字号·· | 护眼
日经

网络攻击席卷日本和韩国企业Cyberattacks sweep Japan and South Korea businesses

点「原文对照」整页切到原文,或双击某段只看那段的原文。

东京/首尔 — 近几周,一系列重大网络攻击袭击了日本和韩国的企业,暴露了数百万条客户记录,并引发担忧人工智能可能正在帮助黑客加大攻击力度。

TOKYO/SEOUL -- A series of major cyberattacks has hit businesses in Japan and South Korea in recent weeks, exposing millions of customer records and raising concerns that artificial intelligence could be helping hackers intensify their operations.

受攻击的目标包括租车服务、韩国主要银行、日本零售商和餐链。专家正在调查人工智能是否让攻击更容易实施,但尚未建立起近期事件之间的明确联系,也无法确定人工智能是否发挥了直接作用。

Targets have ranged from rental car services and major South Korean banks to Japanese retailers and restaurant chains. Experts are examining whether artificial intelligence is making attacks easier to carry out, though they have yet to establish clear links between the recent incidents or determine whether it played a direct role.

这些黑客攻击凸显了亚洲公司面临日益严峻的网络威胁之际,数据泄露和勒索软件攻击变得更加频繁,潜在破坏更大。生成式人工智能的普及进一步加剧了担忧,担心攻击者可以自动化部分操作并在更大范围内瞄准受害者。

The hacks highlight a growing cyber threat facing Asian companies as data breaches and ransomware attacks become more frequent and potentially more damaging. The spread of generative AI has added to fears that attackers could automate parts of their operations and target victims on a larger scale.

东京上市的网络安全公司趋势科技告诉《日经亚洲》,截至今年9月底,该公司已收集到600起日本公司和机构报告的未经授权访问及其他网络事件。

Trend Micro, a Tokyo-listed cybersecurity firm, told Nikkei Asia it had compiled 600 cases of Japanese companies and organizations reporting unauthorized access and other cyber incidents by the end of September this year.

该数字按公告日期而非实际发生时间记录,已超过去年的593起,并逼近2024年创下的644起记录。自夏天以来,事件总体呈上升趋势,8月份报告了73起,9月份为86起。

The figure, which records incidents by announcement date rather than when they occurred, had already surpassed last year's 593 and was approaching the record 644 cases logged in 2024. Incidents have been on a general upward trend since summer, with 73 cases reported in August and 86 in September.

周二,日本折扣零售商Max控股表示,其在线购物服务所使用的服务器遭受未经授权访问后,可能有多达173万名客户的个人数据遭到泄露。

On Tuesday, Japanese discount retailer Mr Max Holdings said personal data belonging to as many as 1.73 million customers may have been compromised after unauthorized access to a server used for its online shopping services.

金融机构也成为攻击目标。周一,日本大和证券表示,上周黑客通过非法访问一家承包商后,约有22万条记录泄露。泄露的信息包括11万名客户的姓名、电子邮件地址和账户号码。

Financial institutions have also been targeted. On Monday, Japan's Daiwa Securities said about 220,000 records had been leaked after hackers gained unauthorized access to a contractor last week. The compromised information included names, email addresses and account numbers from 110,000 customers.

惠誉解决方案旗下机构CreditSights指出,韩国共有七家金融机构遭遇安全漏洞侵袭,其中包括新韩银行、KB国民银行及韩亚银行等大型银行。该机构将此次事件描述为“一场波及整个金融行业的网络安全事故”。虽然目前尚无法评估此次事件对这些银行造成的财务影响,但预计它们可能面临监管处罚及客户赔偿支出,同时还需增加投入以提升在线安全防护水平。

CreditSights, a Fitch Solutions company, said seven financial institutions in South Korea -- including major lenders Shinhan Bank, KB Kookmin Bank and Hana Bank -- had been affected by security breaches, which it described as "a sector-wide cybersecurity incident." The research company said it could not yet assess the financial impact on the banks, but it predicted potential regulatory penalties and customer compensation payments, as well as increased spending on improving their online security.

韩国金融监管机构也强调了人工智能带来的风险。韩国金融服务委员会在周一发布的声明中称:“随着人工智能技术的快速发展,利用各类未知漏洞的新型攻击模式与黑客技术可能迅速蔓延。”

Financial authorities in South Korea have flagged the risks presented by AI. "As AI continues to rapidly develop, new attack patterns and hacking techniques that exploit unforeseen vulnerabilities could spread quickly," the Financial Services Commission said in a statement on Monday.

