Gaming

Hackers exploited Fortnite vulnerability to access user accounts

A security bug in Epic Games’ Fortnite allowed a group of hackers to gain access to user accounts. Researchers at Check Point Research discovered this flaw and notified Epic Games, therefore, leading to the subsequent patching of the bug within a few weeks.

The hackers were able to access the accounts after the users clicked on a suspicious link that was sent to them. In a statement, Epic Games thanked Check Point Research for their assistance and emphasized the importance of security for Fortnite users, saying:

“We were made aware of the vulnerabilities and they were soon addressed. We thank Check Point for bringing this to our attention. As always, we encourage players to protect their accounts by not re-using passwords and using strong passwords, and not sharing account information with others.”

Once the hackers had gained control of the user accounts, they could potentially eavesdrop on conversations taking place in the game. Furthermore, they could purchase and gift V-bucks, the in-game currency. It is also worth noting that since Fortnite does not allow multiple logins from a single account, once a hacker was signed in, the victim was unable to log on to his or her own account.

As far as the nature of the vulnerability is concerned, it basically involved Epic Games’ Single Sign-On implementation that is used by other login providers as well, including Facebook, Google+, Xbox and PlayStation Network.

It leads to a redirect URL which is then exploited by hackers to lead the victim to a vulnerable web page where the username and password are subsequently stolen. However, for this entire hack to work successfully, a user must click on a malicious link that is sent to his or her account.

While the flaw has been corrected, malicious attempts towards Fortnite user accounts are still common, including money laundering schemes that involve the use of stolen credit cards to purchase V-bucks and later sell them on the dark web at discounted prices.

Sponsored
Hamza Zakir

Platonist. Humanist. Unusually edgy sometimes.

Leave a Comment
Share
Published by
Hamza Zakir

Recent Posts

China’s Tencent Releases Large Language Model, Opens it For Enterprise Use

Capable of conversing in both Chinese and English, Tencent’s large language model ‘Hunyuan’ is claimed…

8 months ago

Apple Reportedly Spending ‘Million of Dollars Each Day’ for AI Training

Working on multiple AI models, Apple has allocated several teams who are working on artificial…

8 months ago

World’s Largest Wind Turbine Breaks Record For Power Generated In A Single Day-During A Typhoon

The world's largest offshore wind turbine has achieved a milestone by setting a new record…

8 months ago

YouTube Will Let You Play Mini Games Soon

YouTube is stepping into the world of gaming. YouTube has started testing out its gaming…

8 months ago

Pakistani Student Won First Position In Matric Exams of UAE

In a remarkable academic achievement, Abdullah Zaman, a Pakistani student hailing from Attock, has clinched…

8 months ago

‘Flying Bum’ World’s largest Aircraft Is Ready To Launch In 2026 With Hybrid Technology

Flying Bum, the world's largest aircraft is ready to launch in 2026. The Airlander 10…

8 months ago