Mk.Co.Kr Personal Data Breach at Major South Korean Banks Following Hacking Incidents
Article Content
- •Personal data was leaked from ATMs of major South Korean banks.
- •The breach is part of a series of hacking incidents targeting the financial sector.
- •Authorities are investigating, but the scope and attack methods remain unclear.
On October 4, 2026, Shinhan, KB Kookmin, and Hana Bank reported a significant data breach involving ATM corners where personal information was leaked. This incident follows a series of hacking attempts targeting the second financial sector, including savings banks and capital companies. The specific attack methods and the number of affected individuals have not been disclosed. Authorities are investigating the incidents, which have raised concerns about the security of financial institutions in South Korea. The banks have not confirmed the exact scope of the breach or the methods used in the attacks. As of now, there are no reports of of the leaked data. The situation remains under investigation, and further updates are expected.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Hana Bank in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What information was leaked?
Are the banks taking any action?
Is there a risk of further exploitation?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…