惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

P
Proofpoint News Feed
V
V2EX
WordPress大学
WordPress大学
Google DeepMind News
Google DeepMind News
Martin Fowler
Martin Fowler
小众软件
小众软件
Blog — PlanetScale
Blog — PlanetScale
月光博客
月光博客
The Cloudflare Blog
T
Tailwind CSS Blog
H
Help Net Security
腾讯CDC
爱范儿
爱范儿
人人都是产品经理
人人都是产品经理
H
Hackread – Cybersecurity News, Data Breaches, AI and More
The GitHub Blog
The GitHub Blog
Microsoft Security Blog
Microsoft Security Blog
Stack Overflow Blog
Stack Overflow Blog
D
DataBreaches.Net
C
Check Point Blog
量子位
酷 壳 – CoolShell
酷 壳 – CoolShell
美团技术团队
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com

Consumer Insights

Weverse data breach affects 422,584 user accounts Manchester Airports Group cyberattack exposes data of 8.7 million customers Sakura Internet hack may affect 1.36 million accounts French tax authority breach exposes data of 678,000 people and businesses Phone number leaked in the Bloctel breach? Here’s what to do. SplitVPN breach reveals 58 million hidden connection logs South Korea diplomatic academy hack exposes diplomat data Credential stuffing attack at Chick-fil-A comes with data breach notice for customers Coca-Cola halts Fairlife production across US after ransomware attack Qantas data breach started with a fake IT support call Lidl warns customers after data breach How to find out if your identity has been exposed by infostealers Texas breach exposes PII of 3 million hunting and fishing license customers Maine forced to take down data breach portal after fake notices filed with authorities Carnival breach exposes data of nearly 6 million people 7-Eleven data breach exposes data of 185,000 people UK Water Supplier Fined Nearly £1 Million After Hackers Roamed Networks for Almost 2 Years DAEMON Tools Lite breach prompts urgent update after malware-laced installer Instructure confirms breach; millions of Canvas users potentially impacted Stalkerware data leak exposes private screenshots linked to celebrities and influencers Hackers claim to have breached Udemy, stealing 1.4 million user records Rituals data breach exposes customer details Booking.com says breach exposed travelers’ data Basic-Fit data breach exposes member information across Europe Rockstar Games confirms breach after ShinyHunters leaks stolen analytics data Lapsus$ claims AstraZeneca breach exposes code and credentials Aura data breach exposes 900,000 records after phishing attack Telus Digital data breach confirmed after ShinyHunters claims 1PB theft Was Your Data Exposed in the Latest Under Armour Breach? Here’s What You Should Do Breach at Tinder, Hinge and OkCupid exposes user data
Rainbow Six Siege Servers Offline After Massive Breach Fl...
Vlad CONSTANTINESCU · 2025-12-29 · via Consumer Insights

An internal system failure allowed large-scale abuse of moderation and economy features before Ubisoft intervened.

Rainbow Six Siege players began reporting widespread irregularities affecting the game’s core systems over the weekend. Screenshots and videos circulating online showed accounts being banned and unbanned at will, unusual messages appearing in moderation feeds, and inventories suddenly filling with content that would normally require years or significant spending to obtain.

The most striking impact was economic. Players worldwide reportedly received roughly two billion R6 Credits and Renown, alongside access to every cosmetic item in the game, including assets typically reserved for developers. Because R6 Credits are sold for real money, the sudden influx severely distorted the game’s virtual economy.

Ubisoft confirms issue, takes game servers offline

Ubisoft acknowledged the situation publicly on Saturday morning, stating that it was aware of an issue affecting Rainbow Six Siege and that remediation efforts were underway. Shortly after, the company shut down both the game and its in-game Marketplace to prevent further abuse.

In a subsequent update, Ubisoft eased some worries by clarifying that players would face no penalties for using the improperly granted currency. However, the publisher said it would roll back all transactions conducted after a specific cutoff time, effectively reversing purchases and changes made during the incident window.

Rollbacks planned

The company also addressed concerns around moderation messaging, noting that the ban ticker messages seen by players were not generated by Ubisoft and that the feature had already been disabled. Despite these clarifications, Ubisoft has yet to release a detailed explanation of how threat actors gained the level of access required to manipulate internal systems.

That lack of transparency has fueled speculation within the security community. Ubisoft has not publicly confirmed whether the incident stemmed from a vulnerability, misconfiguration or compromised credentials, leaving the root cause unresolved.

Claims of a bigger incident

Beyond the confirmed in-game abuse, unverified claims suggest a potentially larger compromise of Ubisoft’s infrastructure. Some threat actors allege that a recently disclosed MongoDB vulnerability was used to access internal systems, source code repositories or even user data, although these allegations remain unproven.

Currently, no publicly available evidence supports claims of stolen customer data or source code. For now, the only confirmed incident remains confined to Rainbow Six Siege’s internal systems, with further details pending any formal disclosure from Ubisoft.