Activision Probes Malware Campaign Targeting Player Accounts
Activision is currently examining a series of reports regarding a malicious software campaign aimed at compromising player accounts. The operation, which involves the use of “infostealer” malware, is designed to extract sensitive login credentials and access information from victims’ computers.

While the full scope of the campaign remains under investigation, early findings suggest that the threat is primarily directed at individuals who utilize unauthorized third-party applications, such as cheat software. Once installed, the malware operates in the background to harvest usernames, passwords, and data from digital crypto wallets.
Origins of the Security Alert
The campaign was initially brought to light by an individual operating under the alias “Zebleer,” a developer associated with PhantomOverlay, a provider of cheating software for the Call of Duty franchise. Zebleer reported discovering a database containing stolen user credentials after a customer’s account was compromised.
Following the discovery, Zebleer alerted Activision Blizzard and other developers of third-party tools regarding the potential exposure. A sample of the compromised data obtained and reviewed confirms that a portion of the credentials are authentic, though the timeframe of these breaches remains unverified.
Activision’s Stance
Company spokesperson Delaney Simmons confirmed that Activision is aware of claims regarding compromised industry credentials linked to the use of unauthorized software. However, the company maintains a clear distinction regarding the source of the issue:
- Activision asserts that its internal servers remain secure and have not been compromised.
- The company attributes the security risks to third-party software vendors rather than its own platforms.
- Activision has explicitly denied reports that it is actively involved in removing malware from user devices.
Although there is currently no evidence suggesting that the average player is at risk, security experts and the company recommend proactive measures for anyone concerned about their account safety.
Recommended Security Steps
For players who suspect their accounts may have been exposed through the use of external software, the company advises the following actions:
- Reset your account password immediately.
- Enable two-factor authentication (2FA) across all gaming and associated accounts to add an extra layer of protection against unauthorized access.