Skip to main content
  1. Home
  2. Gaming
  3. Legacy Archives

EA’s Origin leaves 10 million customers vulnerable to hacking

Add as a preferred source on Google
EA-Origin
Image used with permission by copyright holder

There is simply no such thing as a perfectly secure digital system. Multibillion dollar companies like Sony have proven time and again that even after spending huge sums of money to build safe online entertainment stores and networks like the PlayStation Network, hackers will find a weakness in its façade. Electronic Arts has also spent a large sum of money to transform its multiple digital businesses into one all-encompassing network called EA Origin. It turns out that even Origin is exploitable, according to one security company. 

Donato Ferrante and Luigi Auriemma of the security company ReVuln found that by manipulating the way Origin opens video games through its client—the application that people use on their PCs to purchase and play games through EA Origin—hackers could potentially trick people’s machines into launching malicious code. For example, a player firing up Battlefield 3 could instead accidentally launch a keylogger, a program that remotely records their keyboard inputs to reveal sensitive information. Hackers would already need to know personal information about a player’s Origin account for the exploit to work, but the pair said it would be easy to work around this since Origin doesn’t lock out an account if a user fails to enter the correct security information multiple times.

Recommended Videos

“An attacker can craft a malicious internet link to execute malicious code remotely on victim’s system which has Origin installed,” wrote ReVuln’s researchers.

EA told Ars Technica that it’s investigating the vulnerability and will attempt to fix it.

Many would-be contenders to Steam’s digital video game distribution crown have revealed themselves to be vulnerable in the past year. Shortly after changing its digital rights management network Uplay into a distribution channel for its games, Ubisoft discovered that it was also leaving its customers vulnerable to digital attacks. Uplay’s problem was actually much worse than Origin’s vulnerability, since the Uplay client was accidentally installing an exploitable plug-in on people’s PCs without their permission. “The browser plug-in that we used to launch the application through Uplay was able to take command line arguments that developers used to launch their games while they’re being made,” said Ubisoft in July 2012, “This weakness could allow the application to specify any executable to run, rather than just a game. This means it was possible to launch another program on the machine.”

ReVuln’s techs said that around 10 million customers were vulnerable thanks to the chink in EA Origin’s armor.

Source: BBC

Anthony John Agnello
Anthony John Agnello is a writer living in New York. He works as the Community Manager of Joystiq.com and his writing has…
Netflix’s new horror game turns your phone into the controller, and it rings during gameplay
Unhinged offers two ways to play, a stakes-free Story Mode or a tense Standard Mode with a shrinking timer and checkpoint restarts.
netflix-unhinged-game

Netflix just unveiled Unhinged, and it might be the strangest thing the streamer has ever put in its games tab. Arriving June 30, this interactive horror story does not need a console or controller. Instead, your own smartphone becomes the entire interface, and you receive phone calls that ring straight through your actual device mid-game.

https://twitter.com/netflix/status/2069450411656794287

Read more
Devil May Cry just landed on your Switch 2 and it’s only $30 until July 7
All four characters, 60 FPS in handheld, and a $30 price that won't last past July 7.
Devil May Cry 5 arrives in Switch 2.

If you own a Switch 2 and have been waiting for a great hack-and-slash game to justify the purchase, today is a good day. 

Devil May Cry 5: Devil Hunter Edition lands on the eShop on June 23, 2026, at limited-time discounted pricing. Given that it’s a game from a franchise that has sold over 38 million copies, that is a deal worth paying attention to.

Read more
Forget buying a Steam Machine, Valve wants you to build one
The company is improving desktop compatibility and working closely with Nvidia on future support.
Steam Machine LED Progress Bar

Valve's new Steam Machine may be grabbing headlines, primarily because of its price, but the bigger story could be that users won't necessarily need to buy one. Valve has confirmed that SteamOS is becoming increasingly desktop-friendly, opening the door for gamers to build their own Steam Machines using standard PC components and the operating system that powers the Steam Deck.

Valve wants SteamOS to work on more than just Valve hardware

Read more