{"id":6396,"date":"2025-10-06T20:05:40","date_gmt":"2025-10-07T01:05:40","guid":{"rendered":"https:\/\/avadeja.com\/?p=6396"},"modified":"2025-10-06T20:09:26","modified_gmt":"2025-10-07T01:09:26","slug":"discord-users-data-compromised-in-third-party-customer-support-breach","status":"publish","type":"post","link":"https:\/\/avadeja.com\/?p=6396","title":{"rendered":"Discord Users\u2019 Data Compromised in Third-Party Customer Support Breach"},"content":{"rendered":"\n<h4 class=\"wp-block-heading\">What to expect from this article:<\/h4>\n\n\n\n<ul class=\"wp-block-list\">\n<li>How a third-party data breach exposed Discord users\u2019 personal information<\/li>\n\n\n\n<li>What kind of data was compromised and who is behind the attack<\/li>\n\n\n\n<li>Discord\u2019s official response and safety advice for users<\/li>\n\n\n\n<li>Broader lessons about supply-chain and vendor security risks for all organizations<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A recent cybersecurity incident has affected users of Discord, the popular online communication platform used by millions worldwide. The company confirmed that attackers gained access to data from a third-party customer service provider, not Discord\u2019s internal systems, and later attempted to demand a ransom from the company.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">According to Discord, the breach occurred on September 20, 2025, when hackers infiltrated a customer support vendor believed to be Zendesk, which handles a portion of Discord\u2019s help desk and trust &amp; safety communications.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">As a result, data belonging to users who had contacted Discord\u2019s support or moderation teams was exposed. The compromised information includes:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Names, usernames, email addresses, and any contact details submitted through support tickets<\/li>\n\n\n\n<li>Partial billing data such as payment type, the last four digits of payment cards, and limited purchase history<\/li>\n\n\n\n<li>IP addresses used during support interactions<\/li>\n\n\n\n<li>Messages exchanged with Discord\u2019s customer service staff<\/li>\n\n\n\n<li>Internal materials such as training files or presentation documents<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In a small number of cases, government-issued identification documents \u2014 including driver\u2019s licenses and passports \u2014 were also accessed.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A hacker group calling itself Scattered Lapsus$ Hunters (SLH) has claimed responsibility for the intrusion. The group published screenshots on Telegram showing what appeared to be Discord\u2019s administrative interfaces and boasted about gaining unauthorized access.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Discord stated that the exposure does not include users\u2019 passwords, complete credit card numbers, or private messages sent through Discord\u2019s main platform. The affected data is limited to what users voluntarily shared with customer support. Still, the nature of this data \u2014 often sensitive by design \u2014 poses real risks if exploited by cybercriminals.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The company has started reaching out to potentially affected individuals via official email communication only from <strong>noreply@discord.com<\/strong>. Users are being urged to ignore calls or messages that claim to be from Discord regarding the breach, as scammers often use such incidents to launch phishing or impersonation campaigns.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In response, Discord has cut off the breached vendor\u2019s system access, hired external cybersecurity experts to investigate, and notified law enforcement.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This event serves as a reminder that even well-secured organizations can be compromised indirectly through their partners. A company\u2019s security posture is only as strong as its supply chain \u2014 and third-party service providers often hold valuable customer data that can become an easy target for attackers.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This isn\u2019t Discord\u2019s first experience with such an issue. In 2023, another vendor-related incident exposed user emails and attachments from support tickets, highlighting the recurring challenge of vendor security management in the digital age.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For businesses, this case underscores the need for strong third-party risk assessments, continuous vendor monitoring, and clear data-sharing policies. As outsourcing and cloud services expand, so does the attack surface \u2014 making security collaboration between organizations and their vendors more important than ever.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>Source:<\/strong> <a href=\"https:\/\/www.bitdefender.com\/en-us\/blog\/hotforsecurity\/discord-users-data-stolen-by-hackers-in-third-party-data-breach\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Bitdefender Hot for Security \u2013 Discord Users\u2019 Data Stolen by Hackers in Third-Party Data Breach<\/a><\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Discord has confirmed a third-party breach that exposed sensitive data from users who contacted its support team. Hackers, claiming to be Scattered Lapsus$ Hunters, accessed customer details and limited billing information. The case highlights growing cybersecurity risks associated with third-party service providers and emphasizes the importance of vendor security reviews.<\/p>\n","protected":false},"author":241989375,"featured_media":6399,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"jetpack_seo_schema_type":"","_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_wpcom_ai_launchpad_first_post":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_post_was_ever_published":false},"categories":[1,283,236],"tags":[249,166,180,296,332,334,328,330,333,331,329],"class_list":["post-6396","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","category-cybersecurity-awareness","category-data-breach","tag-bitdefender","tag-cyberattack","tag-cybercrime","tag-data-breach","tag-discord","tag-information-security","tag-privacy-breach","tag-scatteredlapsushunters","tag-third-party-risk","tag-vendor-security","tag-zendesk"],"jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pffnnA-1Fa","jetpack_featured_media_url":"https:\/\/i0.wp.com\/avadeja.com\/wp-content\/uploads\/2025\/10\/image.png?fit=1024%2C768&ssl=1","_links":{"self":[{"href":"https:\/\/avadeja.com\/index.php?rest_route=\/wp\/v2\/posts\/6396","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/avadeja.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/avadeja.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/avadeja.com\/index.php?rest_route=\/wp\/v2\/users\/241989375"}],"replies":[{"embeddable":true,"href":"https:\/\/avadeja.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=6396"}],"version-history":[{"count":5,"href":"https:\/\/avadeja.com\/index.php?rest_route=\/wp\/v2\/posts\/6396\/revisions"}],"predecessor-version":[{"id":6403,"href":"https:\/\/avadeja.com\/index.php?rest_route=\/wp\/v2\/posts\/6396\/revisions\/6403"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/avadeja.com\/index.php?rest_route=\/wp\/v2\/media\/6399"}],"wp:attachment":[{"href":"https:\/\/avadeja.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=6396"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/avadeja.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=6396"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/avadeja.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=6396"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}