Find notable cyber news and cases, enriched with sources, timelines, and signals.

KT Corporation hit by network compromise

Incident
First reported
Last updated
Happening score
H score 40
2 unique sources, 2 articles

Summary

Hide ▲

KT Corporation was hit by a femtocell-based network compromise that exposed subscriber data and enabled unauthorized mobile micropayments. South Korea’s PIPC said the issue began with a lost femtocell whose certificate was reused to reach KT’s mobile network, intercept traffic, and steal authentication codes used for payments. The regulator said 16,647 users had mobile-number and device identifiers compromised, and 368 customers were defrauded of 240 million won ($175,000). The same investigation also found 38 internal servers infected with malware including BPFDoor after a separate compromise of the KT Roaming Rental Service website.

Related Happenings

PIPC fines KT Corporation for data protection violations

Regulatory/Legal Action
H score40 First: 31.07.2026 01:28 Last: 31.07.2026 01:28 Sources 1

How related: South Korea's Personal Information Protection Commission (PIPC) has fined telecommunications giant KT Corporation KRW 53.979 billion ($39 million) over data protection violations.

About this happening: South Korea's PIPC fined KT Corporation KRW 53.979 billion ($39 million) for data protection violations, escalating enforcement over a breach that exposed subscrib...

KDDI Corporation hit by network compromise

Incident
H score92 First: 24.06.2026 15:45 Last: 24.06.2026 15:45 Sources 1

About this happening: KDDI Corporation confirmed an email-system breach that exposed customer credentials across six Japanese ISPs, putting account access at risk. The intrusion was detecte...

Latest development: 08.07.2026 14:24

Attackers breached the KDDI email platform used by five Japanese ISPs on May 16 after exploiting a zero-day vulnerability in third-party software, exposing email addresses and passwords across the affected service providers.

KDDI email-system credential leak affecting Japanese ISPs

Data Leak
H score98 First: 24.06.2026 15:45 Last: 24.06.2026 15:45 Sources 1

About this happening: A KDDI email-system breach exposed customer credentials across six Japanese ISPs, putting up to 14.22 million email addresses and passwords at risk. The compromise was...

Timeline

  1. 03.08.2026 12:36 1 articles · 10d ago

    PIPC fines KT over femtocell-based mobile network compromise

    Legal Policy Action Update

    South Korea’s Personal Information Protection Commission fined KT after finding that weak access control on the mobile network let a rogue femtocell access internal systems and enable unauthorized micropayments. The regulator said 16,647 users had mobile-number and device identifiers compromised, 368 customers were defrauded of 240 million won ($175,000), and KT also faced a complaint over its handling of logs and investigation records; the PIPC ordered security improvements and governance changes.

    Show sources
  2. 31.07.2026 01:28 2 articles · 13d ago

    KT Corporation hit by network compromise

    Initial Disclosure

    KT's breach first surfaced after users reported fraudulent micropayments, prompting an investigation into a suspected data exposure. Early notification on September 11, 2025 said roughly 5,500 customers had been exposed before the larger impact was confirmed.

    Show sources