
KUALA LUMPUR: Following the official launch of GTA VI pre-orders on June 25, threat actors quickly began using the event as a lure, security experts have warned.
According to cybersecurity company Kaspersky, scammers are leveraging heightened demand to deploy deceptive tactics ranging from fake pre-order pages to fraudulent video tutorials.
Kaspersky researchers have highlighted the key methods used by attackers and issued guidance on how players can protect themselves.
Fraudsters have been setting up sophisticated websites that closely replicate the visual style and branding of the official game. These pages feature genuine trailers and promotional artwork, offering users the option to pre-order the title for various consoles.
After clicking “Pre-order now,” users are prompted to enter their personal details and payment information to complete the purchase.
However, no game is ever delivered. Instead, victims risk having their bank accounts drained and their personal data compromised.
Kaspersky experts have detected these fraudulent pages in multiple languages, indicating that scammers are actively targeting players globally.
In one notable example, a Portuguese-language website was found impersonating the official PlayStation storefront. To create an illusion of legitimacy, the attackers populated the page with fabricated five-star reviews, an age rating, and a displayed pre-order price.
Upon clicking the pre-order button, users are redirected to a registration form requesting their name, email address, phone number, and CPF (a Brazilian individual taxpayer identification number).
From there, the victim is asked to enter bank card details or choose an alternative payment method. Once the transaction is completed, both the user’s personal data and financial credentials are left entirely in the hands of the attackers.
Malicious activity is also relying on a coordinated, multi-channel approach to broaden its reach.
In one case, a suspicious website was identified offering a supposed “beta” version of the game for download, framing it as an exclusive leak. The website was promoted across video platforms and social media, where numerous accounts shared videos purportedly showing how to download the file “safely”.
To further reinforce credibility, comments posted alongside the content claimed the download was genuine.
However, once launched, the file can compromise the user’s device. This can potentially lead to the theft of sensitive data, unauthorised access to personal accounts, or the installation of background malware.
Cryptocurrency users are also being targeted through low-reputation websites. Investigators identified a site promoting a crypto token with a name resembling the game’s title, using official logos to create a false association. Experts warn that engaging with these sites carries a high risk of losing crypto assets.
Olga Altukhova, senior web content analyst at Kaspersky, said highly anticipated game releases have long presented significant opportunities for cybercriminals.
“These schemes are carefully timed to capitalise on heightened consumer excitement,” Altukhova said.
“Attackers understand that periods of intense anticipation can lower users’ guard and create a false sense of urgency.
“We strongly recommend that users complete purchases exclusively through official platforms and refrain from following links shared by unverified sources.”
To enjoy new game releases safely, users are advised to:
- Only install games and modifications from official sources or reputable digital storefronts. Unofficial sources frequently bundle malware.
- Check URL formats and organisation name spellings carefully before entering any personal data.
- Consider using prepaid cards or a dedicated payment service for gaming purchases to avoid exposing primary credit card or bank account details.
- Use a reliable security solution that identifies malicious attachments and blocks phishing links.
- Activate two-factor authentication (2FA) on gaming IDs and financial apps, and regularly review bank statements for unauthorised activity.





