< Back to all clusters
[TECHNOLOGY] · South Korea · 10 sources

started · updated

Tving data breach compromises 39.5 million accounts and core source code

A joint government-civilian investigation has confirmed a massive data breach at the South Korean streaming platform Tving, resulting in the compromise of approximately 39.54 million user accounts. The leaked data includes 22.06 million active accounts and 17.37 million inactive or dormant accounts. Information exposed spans 20 categories, including names, dates of birth, phone numbers, and email addresses. While passwords were encrypted, investigators noted that phone numbers and emails were effectively exposed in plain text because the encryption keys were also stolen.

In addition to user data, the breach included 361 technical assets totaling 30.35GB of source code. This leaked material contains critical technology such as content recommendation algorithms, user authentication systems, and payment management tools. The investigation revealed that attackers gained entry by stealing a developer's access key, which allowed them to move from the development environment into the operational AWS environment.

The Ministry of Science and ICT identified several security failures, including improper storage of access keys within source code, unencrypted database credentials, and a lack of dedicated security personnel. Tving also failed to report the incident to the Korea Internet & Security Agency (KISA) within the required 24-hour window. Consequently, the platform faces a fine of up to 30 million won and must submit a recurrence prevention plan.

Entities

CJ ENM · Korea Internet & Security Agency · Ministry of Science and ICT · Personal Information Protection Commission · Tving

Claims

What the coverage asserts, and how many sources carry each claim.