A major security bot hack has leaked 28 million Discord accounts after hackers exploited an outdated parent server.
A massive cybersecurity breach is shaking up the gaming world. In a shocking twist, the very tool built to keep communities safe has just become the ultimate gateway for hackers. Millions of gamers and community members are waking up to the reality that their private information might be in the hands of cybercriminals, all because a vital piece of security infrastructure was left running on a completely outdated, unmaintained server.
When a Security Bot Becomes the Threat
The popular Discord bot Double Counter was supposed to protect servers from trolls and alternative accounts. Instead, it fell victim to a devastating hijack: an attacker infiltrated the system and siphoned 12 GB of data in just 25 minutes. The fallout is unprecedented, exposing private details tied to roughly 28 million Discord accounts. The stolen database contains usernames, IP addresses, approximate locations, and around one million plain-text email addresses.
The hacker's method was incredibly brazen. They exploited a known security flaw on an old, forgotten server owned by the third-party provider, Tellter. That server held the master keys to the live system, allowing the intruder to intercept new credentials even after the staff rushed to change passwords mid-attack.
According to reporting on the Double Counter incident, the attacker also used compromised credentials to fraudulently charge a company card $7,316 and hit two customer accounts. Discord clarified that its core systems were not breached, but it immediately pulled the plug, disabling new installations of the bot while a joint investigation is underway.
Staying Safe
With a massive wave of emails and IP addresses leaked, users face an immediate risk of highly targeted phishing scams and malicious direct messages. If you have been on a server using Double Counter, check your exposure right away.
Head over to the trusted breach-tracking website Have I Been Pwned and plug in your email to see if you are part of the leak. If your data was compromised, change your passwords immediately, turn on Two-Factor Authentication (2FA), and stay highly suspicious of any unexpected links or messages.
