Roblox developer conference attendee data exposed in FNTech vendor breach
- Organization
- Roblox
- Exploit
- Third-Party Data Breach
- Industry
- Gaming
Roblox notified attendees of its annual Roblox Developer Conference in early July 2024 that their registration details had been exposed through a breach at FNTech, the third-party vendor that handled event sign-ups. The company said a vendor had recently reported unauthorized access to a subset of Roblox user information taken from the 2022, 2023 and 2024 conference registration lists.
The exposed fields were full names, email addresses and IP addresses. The records related to people who signed up for the conference, including those who attended online under the hybrid format. Roblox did not confirm whether any other data or its own systems were affected.
BleepingComputer reported that the leaked dataset contained 10,386 unique email addresses, of which about 63 percent had not appeared in previously catalogued breaches. Roblox did not publish a figure of its own, and FNTech did not comment publicly.
The identity of the attacker was not established. Roblox said it had contacted affected registrants with guidance on next steps and that it would keep monitoring the security posture of both its own operations and its third-party vendors. The Developer Conference is a networking and training event where creators on the platform attend workshops and presentations on new tools.