Darknet: 34 million Roblox credentials on offer

B2B Cyber ​​Security ShortNews

Share post

Kaspersky cybersecurity experts have discovered 34 million stolen credentials for the online game platform Roblox on the dark web. Identity theft and credential hacks via infostealer attacks continue to increase.

Between 2021 and 2023, almost 34 million login details for the online game Roblox were stolen and published on the dark web. Overall, the number increased by 231 percent from around 4,7 million in 2021 to 15,5 million in 2023. Taken together, data leaks from entertainment platforms such as Twitch, Electronic Arts, Sony PlayStation and Steam increased by 112 percent in the three years to.

Bulk credentials for resale

“The large number of stolen Roblox accounts is explained by the fact that cybercriminals particularly like to target children, as they are very susceptible to various types of social engineering. In order to deceive young players, cybercriminals hide infostealers in cheat code files, for example. Since some malicious download links are also shared on popular social media platforms like YouTube, they appear more credible. As a result, numerous compromised accounts of a game aimed at children have emerged,” explains Yuliya Novikova, Head of Kaspersky Digital Footprint Intelligence.

“The compromised credentials come from infostealers, a special type of malware that steals user access for cyberattacks, dark web sales, or other malicious activities. Infostealers can infect corporate and private devices using, among other things, phishing emails or websites and public web pages with malicious content. Efficient security solutions that protect against infostealer attacks and other malware are therefore becoming increasingly important for private individuals and companies.”

Accounts popular merchandise

“Cybercriminals target gaming accounts to steal valuables such as real money, in-game currencies and various in-game items such as expensive skins. Steam accounts seem to be attractive to cybercriminals because they can steal real money from them. Roblox accounts, on the other hand, can be misused to steal the in-game currency Robux or in-game items, or to access premium accounts that can be used to transfer items to other accounts. Although users should always be vigilant, platform operators can also improve their protection by tracking and quickly blocking compromised accounts using specialized services,” adds Yuliya Novikova.

More at Kaspersky.com

 


About Kaspersky

Kaspersky is an international cybersecurity company founded in 1997. Kaspersky's in-depth threat intelligence and security expertise serve as the basis for innovative security solutions and services to protect companies, critical infrastructures, governments and private users worldwide. The company's comprehensive security portfolio includes leading endpoint protection as well as a range of specialized security solutions and services to defend against complex and evolving cyber threats. Kaspersky technologies protect over 400 million users and 250.000 corporate customers. More information about Kaspersky can be found at www.kaspersky.com/


 

Matching articles on the topic

Darknet: 34 million Roblox credentials on offer

Kaspersky cybersecurity experts have discovered 34 million stolen credentials for the online game platform Roblox on the dark web. Identity theft and hacks for ➡ Read more

Critical CVSS 10.0 backdoor in XZ for Linux

The BSI has issued a warning about a critical 10.0 vulnerability in the XZ tool within Linux. Those affected are: ➡ Read more

Google names 97 observed zero-day vulnerabilities

There are many zero-day vulnerabilities, but not all of them are widely exploited. Google and Mandiant have observed 97 zero-day vulnerabilities that severely ➡ Read more

BKA destroys darknet marketplace “Nemesis Market”

The Federal Criminal Police Office BKA has shut down the illegal darknet marketplace “Nemesis Market”. The platform with over 150.000 users enabled mass trading ➡ Read more

Many companies are vulnerable to QR code phishing

With QR code phishing attacks on the rise, new data from a recent report sheds light on how unprepared companies actually are ➡ Read more

Vulnerability in tachograph could be infected by worm

According to researchers at Colorado State University, over 14 million US trucks could have vulnerabilities in standard electronic tachographs ➡ Read more

Dinner with APT29

In late February 2024, Mandiant identified APT29 - a Russian Federation-backed threat group linked to the ➡ Read more

New variant of SAML attack technique

Security researchers have discovered a new variant of the infamous Golden SAML attack technique, which the team has named “Silver SAML.” With ➡ Read more