View Ridge Security
Back to Cyber HoseActive Exploits & Incidents

Data breach exposes up to 14.2 million email logins at six ISPs

🚨 ACTIVE EXPLOITS & INCIDENTS

  • Data breach exposes up to 14.2 million email logins at six ISPsBleepingComputer Japanese telecom giant KDDI Corporation disclosed a data breach impacting an email system shared by five other major ISPs in Japan. Threat actors accessed and exfiltrated up to 14.2 million email login credentials, posing significant risk for credential stuffing and targeted phishing campaigns across multiple service providers. Immediate credential resets and monitoring for suspicious activity are strongly advised for affected users and organizations relying on these ISPs.

📰 LESSER-KNOWN / UNDER-REPORTED

  • This breach highlights a growing trend of attackers targeting shared infrastructure across multiple providers to maximize impact. The scale and cross-ISP nature of this incident underscore the need for enhanced segmentation and monitoring in multi-tenant email environments.

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check