SHINDO6

Hoken Minaoshi Honpo

Personal data~1.7Mrecords

POSSIBLE LEAKPostal address / Date of birthRansomware · Investigating

Open in the live monitor ▶
Disclosed
May 1, 2025
Detected
Feb 16, 2025
Detection to disclosure
74 days
Leak
Leak possible
Type
Ransomware
Status
Investigating
Security spend
Not checked yet
Compensation
Not announced

What leaked

IdentityFull name, Date of birth, Occupation
ContactAddress, Phone number, Email address (customers who consulted)

How many

  • Records relating to 29 life and 24 non-life insurers ~1.7M records

Who is affected

  • Policyholders (29 life and 24 non-life insurers)
  • Customers who consulted about insurance

Cause

A ransomware attack encrypted files stored on some servers

Timeline

  1. Detected
  2. Data as of
  3. Earliest report seen (Security NEXT); the company had announced the incident earlier

Response

  • Forensic investigation
  • Notified individuals

Plans to contact affected customers individually in writing. Continuing the investigation with outside help and will take steps to prevent recurrence

What you should do

  1. Don't open links in emails from this company. The apology email itself may be fake
  2. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  3. Watch for unexpected mail or invoices; your address is hard to change
  4. Check the company's notice to see if you're affected

Lessons for companies

  1. Offline backups with restore drills; segment the network
  2. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  3. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources