Japanese parking lot management company Park24 [Photo: Park24 website]

In Japan, personal data leaks involving companies and institutions are continuing. 피해 was confirmed across industries, from rental car operator Times Car and convenience store chain Seicomart to Japan Post and Benefit One. Adding up the four cases puts the total number of victims at about 7.18 million.

Foreign media including Japanese online outlet ITmedia reported the news on Sept. 30 local time. The biggest case involved Times Car, run by rental car and parking management firm Park24. Park24 said it detected unauthorized access on the Times Car website at 9:07 a.m. on Sept. 25.

An investigation found that about 6.6 million members had their information accessed without authorization. It also included former members and applicants who did not complete the sign-up process. Data that may have been leaked include names, addresses, dates of birth, phone numbers, email addresses, driver's licence information and identity documents. Of those, 160 people also had identity verification documents, including photos of their driver's licences, leaked. Park24 sent individual emails to those affected and plans to confirm the scope of the leak through an outside specialist agency within 2 weeks. It stressed that it blocked the unauthorized access at 7:25 a.m. on Sept. 26 and that services are operating normally.

Seicomart, a leading convenience store chain in Hokkaido, said its app server was breached. It announced on Sept. 30 that information on 572,022 members with a history of signing up for the app was viewed by a third party. That is 49 percent of all members. The information includes names, gender, dates of birth, addresses, phone numbers, email addresses and the dates when members joined and left the points card programme. It said passwords were not leaked and that it does not hold credit card information. New app sign-ups, member information changes and functions of its official online mall remain suspended, and it is working with police to investigate the cause.

Japan Post Holdings and Japan Post Co said on Sept. 29 that the Post Office app was subject to unauthorized access. There were 19 victims and 69 leaked cases. Exposed information included names, addresses and phone numbers, as well as sender and recipient information on shipping labels, tracking numbers and item names. The company began an emergency inspection at around 10:30 p.m. on Sept. 25 and resumed services on Sept. 26.

Employee benefits services company Benefit One said the leak was caused not by hacking but by a configuration error. When downloading survey results on a platform for corporate managers, employee information from other companies was displayed. The affected group includes 13,460 people from 2,322 companies and organisations, including employee numbers, names, gender, dates of birth, affiliation and job title, and employment and resignation information. The error occurred during a system overhaul in June 2025. The company identified the problem in an internal investigation in October that year but did not properly carry out corrective work. The leak came to light on July 30 this year after a contact from a client company's representative. Only 1 person downloaded data through the function, and no secondary 피해 was confirmed. The company reported the incident to the Personal Information Protection Commission.

With information being leaked not only through external attacks but also through lax internal management, the need is growing for Japanese companies to review their personal data protection systems.

Keyword

#Park24 #Times Car #Seicomart #Japan Post #Benefit One
Copyright © DigitalToday. All rights reserved. Unauthorized reproduction and redistribution are prohibited.