Red Barrels
bd_15e950ff7ca918d8 · schema v1 · pii pii-v1
Full breach record for Red Barrels →Press / market disclosure — not a breach-notification filing
A media or market posting that confirms an incident but carries no breach-notification fields, so compliance clocks aren't assessable. The summary below is extracted from the coverage — verify against the source.
OUTLAST DEVELOPER RED BARRELS SUFFERS MAJOR DATA BREACH; COMPANY INFORMATION COMPROMISED. Red Barrels: The video game developer Red Barrels, known for the horror games Outlast and Outlast 2, has suffered a major data breach, affecting its development work and employees. The investigation has been conducted and the incident is considered "contained," but development plans have been delayed as a result. The compromised data includes game source code, game builds, human resources information, and company credit card information. Linked ransomware group: nitrogen.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Sep 30, 2024
Press report
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Attack → press
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitenitrogenbd_5d76fbf1d7ab80de2024-10-03 · +3dCandidate
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- incident type + narrative only (may be machine-translated)
- discovery date
- materiality
- affected count
- data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.
nitrogen
According to ransomware.live, Nitrogen began as a malware loader in 2023 used to deliver BlackCat/ALPHV ransomware, then evolved into a fully independent ransomware operator by mid-2024, operating its own strain derived from leaked Conti 2 builder code and conducting double-extortion attacks primarily linked to Eastern European infrastructure.