Double Counter breach exposes data tied to millions of users
Double Counter, a third-party security service used by Discord communities, disclosed a breach in which attackers accessed its systems and exposed data associated with millions of users. The company said the intrusion began October 4 through an old server and that it is treating about 28 million Discord IDs and usernames and about 27 million IP address and location records as exposed. The incident does not establish that Discord’s own systems were compromised. According to Double Counter’s incident report, the attackers exploited a publicly reachable analytics tool on a legacy server to obtain cloud credentials and reach production systems. They copied database records and obtained a token used by the bot. The stolen token was then used to post invitations in about 50 Discord servers, according to accounts based on the company’s report. Double Counter also reported that roughly one million email addresses were affected. A separate listing by Have I Been Pwned contains about 275,000 unique email addresses in publicly released data. The figures refer to different reported datasets, and the available information does not reconcile them into a single total.