
Loading

Loading
We use strictly necessary cookies to run this site, and analytics cookies to understand how it's used. See our Privacy Policy for details.

The personal information of some 24,000 employees at the state-run Korea Electric Power Corp. (KEPCO) has been leaked, the company said Sunday, the latest in a series of personal data leaks at corporations.
Summary
"We became aware that the personal information of employees was exposed on an external web site at around 3:59 p.m. Thursday," KEPCO said in a statement. The leaked information includes their names, job positions and telephone numbers but does not include sensitive information, such as their resident registration numbers, the company added.
KEPCO said in the statement it has since notified affected employees and completed deleting the leaked information at around midnight Friday. Customer information, stored in a separate system, was not compromised. The case comes after several major financial firms, including Hana Bank, KB Kookmin Bank and Shinhan Bank, recently suffered back-to-back leaks of customer information in hacking attacks.
KazaSec's take
Incidents like this rarely start with the headline event itself, they usually trace back to an exposed remote-access endpoint, an unpatched perimeter system, or a credential phished weeks earlier. The organizations that recover fastest are the ones that tested their defenses and their incident response plan before they needed them.
Coverage details
Relevant from KazaSec
More security news
We help organizations find and fix the gaps before they make headlines.