Hackers steal 1.9 million Dota 2 gamers' data from chat forum
LeakedSource said the information wasn't sufficiently secured
Nearly 2 million fans of online multi-player game Dota 2 have become the latest victims of a large-scale online hack, with email and IP addresses, usernames and passwords all being exposed.
News of the attack, which affects only the Dota 2 message board, rather than the game itself, comes via breach notification site LeakedSource. According to a post on LeakedSource's blog, 1,923,972 records were stolen from the official Dota 2 forum, which is run by gaming firm and Dota 2 creator, Valve.
The attack occurred at the beginning of July, although it has only just been communicated to the world this week. According to LeakedSource, the forum passowrds were stored in Valve's servers using MD5 hashing and salt to encrypt them. However, while use of MD5 is still quite common, it is also considered to be severely compromised and vulnerable to myriad attacks. This has allowed LeakedSource to decrypt roughly 80% of the information stored in the leaked database.
The majority of the email addresses taken in the attack were Gmail accounts that had been set up specifically for use with Valve's forums, which could lessen the impact of the attack. It's also been noted by gaming site RockPaperShotgun that the forums are separate from Steam itself, meaning it's unlikely hackers would be able to maliciously use the data to cause havoc with gamers' Steam accounts, unless they have used the same credentials for both.
Valve hasn't yet commented on the attacks, but it comes at an important time for the online games-maker as it preps for the Dota 2 global tournament, which is happening this week in Seattle. The tournament sees gamers playing against each other to win a prize fund of $20 million (15 million).
Main image credit: Valve Software
Get the ITPro. daily newsletter
Receive our latest news, industry updates, featured resources and more. Sign up today to receive our FREE report on AI cyber crime & security - newly updated for 2024.
Clare is the founder of Blue Cactus Digital, a digital marketing company that helps ethical and sustainability-focused businesses grow their customer base.
Prior to becoming a marketer, Clare was a journalist, working at a range of mobile device-focused outlets including Know Your Mobile before moving into freelance life.
As a freelance writer, she drew on her expertise in mobility to write features and guides for ITPro, as well as regularly writing news stories on a wide range of topics.