Millions of Email Passwords Exposed in Japan Internet Provider Breach: Check Your Account
If you use internet service in Japan from KDDI or related providers, up to 14.2 million email passwords may have been stolen. You need to change your password now.
Source
DataBreaches.net
Original headline: A KDDI data breach has put up to 14.2 million ISP email logins at risk across Japan
Plain-English summary by GetCyberRight. Read the full report at the source above.
Japanese telecommunications company KDDI discovered that hackers broke into a system used by six internet service providers across Japan. The breach put up to 14.22 million email addresses and passwords at risk. KDDI found the problem on June 17, 2026 and fixed the affected system the same day. If you or your family use internet service from KDDI or one of the six providers that share their system, your email login information may have been exposed to attackers. This includes both your email address and the password you use to access your ISP email account.
Hackers could use this information to read your private messages, send emails pretending to be you, or try these passwords on your other accounts. You need to take action immediately if you use email service from any KDDI-related internet provider in Japan.
Stay one step ahead of scammers
Weekly cybersecurity briefings for families. No spam, just the threats that matter and what to do about them.
Here is what to do right now:
- Change your ISP email password immediately. Make it completely different from your old password.
- If you used the same password on any other websites or accounts, change those passwords too. Never reuse passwords across different sites.
- Check your email account for any suspicious activity, like emails you did not send or settings you did not change.
- Watch for phishing emails over the next few months. Scammers might use your exposed email address to send fake messages trying to trick you. This breach is a reminder that everyone needs unique passwords for each important account. Consider using a password manager to create and store strong, different passwords for every site you use. Turn on two-factor authentication whenever possible, which adds an extra security step beyond just your password. These habits protect you even when companies experience data breaches.
Curated from trusted cybersecurity sources by GetCyberRight
Source: DataBreaches.netStay ahead of cyber threats
Get our free weekly digest. Real threats, plain language, what to do about them. No spam, ever.
More articles
Major Email Password Breach in Japan Affects Up to 14.2 Million Users: What to Do
If you use an ISP email service in Japan through KDDI or related providers, your email address and password may have been exposed to attackers.
2 min readNew Zealand Pharmacy Accidentally Posted Private Patient Messages Online
A Wellington pharmacy accidentally made private patient messages visible on the internet. The pharmacy says it has now removed the information and is contacting affected patients.
2 min readNew Zealand Pharmacy Accidentally Posted Patient Messages Online: Check If You Were Affected
Unichem Petone pharmacy in Wellington leaked private patient messages on its website. The pharmacy says it has removed the information and is contacting affected patients.
2 min read_Aleksei_Gorodenkov_Alamy.jpg?width=720&quality=80&disable=upscale)
Your School May Have Exposed Student Data Through Outside Vendors. Here's What Parents Should Do
Schools and colleges are facing data breaches not from their own systems, but from outside companies they work with. Student information is at risk.
2 min read