Discord has disclosed an information breach that compromised the non-public info and identification paperwork of a restricted variety of customers. The incident was traced again to a safety breach at Zendesk, a third-party firm offering buyer assist companies for the platform.
In a statement revealed on October 3, 2025, Discord reported that an unauthorized actor gained entry to its buyer assist ticket system, the place confidential person information was saved. In accordance with HackRead, the corporate clarified that its most important infrastructure remained safe and that the attackers’ major motive gave the impression to be monetary extortion.
What Info Was Affected
The breach impacted customers who had beforehand interacted with Discord’s Help or Belief & Security groups. The uncovered information consists of:
-
Full names, usernames, and electronic mail addresses
-
Messages exchanged with assist brokers
-
Restricted billing info, comparable to fee strategies and the final 4 digits of fee playing cards
-
Identification paperwork like driver’s licenses and passports used for age verification
The inclusion of official ID paperwork among the many stolen recordsdata will increase the potential threat of identification theft. Discord has not disclosed what number of customers had been affected however confirmed that every one impacted people have been notified by way of electronic mail from noreply@discord.com.
There isn’t a info but on who was chargeable for the assault or how lengthy the unauthorized entry lasted. Upon discovering the breach, Discord instantly revoked Zendesk’s entry to inner methods, launched a forensic investigation with cybersecurity consultants, and alerted related information safety authorities. The corporate harassed that passwords, non-public messages, and full bank card particulars weren’t compromised however suggested customers to remain alert for phishing or suspicious communications.
Hacker Group Claims Duty
Though Discord has not formally recognized the perpetrators, a hacker coalition calling itself Scattered LAPSUS$ Hunters has taken credit score for the assault. The group, reportedly a merger of members from Scattered Spider, Lapsus$, and ShinyHunters, shared screenshots on Telegram allegedly exhibiting entry to Discord’s inner administrative and information privateness panels.
Of their posts, the hackers mocked Discord’s safety measures, together with its use of Okta and Kolide for entry administration. Additionally they claimed to own extra undisclosed info and threatened to launch it on their “Information Leak Website” (DLS), a platform used for publishing or promoting stolen information.
Discord reminded customers to be cautious of potential scams exploiting the breach and reiterated that the corporate won’t contact anybody by telephone relating to this problem.
Trending Merchandise
Antec C8, Fans not Included, RTX 40...
Logitech MK120 Wired Keyboard and M...
Cudy TR3000 Pocket-Sized Wi-Fi 6 Wi...
RedThunder K10 Wireless Gaming Keyb...
ASUS 22” (21.45” viewable) 1080...
SAMSUNG 32″ Odyssey G55C Seri...
ASUS VA24DQ 23.8” Monitor, 1080P ...
Thermaltake View 200 TG ARGB Mother...
ASUS 24 Inch Desktop Monitor –...
