惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园 - 聂微东
C
Cisco Blogs
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
MyScale Blog
MyScale Blog
云风的 BLOG
云风的 BLOG
人人都是产品经理
人人都是产品经理
The GitHub Blog
The GitHub Blog
月光博客
月光博客
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
博客园 - 三生石上(FineUI控件)
V
Vulnerabilities – Threatpost
博客园 - Franky
A
Arctic Wolf
T
Tenable Blog
P
Privacy & Cybersecurity Law Blog
雷峰网
雷峰网
Blog — PlanetScale
Blog — PlanetScale
C
CERT Recently Published Vulnerability Notes
Spread Privacy
Spread Privacy
Latest news
Latest news
小众软件
小众软件
Google DeepMind News
Google DeepMind News
IT之家
IT之家
量子位
U
Unit 42
T
Threatpost
I
InfoQ
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
G
GRAHAM CLULEY
K
Kaspersky official blog
T
Tor Project blog
Scott Helme
Scott Helme
AWS News Blog
AWS News Blog
Hugging Face - Blog
Hugging Face - Blog
PCI Perspectives
PCI Perspectives
N
Netflix TechBlog - Medium
Martin Fowler
Martin Fowler
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Recent Commits to openclaw:main
Recent Commits to openclaw:main
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
V
Visual Studio Blog
S
Securelist
L
LINUX DO - 热门话题
Apple Machine Learning Research
Apple Machine Learning Research
Cisco Talos Blog
Cisco Talos Blog
D
Darknet – Hacking Tools, Hacker News & Cyber Security
C
CXSECURITY Database RSS Feed - CXSecurity.com
S
Schneier on Security
D
DataBreaches.Net

Consumer Insights

Credential stuffing attack at Chick-fil-A comes with data breach notice for customers Coca-Cola halts Fairlife production across US after ransomware attack Qantas data breach started with a fake IT support call Lidl warns customers after data breach How to find out if your identity has been exposed by infostealers Texas breach exposes PII of 3 million hunting and fishing license customers Maine forced to take down data breach portal after fake notices filed with authorities Carnival breach exposes data of nearly 6 million people 7-Eleven data breach exposes data of 185,000 people UK Water Supplier Fined Nearly £1 Million After Hackers Roamed Networks for Almost 2 Years DAEMON Tools Lite breach prompts urgent update after malware-laced installer Instructure confirms breach; millions of Canvas users potentially impacted Stalkerware data leak exposes private screenshots linked to celebrities and influencers Hackers claim to have breached Udemy, stealing 1.4 million user records Rituals data breach exposes customer details Booking.com says breach exposed travelers’ data Basic-Fit data breach exposes member information across Europe Rockstar Games confirms breach after ShinyHunters leaks stolen analytics data Lapsus$ claims AstraZeneca breach exposes code and credentials Aura data breach exposes 900,000 records after phishing attack Telus Digital data breach confirmed after ShinyHunters claims 1PB theft Was Your Data Exposed in the Latest Under Armour Breach? Here’s What You Should Do Breach at Tinder, Hinge and OkCupid exposes user data Europe Fines Big Tech €1.2 Billion under GDPR in 2025 European Space Agency's cybersecurity in freefall as yet another breach exposes spacecraft and mission data European Space Agency Confirms New Data Breach; Classified Info May Have Been Stolen Rainbow Six Siege Servers Offline After Massive Breach Floods Accounts with Billions of R6 Credits 21,000 Nissan Customers Exposed After Third-Party Server Breach Spotify Catalog Scraped, 300TB Music and Metadata Dumped via Torrent University of Sydney Confirms Data Breach Affecting Thousands Leroy Merlin Breach Alert: French Customers Notified After Cyberattack Exposes Personal Data CodeRED Emergency Alerts Disrupted Across US After Ransomware Breach
South Korea diplomatic academy hack exposes diplomat data
Vlad CONSTANTINESCU · 2026-07-23 · via Consumer Insights

An intrusion lasting nearly 10 months exposed names, emails and encrypted passwords associated with thousands of South Korean officials.

Key takeaways

  • Hackers maintained access to the Korea National Diplomatic Academy’s online education system between April 2025 and February 2026.
  • The breach exposed names, user IDs, email addresses and encrypted passwords of current and former Foreign Ministry personnel.
  • Reports estimate that roughly 6,000 people were affected, while the compromised database may have contained up to 10,000 records.
  • South Korea shut down the platform and warned affected users to treat unexpected emails with particular caution.

Hackers remained inside for nearly 10 months

South Korea’s Ministry of Foreign Affairs has disclosed a prolonged breach of the Korea National Diplomatic Academy’s online training platform. An unidentified attacker exploited a security vulnerability and maintained access from April 2025 until February 2026, when suspicious activity was detected and the system was taken offline.

The platform was introduced in 2022 to support remote training and videoconferencing. Officials waited approximately five months after discovering the compromise to announce it publicly, citing the diplomatic sensitivity and the time needed to investigate the incident.

Exposed records could fuel targeted phishing

Leaked information included user IDs, names, email addresses and encrypted passwords, the ministry said. Korean media reported that job titles and departmental affiliations were included in some records. The exposed data did not include resident registration numbers, phone numbers, home addresses, photographs or other sensitive information, according to the ministry.

Even without financial details, the information could help attackers create convincing spear-phishing messages impersonating colleagues, government departments or trusted services. The ministry has urged affected personnel to be especially cautious with emails from unclear sources and to report suspicious communications immediately.

The attacker remains unidentified

Officials have not publicly attributed the intrusion, and the precise number of affected individuals remains under review because the database may contain duplicate or outdated entries. The Foreign Ministry says it has blocked the platform, strengthened security measures and is working to prevent additional damage.

Data breaches do not need to expose banking information to create lasting risks. Bitdefender Digital Identity Protection can notify users when personal data appears in breaches or on the dark web, while Bitdefender Ultimate Security provides anti-malware, phishing and scam protection that can help detect malicious links and impersonation attempts.