Discord has disclosed a knowledge breach that compromised the private info and identification paperwork of a restricted variety of customers. The incident was traced again to a safety breach at Zendesk, a third-party firm offering buyer assist providers for the platform.
In a statement printed on October 3, 2025, Discord reported that an unauthorized actor gained entry to its buyer assist ticket system, the place confidential person knowledge was saved. Based on HackRead, the corporate clarified that its foremost infrastructure remained safe and that the attackers’ main motive gave the impression to be monetary extortion.
What Data Was Affected
The breach impacted customers who had beforehand interacted with Discord’s Assist or Belief & Security groups. The uncovered knowledge consists of:
-
Full names, usernames, and e mail addresses
-
Messages exchanged with assist brokers
-
Restricted billing info, resembling cost strategies and the final 4 digits of cost playing cards
-
Identification paperwork like driver’s licenses and passports used for age verification
The inclusion of official ID paperwork among the many stolen recordsdata will increase the potential threat of identification theft. Discord has not disclosed what number of customers have been affected however confirmed that every one impacted people have been notified by way of e mail from noreply@discord.com.
There isn’t any info but on who was answerable for the assault or how lengthy the unauthorized entry lasted. Upon discovering the breach, Discord instantly revoked Zendesk’s entry to inner techniques, launched a forensic investigation with cybersecurity consultants, and alerted related knowledge safety authorities. The corporate pressured that passwords, personal messages, and full bank card particulars weren’t compromised however suggested customers to remain alert for phishing or suspicious communications.
Hacker Group Claims Duty
Though Discord has not formally recognized the perpetrators, a hacker coalition calling itself Scattered LAPSUS$ Hunters has taken credit score for the assault. The group, reportedly a merger of members from Scattered Spider, Lapsus$, and ShinyHunters, shared screenshots on Telegram allegedly exhibiting entry to Discord’s inner administrative and knowledge privateness panels.
Of their posts, the hackers mocked Discord’s safety measures, together with its use of Okta and Kolide for entry administration. In addition they claimed to own further undisclosed info and threatened to launch it on their “Information Leak Website” (DLS), a platform used for publishing or promoting stolen knowledge.
Discord reminded customers to be cautious of potential scams exploiting the breach and reiterated that the corporate won’t contact anybody by telephone relating to this problem.
Trending Merchandise
H602 Gaming ATX PC Case, Mid-Tower ...
Dell SE2422HX Monitor – 24 in...
NETGEAR 4-Stream WiFi 6 Router (R67...
AOC 22B2HM2 22″ Full HD (1920...
Logitech Wave Keys MK670 Combo, Wi-...
SAMSUNG 34″ ViewFinity S50GC ...
ASUS RT-AX55 AX1800 Twin Band WiFi ...
Sceptre 22 inch 75Hz 1080P LED Moni...
NETGEAR Nighthawk Professional Gami...
