\n","protected":false},"author":3,"featured_media":13490,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"content-type":"","_sitemap_exclude":false,"_sitemap_priority":"","_sitemap_frequency":"","footnotes":""},"categories":[15],"tags":[29,869],"class_list":{"0":"post-13486","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-security-news","8":"tag-hackers","9":"tag-slack"},"featured_image_src":"https:\/\/gridinsoft.com\/blogs\/wp-content\/uploads\/2023\/02\/Activisions-Slack.webp","author_info":{"display_name":"Vladimir Krasnogolovy","author_link":"https:\/\/gridinsoft.com\/blogs\/author\/krasnogolovy\/"},"_links":{"self":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts\/13486","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/comments?post=13486"}],"version-history":[{"count":2,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts\/13486\/revisions"}],"predecessor-version":[{"id":13489,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/posts\/13486\/revisions\/13489"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/media\/13490"}],"wp:attachment":[{"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/media?parent=13486"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/categories?post=13486"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/gridinsoft.com\/blogs\/wp-json\/wp\/v2\/tags?post=13486"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}