Breach exposed IDs, passwords, names, gender and job titles
Hack targeted server of third-party operator managing the platform
Personal data belonging to roughly 100,000 users of an online anti-corruption education platform managed by the Korea Independent Commission Against Corruption and Bribery has been leaked after hackers breached the server of a third-party operator, amid a string of recent cyberattacks on financial institutions.
The breach affected users of Cheongnyeom Gwonibaeumt'eo, an online integrity education platform run under the commission's oversight, a government official told Yonhap on Tuesday.
The platform provides online anti-corruption and ethics training for employees of public institutions, private school staff and others affiliated with public-sector organizations.
The compromised data includes usernames, passwords, names, gender and job titles, according to officials.
The incident occurred after hackers targeted the server of a contractor that had previously operated the platform, with data from multiple organizations — including the platform's database — exposed in the attack.
"The contractor had retained the database without disposing of it, which led to this breach," a government official said.
ehkim@heraldcorp.com