Nexus Mods user database may have been breached

Nexus Screengrab

Update: Nexus has now been given the all-clear—the current scare was a result of an old breach, but you should still change your password if your account is older than July 2013.

Original: Change your password if you have an account at Nexus Mods—the situation isn't clear, but there are indications that internet miscreants might have got at the user database.

Overall it sounds like Nexus founder Robin 'Dark0ne' Scott has had a bad weekend. Announcing the incident on the Nexus website, he states that he heard about the potential breach second-hand from a post on Reddit. User AreYouReadyToReddit received a report from higher education cybersecurity firm REN-ISAC that a number of student Nexus Mods accounts had been compromised. The original text is here, but it's not exactly laden with detail. Scott has yet to hear back from REN-ISAC because they don't work weekends. Hurrah.

Though Nexus hasn't been able to confirm a breach, three modders reported that their projects had been changed to include a new .dll file, ostensibly by their own accounts (see update). Far from damning evidence, however, at present it's impossible to say whether this is the result of a new breach, a previous incident like 2014's trojan attack or users recycling passwords from other compromised networks.

The good news is that all Nexus payments are handled through PayPal, so there's no risk to card details.

I'll update this post if new information comes to light, but in the meantime you can change your password here.

Update: Courtesy of Dark0ne, the mods that founds themselves with suspicious dll files were:

  • Higher Settlement Budget (downloads from 5th December)
  • Rename Dogmeat (downloads from 4th December)
  • BetterBuild (downloads from 29th November)
Latest in Gaming Industry
Possibility Space concept art.
Possibility Space owners sue NetEase for $900 million over allegations it spread 'false and defamatory rumors' of fraud at the studio that ultimately forced it to close
Valve soldier man on a pc.
2024 was Steam's 'best year ever' of users buying newly released games—but I wouldn't celebrate the end of the forever game era just yet
Money money money.
Valve tracked 1.7 million Steam users who joined in 2023 to see if they stuck around—they did, and they spent $93 million
Gabe Newell in a Valve promotional video, on a yacht.
Go ahead and complain the discounts aren't as steep as they used to be, but Steam just had its biggest year ever for seasonal sales
Pirate Bay co-founder Carl Lundstrom
Pirate Bay co-founder and far-right politician found dead after plane crash
Flag of Saudi Arabia
Saudi Arabia buys Pokémon GO maker for $3.5 billion with a 'B'
Latest in News
Resident Evil Village - Lady Dimitrescu
'It really truly changed my life in every possible way': Lady Dimitrescu actor says her Resident Evil Village role was just as transformative for her as it was for roughly half the internet in 2021
Storm trooper hero
Another live service shooter is getting shut down, this time before it even launched on Steam
Possibility Space concept art.
Possibility Space owners sue NetEase for $900 million over allegations it spread 'false and defamatory rumors' of fraud at the studio that ultimately forced it to close
Valve soldier man on a pc.
2024 was Steam's 'best year ever' of users buying newly released games—but I wouldn't celebrate the end of the forever game era just yet
Money money money.
Valve tracked 1.7 million Steam users who joined in 2023 to see if they stuck around—they did, and they spent $93 million
Closeup of the new Copilot key coming to Windows 11 PC keyboards
Microsoft co-authored paper suggests the regular use of gen-AI can leave users with a 'diminished skill for independent problem-solving' and at least one AI model seems to agree