Shadow Cloud Gaming Suffers Data Breach via Social Engineering

Shadow, the Paris-based cloud computing startup, has confirmed a significant data breach after hackers targeted one of its employees through a sophisticated social engineering scheme. The incident, which occurred late last September, resulted in unauthorized access to sensitive customer information.

Cloud gaming firm Shadow says hackers stole customers’ personal data

How the Security Breach Unfolded

In an internal communication sent to its user base, Shadow CEO Eric Sèle detailed the entry point of the attack. According to the company, the breach originated on the Discord platform, where an employee was tricked into downloading malware disguised as a game on Steam. The file was provided by an acquaintance who had previously been compromised by the same threat actor.

Despite the company’s security team initiating immediate countermeasures, the attackers successfully leveraged the compromised workstation to access the management interface of a third-party software-as-a-service (SaaS) provider. This unauthorized access allowed them to exfiltrate a database containing private user information.

Exposed Customer Information

Shadow has disclosed that the stolen data includes several categories of personal identifiers. While the company maintains that no passwords or full banking credentials were compromised, the following details were exposed:

  • Full names
  • Email addresses
  • Dates of birth
  • Billing addresses
  • Credit card expiration dates

Hacker Claims and Company Response

An individual on a prominent hacking forum has claimed responsibility for the intrusion, asserting that the stolen database contains records for over 530,000 customers. The perpetrator claims to be selling this information after failing to receive a response from the company regarding the breach.

While a spokesperson for Shadow, Thomas Beaufils, confirmed the legitimacy of the warning email sent to users, the company has declined to disclose the name of the SaaS provider involved or verify the exact number of impacted individuals. However, the firm did not dispute the figures cited by the hacker.

Security Upgrades and Recommendations

In response to the incident, Shadow reports that it has overhauled its security protocols regarding third-party service providers and implemented system upgrades designed to isolate and neutralize compromised workstations. For now, the company is urging its users to remain vigilant against phishing attempts and to enable multi-factor authentication (MFA) across their accounts to prevent further unauthorized access.

Deixe um comentário

O seu endereço de e-mail não será publicado. Campos obrigatórios são marcados com *