Chess.com says 4,500 people had data stolen during June breach
国际象棋平台Chess.com因第三方文件传输工具漏洞遭黑客入侵,约4541名用户的个人信息泄露,未涉及银行信息或账户密码。事件于6月19日被发现并立即报告执法部门。 2025-9-4 18:45:47 Author: therecord.media(查看原文) 阅读量:2 收藏

The largest online platform for chess players said hackers gained access to customer information through a file transfer tool used by the company. 

In breach notifications submitted to regulators in Maine and Vermont, Chess.com explained that 4,541 people had personal information exposed to hackers who breached an unnamed file transfer application between June 5 and June 18. 

The incident was discovered by Chess.com on June 19 and federal law enforcement was immediately notified of the cyberattack. 

A spokesperson for Chess.com would not say what information was stolen or which file transfer tool was breached. Two popular brands of file transfer tools — Wing FTP and CrushFTP — reported severe vulnerabilities in July that needed to be patched by customers. 

“In June we became aware of unauthorized access to data stored in a third-party file transfer application used by Chess.com. Chess.com’s code was not compromised,” the spokesperson told Recorded Future News. 

“We have determined that the unauthorized actor acquired certain Chess.com data for fewer than 0.003% of users. No banking information or member accounts, including usernames and passwords, were disclosed as a result of this incident.”

Chess.com has existed since 2005 and is one of the world’s most popular platforms for playing chess — organizing 10 million games per day for more than 100 million registered users.  

No hacking group has taken credit for the incident and Chess.com told victims that they “have no indication that any of your impacted data has been shared publicly on any online sources.”

Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.


文章来源: https://therecord.media/chess-platform-data-breach-file-transfer-tool
如有侵权请联系:admin#unsafe.sh