“Snarched 88 government agencies and 20 companies in South Korea”
A hacker, believed to be Chinese, claims to have breached 88 South Korean government agencies and 20 companies, extracting financial, personal, and military information. The alleged attacks occurred over six days in early September, with the hacker notifying institutions like the Ministry of Science and ICT and the Korea Internet & Security Agency (KISA). While the hacker provided materials, including unencrypted database access information for government bodies and details on military facilities, the actual scale of the damage and the authenticity of the claims remain unconfirmed. South Korean authorities, including the Financial Supervisory Service, are investigating the alleged intrusions and data leaks, with some targeted companies reporting discrepancies in their internal inspections.
South Korea faces a significant cybersecurity challenge as a hacker claims to have compromised 88 government agencies and 20 companies, potentially exposing sensitive data. While the full extent of the breach is under investigation, the alleged targeting of critical infrastructure, military intelligence, and personal information from entities like Incheon City Hall and KOICA employees points to a serious national security concern. The hacker's claim of accessing generative AI service accounts, including ChatGPT Pro and Google Gemini, and extracting 10,000 AI conversations, adds another layer of complexity, suggesting a potential new vector for data exfiltration and intellectual property theft in the region. The incident underscores the persistent vulnerability of both public and private sector entities in Asia to sophisticated cyberattacks. The unencrypted storage of database access information for 88 government agencies, as claimed by the hacker, highlights critical security lapses that South Korean institutions must urgently address. The ongoing investigations by KISA and the Financial Supervisory Service into companies like Toss Payments and Hanwha will be crucial in determining the actual impact and implementing necessary safeguards to prevent future breaches of this scale.
Related reading
6 stories
Doomsday tech: could AI really kill us all?
The alleged use of generative AI in this breach raises questions we explored about AI's potential for harm.

BIS Chief Warns Disappointing AI Returns Could Turn Investment Boom “Into a Bust”
This breach, involving AI service accounts, highlights the risks that could turn the AI investment boom into a bust.

If driverless cars already work, why aren’t they everywhere?

Sumsub Launches Workforce Verification as Deepfake Risks Grow

ByteDance’s AI-enhanced short-drama app eclipses China’s Netflix rivals combined

