This time it’s Light’s Hope a “Legacy Server” project for World of Warcraft, which seeks to emulate the experience of playing the game in its earliest iterations.
Well, the oldest trick in the book, one of the forum admins had a silly password, and it was brute forced (when a hacker tries to guess a password with different tools).
And because it was a sloppy password the hacker entered the forum and downloaded a stash of info:
Dates of birth, Email addresses, Geographic locations, IP addresses, Passwords, Private messages, Username.
Total accounts breached: 30K
For good, they learned the mistake and are improving with 2FA, etc.
Oh, and they also made a good move by self-reporting it to https://haveibeenpwned.com.