Discord has disclosed a knowledge breach that compromised the non-public data and identification paperwork of a restricted variety of customers. The incident was traced again to a safety breach at Zendesk, a third-party firm offering buyer help providers for the platform.
In a statement printed on October 3, 2025, Discord reported that an unauthorized actor gained entry to its buyer help ticket system, the place confidential consumer knowledge was saved. In accordance with HackRead, the corporate clarified that its predominant infrastructure remained safe and that the attackers’ main motive seemed to be monetary extortion.
What Data Was Affected
The breach impacted customers who had beforehand interacted with Discord’s Help or Belief & Security groups. The uncovered knowledge contains:
-
Full names, usernames, and electronic mail addresses
-
Messages exchanged with help brokers
-
Restricted billing data, resembling fee strategies and the final 4 digits of fee playing cards
-
Identification paperwork like driver’s licenses and passports used for age verification
The inclusion of official ID paperwork among the many stolen recordsdata will increase the potential danger of id theft. Discord has not disclosed what number of customers had been affected however confirmed that every one impacted people have been notified through electronic mail from noreply@discord.com.
There isn’t a data but on who was accountable for the assault or how lengthy the unauthorized entry lasted. Upon discovering the breach, Discord instantly revoked Zendesk’s entry to inside methods, launched a forensic investigation with cybersecurity consultants, and alerted related knowledge safety authorities. The corporate confused that passwords, non-public messages, and full bank card particulars weren’t compromised however suggested customers to remain alert for phishing or suspicious communications.
Hacker Group Claims Accountability
Though Discord has not formally recognized the perpetrators, a hacker coalition calling itself Scattered LAPSUS$ Hunters has taken credit score for the assault. The group, reportedly a merger of members from Scattered Spider, Lapsus$, and ShinyHunters, shared screenshots on Telegram allegedly displaying entry to Discord’s inside administrative and knowledge privateness panels.
Of their posts, the hackers mocked Discord’s safety measures, together with its use of Okta and Kolide for entry administration. Additionally they claimed to own further undisclosed data and threatened to launch it on their “Information Leak Website” (DLS), a platform used for publishing or promoting stolen knowledge.
Discord reminded customers to be cautious of potential scams exploiting the breach and reiterated that the corporate is not going to contact anybody by cellphone relating to this challenge.
Trending Merchandise
NZXT H5 Stream Compact ATX Mid-Towe...
MATX PC Case, 6 ARGB Followers Pre-...
LG UltraWide QHD 34-Inch Pc Monitor...
Acer Aspire 1 A115-32-C96U Slim Lap...
Dell Inspiron 15 3520 15.6″ F...
Wi-fi Keyboard and Mouse Combo R...
ASUS RT-AX88U PRO AX6000 Dual Band ...
Logitech MK270 Wi-fi Keyboard And M...
Wired Keyboard and Mouse Combo, EDJ...
