Banx Media Platform logo

Technology Articles

Showing 24 of 24 on this pagePage 93 / 94 2251 total
Discord Names Third-Party Vendor (5CA) in Security Breach Update: Why the BPO Disclosure?
TECHNOLOGY98% credibility
Happening Now

Discord Names Third-Party Vendor (5CA) in Security Breach Update: Why the BPO Disclosure?

Discord has quietly updated its press release on a recent security incident, explicitly naming the Business Process Outsourcing (BPO) firm, 5CA, responsible for the compromise. The breach, which Discord clarified was a breach of the vendor, not its own systems, exposed personal data, including the government-ID photos of approximately 70,000 users.

5 min read
Investigating targeted “payroll pirate” attacks affecting US universities
TECHNOLOGY97% credibility
Happening Now

Investigating targeted “payroll pirate” attacks affecting US universities

Microsoft Threat Intelligence has observed a financially motivated threat actor that we track as Storm-2657 compromising employee accounts to gain unauthorized access to employee profiles and divert salary payments to attacker-controlled accounts. These types of attacks have been dubbed “payroll pirate” by the industry. Storm-2657 is actively targeting a range of U.S.-based organizations, particularly employees in sectors like higher education, to gain access to third-party human resources (HR) software as a service (SaaS) platforms like Workday.

5 min read
Discord denies massive breach, confirms limited exposure of 70K ID photos
TECHNOLOGY93% credibility
Happening Now

Discord denies massive breach, confirms limited exposure of 70K ID photos

Discord announced it won't pay the threat actors claiming to have stolen data on 5.5 million users, clarifying that only about 70,000 ID photos were actually exposed. The free communication platform disclosed a breach at a third-party customer support provider (reportedly Zendesk) that exposed data of users who contacted its Support or Trust & Safety teams. The stolen info included names, usernames, emails, limited billing details, IP addresses, and messages with agents, as well as government ID images for users who appealed age verification decisions.

5 min read
The $500 Bribe: How a Low-Paid Outsourced Worker Compromised Discord’s Internal Systems
TECHNOLOGY83% credibility
Happening Now

The $500 Bribe: How a Low-Paid Outsourced Worker Compromised Discord’s Internal Systems

The actors behind the Discord Zendesk compromise weren't lying about their methods. New details reveal that the attackers successfully bribed a low-paid BPO (Business Process Outsource) employee in Southeast Asia with a mere $500—an amount considered life-changing in their country—for initial access, ultimately leading to a significant security breach.

5 min read