Automatically translated.View original post

Discord accepted the leak. No password dropped. 🚨

Discord confirmed that some user data was leaked on September 20, but it was clear that its passwords, main account data, and server chat were still 100% secure. This incident was not directly hacked by Discord's own system, but by an "external customer support provider" used by the company. It was reported that a hacker group called Scattered Lapsus $Hunters (SLH) claimed to be behind the attack and also tried to ransom the company.

.

The information accessed contains only the real name, email, IP address, and some payment information, such as the type of payment with the last four credit card digits, as well as messages that the user used to contact customer service, but no password or important personal information has been dropped. Some users who have sent identity documents, such as ID cards, driver's licenses, or passports, to appeal for age confirmation may also be affected, but Discord confirms that there are not many and will receive direct email from the company.

.

After the incident, Discord immediately shut down the hacked carrier's access, notified cybersecurity officials to investigate it, and began a joint investigation with security experts, while upgrading the Threat Detection System to prevent this from happening in the future.

.

Discord reiterated that contacting affected users will only be made through official email noreply@discord.com and that no direct contact phone calls will be made, warning users to beware of strange emails or messages that may be crooks impersonating the company's name.

.

Although Discord's core systems are not affected, this event is another important lesson that underscores how good the security system is, and if someone works with us, there may be loopholes from others. No matter how secure the core system is, if an external partner or provider is vulnerable, the entire system can be penetrated.

.

Source: techspot

# IT should know # IT News # Includes IT matters # IT

2025/10/17 Edited to

... Read moreหลายคนเห็นคำว่า “หลุด Discord/discord หลุด” แล้วตกใจว่ารหัสผ่านกับแชทจะหลุดไปหมดไหม จากที่ตามข่าวและอ่านรายละเอียด เคสนี้ Discord ออกมายืนยันว่าเหตุเกิดจากผู้ให้บริการฝ่ายสนับสนุนลูกค้าภายนอกถูกโจมตี ไม่ใช่ระบบหลักของ Discord โดนเจาะโดยตรง และที่สำคัญคือ “รหัสผ่านไม่หลุด” รวมถึงข้อมูลบัญชีหลักและแชทในเซิร์ฟเวอร์ยังปลอดภัยอยู่ แล้ว “มีอะไรหลุดบ้าง” ที่ควรรู้เพื่อประเมินความเสี่ยง? ข้อมูลที่ถูกเข้าถึงจะเป็นแนว ๆ ข้อมูลระบุตัวตนพื้นฐาน เช่น ชื่อจริง อีเมล ที่อยู่ IP และข้อมูลการชำระเงินบางส่วน (เช่น ประเภทการจ่ายเงิน + เลขบัตร 4 หลักท้าย) รวมถึงข้อความที่เคยคุยกับฝ่ายบริการลูกค้า ถ้าคุณเคยส่งเอกสารยืนยันตัวตนเพื่ออุทธรณ์/ยืนยันอายุ (บัตรประชาชน ใบขับขี่ พาสปอร์ต) ก็อาจได้รับผลกระทบได้ แม้ Discord จะบอกว่ามีจำนวนไม่มากและจะส่งอีเมลแจ้งโดยตรง สิ่งที่ฉันแนะนำให้ทำทันที (แม้รหัสผ่านไม่หลุดก็เถอะ) คือ 1) เปลี่ยนรหัสผ่าน Discord เป็นรหัสใหม่ที่ไม่ซ้ำเว็บอื่น เผื่อคุณเคยใช้รหัสเดียวกันหลายที่ 2) เปิด 2FA (ยืนยันตัวตนสองชั้น) เพื่อกันการล็อกอินแปลก ๆ 3) เช็กอุปกรณ์/เซสชันที่ล็อกอินอยู่ แล้วกดออกจากระบบอุปกรณ์ที่ไม่รู้จัก 4) ถ้าใช้การ์ดจ่ายเงิน/ผูกวิธีชำระเงินไว้ ให้คอยดูรายการธุรกรรม และตั้งแจ้งเตือนผ่านแอปธนาคาร อีกจุดที่ต้องระวังคือมิจฉาชีพจะอาศัยกระแส “หลุดdiscord” ส่งอีเมลหรือ DM มาหลอกให้กดลิงก์รีเซ็ตรหัสผ่าน/ยืนยันบัญชี ฉันยึดหลักง่าย ๆ คือ Discord บอกว่าจะติดต่อผ่านอีเมลทางการ noreply@discord.com เท่านั้น และจะไม่โทรหาโดยตรง ถ้าเจออีเมลเร่ง ๆ ให้ทำด่วน ข่มขู่ หรือให้ล็อกอินผ่านลิงก์แปลก ๆ ให้สงสัยไว้ก่อน ส่วนคนที่ค้นหาเรื่อง “สัญลักษณ์ Discord” ถ้าหมายถึงโลโก้/ไอคอน (รูปหน้ากากเกมแพดสีม่วง) หรือสัญลักษณ์เตือนภัยที่เห็นในโพสต์ข่าว ให้แยกให้ออกว่า “โลโก้จริง” กับ “กราฟิกประกอบข่าว” นะ เพราะหลายภาพจะใส่ไอคอนแฮกเกอร์/สัญญาณเตือนเพื่อสื่อว่าเกิดเหตุ ไม่ได้แปลว่าระบบหลักโดนเจาะเสมอไป สุดท้าย ต่อให้ Discord ยืนยันว่าระบบหลักปลอดภัย เหตุการณ์แบบนี้เป็นบทเรียนว่าความเสี่ยงอาจมาจากพาร์ทเนอร์ภายนอกได้เหมือนกัน ใครใช้ Discord บ่อย ๆ แนะนำให้ตั้ง 2FA + ไม่กดลิงก์สุ่ม ๆ เป็นนิสัย จะช่วยลดโอกาสโดนหลอกในช่วงกระแสข่าวได้มาก