GameStop sent affected customers an email earlier this week, admitting that hackers could have made away with names, addresses, and credit card information from just about anyone who “placed or attempted to place orders on our website from August 10, 2016 to February 9, 2017.”
The email continued, “We are notifying you because you placed or attempted to place an order on www.GameStop.com during this time period using a payment card ending in [number].”
The security blog KrebsOnSecurity actually noted that a breach had taken place as early as April of this year, and reported that information as granular as credit card CVVs (the three-digit security codes on your cards) was compromised. This was particularly concerning because online retailers aren’t supposed to store CVV data, but if hackers have malicious software, they can actually copy the data before it gets encrypted and processed.
Editors' Recommendations
- GameStop’s latest pivot takes it into the NFT business
- GameStop: Rise of the Players trailer shows a stock revolt
- T-Mobile confirms hack, investigates whether customer data was stolen
- GameStop will sell PlayStation 5 and Xbox Series X in-store on Black Friday
- Microsoft’s deal with GameStop could steer holiday shoppers toward Xbox