{"id":205934,"date":"2025-10-11T17:42:35","date_gmt":"2025-10-11T17:42:35","guid":{"rendered":"https:\/\/www.newsbeep.com\/au\/205934\/"},"modified":"2025-10-11T17:42:35","modified_gmt":"2025-10-11T17:42:35","slug":"nintendos-internal-files-allegedly-compromised-in-new-crimson-collective-breach","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/au\/205934\/","title":{"rendered":"Nintendo&#8217;s internal files allegedly compromised in new Crimson Collective breach"},"content":{"rendered":"<p class=\"bodytext\">As per a fresh cyber alert, the Crimson Collective hacking group claims to have breached <a href=\"https:\/\/www.notebookcheck.net\/Nintendo-dashes-hopes-for-new-Pikmin-game-after-commenting-on-Close-to-You-short-film.1135031.0.html\" target=\"_self\" class=\"internal-link\" rel=\"nofollow noopener\">Nintendo<\/a>, following its recent high-profile attack on Red Hat. The claim, which was <a href=\"https:\/\/x.com\/H4ckmanac\/status\/1976895206273220758\" target=\"_blank\" rel=\"nofollow\">posted via cybersecurity watcher Hackmanac on X<\/a> (formerly Twitter), was accompanied by a screenshot displaying the directory tree of what appears to be internal Nintendo topics and administrative files. The directory listing shows folders that suggest access to assets, admin resources, production backups, and internal manual files.\u200b&#13;<\/p>\n<p class=\"bodytext\">The <a href=\"https:\/\/www.rapid7.com\/blog\/post\/tr-crimson-collective-a-new-threat-group-observed-operating-in-the-cloud\/\" target=\"_blank\" rel=\"nofollow noopener\">Crimson Collective<\/a> rose to prominence in September and October 2025 with rapid escalations in their attacks. Apart from the <a href=\"https:\/\/blog.gitguardian.com\/red-hat-gitlab-breach-the-crimson-collectives-attack\/\" target=\"_blank\" rel=\"nofollow noopener\">Red Hat breach<\/a> (where they exfiltrated 570GB of data from over 28,000 repositories, including Customer Engagement Reports), they also claimed breaches at Claro Colombia and a prior defacement of Nintendo&#8217;s website in late September 2025. The group operates primarily through <a href=\"https:\/\/www.notebookcheck.net\/Telegram-adds-a-third-party-verification-method-and-more-in-new-update.940185.0.html\" target=\"_self\" class=\"internal-link\" rel=\"nofollow noopener\">Telegram<\/a>, where they share proof of breaches and pressure victims with extortion demands. They are known to exploit cloud misconfigurations, exposed credentials, and vulnerabilities in web applications to gain access.&#13;<\/p>\n<p class=\"bodytext\">Nintendo isn&#8217;t oblivious to such data breaches. For instance, <a href=\"https:\/\/cydrill.com\/cyber-security\/the-nintendo-cyber-security-data-breach\/\" target=\"_blank\" rel=\"nofollow noopener\">in 2020<\/a>, around 160,000 user accounts were compromised due to weaknesses in the Nintendo Network ID system, which exposed personal information and allowed unauthorized purchases through linked accounts. The Japanese company responded by resetting passwords and implementing stricter security measures, including discontinuation of legacy support and urging two-factor authentication for users.&#13;<\/p>\n<p class=\"bodytext\">As of writing, Nintendo has not issued an official statement on Crimson Collective\u2019s latest claims, and it remains unclear to what extent sensitive material may have been exposed or compromised. However, the company is notorious for being anything but lenient in such cases, so it remains to be seen what&#8217;s next.&#13;<\/p>\n<p class=\"bodytext\"><a href=\"https:\/\/www.amazon.com\/dp\/B0F3GWXLTS?tag=nbcnewsnet-20\" target=\"_blank\" rel=\"sponsored nofollow noopener\">Buy the Nintendo Switch 2 on Amazon<\/a>.<\/p>\n<p><a href=\"https:\/\/www.notebookcheck.net\/Notebookcheck-Team.212978.0.html?&amp;tx_nbc2journalist_pi1%5Bmode%5D=show&amp;tx_nbc2journalist_pi1%5Buid%5D=367\" rel=\"nofollow noopener\" target=\"_blank\"><img decoding=\"async\" src=\"https:\/\/www.newsbeep.com\/au\/wp-content\/uploads\/2025\/07\/csm_Meow-Anubhav-Sharma_bd58e223fa.jpg\" loading=\"lazy\" width=\"120\" height=\"120\" alt=\"Anubhav Sharma\"\/><\/a><a href=\"https:\/\/www.notebookcheck.net\/Notebookcheck-Team.212978.0.html?&amp;tx_nbc2journalist_pi1%5Bmode%5D=show&amp;tx_nbc2journalist_pi1%5Buid%5D=367\" class=\"j_name\" rel=\"nofollow noopener\" target=\"_blank\">Anubhav Sharma<\/a> &#8211; Tech Writer  &#8211; 1063 articles published on Notebookcheck since 2024<\/p>\n<p>Fueled by a childhood spent taking apart video game consoles to see how they worked, I turned my passion for tech into writing.  I have a double Bachelor&#8217;s in Computer Science Engineering (2018) and English (2024). I&#8217;ve been writing on a variety of tech topics since 2016, with a particular interest in gaming. When I&#8217;m not hunting down the latest tech news, you&#8217;ll find me producing music, gaming, or hiking.<\/p>\n","protected":false},"excerpt":{"rendered":"As per a fresh cyber alert, the Crimson Collective hacking group claims to have breached Nintendo, following its&hellip;\n","protected":false},"author":2,"featured_media":205935,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[64,63,234,12459,281,9686,127667,127670,43671,284,2458,127668,235,8886,227,21715,127669,233,10844,226,236,24711,232,228,229,105,52217,231,230,31199],"class_list":["post-205934","post","type-post","status-publish","format-standard","has-post-thumbnail","category-technology","tag-au","tag-australia","tag-benchmarks","tag-breach","tag-cloud","tag-credentials","tag-crimson","tag-crimson-collective","tag-cyber-attack","tag-cybersecurity","tag-data","tag-extortion","tag-graphics-card","tag-hacking","tag-laptop","tag-leaks","tag-misconfiguration","tag-netbook","tag-nintendo","tag-notebook","tag-processor","tag-red-hat","tag-reports","tag-review","tag-reviews","tag-technology","tag-telegram","tag-test","tag-tests","tag-vulnerabilities"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/205934","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/comments?post=205934"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/posts\/205934\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media\/205935"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/media?parent=205934"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/categories?post=205934"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/au\/wp-json\/wp\/v2\/tags?post=205934"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}