
各行各业的日本企业纷纷报告因网络攻击导致数据泄露,数百万人面临身份盗窃风险,当局正试图查明事态全貌。
More Japanese companies across various sectors are reporting data breaches due to cyberattacks that put millions at risk of identity theft, with authorities trying to get to the bottom of the situation.
仅本周一周,大和证券、GMO Research、Rakuten Drive、日经媒体集团和烧肉King(Yakiniku King)均报告了未经授权访问及潜在用户数据泄露事件,可能影响数百万客户。这些报告紧随9月下旬Park24(经营Times租车及汽车共享服务)披露的影响660万账户的数据泄露事件之后。
This week alone, reports of unauthorized access and potential user data leaks were reported by Daiwa Securities, GMO Research, Rakuten Drive, Nikkei media group and Yakiniku King — potentially affecting millions of customers. These reports follow the disclosure of a data breach by Park24, which operates Times rental car and car-sharing services, that affected 6.6 million accounts in late September.
周二,Scala Communications宣布其FAQ系统遭受未经授权访问,波及包括大和证券和西铁城手表在内的最多五家客户公司。
On Tuesday, Scala Communications announced that its FAQ system had been subjected to unauthorized access — exposing up to five of its client companies, including Daiwa Securities and Citizen Watch Co.
乐天集团旗下云存储服务Rakuten Drive承认,今年1月至9月间发生三起未经授权访问事件,可能影响逾1.6万用户。
Rakuten Drive, Rakuten Group’s cloud storage service, acknowledged three unauthorized access incidents between January and September, possibly affecting over 16,000 users.
周一,GMO Research报告称其问卷网站infoQ遭遇未经授权访问,影响多达948,498名用户。公司表示,在611起案例中,客户积分被兑换为价值近290万日元(约合18,310美元)的亚马逊礼品码。其母公司GMO Internet Group同时也经营网络安全服务GMO Cybersecurity。
On Monday, GMO Research reported that its survey site, infoQ, experienced unauthorized access impacting up to 948,498 users. The company said in 611 cases, customer points were exchanged for Amazon gift codes worth nearly ¥2.9 million ($18,310). Its parent company, GMO Internet Group, also operates a cybersecurity service, GMO Cybersecurity.
烧肉King母公司Monogatari周一披露,周六发生的第三方未经授权访问导致约1000万用户账户数据外泄。
Yakiniku King’s parent company, Monogatari, revealed on Monday that unauthorized third-party access on Saturday exposed data for about 10 million user accounts.
内阁官房长官木原实周二在记者会上承认,政府对针对广泛行业企业的攻击深表关切,指出黑客采用多种手段获取信息。
At a news conference on Tuesday, Chief Cabinet Secretary Minoru Kihara acknowledged the government’s concern toward the attacks against the wide range of businesses, noting that hackers employed various methods to gain access to information.
木原表示:“目前尚不清楚这些事件是否关联,但我们正通过向相关方收集信息、分析攻击手法与趋势,努力掌握损害全貌。”
“At this point, it is not clear whether these incidents are related, but we are working to grasp the overall picture of the damage by gathering information from those involved and analyzing the methods and trends of the attacks,” Kihara said.
国家警察厅目前正与外部公司ResearchWorks合作开展调查,研究未经授权访问的发生情况及网络攻击手法。结果预计将于明年3月发布。
The National Police Agency is currently conducting a survey in partnership with an external company, ResearchWorks, to study the occurrence of unauthorized access and methodology of the cyberattacks. Results are expected to be released next March.
木原重申了数字厅周二宣布的防范网络攻击措施:避免重复使用密码、启用多因素认证、点击链接时保持警惕。
Kihara reiterated the measures announced by the Digital Agency on Tuesday for people to take to protect themselves from cyberattacks: avoiding password reuse, enabling multifactor authentication and exercising caution when opening links.
木原表示:“我们还在通过与海外网络安全组织及调查机关合作收集情报,并发布预警通报。”
“We are also conducting information-gathering through collaboration with overseas cybersecurity organizations and investigative authorities, and issuing advisories,” Kihara said.
周二有报道称,日本警方已抓获国际黑客组织“Qilin”疑似成员一人,并将其引渡至德国。
Reports emerged on Tuesday that Japanese police have captured a suspected member of the international hacker group “Qilin” and extradited him to Germany.