Menu
Browse

Cyber Incident Victim: Pandora TV Co. Ltd.

Date:

Oct 2014

Location:

South Korea

Summary

A South Korean video sharing service experienced a significant data breach where hackers accessed personal information of approximately 7.45 million users, with over 114,000 specific data items confirmed as leaked. The compromised data included usernames, real names, encoded passwords, birth dates, physical addresses, email addresses, and mobile phone numbers, though the company did not collect social security numbers. The country's communications regulator intervened, directing the organization to notify affected users to mitigate potential future damages. This incident contributed to broader national concerns about systemic personal data vulnerabilities.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

In October 2014, Pandora TV Co. Ltd., a South Korean video sharing web operator, disclosed a significant data breach affecting its user base. On October 15, Yonhap News reported that hackers had accessed approximately 7.45 million items of private information from the company's systems, representing the majority of the 8.7 million total records managed by Pandora TV. The attackers successfully exfiltrated 114,707 specific items of personal data during the incident. Compromised information included user names, real names, encoded passwords, birth dates, physical addresses, email addresses, and mobile phone numbers. The company confirmed it did not collect or store social security numbers or national resident registration ID numbers, limiting the scope of sensitive identifiers exposed. South Korea's communications watchdog, the Korea Communications Commission (KCC), verified the scale of unauthorized access and data leakage through its investigation. The breach occurred over an unspecified period prior to its October discovery, though exact intrusion methods and attacker origins remained undisclosed in public reports. Pandora TV did not initially detect or voluntarily report the incident, with regulatory intervention prompting official disclosure.

Cyber Incident Image

The KCC mandated Pandora TV to notify all affected users about the breach to mitigate potential future harms stemming from the data exposure. This directive formed the primary organizational response, though specific technical containment measures or system remediation efforts were not detailed in available reports. The incident contributed to ongoing concerns about personal data security in South Korea, where cumulative breaches had already sparked national debates about systemic vulnerabilities. Notably, pre-existing compromises of resident registration numbers—analogous to U.S. Social Security numbers—had reached such severity that government reissuance of these identifiers was under consideration prior to this breach. While Pandora TV's incident did not involve these highly sensitive identifiers, it exacerbated existing risks by exposing additional personal details that could facilitate identity fraud or phishing campaigns. The breach's impact centered on the scale of records accessed rather than novel data types, aligning with broader patterns of mass data compromise affecting Korean digital services during this period. Regulatory oversight focused on breach notification compliance rather than public disclosure of forensic findings or attacker attribution.

Sources
Sources available to members
1 source