Cryptopolitan
2025-12-29 07:40:05

Ubisoft’s in-game currency system breached in $13M hacker exploit

Ubisoft, a French video gaming giant, was forced to halt its Rainbow Six Siege live service during the weekend after a security breach occurred on its servers. The breach allowed hackers to distribute $13.33 million in credits to gamers’ accounts. According to an update shared on X during the weekend by the Ubisoft Rainbow Six Siege team, gamers’ accounts were flooded with up to 2 billion R6 Credits, which is the game’s premium currency. Following the incident, Ubisoft was forced to shut down all servers and the marketplace, initiating a rollback plan for all the breached transactions. Ubisoft pledges not to ban accounts for spending unauthorized credits According to Ubisoft’s pricing structure, packs of 15,000 R6 Credits retail for $99.99. This means that for a gamer to achieve the 2 billion R6 Credits, they would have to spend roughly $13.33 million. In addition to the in-game credit issued, the hackers compromised moderation systems that issued random bans and unbans, and manipulated the ban ticker to display custom messages. A rollback is currently ongoing and afterwards, extensive quality control tests will be executed to ensure the integrity of accounts and effectiveness of changes. The team is focused on getting players back into the game as quickly as possible. Please know that this matter is… https://t.co/cG4zBIBBGB — Rainbow Six Siege X (@Rainbow6Game) December 28, 2025 Some gamers shared screenshots on X with fake ban notifications, and altered in-game messaging affecting all accounts across PC, PlayStation , and Xbox. Ubisoft has clarified that no gamers will be banned for spending unauthorized credits, with a targeted rollback of all transactions initiated after 11:00 AM UTC on December 27. The firm further explained that the ban ticker had been disabled, and any messages observed were unauthorized. Tom Clancy’s Rainbow Six Siege platform has concluded the rollback and live tests, with a soft launch coming back through tests with a few gamers, while Marketplace remains closed. The rollback process involved extensive quality control testing to verify account integrity, with initial tests completed. Ubisoft also conducted a soft launch for a limited group of gamers, and live test verification had been completed. The company has confirmed the reopening of the gaming servers after the conclusion of its live tests, and the game is now open to all gamers. The French publisher, however, cautioned that gamers may experience a queue when connecting as the services are ramping up. Rainbow Six Siege security breach linked to MongoBleed A security research report by Cyber Security News has revealed that the breach at Ubisoft was linked to a MongoBleed vulnerability, which potentially allowed memory leaks and escalation to internal repositories. The French video game publisher has not revealed any information about the nature of the leak so far or data exfiltration. Gamers who did not log in between December 27th, 10:49 UTC, and December 29th should expect no changes to their inventory. Ubisoft added that for those who did not connect after December 27th, 10:49 UTC, a small percentage may temporarily lose access to some owned items. The French video game publisher acknowledged the incident on Saturday and offered to investigate and resolve the matter. The firm clarified that investigations and corrections will continue over the next two weeks. Ubisoft has, however, kept the Marketplace closed until further notice as investigations continue. Tom Clancy’s Rainbow Six Siege’s ability to roll back the credits would not have been possible if the game had been built on decentralized technology. Alex Smirnov, co-founder of deBridge, revealed that a rollback in decentralized ecosystems introduces systemic issues that affect bridges, custodians, users, and counterparties who acted honestly during the affected window. The Rainbow Six Siege franchise, launched in 2015, currently attracts roughly 34,000 gamers daily based on data from Active Player. The game is available for PC, PlayStation 4, Xbox One, PlayStation 5, and Xbox Series X|S. The smartest crypto minds already read our newsletter. Want in? Join them .

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.