Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Samsung showed me its secret HDR10+ Advanced TV samples – and I’m almost sold

    November 8, 2025

    Starbucks barista’s side hustle brings in $1 million a month

    November 8, 2025

    A new Chinese AI model claims to outperform GPT-5 and Sonnet 4.5 – and it’s free

    November 8, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Hackers claim Discord breach exposed data of 5.5 million users
    Security

    Hackers claim Discord breach exposed data of 5.5 million users

    PineapplesUpdateBy PineapplesUpdateOctober 9, 2025No Comments4 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Hackers claim Discord breach exposed data of 5.5 million users
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Hackers claim Discord breach exposed data of 5.5 million users

    Discord says it won’t pay threat actors who claim to have stolen data from 5.5 million unique users from the company’s Zendesk support system instance, including government IDs and some people’s partial payment information.

    The company is also pushing back on claims that 2.1 million government ID photos were exposed in the breach, saying that about 70,000 users’ government ID photos were exposed.

    While the attackers claim the breach occurred through Discord’s ZenDesk support instance, the company has not confirmed this and only said it involved a third-party service used for customer support.

    “First of all, as stated in our blog post, this was not a breach of Discord, but rather a third-party service we use to support our customer service efforts,” Discord told BleepingComputer in a statement.

    “Second, the numbers being shared are false and are part of an effort to extort payments from Discord. Of the affected accounts globally, we have identified approximately 70,000 users who may have had government-ID photos exposed, which our vendors used to review age-related appeals.”

    “Third, we will not reward those responsible for their illegal actions.”

    In conversations with the hackers, BleepingComputer was told that Discord was not being transparent about the severity of the breach, adding that they stole 1.6 TB of data from the company’s Zendesk instance.

    According to the threat actor, they gained access to the Zendesk instance of Discord for 58 hours starting on September 20, 2025. However, the attackers say the breach did not stem from a Zendesk vulnerability or breach, but from a compromised account belonging to a support agent employed through an outsourced business process outsourcing (BPO) provider used by Discord.

    Since many companies have outsourced their support and IT help desks to BPOs, they have become a popular target for attackers looking to gain access to downstream customer environments.

    The hackers allege that Discord’s internal ZenDesk instance gave them access to a support application, known as ZenBar, that allowed them to perform various support-related tasks, such as disabling multi-factor authentication and viewing users’ phone numbers and email addresses.

    Using access to Discord’s support platform, the attackers claim to have stolen 1.6 terabytes of data, including approximately 1.5 TB of ticket attachments and over 100 GB of ticket transcripts.

    The hackers say it involved approximately 8.4 million tickets affecting 5.5 million unique users, and included some type of payment information from approximately 580,000 users.

    The threat actors themselves admitted to BleepingComputer that they are unsure how many government IDs were stolen, but they believe it to be more than 70,000, as they say there were approximately 521,000 age-verification stamps.

    The threat actors also shared a sample of the stolen user data, which may include a variety of information, including email addresses, Discord usernames and IDs, phone numbers, partial payment information, dates of birth, multi-factor authentication information, suspicious activity levels, and other internal information.

    Payment information for some users was reportedly retrievable through a Zendesk integration with Discord’s internal systems. These integrations reportedly allowed attackers to make millions of API queries to Discord’s internal database through the Zendesk platform and obtain further information.

    BleepingComputer could not independently verify the hackers’ claims or the authenticity of the data samples provided.

    The hacker said the group demanded $5 million in ransom, later reducing it to $3.5 million, and engaged in private conversations with Discord between September 25 and October 2.

    After Discord ceased communications and released a public statement about the incident, the attackers said they were “extremely angry” and planned to publicly leak the data if the extortion demand was not paid.

    BleepingComputer contacted Discord with additional questions about these claims, including why they retained government IDs after completing age verification, but did not receive a response beyond the above statement.


    PICS BAS Summit

    attend Breach and Attack Simulation Summit and experience future of security verificationHear from top experts and see how AI-powered BAS Changing breach and attack simulations.

    Don’t miss the event that will shape the future of your security strategy

    Breach claim data Discord exposed hackers million users
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleHere’s what it’s really like to appear on billionaire VC Tim Draper’s ‘Meet the Drapers’ pitch show
    Next Article AI saves banks billions of rupees every year
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    Starbucks barista’s side hustle brings in $1 million a month

    November 8, 2025
    Startups

    As OpenAI hits 1 million business customers, could the AI ​​ROI trend finally change?

    November 7, 2025
    Startups

    I found the battery charger to be great, and power users will love its key features

    November 6, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    Samsung showed me its secret HDR10+ Advanced TV samples – and I’m almost sold

    November 8, 2025

    Starbucks barista’s side hustle brings in $1 million a month

    November 8, 2025

    A new Chinese AI model claims to outperform GPT-5 and Sonnet 4.5 – and it’s free

    November 8, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.