Sakura Internet Hack Exposes Up to 1.36 Million Accounts
Sakura Internet, a Japanese provider of web hosting, cloud, and data centre services, has disclosed that attackers accessed its sales management system, according to Bleeping Computer. Up to 1,360,563 customer accounts may have been exposed.
The breach began on August 9 and was only discovered during a separate investigation into an earlier, smaller incident at Sakura's rental server service. That first intrusion involved unauthorised logins to 583 accounts and the installation of malware on Sakura's systems. The company invalidated the compromised credentials and removed the malware — but the follow-on investigation revealed a far larger exposure underneath.
Contract and membership data was stored in the affected system. The good news: passwords were stored in hashed form (scrambled into a format that is very difficult to reverse), and no credit card details were held there. No data exfiltration (the theft of data off a company's systems) has been confirmed so far.
Sakura has notified authorities and is contacting affected customers individually. The company confirmed this was not a ransomware attack.
Sakura is a designated provider for Japan's Government Cloud programme, which adds a layer of national security significance beyond the customer impact.
What you should do: If you hold or have held a Sakura Internet account, change your password immediately and enable two-factor authentication. Check whether you reused that password anywhere else and change it in those places too.
Sources

