Data Breach Confirmed for Path of Exile 2
Summary
- Path of Exile 2 developer Grinding Gear Games confirmed a data breach occurred during the week of January 6, 2025, due to a compromised developer's account linked to Steam.
- The breach exposed player email addresses, Steam IDs, IP addresses, and other sensitive information.
Grinding Gear Games has acknowledged a significant data breach in Path of Exile 2, resulting from a compromised developer's admin account. This account, linked to an old Steam testing account, allowed unauthorized access to the developer's tools typically used by the customer support team. Upon discovering the breach, the developers swiftly locked the compromised account and enforced password resets across all admin accounts. The investigation revealed that the breach enabled the attacker to access and manipulate other accounts through the developer portal.
Following the early access release of Path of Exile 2 in December 2024, the game has enjoyed a robust player base, bolstered by continuous updates and developer communication. Recent updates have enhanced performance on the PlayStation 5 and addressed issues with monsters, skills, and damage. As the next major patch approaches, Grinding Gear Games has taken the opportunity to address the data breach, ensuring players are informed before diving into the new content.
The official Path of Exile 2 forum was updated with a notice detailing the breach. The compromised account provided access to sensitive data, including email addresses, Steam IDs, IP addresses, shipping addresses, and unlock codes for a significant number of accounts. The attacker also managed to set random passwords on 66 accounts and exploit a bug to delete logs, though this bug has since been fixed. Importantly, no passwords or password hashes were accessible through the customer service portal. However, the attacker could potentially use email addresses to bypass region locking by comparing them against lists of compromised passwords from other sites.
In response to the breach, Grinding Gear Games has implemented stricter security measures, including prohibiting the linking of third-party accounts to staff accounts and enforcing more stringent IP restrictions. The community's reaction has been varied, with some commending the developers' transparency, while others demand the addition of two-factor authentication to enhance account security. Additionally, players are calling for further improvements in game content and adjustments to the endgame difficulty in Path of Exile 2.
-
Jul 02,22Isophyne Debuts as Original Character in Marvel Contest of Champions Kabam introduces a brand-new original character to Marvel Contest of Champions: Isophyne. This unique champion, a fresh creation from Kabam's developers, boasts a striking design reminiscent of the film Avatar, incorporating copper-toned metallic accents. Isophyne's Role in the Contest Isophyne ent
-
Dec 13,24Genshin Impact Flops into S.E.A Aquarium for Aquatic Adventure Get ready for a "fin-tastic" adventure! S.E.A. Aquarium and Genshin Impact are joining forces for the Teyvat S.E.A. Exploration event, running from September 12th to October 28th, 2024. This unique collaboration marks the first time Genshin Impact has partnered with an aquarium, offering an unforge
-
May 18,24Acolyte Joins Grimguard Tactics in Content Update Grimguard Tactics, the story-driven dark fantasy RPG, receives a major content update on November 28th! A month after its release on Android and iOS, players can look forward to exciting new additions: The Acolyte, a brand-new support hero class, joins the fray. This blood-bending character wields
-
Dec 19,24Ark: Ultimate Mobile Edition available now, with a whole new trailer alongside it Ark: Ultimate Mobile Edition现已登陆iOS和Android平台! 这款游戏提供免费体验,让您在单人岛屿上尽情畅玩。Ark订阅通行证则可解锁所有扩展内容(也可单独购买)及更多福利。 正如我们之前的预测,Ark: Ultimate Mobile Edition今日正式上线!我们收到了官方确认,并获得了全新的预告片和详细信息。 关于Ark游戏本身的内容,请参考我的上一篇文章。在此,我主要想分享的是,Ark: Ultimate Mobile Edition不仅登陆了Google Play和iOS App Store,还登陆了Epic Games Mobile Store!这