• Home
  • News
  • Fortune 500
  • Tech
  • Finance
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
RetailCybersecurity

GameStop Is Investigating a Possible Credit Card Security Breach on Its Website

Aric Jenkins
By
Aric Jenkins
Aric Jenkins
Aric Jenkins
By
Aric Jenkins
Aric Jenkins
April 7, 2017, 2:38 PM ET
Inside A GameStop Corp. Store Ahead Of Earnings Figures
Customers shop for video games at a GameStop Corp. store in West Hollywood, California, U.S., on Sunday, May 22, 2016. GameStop Corp. is scheduled to release earnings figures on May 26. Photographer: Patrick T. Fallon/Bloomberg via Getty ImagesPatrick T. Fallon —Bloomberg via Getty Images

GameStop is investigating a potential security breach on its website involving customer data and credit cards.

“GameStop recently received notification from a third party that it believed payment card data from cards used on the GameStop.com website was being offered for sale on a website,” a company spokesperson wrote in an email to Fortune.

“That day a leading security firm was engaged to investigate these claims,” the statement continued. “GameStop has and will continue to work non-stop to address this report and take appropriate measures to eradicate any issue that may be identified.”

The breached data could include customer card numbers, expiration dates, names, addresses, and the three-digit card verification values (CVV2) typically found on the back of credit cards, according to sources who spoke to cybersecurity website Krebs on Security.

Krebs on Security reports that they had received alerts from a credit card processor saying that GameStop’s website was potentially comprised between September 2016 and February 2017. There is no indication that GameStop’s retail locations were affected, according to Krebs.

“We regret any concern this situation may cause for our customers,” the company added in its statement. “GameStop would like to remind its customers that it is always advisable to monitor payment card account statements for unauthorized charges. If you identify such a charge, report it immediately to the bank that issued the card because payment card network rules generally state that cardholders are not responsible for unauthorized charges that are timely reported.”

About the Author
Aric Jenkins
By Aric Jenkins
See full bioRight Arrow Button Icon
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Fortune Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Fortune
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map

© 2025 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.