Substack CEO informs users of a data breach

Substack's Data Breach Exposed: What You Need to Know

Substack, the popular digital publishing platform, has confirmed that it suffered a security breach in October 2025. The incident, which involved an unauthorized third party accessing limited user data without permission, saw email addresses and phone numbers compromised.

In an email posted on Bluesky, Substack CEO Christ Best acknowledged the breach, stating that the company became aware of the issue on February 3. While internal metadata was also accessed during the hack, credit card numbers and other financial details were not stolen. Moreover, no passwords were obtained as a result of the breach.

Substack has assured users that it is taking steps to improve its systems and processes to prevent similar incidents in the future. The company is conducting a full investigation into the matter and has already addressed the security vulnerabilities. CEO Christ Best emphasized that there is currently no evidence to suggest that the stolen data is being misused, but users are advised to remain vigilant for suspicious emails or text messages.

However, details about the extent of the breach remain scarce. While Substack has not disclosed how many accounts were affected, a database allegedly containing over 697,300 stolen records from the platform was leaked on the hacking forum BreachForums. It is unclear at this time whether the data has been misused or if it poses any significant risk to users.

In light of this breach, Substack users are advised to exercise caution and be on the lookout for potential phishing attempts or other forms of cyber threats.
 
Ugh I'm so frustrated with Substack right now ๐Ÿคฏ. First they're saying their systems were breached but then some hacker leaks a database with like over 697k records and that's just...wow. I mean I get it, security breaches happen, but come on Substack can't even keep track of your own users' data? And what's up with the lack of info on how many accounts were actually affected? Are they trying to cover something up? ๐Ÿ˜’ Anyway, yeah be careful out there and don't click on any suspicious links or emails from Substack. They need to step their game up if they want to keep users trusting them ๐Ÿ’ฏ
 
man... substacks gotta step up their security game ๐Ÿคฆโ€โ™‚๏ธ already had some issues in 2024, now this... hope they figure out what went wrong & fix it ASAP ๐Ÿ’ป so yeah, def keep an eye on emails & texts from substack, cant have ppl getting hacked left & right ๐Ÿšจ
 
๐Ÿ™„ so, another major platform gets hacked... how original ๐Ÿคฃ seriously though, 697k records leaked? that's like a whole lot of juicy stuff ๐Ÿ˜ณ substack needs to step up their security game ASAP, not just for users but also for the sake of all the annoying ads they're pushing on us ๐Ÿ“บ๐Ÿ‘€
 
Ugh, just had a bad feeling about Substack's security ๐Ÿค•... I mean, 697k records leaked online? That's a lot of compromising info ๐Ÿ˜ณ. Can't say I'm surprised though - big platforms like this are always a target for hackers ๐Ÿ‘€. Hopefully they're taking their security seriously and patching those holes ASAP ๐Ÿ’ป. I don't think it's too much to ask from the CEO, Christ Best, to keep us in the loop about what happened ๐Ÿค”... some transparency would be nice, you know? Just wanna make sure my emails and phone numbers are safe ๐Ÿ˜Š. Guess we're all just gonna have to keep our wits about us online for now ๐Ÿ•ต๏ธโ€โ™€๏ธ.
 
Ugh, I'm still trying to process how a platform like Substack can get hacked ๐Ÿคฏ... I mean, it's not exactly rocket science, right? It just goes to show that even with all the precautions in place, security breaches can still happen ๐Ÿšจ. I've been using their platform for a while now and I'm definitely taking extra measures to protect my account, like enabling two-factor authentication and keeping an eye out for suspicious emails or texts ๐Ÿ“ฑ.

It's also kinda worrying that they didn't disclose the extent of the breach until now... I hope they're taking responsibility for it and learning from their mistakes ๐Ÿ’ฏ. Anyone else concerned about this? Should we be holding them to a higher standard when it comes to user data security?
 
๐Ÿšจ๐Ÿ’ป๐Ÿ˜ฌ Oh no, just heard about Substack's data breach ๐Ÿคฏ! Can't believe they got hacked ๐Ÿ˜ณ! I mean, I know we've all been there with our online security ๐Ÿคฆโ€โ™€๏ธ... but still, it's not good to see a company like that get compromised ๐Ÿ’”. Anyone have any idea how many accounts were affected? ๐Ÿค” Guess they're gonna be on high alert now ๐Ÿšจ๐Ÿ‘ฎ. Can't help but wonder if the stolen data is being sold on the dark web ๐Ÿ•ท๏ธ... hope it doesn't lead to any serious issues ๐Ÿคž. Better safe than sorry, right? ๐Ÿ˜…
 
Ugh, substack got hacked ๐Ÿคฆโ€โ™‚๏ธ... I mean, what's up with these tech companies? Can't even keep their own stuff secure! Like, yeah okay, no financial info was stolen and all that jazz, but still... 697k records leaked online? That's a lot of info to mess around with ๐Ÿ™„. And now users gotta stay on the lookout for phishing attempts? Come on, can't we just trust these platforms to do their job without messing up our lives? ๐Ÿคฏ Anyway, I guess it's good that substack is addressing security issues and all, but still... Can't wait till they figure out how to make these breaches less likely in the future ๐Ÿ˜”.
 
