SHINDO3

Japan Local Character Association

RansomwareSize not disclosed

POSSIBLE LEAKPostal address / Phone numberInvestigating

Open in the live monitor ▶
Disclosed
Aug 6, 2026
Detected
Jun 2, 2026
Detection to disclosure
65 days
Leak
Leak possible
Type
Ransomware
Status
Investigating
Security spend
Not checked yet
Compensation
Not announced

What leaked

IdentityContact person's name
Business dataOrganization name
ContactAddress, Phone number, Email address

Who is affected

  • Managers of characters that took part in events the association ran or was involved in

Cause

Data on the association's storage NAS was encrypted by ransomware

Timeline

  1. Data on the NAS encrypted by ransomware
  2. Reported to authority
  3. First disclosure

Response

  • Blocked the entry point
  • Forensic investigation

Cut off the network and devices; investigating the cause and full extent with outside help

What you should do

  1. Don't open links in emails from this company. The apology email itself may be fake
  2. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  3. Watch for unexpected mail or invoices; your address is hard to change
  4. Check the company's notice to see if you're affected

Lessons for companies

  1. Offline backups with restore drills; segment the network
  2. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  3. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources