You have got to be KDDI-ng – Japanese telco exposes 14.2 million managed email credentials

https://image.theregister.com/5238519.jpg?imageId=5238519&x=0&y=0&cropw=100&croph=100&panox=0&panoy=0&panow=100&panoh=100&width=1200&height=683

Five ISPs and plenty of users await their fate

Japanese telco KDDI has messed up by allowing an attacker to access systems powering an email service it manages for itself and other local ISPs, and which stores info on up to 14.2 million users.

The company yesterday posted a confession [PDF] that it detected unauthorized access to the email system it offers to third-party customers on June 17th.

Machine translation of the confession suggests that KDDI investigated the situation and found attackers exploited a vulnerability in third-party software used on the email service, without claiming that vuln was a zero-day it had no chance of defending or an explanation of why it was running vulnerable software.

There’s some good news because KDDI was able to prevent further intrusion on the same day it noticed the attack, and says it has bolstered its defences to prevent future intrusions.

But the carrier...

Copyright of this story solely belongs to theregister.com. To see the full text click HERE

Read more

https://www.reuters.com/resizer/v2/NL7XKWVQNNOFLHZCFLE6CKLXCA.jpg?auth=08dbfdc5178ccb1adb7f5db40ace7ec0b92235ea6aae574d61d1267e82d1b273&height=1005&width=1920&quality=80&smart=true

Sources: Qualcomm is in talks to design custom chips for ByteDance, based partly on connectivity tech from Alphawave Semi, which Qualcomm acquired in 2025

Sponsor Posts Fast, affordable law for startups — Soxton automates startup legal so founders can move faster and sleep better. We handle incorporation, advisor, employment and commercial contracts. Join the waitlist for early access! Stop vibe coding analytics — Equals AI turns questions about your business into auditable spreadsheet models and dashboards.