
The Ukrainian police have arrested 3 people who hacked greater than 610,000 Roblox gaming accounts and offered them for a benefit of $225,000.
The arrests had been made by way of the police in Lviv after engaging in ten searches on centered places, seizing $35,000 in money, 37 cell phones, 11 desktop computer systems, seven laptops, 5 drugs, and 4 USB drives.
Even supposing the police didn’t specify the sport platform centered by way of the hackers, elderly 19, 21, and 22, the Prosecutor Normal’s Workplace said that it used to be Roblox.
“Prosecutors of the Lviv area, along side the cyber police and the Safety Provider of Ukraine, have stopped the actions of a bunch that received get entry to to other folks’s gaming accounts and used them as a supply of source of revenue,” reads the click unlock from the Prosecutor Normal’s Workplace.
“This issues profiles in Roblox, the place customers create video games, keep up a correspondence, and buy digital pieces with in-game forex. For lots of, such accounts grasp now not best gaming price but additionally monetary price because of gathered sources and bought pieces.”

Supply: gp.gov.ua
Roblox is a gaming platform the place other folks can create and play hundreds of thousands of video games. Roblox accounts aren’t restricted to gaming, as they may be able to even be used for development belongings on Roblox Studio and promoting pieces to others, in alternate for the in-game forex Robux.
For lots of, those accounts have financial price, grasp excessive Robux balances, comprise limited-edition pieces that may not be received, maintain years of in-game development with unlocks and achievements, be offering paid get entry to to top rate content material, and extra.
The government state that, a minimum of 357 of the 610,000 consumer accounts the hackers took over between October 2025 and January 2026, had been high-value (“elite”) accounts.
The nineteen-year-old is known because the chief of the danger staff, who recruited the opposite two on gaming boards and arrange the account-hacking scheme.
The scheme concerned selling info-stealing malware disguised as a game-enhancer device, infecting sufferer gadgets, and accumulating their login credentials.
The stolen accounts had been then categorised by way of price, stock rarity, and closing Roblux balances, and offered by way of a Russian web page and on “closed” on-line communities.
For those offenses, the hackers had been charged below articles 185 (robbery) and 361 (unauthorized interference with IT methods) and withstand 15 years of imprisonment.
The government proceed their investigation to spot different imaginable accomplices and sufferers of the hacking staff.
AI chained 4 zero-days into one exploit that bypassed each renderer and OS sandboxes. A wave of recent exploits is coming.
On the Self reliant Validation Summit (Might 12 & 14), see how self sufficient, context-rich validation reveals what is exploitable, proves controls grasp, and closes the remediation loop.
Declare Your Spot



