{"id":4926,"date":"2026-06-02T13:59:30","date_gmt":"2026-06-02T10:59:30","guid":{"rendered":"https:\/\/www.gamermarkt.com\/blog\/?p=4926"},"modified":"2026-07-09T13:29:19","modified_gmt":"2026-07-09T10:29:19","slug":"atlas-menu-hacked-gta-online-data-breach-64000-users","status":"publish","type":"post","link":"https:\/\/www.gamermarkt.com\/blog\/atlas-menu-hacked-gta-online-data-breach-64000-users\/","title":{"rendered":"Atlas Menu Hacked: Personal Data of 64,000 GTA Online Cheaters Dumped Online"},"content":{"rendered":"\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p class=\"wp-block-paragraph\">Atlas Menu, a paid cheat service for GTA Online and CS2, suffered a major data breach in May 2026. Nearly 64,000 users had their personal data publicly dumped on GitHub, including emails, IPs, passwords, and Rockstar Social Club usernames.<\/p>\n<\/blockquote>\n\n<p class=\"wp-block-paragraph\">Atlas Menu, a paid cheat service for Grand Theft Auto Online and Counter-Strike 2, was hacked in May 2026, exposing the personal data of 63,926 users. According to Have I Been Pwned, which added the breach to its database on 30 May 2026, an attacker claimed to have compromised all Atlas systems and published the stolen database to a public GitHub repository. The service had ironically marketed itself as offering &#8220;secure authentication and enhanced privacy through advanced encryption techniques.&#8221;<\/p>\n\n<h2 class=\"wp-block-heading\">What Was Atlas Menu?<\/h2>\n\n<p class=\"wp-block-paragraph\">Atlas Menu was a paid mod menu that gave players unfair advantages in GTA Online and CS2. Its feature set included invisibility, super jumps, the ability to fly through the map, money drops, and vehicle spawning. What set it apart from most competitors was its ability to bypass BattlEye, the kernel-level anti-cheat system Rockstar Games introduced to GTA Online on PC in September 2024. When BattlEye shut down popular free mod menus like Kiddion&#8217;s Modest Menu, Atlas Menu continued operating as a paid alternative that could circumvent the new protection, building a substantial user base in the process.<\/p>\n\n<h2 class=\"wp-block-heading\">What Data Was Exposed?<\/h2>\n\n<p class=\"wp-block-paragraph\">The scope of the breach goes well beyond basic login credentials. According to Have I Been Pwned, the core compromised data includes email addresses, usernames, IP addresses, passwords stored as bcrypt hashes, and support tickets. However, reporting from GTA Boom, Rockstar Intel, and The Register reveals the full leak is far more extensive:<\/p>\n\n<ul class=\"wp-block-list\">\n<li><strong>Real names<\/strong> of users<\/li>\n\n\n\n<li><strong>Signup dates<\/strong> and account creation records<\/li>\n\n\n\n<li><strong>Menu license keys<\/strong> tied to paid subscriptions<\/li>\n\n\n\n<li><strong>Rockstar Games Social Club usernames<\/strong><\/li>\n\n\n\n<li><strong>Reseller logs<\/strong> showing distribution chains<\/li>\n\n\n\n<li><strong>Admin logs<\/strong> from the service&#8217;s backend<\/li>\n\n\n\n<li><strong>Banned user lists<\/strong><\/li>\n<\/ul>\n\n<p class=\"wp-block-paragraph\">This means the breach did not just expose contact details. It revealed purchase histories, game account identifiers, internal operations data, and the full scope of conversations users had with Atlas Menu&#8217;s support team. As TechCrunch reported, the data was posted publicly on GitHub for anyone to download.<\/p>\n\n<h2 class=\"wp-block-heading\">Who Did This and Why?<\/h2>\n\n<p class=\"wp-block-paragraph\">The person who claimed responsibility for the attack stated their motivation was revenge against a scammer. Beyond leaking the database, the attacker made a serious allegation: that Atlas Menu functioned as spyware, capable of capturing screenshots from users&#8217; screens without their knowledge or consent. If true, this would mean that cheaters who paid for the service to ruin other players&#8217; experiences were simultaneously having their own screens monitored. Atlas Menu&#8217;s operators have not responded to this claim, and the service&#8217;s website has been offline since the breach.<\/p>\n\n<h2 class=\"wp-block-heading\">Atlas Menu Has Gone Silent<\/h2>\n\n<p class=\"wp-block-paragraph\">One of the more troubling aspects of the incident is Atlas Menu&#8217;s complete silence. According to Notebookcheck, the service has issued no public statement, sent no warning to affected users, and provided no explanation of what happened. The platform itself is no longer accessible, leaving tens of thousands of users with no official channel to learn whether they were affected or what steps to take. This is reportedly not the first time Atlas Menu has been breached, but Reddit users noted this incident is significantly worse than previous ones in terms of the volume and sensitivity of exposed data.<\/p>\n\n<h2 class=\"wp-block-heading\">What Are the Real Risks for Affected Users?<\/h2>\n\n<p class=\"wp-block-paragraph\">The immediate danger extends far beyond the Atlas Menu account itself. People who reused the same email and password combination on other platforms, particularly Steam, Discord, Epic Games, or Rockstar Social Club, are now vulnerable to credential-stuffing attacks. In these automated attacks, leaked credentials are tested across hundreds of services to find matches.<\/p>\n\n<p class=\"wp-block-paragraph\">While bcrypt hashing provides a layer of protection for the passwords, it is not impenetrable. Weak or commonly used passwords can still be cracked with sufficient computing power. The exposure of Rockstar Social Club usernames alongside real names and email addresses also creates a direct link between a user&#8217;s cheat activity and their legitimate gaming identity.