Atlas Menu Cheat Service Hacked, Exposing 64,000 User Accounts
Severity: High (Score: 69.0)
Sources: haveibeenpwned.com, Technadu, web.archive.org, Theregister, Techcrunch
Published: · Updated:
Keywords: atlas, cheat, service, menu, attacker, data, breach
Severity indicators: breach, data breach, ot
Summary
The Atlas cheat service for Grand Theft Auto V and Counter-Strike 2 suffered a significant data breach in May 2026, exposing approximately 64,000 user accounts. An attacker claimed to have compromised all Atlas systems and published the stolen database on GitHub. The leaked data included email addresses, usernames, IP addresses, support tickets, and bcrypt-hashed passwords. The breach was confirmed by the breach notification service Have I Been Pwned. Users are now at risk of account takeovers and privacy violations. The hacker's motivation appears to be revenge against a scammer, highlighting the ongoing risks in the cheat service ecosystem. Atlas had previously claimed to offer secure authentication, but the incident reveals serious security flaws. This breach follows a separate data leak involving Rockstar Games, indicating a troubling trend in the gaming industry. Key Points: • 64,000 user accounts exposed in the Atlas Menu data breach. • Leaked data includes sensitive information like email addresses and support tickets. • The breach was confirmed by Have I Been Pwned and published on GitHub.
Detailed Analysis
**Impact** Approximately 64,000 user accounts of Atlas, a cheat service for Grand Theft Auto V and Counter-Strike 2, were compromised in May 2026. Exposed data includes unique email addresses, usernames, IP addresses, support tickets, license keys, signup dates, Rockstar Games account identifiers, administrator logs, and bcrypt-hashed passwords. The breach affects users globally who subscribed to Atlas services, potentially exposing them to account takeover and privacy violations. The incident also risks reputational damage to Atlas and may impact related gaming communities. **Technical Details** The attacker gained unauthorized access to all Atlas systems and extracted the full internal database, which was then publicly posted on GitHub. The breach involved network intrusion and data exfiltration but no specific malware, CVEs, or attack tools were disclosed. Passwords were stored using bcrypt hashing. The attacker’s motivation reportedly included revenge against a scammer. No detailed kill chain stages or IOCs were provided in the sources. **Recommended Response** Affected users should immediately change passwords on all accounts where the same credentials were used and enable two-factor authentication where available. Organizations should monitor for leaked Atlas-related credentials and suspicious login attempts tied to exposed accounts. Use password managers to enforce strong, unique passwords and review internal security controls to prevent similar breaches. No specific patches or detection signatures were identified in the available information.
Source articles (5)
- Atlas Menu Data Breach Exposes Approximately 64,000 User Accounts — Technadu · 2026-06-01
Atlas , a recognized GTA V and CS2 cheat service, suffered a data breach in May 2026. The incident compromised the system infrastructure, affecting 63,926 unique email addresses tied to the platform's… - According to — haveibeenpwned.com · 2026-06-01
In May 2026, the GTA V and CS2 cheat service Atlas suffered a data breach. An attacker claimed to have gained access to all Atlas systems and published the service's database to a public GitHub reposi… - GTA cheat service Atlas Menu hacked as attacker alleges screenshot spying — Theregister · 2026-06-01
A database containing 64,000 user records was published to GitHub after an attacker claimed to have compromised all Atlas systems Grand Theft Auto cheat users have discovered that even the people sell… - Grand Theft Auto V cheat service gets hacked, exposing thousands of gamers — Techcrunch · 2026-06-01
Atlas , a cheat service for popular online video game Grand Theft Auto V, has been hacked, according to data breach notification website Have I Been Pwned . The stolen data included users’ email addre… - Atlas Menu — web.archive.org · 2026-06-01
Experience lightning-fast performance, instant results and a seamless user experience Experience effortless login, secure authentication and enhanced privacy through our advanced encryption techniques…
Timeline
- 2026-05-01 — Atlas Menu data breach occurred: An attacker compromised Atlas systems, leading to the exposure of user data.
- 2026-05-30 — Breach confirmed by Have I Been Pwned: The breach was officially added to the Have I Been Pwned database, confirming the scale of the incident.
- 2026-06-01 — Data published on GitHub: The attacker released the stolen database on GitHub, making it publicly accessible.
Related entities
- Data Breach (Attack Type)
- Atlas (Platform)
- GitHub (Platform)
- Rockstar Games (Company)
- CWE-200 - Exposure of Sensitive Information (Cwe)
- for.us (Domain)
- shinyhunters.in (Domain)
- T1059.005 - Visual Basic (Mitre Attack)
- T1567 - Exfiltration Over Web Service (Mitre Attack)