Game dev 2K’s support site hacked to push malware via fake tickets

Gandalf_The_Grey

Level 76
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Well-known
Apr 24, 2016
6,624
Hackers have compromised the support system of American video game publisher 2K and now are sending support tickets to gamers containing the RedLine password-stealing malware.

2K is the publisher behind numerous popular game franchises, including NBA 2K, Borderlands, WWE 2K, PGA Tour 2K, Bioshock, Civilization, and Xcom.

Starting today, 2K customers began receiving emails stating that they opened support tickets on 2ksupport.zendesk.com, 2K's online support ticketing system. While the users confirmed these tickets had been created, numerous recipients on Twitter and Reddit stated that they were not the ones who opened the tickets.

Soon after the tickets were opened, the gamers received another email containing a reply to their ticket from an alleged 2K support representative named 'Prince K.'

This email includes an attached file named '2K Launcher.zip' hosted directly on 2ksupport.zendesk.com, which pretended to be a new game launcher.

According to VirusTotal and Any.Run, this executable is the RedLine information-stealing malware.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top