Double Counter Discord Service Breached via Metabase Vulnerability
A security breach at Double Counter, a Discord server protection service, exposed 275,000 unique email addresses and Discord usernames earlier this week. The incident stemmed from an unpatched Metabase vulnerability, a business intelligence tool used by the company.
Approximately 25% of the compromised records were cross-referenced with LinkedIn data, indicating potential overlap with professional profiles. The breach was documented by Have I Been Pwned, a data breach monitoring service, which added the exposed records to its database for public verification.
The incident highlights the risks of unpatched third-party software in cybersecurity services, particularly those handling user data for online communities. No further details on the timeline of the breach or remediation efforts have been disclosed.
Source: https://www.linkedin.com/feed/update/urn:li:activity:7513475842380038144
Metabase cybersecurity rating report: https://www.rankiteo.com/company/metabase
"id": "MET1791354411",
"linkid": "metabase",
"type": "Vulnerability",
"date": "10/2026",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': '275,000 users',
'industry': 'Cybersecurity',
'name': 'Double Counter',
'type': 'Cybersecurity Service Provider'}],
'attack_vector': 'Unpatched third-party software (Metabase vulnerability)',
'data_breach': {'number_of_records_exposed': '275,000',
'personally_identifiable_information': 'Yes (email addresses, '
'Discord usernames)',
'sensitivity_of_data': 'High (personally identifiable '
'information)',
'type_of_data_compromised': ['Email addresses',
'Discord usernames']},
'description': 'A security breach at Double Counter, a Discord server '
'protection service, exposed 275,000 unique email addresses '
'and Discord usernames earlier this week. The incident stemmed '
'from an unpatched Metabase vulnerability, a business '
'intelligence tool used by the company. Approximately 25% of '
'the compromised records were cross-referenced with LinkedIn '
'data, indicating potential overlap with professional '
'profiles. The breach was documented by Have I Been Pwned, a '
'data breach monitoring service, which added the exposed '
'records to its database for public verification.',
'impact': {'brand_reputation_impact': 'Potential reputational damage due to '
'breach of user data',
'data_compromised': '275,000 unique email addresses and Discord '
'usernames',
'identity_theft_risk': 'High (email addresses and Discord '
'usernames exposed)',
'systems_affected': 'Discord server protection service (Double '
'Counter)'},
'lessons_learned': 'Highlights the risks of unpatched third-party software in '
'cybersecurity services, particularly those handling user '
'data for online communities.',
'post_incident_analysis': {'root_causes': 'Unpatched Metabase vulnerability'},
'references': [{'source': 'Have I Been Pwned'}],
'title': 'Double Counter Discord Service Breached via Metabase Vulnerability',
'type': 'Data Breach',
'vulnerability_exploited': 'Metabase vulnerability'}