Saudi Hacker Compromises Undead Labs Forum

Saudi Hacker Compromises Undead Labs Forum

Undead Labs had reported their forum was down on Saturday, November 30. The official post from Undead Labs suggests this was a technical problem and may not be resolved quickly due to the holiday weekend.

Undead Labs, a video game development studio specializing in the creation of zombie games, are best known for State of Decay, an open-world zombie survival game.

Read the original post here

The same thing was also reported via their Twitter channel, @undeadlabs

At around the same time as their post, there was a Steam discussion about the forum being hacked, something not mentioned by the folks at Undead Labs.

steamUndeadLabs

Malwarebytes has confirmed the comments made by these Steam users. Below are screenshots of the Undead Labs forum at the time of the compromise (emails removed)

undeadComp1

The hacker, who goes by the Twitter name @security_511, posts his contact details at the bottom of the compromised page.

undeadComp2

By searching for profiles on cunotic.com (Arabic tech news website), we found a possible candidate for hacker, a nineteen year-old called ‘Binammar’.

orig

And then translated

trans

Undead Labs has yet to release any official statement on the hack. Hopefully they’ll be back online soon.

_________________________________________________________________

Joshua Cannell is a Malware Intelligence Analyst at Malwarebytes where he performs research and in-depth analysis on current malware threats. He has over 5 years of experience working with US defense intelligence agencies where he analyzed malware and developed defense strategies through reverse engineering techniques. His articles on the Unpacked blog feature the latest news in malware as well as full-length technical analysis.  Follow him on Twitter @joshcannell

ABOUT THE AUTHOR

Joshua Cannell

Malware Intelligence Analyst

Gathers threat intelligence and reverse engineers malware like a boss.