韩国总统李在明周二也谈到了人工智能驱动的攻击所带来的日益严峻的威胁。他表示:“如今已出现这样一种局面:即便毫无专业技能的人也能借助人工智能轻松实施黑客攻击。”

President Lee Jae Myung on Tuesday also spoke about the growing threat of AI-driven attacks. "We have reached a scenario where even people with no special skills can use AI to easily carry out hacking attacks," he said.

根据网络安全公司ThreatBook的统计,2025年6月至2026年6月期间,日本与韩国均位列亚太地区遭受攻击次数最多的五个市场,遭受攻击次数分别达到2,282次和1,978次。在此期间,两国遭受的攻击总量约占该公司监测到的所有攻击案例的五分之一。

Japan and South Korea were among the five most targeted markets in the Asia-Pacific region between June 2025 and June 2026, with 2,282 and 1,978 incidents, respectively, according to cybersecurity firm ThreatBook. Together, they accounted for about one-fifth of the attacks tracked by the company during the period.

不过日本的专家们提醒称,目前能够直接证明人工智能与具体攻击事件存在关联的证据仍然有限。趋势科技的一位代表表示:“我们正在分析事件成因及其潜在联系,但目前尚无法明确判定人工智能是否参与其中。”

But experts in Japan cautioned that evidence directly linking AI to individual attacks remained limited. "We are analyzing the causes and possible connections, but at this point, we cannot clearly say whether AI was involved," a Trend Micro representative said.

该代表补充道,人工智能可能被用于攻击的准备阶段,但“很难追踪到证据证明它被用于攻击本身。”周日,日经公司(Nikkei Asia的所有者)表示,一名员工的Microsoft 365账户遭到入侵,导致攻击者发送了约9000封伪造邮件。该媒体公司称,姓名、电子邮件地址及部分邮件内容也被认为已泄露。

AI could be used in the preparatory stages of an attack, the representative added, but "finding evidence that it was used in the attack itself remained hard to trace." On Sunday, Nikkei Inc, owner of Nikkei Asia, said an employee's Microsoft 365 account had been compromised, allowing an attacker to send about 9,000 spoofed emails. The media company said names, email addresses and some email content were also believed to have been exposed.

日本最引人注目的案例之一涉及Park24旗下的汽车租赁服务Times Car,该事件于9月25日首次披露,攻击者获取了与660万个账户相关的信息。约160万条记录遭泄露,包括驾照等身份证件。截至8月底,Times Car拥有约415万会员,其中大多数被认为受此次数据泄露影响。

One of the highest-profile cases in Japan involved Park24's car rental service Times Car, first announced on Sep. 25, where attackers gained access to information linked to 6.6 million accounts. About 1.6 million records were exposed, including identification documents such as driving licenses. Times Car had about 4.15 million members as of the end of August, with most believed to have been affected by the data breach.

根据其数据存储政策,该公司在客户注销账户后仍保留驾照信息长达七年。此事引发担忧,被盗材料可能被用于身份盗窃,包括欺诈性信用卡申请。

The company had retained driving license information for seven years under its data-storage policy, even after customers had closed their accounts. The incident has raised concerns that the stolen material could be used for identity theft, including fraudulent credit card applications.

此次泄露事件引发了针对该公司处理个人信息方式的集体诉讼呼声,截至周一已有超过4万人加入请愿。

The breach has prompted calls for a class-action lawsuit over the company's handling of personal information, with more than 40,000 people joining a petition as of Monday.

日本网络安全公司Josys的执行役员西根弘毅表示,这一系列事件反映了日本企业更容易遭受网络攻击、以及生成式AI降低了海外攻击者门槛的大趋势。不过,西根指出,由于极少披露攻击者如何获取访问权限或所用手段,无法判断共性。

The cluster of incidents reflected broader trends of Japanese companies becoming more vulnerable to cyberattacks and generative AI lowering barriers for overseas attackers, said Hirotake Nishine, an executive officer at Japanese cybersecurity company Josys. However, Nishine said it was not possible to determine commonalities as little information had been disclosed about how attackers gained access or the methods they used.

西根称,日语此前曾提供一定保护,因为不自然的日语使得网络钓鱼邮件和冒充尝试更容易被识破。

The Japanese language had previously offered some protection, Nishine said, as unnatural Japanese made phishing emails and impersonation attempts easier to detect.

“借助生成式AI,现在任何人都能轻松生成与母语人士无异的日语,”他说。“那道门槛实际上已经消失了。”

"With generative AI, anyone can now easily produce Japanese that is indistinguishable from that of a native speaker," he said. "That barrier has effectively disappeared."