Discord 通过第三方供应商遭受了违规行为,暴露了 ~70K 寻求年龄验证支持的用户的政府身份证照片。
Discord suffered a breach via a third-party vendor, exposing gov ID photos of ~70K users who sought age verification support.
Discord 证实了影响约 70,000 名用户的安全漏洞,他们的政府身份证照片是通过第三方支持供应商(而不是直接 Discord)暴露的。
Discord confirmed a security breach affecting around 70,000 users whose government ID photos were exposed via a third-party support vendor, not Discord directly.
该公司说,218万张被盗图像的声称是假的,尽管有1.5TB的数据受到损害,包括姓名、电子邮件、用户名、部分付款信息以及IP地址。
The company said claims of 2.18 million stolen images were false, though 1.5TB of data was compromised, including names, emails, usernames, partial payment info, and IP addresses.
违规事件是通过用于年龄核查上诉的Zendesk系统发生的,仅影响联系支持的用户。
The breach occurred through the Zendesk system used for age verification appeals, impacting only users who contacted support.
Discord 结束了与供应商的关系,保护了系统,通知了全球用户,并正在与执法部门合作。
Discord ended ties with the vendor, secured systems, notified users globally, and is working with law enforcement.
它拒绝支付敲诈勒索要求。
It refused to pay extortion demands.
事件凸显了强制性年龄核查法律的风险,隐私专家敦促采用零知识证明等保护隐私的方法。
The incident highlights risks of mandatory age verification laws, with privacy experts urging adoption of privacy-preserving methods like zero-knowledge proofs.