Data Breach Affects 14.2 Million Email Accounts Across Six Japanese ISPs

Photo: BleepingComputer
Quick answer
A data breach in Japan exposed up to 14.2 million email logins due to a hack on KDDI Corporation's email system, which supports six ISPs.
Japanese telecom giant KDDI Corporation reported a cybersecurity incident in which threat actors gained unauthorized access to its email system, which is used by multiple internet service providers (ISPs) across the country. According to the company, the attack impacted the infrastructure serving five other ISPs, potentially exposing up to 14.2 million email accounts to risk.
KDDI representatives clarified that the breach did not affect other corporate services, including mobile networks and payment systems. A thorough investigation into the breach's origins is underway, and affected users have already received notifications urging them to reset passwords and strengthen account security.
Cybersecurity experts note that such attacks on ISP email systems are becoming increasingly common, particularly amid the rise in phishing campaigns and exploits targeting corporate network vulnerabilities. KDDI Corporation has assured customers that additional measures are being implemented to safeguard data and prevent future breaches.
Common questions
- Which companies were affected by the data breach in Japan?
- KDDI Corporation was the primary victim, along with five other ISPs using its email system. The exact names of the affected providers have not been disclosed.
- What data was compromised in the breach?
- The incident exposed email logins for up to 14.2 million accounts. Other personal data, including mobile service information, remained unaffected.
- What measures are being taken to address the breach?
- KDDI Corporation is conducting an investigation and has already notified affected users. The company has also implemented additional security measures to prevent future incidents.
Dzen feed: /feed/dzen.xml · RSS: /feed.xml