SHINDO3

Nittai Kogyo

Unauthorized accessSize not disclosed

POSSIBLE LEAKPostal address / Date of birthInvestigating

Open in the live monitor ▶
Disclosed
Feb 10, 2026
Detected
Jan 8, 2026
Detection to disclosure
33 days
Leak
Leak possible
Type
Unauthorized access
Status
Investigating
Security spend
Not checked yet
Compensation
Not announced

What leaked

IdentityName, Gender, Date of birth, Occupation
ContactAddress, Phone and fax numbers, Email address
Business dataCompany name
Transactions & activityPurchase history

Not leaked

  • The company does not hold credit card information

Who is affected

  • Registered customers of the online store

Cause

A cyberattack on the contracted hosting server altered files and planted malicious files

Timeline

  1. Detected
  2. First disclosure

Response

  • Service stopped
  • Blocked the entry point

Suspended the site; will reopen after blocking the intrusion route and adding safeguards

What you should do

  1. Don't open links in emails from this company. The apology email itself may be fake
  2. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  3. Watch for unexpected mail or invoices; your address is hard to change
  4. Check the company's notice to see if you're affected

Lessons for companies

  1. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  2. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources