KDDI breach exposes 14.2 million email credentials across six Japanese ISPs
Threat actors compromised shared email infrastructure serving multiple internet providers, affecting millions of subscribers in coordinated attack on telecommunications operator.
KDDI Corporation, one of Japan's largest telecommunications operators, disclosed unauthorized access to an email system serving six internet service providers. The breach potentially exposed login credentials for up to 14.2 million email accounts.
The compromised system was operated by KDDI but used by five other ISPs in addition to KDDI's own services. This shared infrastructure model amplified the breach's scope across multiple customer bases. KDDI has not disclosed the attack vector or how long threat actors maintained access before detection.
The exposure of email credentials creates immediate risk beyond simple account compromise. Email access often serves as a master key to password resets, two-factor authentication, and sensitive communications across personal and business domains. Threat actors can leverage compromised email accounts for lateral movement into banking, corporate networks, and other high-value targets.
- 0114.2 million users face credential exposure and potential account takeover across six providers
- 02Partner ISPs inherit breach consequences despite outsourcing email operations to KDDI
- 03Shared infrastructure models create systemic risk when single vendor serves multiple competitors
- 04Email compromise enables password reset attacks across banking, government, and enterprise services
Boston Scientific confirms cyberattack disrupting medical device shipments
The Massachusetts-based medical device manufacturer disclosed the incident in SEC filings Tuesday, warning of operational impact to its supply chain.
US sanctions Iranian nationals after UK power plant intrusion
Treasury action follows disclosure of cyber operation targeting British energy facility, marking coordinated transatlantic response to infrastructure threats.
Supply-chain attack embeds proxy botnet in Android car head units
Legitimate device-update app compromised to spread malware that turns in-vehicle systems into proxy nodes and ad-fraud platforms.