NTT Communications Corporation, one of Japan’s leading telecommunication providers, has disclosed a data breach impacting nearly 18,000 corporate clients. The unauthorized access was detected on February 5, 2025, when security teams identified suspicious activity within NTT’s internal systems. The attackers compromised the ‘Order Information Distribution System’, which contained sensitive details about 17,891 corporate clients, though no personal customer data was exposed. The breach resulted in the leakage of information such as company names, contract numbers, phone numbers, email addresses, physical addresses, and service usage details. NTT has clarified that the breach did not affect corporate smartphone or mobile phone contracts managed by NTT Docomo. While the initial compromise was contained within 24 hours, investigators later discovered that the attackers attempted to move laterally to another networked device. This affected device was quickly disconnected to prevent further intrusion. Following a thorough investigation, NTT has confirmed that the threat has been fully neutralized. However, the company has opted not to issue direct notifications to affected clients, choosing instead to publish a public advisory on its website. This incident follows a series of cybersecurity challenges faced by NTT in recent years. In January 2025, the company suffered a 12-hour outage on its mobile and payment platforms due to a distributed denial-of-service (DDoS) attack. Additionally, in May 2020, NTT experienced another major data breach, where hackers infiltrated its internal network and stole customer information. Given its status as one of Japan’s largest telecom providers, NTT remains a prime target for cybercriminals seeking to exploit its infrastructure for financial gain or operational disruption.
A newly identified cyberattack campaign is targeting Windows users through fake CAPTCHA verification pages hosted on compromised websites. The attack combines multiple evasion tech...
The OnionDrop loader campaign is a sophisticated malware operation that uses DLL sideloading to distribute multiple infostealers at scale. Attackers deliver a ZIP archive containin...
Cybersecurity researchers have uncovered new Windows-based variants of the SprySOCKS backdoor, a malware family previously associated with the China-linked threat actor Earth Lusca...