- Take-Two filed a new DMCA subpoena asking X to reveal who runs the account @cyberleek_ar_io.
- The publisher also wants Google to unmask channels tied to the leaked GTA VI footage.
- Some named accounts may be impostors, and all of them are now suspended.

Take-Two Interactive is pushing harder to find the people behind the Grand Theft Auto VI leaks. The company filed a new DMCA subpoena against X. It wants the platform to hand over information linked to the account @cyberleek_ar_io.
Rockstar Games reporter Ben, who goes by Videotech, shared the news first on X. He said Take-Two’s lawyers had filed the request in a New York federal court. The goal is to learn who runs @cyberleek_ar_io.
Take-Two Names More Accounts in Fresh Court Filings
According to GTA BOOM, Take-Two sent fresh DMCA subpoenas to both X and Google. The outlet reported that the filings name three accounts. These are CyberLeeks, Surfer24k, and CyberLeek_ar_io.
The subpoena sent to X asks for a lot of details. It wants account IDs and sign-up information. It also wants IP logs, phone numbers, linked accounts, and device data. The request reportedly covers activity from June 1 onward.
Take-Two’s request to Google points at a specific YouTube video too. Per GTA BOOM, this shows the case has moved from a broad search to a direct demand. The company now wants answers about exact accounts, not general activity nearby.
This move follows earlier action against Microsoft and Discord. Take-Two had already asked those two platforms for user data. That data was tied to accounts believed to be spreading leaked GTA VI content.
Are the Named Accounts Really Linked to the Leaker?
The new filings raise a real question. Does @cyberleek_ar_io actually belong to the person or group behind the leaks?
The answer may not be simple. Reporting from TorrentFreak points out that GTA fans had already flagged several CyberLeek-named accounts. Community members believed these accounts were impostors, not the real source.
There is more proof to back this up. The original CyberLeek leaker reportedly placed a watermark on leaked clips. According to TorrentFreak, that watermark stated the real CyberLeek does not use Twitter at all. All the X accounts named in the new subpoena have since been suspended.
This detail matters a lot. A subpoena targeting an X account does not automatically prove that account belongs to the original leaker. It only shows that account posted or shared material connected to the leak. Take-Two appears to be tracing every trail tied to the leaked footage, not just the main source.
Community reaction has been mixed since the news broke. Some fans doubt the probe will reveal much. They argue a careful leaker would never link their real identity to a public account. Other users question whether the targeted account is even genuine at all.
The Leak Investigation Keeps Expanding Across Platforms
Whether or not @cyberleek_ar_io leads Take-Two to the real leaker, one thing is clear. The company is chasing this case across many platforms at once.
Take-Two first targeted Microsoft and Discord using separate DMCA subpoenas. Those requests aimed to identify users tied to spreading or discussing the leaked GTA VI material. Coverage from PC Gamer and The Verge documented those earlier efforts in detail.
Now Take-Two has added X and Google to its list. This shows the investigation keeps growing wider as time passes. The publisher seems determined to trace every account connected to the leak.
Each new subpoena adds pressure on platforms to respond quickly. Companies that host user content often face legal deadlines once a subpoena lands. That means X and Google may need to respond within weeks.
For now, no one knows if these efforts will name the true leaker. Suspended accounts make tracing harder, since activity records may already be limited. Still, Take-Two shows no sign of slowing its search.
The case highlights how seriously game publishers treat major leaks today. Legal teams are willing to pursue subpoenas across several companies at once. As the investigation continues, more platforms could be pulled into the case.
In April 2026, a ransomware group claimed to have stolen 200GB of NSW government data, but officials disputed the claim. A leaked document exposed details of 250 people, who were notified and offered support.