Breach exposed IDs, passwords, names, gender and job titles

Hack targeted server of third-party operator managing the platform

[Korea Independent Commission Against Corruption and Bribery]
[Korea Independent Commission Against Corruption and Bribery]

Personal data belonging to roughly 100,000 users of an online anti-corruption education platform managed by the Korea Independent Commission Against Corruption and Bribery has been leaked after hackers breached the server of a third-party operator, amid a string of recent cyberattacks on financial institutions.

The breach affected users of Cheongnyeom Gwonibaeumt'eo, an online integrity education platform run under the commission's oversight, a government official told Yonhap on Tuesday.

The platform provides online anti-corruption and ethics training for employees of public institutions, private school staff and others affiliated with public-sector organizations.

The compromised data includes usernames, passwords, names, gender and job titles, according to officials.

The incident occurred after hackers targeted the server of a contractor that had previously operated the platform, with data from multiple organizations — including the platform's database — exposed in the attack.

"The contractor had retained the database without disposing of it, which led to this breach," a government official said.


ehkim@heraldcorp.com