Game company 2K on Thursday warned users to remain on the lookout for suspicious activity across their accounts following a breach last month that allowed a threat actor to obtain email addresses, names, and other sensitive information provided to 2K’s support team.

The breach occurred on September 19, when the threat actor illegally obtained system credentials belonging to a vendor 2K uses to run its help desk platform. 2K warned users a day later that the threat actor used unauthorized access to send some users emails that contained malicious links. The company warned users not to open any emails sent by its online support address or click on any links in them. If users already clicked on links, 2K urged them to change all passwords stored in their browsers.


More

MarketWatch: Are passwords a thing of the past? 

MarketWatch’s Best New Ideas in Money podcast explores innovations in economics, policy, and finance technology. This episode…

Read More →

American Banker: What banks can learn from phishing attacks on Cloudflare, Twilio

Threat actors targeted two major tech firms with nearly identical phishing schemes last week. In…

Read More →

Microsoft News: Passwordless is here and at scale

Microsoft’s blog post explores Accenture’s journey as they adopted passwordless authentication. With cyber-attacks on the…

Read More →


Subscribe to the FIDO newsletter

Stay Connected, Stay Engaged

Receive the latest news, events, research and implementation guidance from the FIDO Alliance. Learn about digital identity and fast, phishing-resistant authentication with passkeys.