Cyberpunk 2077 developer says stolen data now circulating online

cheap Xbox game deals sales
(Image credit: CDPR)

The developer of Cyberpunk 2077 has revealed that the data stolen during a ransomware attack earlier this year is now reportedly being circulated online.

CD Projekt Red was the victim of a "targeted cyber attack" in February 2021 that saw internal data stolen by unknown hackers, as well as some devices being encrypted (although these were later recovered through backups).

Several months on from the attack, the company now believes that its internal data stolen during the attack is now available online.

According to a ransom note published by CD Projekt Red, the hackers were able to access source codes for Cyberpunk 2077, Witcher 3, Gwent and the unreleased version of Witcher 3. In addition, they claimed to have gained access to "documents relating to accounting, administration, legal, HR, investor relations and more".

The note concluded by saying that if the company did not pay the ransom, the stolen data would be leaked or sold online - with CD Projekt Red declaring after the attack that it would, "not give in to the demands nor negotiate with the actor."

Cyberpunk 2077

(Image credit: CD Projekt Red)

"Manipulated" data

In a statement on its Twitter account, CD Projekt Red said that although it was not able to confirm the exact contents of the stolen data in question, details of both current and former employees and contractors may be involved, along with data related to its games.

The company added that it could not confirm whether or not the data in question may have been "manipulated or tampered with" following the breach.

CD Projekt Red says it is still working with a number of law enforcement agencies and security experts following the attack, as well as contacting Interpol and Europol. The company added that it was, "committed and prepared to take action against parties sharing the stolen data".

"We would also like to state that - regardless of the authenticity of the data being circulated - we will do everything in our power to protect the privacy of our employees, as well as all other involved parties," it added in an internal blog post.

The company also outlined how it has taken "multiple measures" since the breach to strenghthen its internal systems to protect against future attacks. This includes a redesign of its core IT infrastructure, new "next-generation firewalls" and remote-access systems, and an expansion of its own internal security department.

Mike Moore
Deputy Editor, TechRadar Pro

Mike Moore is Deputy Editor at TechRadar Pro. He has worked as a B2B and B2C tech journalist for nearly a decade, including at one of the UK's leading national newspapers and fellow Future title ITProPortal, and when he's not keeping track of all the latest enterprise and workplace trends, can most likely be found watching, following or taking part in some kind of sport.

Read more
ransomware avast
Billions of credentials were stolen from businesses around the world in 2024
A laptop with a red screen with a white skull on it with the message: "RANSOMWARE. All your files are encrypted."
Major ransomware attack sees Tata Technologies hit - 1.4TB dataset with over 730,000 files allegedly stolen
A laptop with a red screen with a white skull on it with the message: "RANSOMWARE. All your files are encrypted."
Less than half of ransomware incidents end in payment - but you should still be on your guard
DDoS inscribed on a digital background made up of numbers
DDoS attacks take down game studio servers, causing DayZ and Arma network outages
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
59 organizations reportedly victim to breaches caused by Cleo software bug
malware
Valve advises full system reset if you've downloaded this Steam game containing malware
Latest in Security
Power cables stretching out in front of the horizon
Solar grids could be hijacked and even potentially disabled by these security flaws
Spam messages
Microsoft Stream classic domain hijacked, causing spam across SharePoint
Isometric demonstrating multi-factor authentication using a mobile device.
NCSC gets influencers to sing the praises of 2FA
Sam Altman and OpenAI
OpenAI is upping its bug bounty rewards as security worries rise
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Dangerous new CoffeeLoader malware executes on your GPU to get past security tools
China
Notorious Chinese hackers FamousSparrow allegedly target US financial firms
Latest in News
Power cables stretching out in front of the horizon
Solar grids could be hijacked and even potentially disabled by these security flaws
Lenovo | Thinkpad T14s Gen 6 Snapdragon
Windows 11’s latest patch declares war on BIOS updates for some Lenovo laptops, blocking them as a security risk in a bizarre turn of events
Samsung Galaxy Watch Ultra
Samsung confirms Galaxy Watches aren't tracking sleep properly – here's the fix if you're affected
Tomodachi Life: Living the Dream screenshot showing a Mii smelling some fresh flowers.
Tomodachi Life: Living the Dream is a sequel to my favorite 3DS game, and I think it's already packing the charm that inZOI lacks
Spam messages
Microsoft Stream classic domain hijacked, causing spam across SharePoint
ChatGPT logo
ChatGPT 4o just got better, although I’m yet to notice a difference