Grinding Gear Games, the developer behind Path of Exile, has issued a public apology following a significant data breach earlier this month. The breach stemmed from a compromised Steam test account possessing administrator privileges. This allowed unauthorized access to over 66 player accounts.
The Breach: How it Happened
The attacker exploited a long-standing, sparsely secured test account. Lacking linked phone numbers, addresses, or purchase history, the attacker successfully impersonated the account holder to Steam support, gaining access using minimal information (email, account name, and VPN-masked location).
The attacker then used internal customer support tools to reset passwords on 66 Path of Exile 1 and 2 accounts. Further, they deleted password change notifications, concealing their actions from affected players. Compromised data included email addresses, Steam IDs, IP addresses, shipping addresses, unlock codes, transaction histories, and private messages. This raises serious concerns about potential misuse of the stolen information.
Grinding Gear Games' Response and Future Security Measures
Grinding Gear Games acknowledged the security lapse and outlined implemented changes: enhanced security protocols for administrator accounts, prohibiting third-party account linking to staff accounts, and significantly stricter IP restrictions. The company expressed deep regret for the incident and committed to preventing future occurrences.
Community Reaction and Recommendations
The community response has been mixed, with some praising the developer's transparency while others advocate for the immediate implementation of two-factor authentication (2FA). Players are urged to change their passwords and remain vigilant regarding account security. While the addition of 2FA remains pending, proactive security measures on the part of players are highly recommended.
Eterspire Updates Unleash Features, Teasing Future Enhancements
Jun 04,2023
Battle Cats Unleashes CIA Mission: Tackle Impawsible in 10th Anniversary!
Jan 04,2022
Sanrio Invasion Hits KartRider Rush+
Dec 13,2024
McLaren Returns to PUBG Mobile Collaboration
Aug 27,2024
The Latest Time Princess Collab Lets You Dress-Up as the Girl with the Pearl Earring
Oct 01,2023
Heaven Burns Red English Localization Announced
Nov 17,2021
Pre-Registration for ETE's Japanese Server Opens with Exciting Changes
Jul 27,2022
SpongeBob Soars to New Heights with Netflix Preregistration
Dec 29,2022
Star Wars Outlaws Reveals Exciting Roadmap Plans
Dec 21,2022
Punch Club 2: Fast Forward Punches into iOS August
Mar 25,2022
POW
Casual / 38.00M
Update: Dec 19,2024
Poly Pantheon Chapter One V 1.2
Casual / 72.00M
Update: Dec 23,2024
Dictator – Rule the World
Action / 96.87M
Update: Dec 20,2024
Strobe
The Golden Boy
Livetopia: Party
Niramare Quest
On My Way Home – Chapter 2 – New Part 2 [MrKuchi]
Coaxdreams – The Fetish Party
Street Fight: Beat Em Up Games Mod