<\/p>\n\n<p class=\"wp-block-paragraph\">The leaked support tickets introduce another layer of risk. Users often share additional personal information when seeking help, and those conversations are now public. This data could be leveraged for targeted phishing or social engineering attacks.<\/p>\n\n<h2 class=\"wp-block-heading\">What Should Affected Users Do Right Now?<\/h2>\n\n<ol class=\"wp-block-list\">\n<li><strong>Change your passwords immediately:<\/strong> Start with the email account you used to register for Atlas Menu, then change passwords on every service where you used the same or similar credentials.<\/li>\n\n\n\n<li><strong>Enable two-factor authentication (2FA):<\/strong> Activate 2FA on Steam, Discord, Epic Games, Rockstar Social Club, and any other gaming or email service you use.<\/li>\n\n\n\n<li><strong>Check Have I Been Pwned:<\/strong> Enter your email at haveibeenpwned.com to confirm whether your data was part of the breach.<\/li>\n\n\n\n<li><strong>Use a password manager:<\/strong> Generate and store unique, strong passwords for every account going forward.<\/li>\n\n\n\n<li><strong>Watch for phishing attempts:<\/strong> Be cautious of unsolicited emails or messages that reference your gaming activity, especially those asking you to click links or provide information.<\/li>\n<\/ol>\n\n<h2 class=\"wp-block-heading\">Why Cheat Services Are a Security Black Hole<\/h2>\n\n<p class=\"wp-block-paragraph\">Cheat services operate in a legal grey area. They violate games&#8217; terms of service but are not outright illegal in most jurisdictions. This means their operators face no regulatory obligations to protect user data, often remain anonymous, and can disappear without consequence when things go wrong. Users who hand over their personal information and payment details to these services have essentially no recourse if a breach occurs.<\/p>\n\n<p class=\"wp-block-paragraph\">The Atlas Menu incident is not an isolated case. A popular Counter-Strike: Global Offensive cheat service was breached in a similar fashion several years ago. The broader GTA ecosystem has also seen repeated security incidents, from the premature leak of the GTA 6 trailer in 2023 to extortion group ShinyHunters claiming access to Rockstar data through a cloud cost-monitoring platform. Take-Two Interactive has also pursued legal action against mod menu developers, forcing several to shut down in recent years.<\/p>\n\n<h2 class=\"wp-block-heading\">The Spyware Allegation Adds Another Dimension<\/h2>\n\n<p class=\"wp-block-paragraph\">The attacker&#8217;s claim that Atlas Menu could capture screenshots without user consent, if substantiated, shifts the narrative from a simple data breach to something more serious. It would mean users who installed the software gave an unknown third party the ability to monitor their screen activity. For a service that required kernel-level access to bypass BattlEye, this level of system access would have been technically feasible. Users who ran Atlas Menu on systems where they also accessed banking, social media, or other sensitive accounts could face exposure beyond their gaming activity.<\/p>\n\n<h2 class=\"wp-block-heading\">A Pattern of Risk in the Cheating Ecosystem<\/h2>\n\n<p class=\"wp-block-paragraph\">This breach sits within a larger pattern. When Rockstar introduced BattlEye in September 2024, it raised the barrier for free cheating tools significantly. Kiddion&#8217;s Modest Menu, one of the most popular free mod menus, effectively ceased development. Hardware bans made it harder for cheaters to simply buy a new copy of the game and start over. But this crackdown also pushed demand toward paid services like Atlas Menu that promised BattlEye bypass capability, concentrating users on platforms that required personal data and payment information to operate.<\/p>\n\n<p class=\"wp-block-paragraph\">The result is a community of users who traded their personal information for cheat access, trusting anonymous operators with no accountability. The Atlas Menu breach is what happens when that trust breaks down. Nearly 64,000 people who signed up to gain unfair advantages in a video game now have their personal information sitting in a public repository.<\/p>\n\n<h2 class=\"wp-block-heading\">Key Takeaways<\/h2>\n\n<p class=\"wp-block-paragraph\">The Atlas Menu breach is a concrete reminder that cheat services are not just an ethical problem; they are a personal security risk. When you hand data to an unregulated, anonymous service, you accept that your information could end up anywhere. The 64,000 users affected by this breach are now left to clean up the consequences on their own, while Atlas Menu remains offline and silent.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Atlas Menu, a paid cheat service for GTA Online and CS2, suffered a major data breach in May 2026. Nearly 64,000 users had their personal data publicly dumped on GitHub, including emails, IPs, passwords, and Rockstar Social Club usernames.<\/p>\n","protected":false},"author":5,"featured_media":4927,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[285],"tags":[],"class_list":["post-4926","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-gaming-news"],"_links":{"self":[{"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/posts\/4926","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/comments?post=4926"}],"version-history":[{"count":1,"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/posts\/4926\/revisions"}],"predecessor-version":[{"id":4928,"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/posts\/4926\/revisions\/4928"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/media\/4927"}],"wp:attachment":[{"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/media?parent=4926"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/categories?post=4926"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.gamermarkt.com\/blog\/wp-json\/wp\/v2\/tags?post=4926"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}