Coupang Fined Record $400 Million for Major Data Breach Affecting Millions
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
South Korea's Personal Information Protection Commission (PIPC) has fined Coupang, the country's largest e-commerce platform, a record 624.7 billion won (approximately $400 million) due to a significant data breach that compromised the personal information of around 37.5 million users. The breach, initially detected in late 2025, involved unauthorized access to sensitive data, including names, addresses, and order histories, primarily due to inadequate cybersecurity measures. Coupang's internal security protocols were found lacking, particularly in managing authentication keys and access controls. The company has expressed its intention to challenge the ruling in court, claiming that its efforts to mitigate the breach were overlooked. This incident has raised concerns about cybersecurity practices in South Korea and has led to diplomatic tensions with the US, as Coupang is a US-based company. The breach has also resulted in significant financial losses for Coupang, with its stock price plummeting by 35% since the beginning of the year.
Key Points: • Coupang fined 624.7 billion won ($400 million) for a data breach affecting 37.5 million users. • The breach exposed sensitive personal data due to inadequate cybersecurity measures. • Coupang plans to challenge the ruling, claiming its security efforts were not acknowledged.