Massive data breach at Coupang exposes data of 34 million customers
South Korean e-commerce giant Coupang is grappling with one of the country's largest data breaches after unauthorized access to its systems compromised the personal information of nearly 34 million customers.
The intrusion went undetected for over five months before being discovered, the company confirmed.
The breach, which affected approximately 33.7 million user accounts in South Korea, was initially thought to be limited. On November 18, Coupang identified that about 4,500 accounts had been exposed. However, a subsequent investigation revealed the true scale of the incident, tracing the unauthorized access back to June 24, 2025.
According to information shared with TechCrunch, the compromised data includes customer names, email addresses, phone numbers, shipping addresses, and partial order histories. The company stated that more sensitive financial data, such as payment information and login passwords, remained secure and was not accessed.
Coupang, which operates the popular "Rocket Delivery" service and is a major retail force in Asia, has reported the incident to South Korean authorities. Police have identified at least one suspect: a former Chinese employee of the company who is now residing abroad. The company confirmed that its marketplaces in Japan and Taiwan were not affected.
This breach represents a severe security and reputational lapse for the online retailer, which has suffered smaller data leaks in the past. It strikes a significant blow to consumer trust in a platform used by a vast majority of South Korea's population.
The incident is part of a troubling trend of major cybersecurity failures in South Korea this year, raising renewed concerns about data protection standards in the country's digital economy. Coupang stated it is notifying affected customers and has urged users to monitor their accounts for suspicious activity.
Analysts say the breach underscores the persistent vulnerabilities within global e-commerce infrastructures and serves as a critical reminder for corporations to continuously audit and fortify their cyber defenses. The fallout is likely to intensify scrutiny from regulators and may prompt broader calls for legislative action on data security. (ILKHA)
LEGAL WARNING: All rights of the published news, photos and videos are reserved by İlke Haber Ajansı Basın Yayın San. Trade A.Ş. Under no circumstances can all or part of the news, photos and videos be used without a written contract or subscription.
Internet usage in Türkiye continued to expand in 2026, with more than nine out of every 10 people aged 16 to 74 now using the internet, according to the latest data released by the Turkish Statistical Institute (TurkStat) on Wednesday.
A cyberattack has compromised data belonging to approximately 31,000 individuals listed in Liechtenstein's register of beneficial owners of companies, foundations and trusteeships, the government of the principality announced.
OpenAI has confirmed that an autonomous artificial intelligence cyberattack involving one of its experimental ChatGPT agents extended beyond AI platform Hugging Face, revealing that multiple publicly accessible online services were affected during the incident.
The European Union has accused TikTok of failing to provide sufficient safeguards for children on its platform, warning that the company could face hefty financial penalties if it does not address shortcomings in its protection of minor users.