{"id":96180,"date":"2026-07-23T11:46:08","date_gmt":"2026-07-23T11:46:08","guid":{"rendered":"https:\/\/www.europesays.com\/korea\/96180\/"},"modified":"2026-07-23T11:46:08","modified_gmt":"2026-07-23T11:46:08","slug":"months-long-breach-exposes-south-korean-diplomats-personal-data","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/korea\/96180\/","title":{"rendered":"Months-long breach exposes South Korean diplomats&#8217; personal data"},"content":{"rendered":"<p>South Korea\u2019s Foreign Ministry has disclosed that attackers breached the Korea National Diplomatic Academy\u2019s online education system, compromising personal data belonging to current and former ministry staff and diplomats stationed abroad.<\/p>\n<p><img decoding=\"async\" src=\"https:\/\/www.europesays.com\/korea\/wp-content\/uploads\/2026\/07\/data_breach-1.webp\" class=\"aligncenter\" alt=\"South Korea diplomatic academy breach\" title=\"Data breach\"\/><\/p>\n<p>The Korea National Diplomatic Academy launched the online training platform in 2022 to support remote learning during the COVID-19 pandemic. Since then, it has been used to deliver job training and language courses for diplomatic personnel.<\/p>\n<p>According to the ministry, the intrusion started in April 2025 and continued until February 2026.<\/p>\n<p>The leaked data includes usernames, names, email addresses, and encrypted passwords tied to accounts on the training platform. The ministry noted resident registration numbers, phone numbers, home addresses, and photos were not part of the leak.<\/p>\n<p>The ministry has taken the affected system offline and says it is implementing additional security measures to prevent further damage.<\/p>\n<p>\u201cPlease exercise special caution when receiving emails from unknown sources,\u201d the South Korean government <a href=\"https:\/\/www.mofa.go.kr\/www\/brd\/m_4075\/view.do?seq=369430\" target=\"_blank\" rel=\"nofollow noopener\">warned<\/a>.<\/p>\n<p>Those with privacy concerns are advised to reach out to the ministry\u2019s security department.<\/p>\n<p>South Korean daily Dong-A Ilbo <a href=\"https:\/\/www.donga.com\/en\/article\/all\/20260723\/6317995\/1\" target=\"_blank\" rel=\"nofollow noopener\">reported<\/a> that personal information belonging to about 10,000 current and former diplomats and officials seconded from other government ministries may have been compromised.<\/p>\n<p>Foreign Ministry spokesperson Park Il <a href=\"https:\/\/www.koreajoongangdaily.com\/bilingual-news\/ten-months-of-undetected-hacking-exposes-security-failures-kor\/12785323\" target=\"_blank\" rel=\"nofollow noopener\">addressed<\/a> the incident during a press briefing, saying: \u201cWe recognized this issue in February, but we announced it five months later because of the sensitivity of the matter regarding our diplomatic and security affairs, and the need for careful review and analysis.\u201d<\/p>\n<p>Another official dismissed speculation that the delay was tied to unrelated diplomatic developments, saying it resulted from the technical complexity of the investigation and the need to coordinate with other government agencies.<\/p>\n<p>The ministry said the attackers exploited a zero-day vulnerability. Security researchers noted that the use of zero-day exploits against third-party software is consistent with tactics previously linked to North Korean state-backed <a href=\"https:\/\/www.helpnetsecurity.com\/2026\/05\/05\/china-scarcruft-supply-chain-attack\/\" rel=\"nofollow noopener\" target=\"_blank\">hacking groups<\/a>. However, South Korean officials have not attributed the attack, adding that technical analysis remains ongoing.<\/p>\n","protected":false},"excerpt":{"rendered":"South Korea\u2019s Foreign Ministry has disclosed that attackers breached the Korea National Diplomatic Academy\u2019s online education system, compromising&hellip;\n","protected":false},"author":2,"featured_media":96181,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5],"tags":[4104,9581,31,33],"class_list":["post-96180","post","type-post","status-publish","format-standard","has-post-thumbnail","category-south-korea","tag-data-breach","tag-government","tag-korea","tag-south-korea"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/posts\/96180","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/comments?post=96180"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/posts\/96180\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/media\/96181"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/media?parent=96180"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/categories?post=96180"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/korea\/wp-json\/wp\/v2\/tags?post=96180"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}