Feeds

Ubisoft probes sudden rash of hijack attacks on gamers' accounts

'Maybe you should log in with FACEBOOK'

Beginner's guide to SSL certificates

Ubisoft is investigating a recent spate of hijackings of gaming accounts belonging to users of its Uplay platform.

Complaints about account hijacking flared up around 30 December, leading to numerous posts on support forums. "There is no one at Ubi manning the support system, and the DRM requires access to your account," one victim, who tipped us off about the problem, told El Reg.

Many of the compromised accounts have had their email addresses changed to uplay[somenumber]@playbay.su, suggesting one group of hackers (or perhaps an individual) is behind the attack. An official update to Ubisoft's Facebook support page said the games publisher has begun investigating the problem.

We are investigating the origin of these hijackings. In the mean time, if you have had your account compromised make sure you check and change the passwords of all of your important online services. We've heard people mention services like Yahoo, Amazon, and EA were also compromised at the same time.

To make your Uplay account more secure, link Facebook. This is my personal suggestion. If you have a Facebook account attached you can always go back to uplay.com and take your account back because the user cannot unlink this account.

Customer support is here to help while the security team works on it and we are giving the accounts back to the rightful owners.

Rumours are flying around that Ubisoft's UPlay service was hacked by Russian hackers but these rumors are unsubstantiated and probably best ignored until a clearer picture of what's happening emerges.

"While there's a rash of account compromises being listed on the Ubisoft forums and Facebook page, I'm not seeing much on dedicated gaming portals with high traffic such as the Steam forum, NeoGAF and elsewhere," said Chris Boyd AKA PaperGhost, a senior threat researcher at GFI Software and an expert in gaming security.

"Additionally, many users deny using so-called 'trainers' (cheat programs) which might have been emailing credentials back to base so there's not a lot to go on at the moment. One of the biggest problems with PC gaming is the amount of logins required to play the games - anyone purchasing Ubisoft's Far Cry 3 through Steam will still need to load UPlay to play it. It's quite possible that password reuse is rampant in gaming circles right now, which certainly doesn't help."

An informative blog post by Boyd on gaming account login overload can be found here. ®

Remote control for virtualized desktops

More from The Register

next story
Fujitsu CTO: We'll be 3D-printing tech execs in 15 years
Fleshy techie disses network neutrality, helmet-less motorcyclists
Space Commanders rebel as Elite:Dangerous kills offline mode
Frontier cops an epic kicking in its own forums ahead of December revival
Intel's LAME DUCK mobile chips gobbled by CASH COW
Chipzilla won't have money-losing mobe unit to kick about anymore
First in line to order a Nexus 6? AT&T has a BRICK for you
Black Screen of Death plagues early Google-mobe batch
Ford's B-Max: Fiesta-based runaround that goes THUNK
... when you close the slidey doors, that is ...
prev story

Whitepapers

Why and how to choose the right cloud vendor
The benefits of cloud-based storage in your processes. Eliminate onsite, disk-based backup and archiving in favor of cloud-based data protection.
Getting started with customer-focused identity management
Learn why identity is a fundamental requirement to digital growth, and how without it there is no way to identify and engage customers in a meaningful way.
Driving business with continuous operational intelligence
Introducing an innovative approach offered by ExtraHop for producing continuous operational intelligence.
10 threats to successful enterprise endpoint backup
10 threats to a successful backup including issues with BYOD, slow backups and ineffective security.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.