Close Menu
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone

June 26, 2026

The Security Coverage Gap is a Math Problem

June 26, 2026

China-Linked Hackers Strike Asian CNI with New Backdoor

June 26, 2026
Facebook X (Twitter) Instagram
Friday, June 26
Facebook X (Twitter) Instagram Pinterest Vimeo
Cyberwire Daily
  • Home
  • News
  • Cyber Security
  • Internet of Things
  • Tips and Advice
Cyberwire Daily
Home»News»Discord Reveals Data Breach Following Third-Party Compromise
News

Discord Reveals Data Breach Following Third-Party Compromise

Team-CWDBy Team-CWDOctober 11, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Discord has revealed it has been targeted by a ransomware actor who has accessed customer data, including proof of age ID and billing information.

The incident was caused by the compromise of a third-party customer service provider, which has not been named.

“An unauthorized party targeted our third-party customer support services to access user data, with a view to extort a financial ransom from Discord,” the social platform wrote in a post on October 3.

The data breach impacts a limited number of customers who had contacted Discord through its customer support and/or trust and safety teams.

Information potentially compromised includes customer names, Discord account usernames, email and other contact details.

Limited billing details, such as payment type and the last four digits of credit cards were also impacted.

Other potentially affected data includes user IP addresses, messages exchanged with customer service agents and a small number of government ID images from users who had appealed an age determination.

Corporate data, such as training materials and internal presentations were accessed by the hackers.

The company is in the process of contacting impacted users via email from noreply@discord.com. It has told customers that no other communication channels will be used for this purpose, such as phone calls.

No figure has been given on the total number of users impacted by the breach. Discord has more than 200 million active users per month globally.

Discord said that full credit card numbers or CVV codes were not included in the data accessed. No password or authentication data was compromised.

Additionally, no messages or activity on Discord outside of communication with customer support were obtained by the attackers.

Law enforcement and relevant data protection authorities have been notified about the incident.

Another High-Profile Third-Party Attack

Discord said it took immediate action to mitigate the attack upon detection, including revoking the customer support provider’s access to its ticketing system.

The platform added that it has reviewed its security controls for third-party support providers.

Jake Moore, global cybersecurity advisor at ESET, commented: “This is a worrying breach, especially as it seems to have come through a trusted third-party rather than Discord itself. Third party weaknesses are often harder to monitor and control yet they still hold sensitive information and are becoming an increasingly common target for cybercriminals.”

The Discord incident follows a plethora of data breaches resulting from the compromise of third-party IT service providers in 2025. Groups such as Scattered Spider and ShinyHunters have been linked to a number of these attacks, which use social engineering techniques to obtain credentials of high-profile users.

Image credit: rafastockbr / Shutterstock.com



Source

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleHow to Close Threat Detection Gaps: Your SOC’s Action Plan
Next Article Google Mandiant Probes New Oracle Extortion Wave Possibly Linked to Cl0p Ransomware
Team-CWD
  • Website

Related Posts

News

Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone

June 26, 2026
News

China-Linked Hackers Strike Asian CNI with New Backdoor

June 26, 2026
News

How to Find Hidden Access Risks Inside Your Network

June 26, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest News

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views

Why SOC Burnout Can Be Avoided: Practical Steps

November 14, 20259 Views

Cyber M&A Roundup: Cyber Giants Strengthen AI Security Offerings

December 1, 20258 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Most Popular

North Korean Hackers Turn JSON Services into Covert Malware Delivery Channels

November 24, 202522 Views

macOS Stealer Campaign Uses “Cracked” App Lures to Bypass Apple Securi

September 7, 202517 Views

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 29, 202610 Views
Our Picks

What parents should know to protect their children from doxxing

November 28, 2025

What it takes to fool facial recognition

March 14, 2026

How chatbots can help spread scams

October 14, 2025

Subscribe to Updates

Get the latest news from cyberwiredaily.com

Facebook X (Twitter) Instagram Pinterest
  • Home
  • Contact
  • Privacy Policy
  • Terms of Use
  • California Consumer Privacy Act (CCPA)
© 2026 All rights reserved.

Type above and press Enter to search. Press Esc to cancel.