Data Breach at Discord Bot Double Counter Exposes User Information
Article Content
- •Double Counter experienced a breach exposing 12 GB of user data.
- •The attack exploited a vulnerability in the Metabase analytics tool.
- •Discord is actively preventing new installations of the bot during the investigation.
On October 4, 2026, Double Counter, a Discord security bot, suffered a data breach that exposed user data after an attacker exploited a vulnerability in the Metabase analytics tool. The attacker accessed the bot's cloud systems, copying 12 GB of database records and using a stolen bot token to post unwanted invitations across approximately 50 large Discord servers. Double Counter confirmed that no backdoor was left behind and restored services the same day. They reported $7,316 in fraudulent charges on a separate payment account but assured that customer funds remain safe. Discord has since halted new installations of the bot while investigating the incident. The breach highlights the risks associated with third-party integrations on platforms like Discord.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Double Counter in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What data was exposed in the breach?
How did the attacker gain access?
What actions are being taken to secure user data?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…