[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f1t25022fbncm4":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":13,"contentUpdatedAt":14,"source":15,"sourceUrl":16,"sourceUrls":17,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":20,"affectedCountUnit":21,"hasEnglishDescription":4,"severity":22,"dataClasses":23,"description":27,"seoTitle":16,"seoTitleEn":28,"seoDescription":16,"seoDescriptionEn":29,"logoUrl":30,"isVerified":4,"isSensitive":31,"isSpamList":31,"isMalware":31,"company":32},"68e3266eda11adda4882513b","cdprojekt-red","CD Projekt RED Data Breach","cd-projekt-red","cdprojektred.com","2016-03-01T00:00:00.000Z","2017-01-31T06:40:09.000Z","2026-07-02T11:54:02.019Z","2026-07-18T23:47:12.890Z","Third party breach","",[],1871373,"known",null,"unknown","Critical",[24,25,26],"Email addresses","Passwords","Usernames","\u003Cp>CD Projekt RED is a Poland-based game developer and a major gaming brand known for The Witcher and Cyberpunk series. The breach associated with the company's forum in March 2016 affected approximately 1.87 million user accounts, along with email addresses, usernames, and salted SHA-1 password hashes.\u003C\u002Fp>\u003Cp>This incident should not be confused with the company's subsequent corporate security incidents. The records here belong to forum user accounts and should be evaluated based on the risk of reuse of game community identity, email, and password. Source code, employee files, or internal company documents should not be included in this record.\u003C\u002Fp>\u003Ch2>Leaking Data Types and Risks\u003C\u002Fh2>\u003Cp>The data classes tracked in CD Projekt RED's record should be treated as email addresses, password data, and usernames. Email addresses can be used for targeted phishing, password reset schemes, and account matching across different services. Password data directly increases the risk of account takeover, especially if the same password is reused on other services. Usernames can help link pseudonyms across different platforms and personalize social engineering messages.\u003C\u002Fp>\u003Cp>Usernames in forum accounts can often be the same as gaming profiles, social media, and other communities. When email and password hashes are combined with these usernames, there is a risk both of account testing and of matching the player's identity across different platforms.\u003C\u002Fp>\u003Ch2>Verified Scope and Boundaries\u003C\u002Fh2>\u003Cp>This record is associated with the domain cdprojektred.com, a forum breach in March 2016, and approximately 1.87 million unique accounts. The scope is limited to email addresses, password hashes, and usernames. Financial data, private messages, or game license information are not verified fields for this record.\u003C\u002Fp>\u003Cp>Fields that are not present in this record should not be described as if they have leaked. Fields such as full card number, account password, official ID, private message, device content, or health information should only be included in the risk assessment if they are explicitly present in the record. The text is based on verifiable data classes and the known boundaries of the incident.\u003C\u002Fp>\u003Ch2>User Groups at Risk\u003C\u002Fh2>\u003Cp>Players who use the CD Projekt RED forum, people who repeat the same username on GOG, Steam, forums, or social media accounts, and users who use password patterns from the 2016 period on other services are at higher risk.\u003C\u002Fp>\u003Cp>Users who use the same email address across different services, repeat their old passwords, and share phone and address information on numerous shopping or community accounts are at higher risk. The link between a pseudonym and real identity in corporate or community accounts can create additional social engineering risks.\u003C\u002Fp>\u003Ch2>Urgent Measures to Be Taken\u003C\u002Fh2>\u003Cp>Users should update their old forum password and all accounts using the same password. Two-step verification should be enabled on more critical accounts such as game store, email account, and social media.\u003C\u002Fp>\u003Cp>Users in the positive match field should update their passwords on accounts where they use the same or similar passwords, enable two-factor authentication where possible, and check recent sessions. Caution should be exercised against unexpected calls, deliveries, returns, support, and verification messages on records containing phone numbers, addresses, payment information, or sensitive community information.\u003C\u002Fp>\u003Ch2>Long-Term Security Strategies\u003C\u002Fh2>\u003Cp>In the long term, the habit of using a password manager, unique passwords, two-factor authentication, and removing unnecessary personal information from accounts reduces risk. Reusing the same email address across different platforms makes it easier to combine data from different breaches; using a separate email or alias for critical accounts can be considered.\u003C\u002Fp>\u003Cp>Old usernames can remain visible for a long time in gaming communities. Users should regularly check their old forum accounts, linked email addresses, and publicly available information on game profiles; they should use a unique password for each platform.\u003C\u002Fp>\u003Ch2>Record Control and User Action\u003C\u002Fh2>\u003Cp>LeakData check indicates whether the queried email address is present in this record. A positive result does not necessarily mean that all data fields definitely belong to that user; however, it is a sufficient warning for precautionary measures. A negative result only indicates that there is no match in this dataset and does not eliminate the possibility of appearing in other breaches.\u003C\u002Fp>\u003Cp>A positive result indicates that the email address was found in the CD Projekt RED forum breach. This result is not related to the company's other incidents; the user should take action for the forum password and any reused accounts.\u003C\u002Fp>","CD Projekt RED Data Breach (1.9 Million Reported Records)","CD Projekt RED Data Breach. 1.9 Million reported records were reported. Reported data: Email addresses, Passwords, Usernames. Review the scope, risks, and…","\u002Fuploads\u002Flogo\u002Fcdprojektred_com.webp",false,{"name":33,"sector":34,"country":35,"website":10,"websiteArchiveUrl":16,"websiteStatus":16,"websiteCheckedAt":20},"CD Projekt RED","Gaming","Poland"]