Security company vx-underground posted on the
Information is currently being exploited by unknown threat actors who are using information-stealing software to target individuals who are cheating (pay-to-cheat) in games. Some of these accounts are not cheaters. Some of the affected users use gaming software to improve network latency, use VPNs, and controller enhancement software. A Call of Duty cheat software provider called PhantomOverlay discovered the fraudulent activity when user accounts began making unauthorized purchases. The cheat software provider was the first to discover the fraudulent activity and contacted the suspected victim. The impact is widespread, and Activision Blizzard is working with cheat software providers to help users affected by this massive information-stealing campaign.
The current estimated impacts are as follows: 3,662,627 Blizzard Battlenet accounts were stolen, 561,183 Activision accounts were stolen, 117,366 elite PVP player accounts were stolen, 572,831 UnknownCheats accounts were stolen, 1,365 PhantomOverlay accounts were stolen Steal.
When PhantomOverlay administrators contacted Elite PVPers, Elite PVPers confirmed that they had identified more than 40,000 valid user accounts that had been compromised.