Interestana
Home/News/Sakura Internet Suffers Data Breach, Exposing Personal Information of Up to 1.36 Million Accounts
BleepingComputer3 min read

By Interestana AI Editorial — AI-drafted, human-overseen. How we report

Sakura Internet Suffers Data Breach, Exposing Personal Information of Up to 1.36 Million Accounts

Sakura Internet, a prominent Japanese provider of cloud computing and data center services, announced on June 11, 2024, that it had fallen victim to a cyberattack. Hackers successfully infiltrated the company's sales management system, a critical repository for sensitive customer contract and membership data. This unauthorized access has potentially exposed the personal information of an alarming number of individuals, with estimates suggesting up to 1.36 million accounts could be affected. The compromised data includes a range of personally identifiable information (PII) such as customer names, residential addresses, telephone numbers, and email addresses. For business clients, the breach may have also revealed company names and specific departmental details, adding another layer of risk for corporate entities.

The initial discovery of this security incident occurred on May 27, 2024, when a vigilant employee observed unusual and suspicious activities within the sales management system. Promptly responding to this alert, Sakura Internet initiated a thorough internal investigation. To bolster its efforts and gain expert insights, the company engaged external cybersecurity specialists to meticulously assess the scope, nature, and impact of the intrusion. The subsequent investigation determined that the malicious actors had maintained access to the compromised system over an extended period, specifically between May 8, 2024, and May 31, 2024. While the precise number of compromised accounts is still being finalized, the current preliminary estimate points to approximately 1.36 million affected accounts.

In response to the breach, Sakura Internet has commenced the process of notifying all potentially affected customers. The company is actively providing guidance and recommendations to these customers on implementing protective measures to mitigate potential harm. Furthermore, Sakura Internet is cooperating fully with law enforcement agencies to aid in the investigation of the criminal activity and to bring the perpetrators to justice. Concurrently, the company is undertaking a comprehensive review and enhancement of its existing security protocols, aiming to fortify its defenses and prevent similar incidents from occurring in the future. This breach underscores the persistent and evolving cybersecurity challenges faced by cloud service providers, organizations that are entrusted with safeguarding vast quantities of sensitive customer data. Sakura Internet has established a dedicated inquiry desk to address customer concerns, offer support, and provide ongoing updates regarding the incident and its potential ramifications. The full extent of the compromise, including the specific attack vectors and methods employed by the attackers, remains an active area of investigation.

Original source — read the full reporting at the publisher:

Read on BleepingComputer

Get the weekly AI digest

AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.

Read next