logo

Smashing Security podcast #464: Rockstar got hacked. The data was junk. The secrets it revealed were not

ID: 1a670e4c-1672-5c19-9d6e-71c5b3d9324d

STIX ID: report--1a670e4c-1672-5c19-9d6e-71c5b3d9324d

Feed Name: Graham Cluley

Threat Score
75/100

Date Published: 2026-04-22

Date Updated: 2026-04-23

Author: Graham Cluley

...
...

Executive summary: This podcast episode describes two notable breaches: (1) a major data leak at P3 Global Intel/Navigate360 where an attacker exploiting a cross-site scripting issue and improperly configured cookies exfiltrated ~91 GB containing about 8.3 million tip records (including highly sensitive personal data) and passed it to DDoSecrets for potential sale, impacting services used by ~35,000 U.S. schools and prompting advisories and legal action; and (2) a separate Rockstar Games breach by ShinyHunters via a third‑party cloud/API compromise that exposed mostly 'junk' data but included financial and development details that have been published and analyzed by the gaming community.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.