惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

P
Proofpoint News Feed
博客园 - 聂微东
博客园 - 叶小钗
量子位
Google DeepMind News
Google DeepMind News
Cyberwarzone
Cyberwarzone
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
P
Privacy & Cybersecurity Law Blog
Apple Machine Learning Research
Apple Machine Learning Research
月光博客
月光博客
雷峰网
雷峰网
C
Cybersecurity and Infrastructure Security Agency CISA
Schneier on Security
Schneier on Security
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
美团技术团队
T
Tenable Blog
T
Threatpost
S
Security Affairs
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
C
Cisco Blogs
The Last Watchdog
The Last Watchdog
Engineering at Meta
Engineering at Meta
Microsoft Azure Blog
Microsoft Azure Blog
A
Arctic Wolf
Attack and Defense Labs
Attack and Defense Labs
AWS News Blog
AWS News Blog
AI
AI
W
WeLiveSecurity
H
Help Net Security
G
Google Developers Blog
PCI Perspectives
PCI Perspectives
博客园_首页
S
Securelist
B
Blog RSS Feed
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
Forbes - Security
Forbes - Security
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
L
Lohrmann on Cybersecurity
云风的 BLOG
云风的 BLOG
Martin Fowler
Martin Fowler
C
CERT Recently Published Vulnerability Notes
H
Hacker News: Front Page
The GitHub Blog
The GitHub Blog
酷 壳 – CoolShell
酷 壳 – CoolShell
Spread Privacy
Spread Privacy
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
T
Threat Research - Cisco Blogs
博客园 - 司徒正美
Google Online Security Blog
Google Online Security Blog
T
The Blog of Author Tim Ferriss

Consumer Insights

Credential stuffing attack at Chick-fil-A comes with data breach notice for customers Coca-Cola halts Fairlife production across US after ransomware attack Qantas data breach started with a fake IT support call Lidl warns customers after data breach How to find out if your identity has been exposed by infostealers Texas breach exposes PII of 3 million hunting and fishing license customers Maine forced to take down data breach portal after fake notices filed with authorities Carnival breach exposes data of nearly 6 million people 7-Eleven data breach exposes data of 185,000 people UK Water Supplier Fined Nearly £1 Million After Hackers Roamed Networks for Almost 2 Years DAEMON Tools Lite breach prompts urgent update after malware-laced installer Instructure confirms breach; millions of Canvas users potentially impacted Stalkerware data leak exposes private screenshots linked to celebrities and influencers Hackers claim to have breached Udemy, stealing 1.4 million user records Rituals data breach exposes customer details Booking.com says breach exposed travelers’ data Basic-Fit data breach exposes member information across Europe Rockstar Games confirms breach after ShinyHunters leaks stolen analytics data Lapsus$ claims AstraZeneca breach exposes code and credentials Aura data breach exposes 900,000 records after phishing attack Telus Digital data breach confirmed after ShinyHunters claims 1PB theft Was Your Data Exposed in the Latest Under Armour Breach? Here’s What You Should Do Breach at Tinder, Hinge and OkCupid exposes user data Europe Fines Big Tech €1.2 Billion under GDPR in 2025 European Space Agency's cybersecurity in freefall as yet another breach exposes spacecraft and mission data European Space Agency Confirms New Data Breach; Classified Info May Have Been Stolen Rainbow Six Siege Servers Offline After Massive Breach Floods Accounts with Billions of R6 Credits 21,000 Nissan Customers Exposed After Third-Party Server Breach Spotify Catalog Scraped, 300TB Music and Metadata Dumped via Torrent University of Sydney Confirms Data Breach Affecting Thousands Leroy Merlin Breach Alert: French Customers Notified After Cyberattack Exposes Personal Data CodeRED Emergency Alerts Disrupted Across US After Ransomware Breach
South Korea diplomatic academy hack exposes diplomat data
Vlad CONSTANTINESCU · 2026-07-23 · via Consumer Insights

An intrusion lasting nearly 10 months exposed names, emails and encrypted passwords associated with thousands of South Korean officials.

Key takeaways

  • Hackers maintained access to the Korea National Diplomatic Academy’s online education system between April 2025 and February 2026.
  • The breach exposed names, user IDs, email addresses and encrypted passwords of current and former Foreign Ministry personnel.
  • Reports estimate that roughly 6,000 people were affected, while the compromised database may have contained up to 10,000 records.
  • South Korea shut down the platform and warned affected users to treat unexpected emails with particular caution.

Hackers remained inside for nearly 10 months

South Korea’s Ministry of Foreign Affairs has disclosed a prolonged breach of the Korea National Diplomatic Academy’s online training platform. An unidentified attacker exploited a security vulnerability and maintained access from April 2025 until February 2026, when suspicious activity was detected and the system was taken offline.

The platform was introduced in 2022 to support remote training and videoconferencing. Officials waited approximately five months after discovering the compromise to announce it publicly, citing the diplomatic sensitivity and the time needed to investigate the incident.

Exposed records could fuel targeted phishing

Leaked information included user IDs, names, email addresses and encrypted passwords, the ministry said. Korean media reported that job titles and departmental affiliations were included in some records. The exposed data did not include resident registration numbers, phone numbers, home addresses, photographs or other sensitive information, according to the ministry.

Even without financial details, the information could help attackers create convincing spear-phishing messages impersonating colleagues, government departments or trusted services. The ministry has urged affected personnel to be especially cautious with emails from unclear sources and to report suspicious communications immediately.

The attacker remains unidentified

Officials have not publicly attributed the intrusion, and the precise number of affected individuals remains under review because the database may contain duplicate or outdated entries. The Foreign Ministry says it has blocked the platform, strengthened security measures and is working to prevent additional damage.

Data breaches do not need to expose banking information to create lasting risks. Bitdefender Digital Identity Protection can notify users when personal data appears in breaches or on the dark web, while Bitdefender Ultimate Security provides anti-malware, phishing and scam protection that can help detect malicious links and impersonation attempts.