Millions Of Patreon Donators Hit In Data Breach

Online crowdfunding site Patreon has been hit by a major cyber-attack, which saw nearly 15GB of data, including passwords, donation records and other user information leaked online.

The hackers even released the source code that Patreon’s website runs on, but the site says that user credit card numbers remain safe, as none of this information was stored on its servers.

The data has been posted on several locations online, with Patreon CEO Jack Conte recommending that all users should now change their password.

Breached

“Yesterday I learned that there was unauthorised access to a Patreon database containing user information,” Conte wrote in a Patreon blog post.

“Our engineering team has since blocked this access and taken immediate measures to prevent future breaches. I am so sorry to our creators and their patrons for this breach of trust. The Patreon team and I are working especially hard right now to ensure the safety of the community.”

The site, which says it attracts around 16 million view per month, was apparently breached via a test or “debug” version of the site – useful to developers but in this case also visible to the public, said Mr Conte.

The breach was revealed by security researcher Troy Hunt, who said the data published from the hack appears to be genuine, adding that 2.3m email addresses had been stolen, including his own.

“At the very least, it means mapping individuals with the Patreon campaigns they supported,” he told Ars Technica.

In a later upfate posted on Twitter, Hunt noted that, “Obviously all the campaigns, supporters and pledges are there too. You can determine how much those using Patreon are making. The dollar figure for the Patreon campaigns isn’t the issue, it’s supporters identities, messages, etc. Everything private now public.”

Patreon’s misfortune is the second major data breach in less than a week, after mobile operator T-Mobile revealed that the details of 15 million of its users had been stolen, due to a flaw in its data protection services.

Are you a data breach expert? Take our quiz to find out!

Mike Moore

Michael Moore joined TechWeek Europe in January 2014 as a trainee before graduating to Reporter later that year. He covers a wide range of topics, including but not limited to mobile devices, wearable tech, the Internet of Things, and financial technology.

Recent Posts

Northvolt Mulls US Bankruptcy Protection – Report

Troubled battery maker Northvolt reportedly considers Chapter 11 bankruptcy protection in the United States as…

5 hours ago

FTC Plans Investigation Into Microsoft Cloud Business – Report

Microsoft's cloud business practices are reportedly facing a potential anti-competitive investigation by the FTC

7 hours ago

Programmer Sentenced To Five Years In Prison For Bitcoin Laundering

Ilya Lichtenstein sentenced to five years in prison for hacking into a virtual currency exchange…

9 hours ago

Hate Speech Watchdog CCDH To Quit Musk’s X

Target for Elon Musk's lawsuit, hate speech watchdog CCDH, announces its decision to quit X…

1 day ago

Meta Fined €798m Over Alleged Facebook Marketplace Violations

Antitrust penalty. European Commission fines Meta a hefty €798m ($843m) for tying Facebook Marketplace to…

1 day ago

Elon Musk Rebuked By Italian President Over Migration Tweets

Elon Musk continues to provoke the ire of various leaders around the world with his…

1 day ago