omg, I'm so glad substack is taking steps to secure its user data ๐Ÿ™Œ. but honestly, 697k records leaked online? that's a whole lotta info ๐Ÿ˜ฑ... anyway, i think it's super important for users to stay vigilant and keep an eye out for suspicious emails or texts - even if there's no evidence of misuse yet, we can't take any chances ๐Ÿšซ. substack needs to do more to reassure us that their security is top-notch ๐Ÿ’ฏ... guess I'll be keeping a close eye on my own accounts from now on ๐Ÿ˜…
 
Ugh ๐Ÿ˜ฉ I'm still shaking my head over this Substack thing ๐Ÿคฏ like what even is going on with these platforms?!? They're supposed to be all about creators and writers, but it seems like they're more concerned with keeping our info secure than, you know, actually doing that ๐Ÿ™„. So, basically, some random hacker got access to 697k+ people's email addresses and phone numbers... no biggie, right?!? ๐Ÿคทโ€โ™€๏ธ Except when you think about how vulnerable all those people are now ๐Ÿ˜ฌ. And Substack is just like "oh, don't worry, we're on it" ๐Ÿ™ƒ but what does that even mean?!? Are they gonna change their passwords? Update their security protocols? Like, can't they just be proactive for once?!? ๐Ÿคฏ
 
Ugh, I just got back from the most random road trip ๐Ÿš—๐Ÿ’จ. I was driving through these countryside roads and saw a farmer out fixing his tractor ๐ŸŒพ๐Ÿ”ง. It made me think about how we need to preserve our natural spaces for future generations ๐ŸŒณ๐Ÿ˜Š. Anyway, this Substack breach is kinda weird... I mean, who's gonna hack into a platform that's all about publishing? Maybe it's just an opportunity for them to upgrade their security tho ๐Ÿค”๐Ÿ’ป. On a separate note, have you guys tried those new plant-based milk alternatives? I'm still trying to figure out which one I like best ๐Ÿฅ›๐Ÿ‘€
 
omg, Substack's got a security breach and now my inbox is all like "Hey, I'm not your friend ๐Ÿ˜‚" ๐Ÿ™ƒ i mean, credit card numbers weren't compromised so that's a plus, but still, who wants their email address outed? like, can you imagine showing up to work on monday with a bunch of spam emails just begging to be deleted? ๐Ÿ“ง๐Ÿ’” and honestly, 697k records leaked online is like finding an old high school yearbook in your attic... awkward ๐Ÿ˜ณ guess it's time for Substack to step up their security game! ๐Ÿ’ช
 
I'm literally shaking my head right now ๐Ÿคฏ. Like, I get that data breaches happen but 697k+ stolen records? That's just wild ๐Ÿ˜ฒ. I mean, I've heard of substack being a great platform and all, but I guess even the best can have a flaw โš ๏ธ. And yeah, it's good that they're taking steps to improve their security but what about those poor users who got affected ๐Ÿค•? They gotta be feeling pretty anxious right now ๐Ÿ˜ฌ. Anyway, Substack should really consider offering some kind of credit monitoring or protection for affected users... just a thought ๐Ÿ’ก
 
I'm kinda surprised they found out about the breach so late lol ๐Ÿค”. Like, shouldn't they've known sooner? Anyway, glad they're taking steps to fix it tho ๐Ÿ˜Š. It's not ideal that they had to leak a database with like, thousands of records online... I mean, who does that on purpose? ๐Ÿคทโ€โ™‚๏ธ. Anyways, Substack users should def be cautious now - those phishing emails and texts are super sketchy ๐Ÿ˜ณ. Can't believe they didn't mention how many accounts were affected tho? Like, is it a lot or what? ๐Ÿค‘
 
๐Ÿค” this is crazy! like substack's got a security breach and they're just now talking about it? i mean, how long did they know about it before they let everyone else know? should've been transparent from the start ๐Ÿ™„. and 697k records leaked on some hacking forum... that's a lot of user info to be compromised. can we get some sources on this, tho? where did breachforums even get this info? substack needs to do better than just saying "we're taking steps" ๐Ÿ’ช. what are those actual steps? more info pls ๐Ÿค“
 
idk why ppl have to worry so much about these data breaches anyway ๐Ÿคทโ€โ™‚๏ธ like what's the worst that can happen? person gets spam email or something? i mean, it's not like they're gonna hack into ur bank account or sumthin ๐Ÿ’ธ my aunt had her email hacked once and she just got a bunch of weird spam emails with nothin relevant to her... it was kinda annoying but not the end of the world ๐Ÿคช
 
OMG I'm like totally freaked out about this Substack data breach ๐Ÿคฏ! I mean, their platform is supposed to be so secure and reliable, right? So when they say only email addresses and phone numbers were compromised, it's still kinda scary ๐Ÿ˜ฌ. And now there's a database of like over 697k stolen records just floating around online... that's just too much ๐Ÿคฏ.

I'm not sure what's more worrying - the fact that some hacker got access to their internal metadata or that people are already trying to sell this data on dark web forums ๐Ÿ˜ณ. I mean, Substack is trying to be all transparent and stuff about it, but like... how many accounts were actually affected?! They need to give us some real numbers here ๐Ÿค”.

Anyway, I'm definitely being way more careful with my email addresses and passwords from now on ๐Ÿ’ป. And if you're a Substack user too, just be cautious okay? Don't click on any suspicious links or messages... better safe than sorry ๐Ÿ™
 
Back
Top