‘Korea’s Amazon’ Coupang discloses a data breach impacting 34M customers
好的,我现在需要帮用户总结这篇文章的内容。用户的要求是用中文,控制在100字以内,而且不需要以“文章内容总结”或“这篇文章”这样的开头,直接写描述即可。 首先,我得通读整篇文章,抓住主要信息。文章讲的是韩国电商巨头Coupang发生了数据泄露事件,影响了近3400万韩国客户。泄露的时间跨度超过五个月,从2025年6月24日开始,通过海外服务器未经授权访问。Coupang已经采取措施阻止了未经授权的访问,并加强了内部监控,还聘请了独立安全公司的专家。 泄露的数据包括姓名、电子邮件、电话号码、送货地址和一些订单历史,但没有涉及支付数据、信用卡号或登录凭证等敏感信息。Coupang已经通知了韩国互联网和安全机构、国家警察局以及个人信息保护委员会(PIPC)。这次事件没有影响到台湾市场或日本的Rocket Now食品配送服务的数据。 此外,韩国副总理兼ICT部长卞庆勋召开了紧急会议,并表示将加强监控三个月以防止二次损害。警方已经确定了一名嫌疑人,是一名前中国Coupang员工,目前已经离开韩国,并于11月18日收到投诉后展开调查。 还有提到这是韩国一系列网络安全事件中的一部分,Coupang之前也发生过多次安全事件。 现在我要把这些信息浓缩到100字以内。需要包括以下几点:Coupang的数据泄露事件、受影响人数、时间跨度、泄露的数据类型、未涉及敏感信息、公司采取的措施、通知的机构、事件影响范围以及后续调查情况。 接下来我要组织语言,确保简洁明了。可能的结构是:公司名称+事件+受影响人数+时间+泄露数据+未涉及敏感信息+公司措施+调查进展。 比如:“韩国电商巨头Coupang发生数据泄露事件,近3400万客户信息被暴露。泄露始于2025年6月24日,持续五个月。受影响数据包括姓名、邮箱等,未涉及支付信息。公司已采取措施阻止访问并加强监控,并已向相关部门报告。” 这样大概在90字左右,符合要求。 </think> 韩国电商巨头Coupang发生数据泄露事件,近3400万客户信息被暴露,包括姓名、邮箱等,未涉及支付信息。公司已采取措施阻止访问并加强监控,并已向相关部门报告。 2025-12-2 12:4:40 Author: securityaffairs.com(查看原文) 阅读量:13 收藏

‘Korea’s Amazon’ Coupang discloses a data breach impacting 34M customers

Pierluigi Paganini December 02, 2025

Coupang disclosed a five-month data breach that exposed the personal information of nearly 34 million South Korean customers.

South Korean e-commerce giant disclosed a data breach affecting nearly 34 million customers, exposing personal information over a period of more than five months.

“According to the investigation so far, it is believed that unauthorized access to personal information began on June 24, 2025, via overseas servers,” the company announced. “Coupang blocked the unauthorized access route, strengthened internal monitoring, and retained experts from a leading independent security firm.” the company added.

Coupang is South Korea’s leading e‑commerce and logistics platform, often dubbed “Korea’s Amazon”. In 2024 it generated about $30.3 billion in revenue, with Q3 2025 net revenues of $9.3 billion, up 18% year-on-year. It employs roughly 60–65,000 people globally and reported around 24.7 million active customers.

The company initially detected unauthorized access to 4,500 accounts on November 18, but an investigation later confirmed that about 33.7 million customer accounts in South Korea were affected. Exposed data included names, emails, phone numbers, shipping addresses, and some order histories. The company noted that no sensitive information, such as payment data, credit card numbers, or login credentials, was compromised.

Coupang notified Korea Internet & Security Agency (KISA) and the National Police Agency, and reported the incident to the national data protection authority of South Korea, the Personal Information Protection Commission (PIPC).

Coupang said the breach did not impact customer data from its Taiwan marketplace or Rocket Now, its food delivery service in Japan.

Deputy Prime Minister and ICT Minister Bae Kyung-hoon held an emergency meeting with key government officials in Seoul on Sunday.

“Starting today, we will intensify monitoring to prevent any secondary damage from the incident for the next three months,” Bae said.  

Police have identified a suspect, a former Chinese Coupang employee who has since left the country, and launched an investigation after receiving a complaint on November 18.

This breach adds to a series of cybersecurity incidents in South Korea. Coupang has faced multiple security incidents, including exposures of customer and driver data from 2020–2021 and a December 2023 data breach affecting over 22,000 customers.

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, data breach)




文章来源: https://securityaffairs.com/185232/data-breach/koreas-amazon-coupang-discloses-a-data-breach-impacting-34m-customers.html
如有侵权请联系:admin#unsafe.sh