Find notable cyber news and cases, enriched with sources, timelines, and signals.

Nikkei hit by network compromise

Incident
First reported
Last updated
Happening score
H score 48
1 unique sources, 1 articles

Summary

Hide ▲

Nikkei disclosed a compromise of two employee email accounts that let attackers send thousands of phishing emails from trusted inboxes. One Google Workspace account was accessed in late July, exposing employee and business-partner contact information and possibly the names and email addresses of 1,646 individuals. A second Microsoft 365 account was used in September to send 9,000 phishing emails to staff and interviewees, including messages with links to malicious websites on September 30. Nikkei says it reset passwords, contacted recipients, and has not confirmed additional unauthorized logins.

Related Happenings

Nikkei Google Workspace account personal-information exposure

Data Leak
H score46 First: 06.10.2026 12:25 Last: 06.10.2026 12:25 Sources 1

How related: In a Sunday statement, the company said an employee's Google Workspace account was accessed in late July, exposing the personal information of employees and business partners.

About this happening: Nikkei disclosed a Google Workspace account exposure that may have revealed names and email addresses for 1,646 people, creating privacy risk for employees and busines...

Microsoft dual phishing campaigns using CEO impersonation and passkey lures

Campaign
H score34 First: 13.09.2026 13:11 Last: 13.09.2026 13:11 Sources 1

About this happening: Microsoft disclosed two coordinated phishing campaigns that used third-party email delivery infrastructure and passkey-themed social engineering to target U.S. enter...

ShinyHunters and Helix passkey-themed Microsoft 365 account compromise campaign

Campaign
H score34 First: 11.09.2026 20:26 Last: 11.09.2026 20:26 Sources 1

About this happening: A ShinyHunters- and Helix-linked campaign is using passkey and SSO-themed social engineering to compromise corporate Microsoft accounts, exposing Microsoft 3...

High-volume Unicode-smuggling phishing campaign

Campaign
H score29 First: 04.09.2026 18:57 Last: 04.09.2026 18:57 Sources 1

About this happening: A high-volume phishing campaign is using invisible Unicode tag characters to split lure words and bypass email filters, pushing finance-themed emails at scale. The...

Midnight Blizzard CaptiveCrunch hospitality Wi-Fi phishing campaign

Campaign
H score37 First: 04.08.2026 03:17 Last: 04.08.2026 03:17 Sources 1

About this happening: Microsoft linked CaptiveCrunch to Midnight Blizzard / APT29, a global operation that abuses hospitality Wi‑Fi to steal Microsoft 365 accounts and deliver malware....

Timeline

  1. 06.10.2026 12:25 1 articles · 2h ago

    Nikkei Microsoft 365 account used to send 9,000 phishing emails

    Campaign Scope Update

    In September, a second Nikkei employee Microsoft 365 account was accessed and used to send 9,000 phishing emails to Nikkei staff and interviewees, including messages with links to malicious websites sent on September 30. Nikkei said it changed passwords, contacted recipients individually, and has not confirmed additional unauthorized logins since then.

    Show sources