Crowdfunding Site Robbed of Donor Personal Information

Web Services // United States

Someone crept into Patreon, a website that allows people to automate donations to an artist or project. The attacker breached a "debug version" of the site that, at the time, was publicly accessible, the company says

Some registered names, email addresses, and mailing addresses were accessed.

Compromised passwords, Social Security numbers and tax form information "remain safely encrypted with a 2048-bit RSA key," Patreon says.

The hacked server included a snapshot of Patreon's production database, which included the encrypted data.