Koreajoongangdaily Data Breach Exposes Personal Information of 5,000 Kia Union Members
Article Content
- •5,000 Kia union members' personal data exposed in a cyberattack on Malgnsoft.
- •Attack occurred on September 19, 2026, with names and ID numbers leaked.
- •Malgnsoft has implemented security measures and reported the incident to authorities.
A cyberattack on Malgnsoft, an online training provider for Kia, resulted in the exposure of personal data for 5,000 union members at Kia's Gwangmyeong plant. The breach occurred on September 19, 2026, and included names, employee ID numbers, and encrypted phone numbers. Although passwords were encrypted, the union has warned members to avoid suspicious communications. The incident is part of a broader trend of data breaches affecting multiple organizations, including financial institutions like Shinhan Bank. Malgnsoft has reported the breach to the Korea Internet & Security Agency and is undergoing further inspections. No additional damage has been confirmed as of the latest updates.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Hana Bank in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What personal data was exposed?
What actions are being taken after the breach?
How can union members protect themselves?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…