Briefs.Co Daiwa Securities Vendor Hack Exposes Data of 110,000 Clients
Article Content
- •Unauthorized access to a contractor's server may have exposed data of 110,000 clients.
- •Daiwa Securities confirmed that its own systems remain secure and unaffected.
- •The breach is part of a growing trend of vendor-related data leaks in Japan.
Daiwa Securities Group reported a potential data leak affecting around 110,000 customers due to unauthorized access to a server managed by contractor Scala Communications. The breach, which was disclosed on October 5, 2026, occurred between October 1 and October 2, 2026, and involved personal information such as names and account numbers. However, Daiwa stated that the compromised data cannot be used for online transactions, and no suspicious activities have been detected. The company has not confirmed if the information has been disclosed or spread online. Daiwa's stock experienced a nearly 1% decline following the announcement. This incident highlights the increasing prevalence of vendor breaches in the financial sector.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Daiwa Securities Group in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What type of data was exposed?
Is there any evidence of data misuse?
What steps is Daiwa taking in response?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…