Rockstar Games gets a taste of grand theft data amid ShinyHunters threat of 'Pay or leak'

Summary

The threat actor group ShinyHunters claims to have accessed data belonging to Rockstar Games, threatening to leak it unless a ransom is paid. They allege the breach occurred through a third-party tool used by Rockstar, which may have been compromised, potentially impacting Snowflake metrics.

IFF Assessment

FOE

This is bad news for defenders as it highlights the ongoing threat of data extortion and the potential for supply chain attacks to compromise sensitive company data.

Defender Context

This incident emphasizes the critical need for robust third-party risk management and supply chain security. Defenders should ensure rigorous vetting of all software and services that have access to sensitive data and implement strong monitoring for unusual activity originating from third-party integrations.

Read Full Story →