Denuvo forgets to secure server, leaks years of messages from game makers
7 02 2017The first proof of this leak appears to come from imageboard site 4chan, where an anonymous user posted a link to a log file hosted at the denuvo.com domain. This 11MB file (still online as of press time) apparently contains messages submitted via Denuvo’s public contact form dating back to April 25, 2014. In fact, much of Denuvo’s web database content appears to be entirely unsecured, with root directories for “fileadmin” and “logs” sitting in the open right now.
Combing the log file brings up countless spam messages, along with complaints, confused “why won’t this game work” queries from apparent pirates, and even threats (an example: “for what you did to arkham knight I will find you and I will kill you and all of your loved ones, this I promise you CEO of this SHIT drm”). But since Denuvo’s contact page does not contain a link to a private e-mail address—only a contact form and a phone number to the company’s Austrian headquarters—the form appears to also have been used by many game developers and publishers.
The content in this post was found at https://arstechnica.com/security/2017/02/denuvo-forgets-to-secure-server-leaks-years-of-messages-from-game-makers/ and was not authored by the moderators of privacynnewmedia.com. Clicking the title link will take you to the source of the post.
Powered by WPeMatico
Recent Comments