lemmy.imagisphe.re
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
☆ Yσɠƚԋσʂ ☆@lemmy.ml to Privacy@lemmy.mlEnglish · 2 days ago

The Discord Hack is Every User’s Worst Nightmare

www.404media.co

external-link
message-square
12
link
fedilink
73
external-link

The Discord Hack is Every User’s Worst Nightmare

www.404media.co

☆ Yσɠƚԋσʂ ☆@lemmy.ml to Privacy@lemmy.mlEnglish · 2 days ago
message-square
12
link
fedilink
A hack impacting Discord’s age verification process shows in stark terms the risk of tech companies collecting users’ ID documents. Now the hackers are posting peoples’ IDs and other sensitive information online.
alert-triangle
You must log in or # to comment.
  • yeehaw@lemmy.ca
    link
    fedilink
    arrow-up
    40
    ·
    2 days ago

    "A catastrophic breach has impacted Discord user data including selfies and identity documents uploaded as part of the app’s verification process, email addresses, phone numbers, approximately where the user lives, and much more. "

    Discord requires selfies now? Lol.

    I tried again recently to make a fake Facebook account since nobody uses other places to buy and sell used shit. Logged in then they asked for a 360 degree video of my head.

    Nope.

    Who are the idiots that do this anyways?

    • YurkshireLad@lemmy.ca
      link
      fedilink
      arrow-up
      22
      ·
      2 days ago

      Facebook wants a 360 of your head? Wtf??

      • Tenderizer78@lemmy.ml
        link
        fedilink
        English
        arrow-up
        4
        ·
        edit-2
        2 days ago

        Shouldn’t your face be enough for Facebook?

        • ohshit604@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          7
          ·
          1 day ago

          How else are they going to train their AI to make stupid images of yourself?

  • floofloof@lemmy.ca
    link
    fedilink
    arrow-up
    28
    ·
    2 days ago

    From Discord’s age verification page, under “Privacy and Data Security”:

    Q: Is my data stored when I use Face Scan or Scan ID verification?

    A: Discord and k-ID do not permanently store personal identity documents or your video selfies. The image of your identity document and the ID face match selfie are deleted directly after your age group is confirmed, and the video selfie used for facial age estimation never leaves your device.

    https://support.discord.com/hc/en-us/articles/30326565624343-How-to-Complete-Age-Verification-on-Discord

    https://archive.is/FBqo5

    So is that a lie?

    • scytale@piefed.zip
      link
      fedilink
      English
      arrow-up
      16
      ·
      2 days ago

      Technically no, but they leave out the tiny detail that the 3rd party vendor they use (who had the breach) stores the data.

    • marud@piefed.marud.fr
      link
      fedilink
      Français
      arrow-up
      15
      ·
      2 days ago

      A fucking lie from a shitty company

      • birdwing@lemmy.blahaj.zone
        link
        fedilink
        arrow-up
        4
        arrow-down
        1
        ·
        2 days ago

        Should be sued to death.

        • starblursd@lemmy.zip
          link
          fedilink
          English
          arrow-up
          9
          ·
          2 days ago

          Can’t because couple months ago they opted everybody into forced arbitration

  • Zerush@lemmy.ml
    link
    fedilink
    arrow-up
    23
    ·
    2 days ago

    (Fucking paywall article)

    Summary

    A catastrophic data breach at Discord’s third-party vendor Zendesk has exposed sensitive user information, including ID documents and selfies uploaded for age verification[1][2]. At least 70,000 people were impacted by the breach, with hackers leaking users’ driver’s licenses, approximate locations, real names, and emails[2:1].

    The hackers are attempting to extort Discord and have already shared leaked selfies of users posing with their IDs in a Telegram group, along with a spreadsheet containing detailed information on a thousand users[2:2].

    This breach validates critics’ concerns about tech companies collecting sensitive identity documents, particularly in light of recent age verification requirements in countries like the UK[2:3]. As one security expert notes in Gadgeteer, “a password is easy to change, but an ID document is often a nightmare to change, and the ID number anyway stays the same”[3].

    Discord says it is working with affected users and authorities but won’t give in to the hackers’ demands[2:4].


    1. 404 Media - The Discord Hack is Every User’s Worst Nightmare ↩︎

    2. The Flagship Eclipse - Discord Suffers Major Hack Making Users’ Worst Nightmare Come True ↩︎ ↩︎ ↩︎ ↩︎ ↩︎

    3. Gadgeteer - The Discord Hack is Every User’s Worst Nightmare — Why Uploaded IDs are a Problem ↩︎

  • plinky [he/him]@hexbear.net
    link
    fedilink
    English
    arrow-up
    7
    arrow-down
    1
    ·
    2 days ago

    every user worst nightmare is joining discord with non-temp email, like a rube.

  • JohnnyCanuck@lemmy.ca
    link
    fedilink
    arrow-up
    5
    ·
    2 days ago

    Archive link: https://archive.is/KFUuV

Privacy@lemmy.ml

privacy@lemmy.ml

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !privacy@lemmy.ml

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

  • Lemmy.ml libre_culture
  • Lemmy.ml privatelife
  • Lemmy.ml DeGoogle
  • Lemmy.ca privacy

much thanks to @gary_host_laptop for the logo design :)

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 948 users / day
  • 2.83K users / week
  • 6.63K users / month
  • 16.1K users / 6 months
  • 1 local subscriber
  • 42.5K subscribers
  • 3.88K Posts
  • 99.5K Comments
  • Modlog
  • mods:
  • k_o_t@lemmy.ml
  • tmpod@lemmy.pt
  • Yayannick@lemmy.ml
  • ranok@sopuli.xyz
  • BE: 0.19.13
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org