The Crimson Collective hacking group claims that it has hacked Nintendo

Screenshot_20251011_140140_Brave.jpg

A hacking group is claiming that it has managed to breach Nintendo and access internal data, including developer assets and admin data. Known as the Crimson Collective, the hackers were behind a breach of Red Hat Consulting's GitHub repository last month, accessing thousands of sensitive files and source codes. Currently, it's unconfirmed that Nintendo was hacked or any of its data was in fact breached, but the group did share a screenshot of folders it claims it managed to access.

:arrow: Source
 
They would keep the code for the operating system in there though, which could then be used to find ways around or through its security checks.
Maybe the current firmware, maybe the upcoming one too. But all the other previous version of the firmware are most likely stored in a backup storage, which may (or may not) not be linked in any way to their network and would be unreachable by the hackers.
 
Maybe the current firmware, maybe the upcoming one too. But all the other previous version of the firmware are most likely stored in a backup storage, which may (or may not) not be linked in any way to their network and would be unreachable by the hackers.
Sure, but presumably any exploit still present in the current firmware would also be present in all previous versions too. Further, if there's graphics processing code among what they nabbed, that could be used to create a translation layer for Nvidia's PC GPUs. All depends on how they decide to leverage what they've obtained though, and if they distribute it to other programmers/hackers.
 
  • Like
Reactions: Finray
Maybe the current firmware, maybe the upcoming one too. But all the other previous version of the firmware are most likely stored in a backup storage, which may (or may not) not be linked in any way to their network and would be unreachable by the hackers.
An old firmware [I think 2018-ish?] was leaked recently but nothing has come of it yet. So I think it might include older stuff too.
 
Another reporting it's just website/news stuff.

Translation:

Hmmm, a group claims to have managed to hack or exploit a vulnerability in Nintendo's servers in Japan.

Analyzing it coldly (because I work in this field), it's an AWS server dedicated to the official website.

I don't expect game source code or new projects, at most.

 


They hacked the website, got stuff from the website. They did not hack Nintendo's servers.

Another reporting it's just website/news stuff.

Translation:




SO BASICALLY:

They got nothing but what was hosted from the nintendo website server, which usually has less security since they have less things that would actually be a risk being hacked and taken?


Talk about a big fuckin' nothingburger and I was right that it wasn't worth anything before the 5th page. Turns out tempering your expectations works wonders for things like this.
 
1. Everyone here wishing stuff gets leaked. You realize that absolutely none of it can be used for any serious projects right? You would jeopardize said project(s) to the law. In which case, you are asking for trouble. You also seriously jeopardize clean room reverse engineering efforts. Stop before you fuck something else up.

2. Either this was a phishing scam again, or yet again another entrypoint through corporate defenses. If it's an attack on the infrastructure, how the hell are we still functional with how shitty the security is with most of these services? If it's from a phishing email, for two seconds, STOP AND THINK BEFORE YOU CLICK / TAP. You work for a company that produces hardware and software, for crying out loud learn something useful, at least enough to not fall for the garbage.
 
Seriously, what's up with Nintendo's cybersecurity? I've had Emmental cheese with less holes than whatever they are running!
Sony be like, lol, our PSN went down for a month or so, we lost all your credit card info, all of our consoles have been hacked, and I think North Korea hacked us once!
 
Best chance is that Nintendo just pays the ransom and they get away with it and maybe some boring emails get leaked at some point down the line.
Most big corporations with trillions or billions of dollars are told not to pay the ransom. Some do, but not all, and Nintendo would fit the bill of not paying. They're more on the side of taking down leaks that occur if it reaches the masses out in the open and filing DMCA takedowns on fan projects, as that's what their motto stands for.
 
Last edited by SylverReZ,
  • Haha
Reactions: BlusterBong

A hacking group is claiming that it has managed to breach Nintendo and access internal data, including developer assets and admin data. Known as the Crimson Collective, the hackers were behind a breach of Red Hat Consulting's GitHub repository last month, accessing thousands of sensitive files and source codes. Currently, it's unconfirmed that Nintendo was hacked or any of its data was in fact breached, but the group did share a screenshot of folders it claims it managed to access.

:arrow: Source
Maybe if we're lucky, the group will give us access to the tools Nintendo uses/used to make games for the Switch, Wii U and 3DS. I may be coping though.
 

Site & Scene News

Popular threads in this forum