SHINDO2
Nihon Kotsu Co., Ltd.
Malware infectionSize not disclosed
POSSIBLE LEAKRecovering
Open in the live monitor ▶- Disclosed
- Jul 13, 2026
- Detected
- Jul 11, 2026
- Detection to disclosure
- 2 days
- Leak
- Leak possible
- Type
- Malware infection
- Status
- Recovering
- Security spend
- Measures, no amount
- Compensation
- Not announced
What leaked
UnspecifiedInformation that may have come from the company
Cause
Malware infection following unauthorized access from outside
Timeline
- Detected
- Hire-car web ordering and booking, phone taxi dispatch and some internal systems stopped
- First disclosure
- Maternity taxi web registration form suspended
- Listed on ransomware.live as an Ailock post
- Third report
- Fourth report
Response
- Blocked the entry point
- Forensic investigation
- Service stopped
Systems isolated; scope and cause investigated with outside help. Customers directed to the GO app for taxi bookings
What you should do
- Check the company's notice to see if you're affected
Lessons for companies
- Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
- Run red teaming and AI-assisted hardening, and publish how much you invest
Sources
- Nihon Kotsu Co., Ltd. Official notice · Jul 13, 2026
- Security NEXT News · Jul 23, 2026
- ransomware.live (Japan victim list) Leak site