Xbox Live Hack Issue Grows as Microsoft Denies System Intrusion

Microsoft re-states that there is no hack to its systems.

Posted by
Xbox Live Hack Issue Grows as Microsoft Denies System Intrusion
Despite Microsoft's fervent denials regarding an Xbox Live 'Hack', The Sun is continuing its campaign against the company.

'Microsoft are disgrace over Xbox fraud, say fans" screams The Sun's headline.

The report states that "Hundreds of readers contacted The Sun yesterday... (many)( denied clicking on bogus "phishing" websites or giving personal details to crooks posing as fellow players — saying that Microsoft is under attack from gangs in Russia and China."

The report has been picked up by games industry journal MCV, which reports that it has been "contacted by several individuals claiming much the same – that their accounts had been compromised and that they did definitely not give out their account information."

It mentions one 'industry member' stating - under the condition of anonymity - that, "I can assure you, [the hack is] very real... During the first week of September two purchases were made on my own Xbox live account, one for 5,000 credits and another 6,000 – totalling about £100."

We contacted Microsoft who told us:

“As we commented on Tuesday, the Xbox LIVE service has not been hacked. However, we are investigating a number of recent customer complaints relating to Xbox LIVE customer service - particularly in the way that we have processed refunds to customers that have been victims of phishing related fraud.

Consequently, we are taking several steps to address and resolve these particular issues as soon as possible and working closely with our affected customers to investigate and resolve any unauthorized charges made to their accounts resulting from recent phishing scams.

Finally we would like to apologise to any customers who have not experienced a good service from us.

As always, Xbox LIVE customers who have any queries or concerns should contact Xbox LIVE Customer Service on 0800 587 1102 or visit www.xbox.com/security.”

One reader on the MCV online site, Ben Furfie who is the Editor, Arabian Computer News, however, points out that, "There seems to be some confusion about the source of the hack, which may explain The Sun's -- and it's readers' -- confusion about those claiming to have been hacked.

"As far as I understood, there was a recent hack that affected EA servers, including those on Xbox Live, which resulted in those taking over users' Xbox Live accounts spending large amounts of XBL points on FIFA Content Packs. However, that is not the same as Xbox Live being hacked. It's an issue with EA's servers, and Microsoft should be directing the blame at EA, if indeed it proves to be true that this is where the confusion is arising."

Have you had an experience with what could be a hack to your XBL account? Tell us at our brand new forum.
Companies:

Comments

Joe Mac 5367 25 Nov 2011 07:40
1/5
I don't understand this. If someone buys points on your account and spends them on content etc, how can that benefit a criminal?
Mediquette 28 Nov 2011 05:37
2/5
@Joe_Mac_5367: Because however the exploit is being done, they're recovering peoples' gamer tags to their own console, then changing that password and security questions. Then when they pop in whatever game, the game becomes registered to that account, allowing them to purchase additional content. I've also read that people are using the linked credit cards for Zune points, arcade games, as well as to supposedly purchase point cards they can then place onto other account of their choosing. I even read one post on the Xbox forums, where a guy said he called into the support line to check on his account investigation, and they told him that "he" called them twice in the past couple weeks trying to get his account back... turns out the guy is pretty sure it was whoever hacked his account, fighting tooth and nail, to keep his account. This is getting pretty messy, and Microsoft is just sort of shrugging it off while trying to blame the user for being phished, which isn't always the case. Even the infamous LockerGnome got his XBL account hacked, which last I heard, is still in limbo pending recovery, with all his content and account data gone, along with tons of dollars of stuff charged on his card. :/
more comments below our sponsor's message
Mediquette 28 Nov 2011 05:39
3/5
Oh yeah, also worth noting, LockerGnome made a video about the whole incident, and pointed out that he has one dedicated account he uses ONLY for Microsoft-related services, nothing else, meaning he couldn't have been phished, and it more than likely wasn't an EA thing, as I got the impression he had a different account for that, unless somehow EA is directly linked into XBL.
Joe Mac 5367 29 Nov 2011 02:09
4/5
Right but the best it seems to be is that a "criminal" can spend *your* money on *your* account...... and then play on it?

So nothing new is happening, just the usual attempts to phish or blag their way into people's accounts in order to play for free. Or am I wrong?
Bill 30 Nov 2011 04:38
5/5
I have been an xbox live user for over 8 years, with never a single problem with the service, and just the other day my account was compromised (email changed, settings to Russian, 10,000 MSP purchased, DLC bought for Fifa which I don't even own...)
My e-mail account used was only used for XboxLive/WLID and Zune Marketplace, nothing more. Microsoft's response said it was phishing - I have never entered my xbox email for anything else.

The influx of Xbox Live users that this occurred to recently seem to be tech savvy people. I do not accept Microsoft's response as simple 'phishing.' There has to be more going on here. I want a better official response from MS.

And the 4-6 week turnaround time for UA claims is a joke, especially for a company like MS. I play WoW and use Steam daily...never had an account compromised there, but I know people that have and it never took over a week to get their account back. UA should be a top priority.
If my gamertag wasn't 8+ years old, with all my DLC, achieves, netflix/hulu plus, friends lists I would simply set up a new account...sucks I'll have to go through the xmas holidays without Xbox Live. The only thing I can say for sure is I'll never give MS my CC info again.

Still hoping for a speedy recovery, but since there have been MANY of basically the same identical UA in the past month on Xbox Live, I think their "investigation team" has their hands full.
Posting of new comments is now locked for this page.