www.koreajoongangdaily.com Korea Enforces Hefty Fines for Major Data Breaches
Article Content
- •Korea's new privacy rules impose fines up to 10% of annual revenue for major data breaches.
- •Coupang was fined 642.68 billion won for a breach affecting over 33 million users.
- •Companies can reduce fines by demonstrating prior investment in data protection measures.
Under revised privacy rules effective September 18, 2026, companies in Korea can face fines of up to 10% of their annual revenue for significant data breaches. This law targets firms that leak personal data of 10 million or more individuals due to intent or gross negligence. The Personal Information Protection Commission (PIPC) aims to enhance accountability and encourage proactive data protection investments. Coupang, a major e-commerce platform, was recently fined 642.68 billion won for a breach affecting over 33 million users. Despite this, Coupang rejected a consumer agency's proposal to compensate affected users with 100,000 won each. The company has already provided 50,000 won in shopping vouchers to those impacted. The new regulations also allow for reduced fines for companies that demonstrate prior investment in data protection. The overall goal is to prevent future breaches and hold violators strictly accountable.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Coupang in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…