Big Cheese Studio SA
Incident posture
Linked entities
- Victim
- Big Cheese Studio SA
- Threat actors
- 1 actor
- Sources
- 1 source
Timeline
Summary
On the morning of the reported incident, an unauthorized party using the pseudonym Abuse1337 gained access to the IT systems of the Polish game development company, obtaining information and data held within its resources. The attackers demanded 100,000 złoty in cryptocurrency, threatening to publicly release the compromised data if the ransom was not paid. The company immediately initiated response actions, engaging outside providers to eliminate the threat and restore system functionality, including its website. It also worked with a law firm to pursue appropriate legal measures. Management stated that no data was permanently lost and that the incident did not jeopardize the continuation of game development work, while verification efforts were underway to determine the precise scope of the breach.
Motives
Detailed motive labels are available to members.
TTPs
Detailed technique labels are available to members.
Description
On January 24, 2025, in the morning hours, Big Cheese Studio S.A., a company headquartered in Łódź, experienced a security incident involving the breach of its information technology systems. According to the company's official report, unauthorized individuals operating under the pseudonym "Abuse1337" gained access to the company's IT infrastructure, including the information and data held within the company's resources. The attackers communicated with the company and issued a ransom demand, stating that if Big Cheese Studio did not pay 100,000 Polish złoty in cryptocurrency, the data obtained from the company's systems would be made public. This communication indicated the nature of the incident as a double-extortion ransomware-style attack, in which the perpetrators both compromise systems and threaten to release stolen information unless payment is made.
Following the discovery of the intrusion, the Management Board of Big Cheese Studio initiated a series of actions to assess the full scope of the security breach. The company stated that it was undertaking all necessary steps to verify the scale of the incident, including the precise determination of the range of data that had been obtained as a result of the compromise of the company's IT systems. Importantly, the Management Board clarified in its announcement that the data had not been lost by the company, and that measures had been taken to secure the information. The company also emphasized that, based on the current course of events, the incident did not pose a threat to the continuation of its game development work, indicating that core business operations related to its product pipeline were not halted by the breach.
In response to the attack, Big Cheese Studio collaborated with external service providers to launch procedures immediately after the disclosure of the breach, with the goal of eliminating the threat and restoring the functionality of the company's IT systems. These restoration efforts specifically included the company's website, which had been impacted by the incident. Furthermore, the Management Board, working alongside a legal firm, initiated actions aimed at taking appropriate legal steps in connection with the event. The company did not disclose further technical details about the method of intrusion, the specific systems affected beyond the general IT environment and website, or the timeline for full recovery. No information was provided regarding whether the ransom demand was met, whether negotiations took place, or whether any data was ultimately published by the attackers. The incident remained under investigation, with the company continuing its assessment of the breach's scope and the implementation of remedial measures to restore normal operations.
Sources
Sources available to members: 1 source.