SHINDO5

Rakuten Books Network Inc.

Personal data records35,773records

POSSIBLE LEAKPostal address / Phone numberUnauthorized access · Contained

Open in the live monitor ▶
Disclosed
Aug 21, 2026
Detected
Apr 5, 2026
Detection to disclosure
138 days
Leak
Leak possible
Type
Unauthorized access
Status
Contained
Security spend
Not checked yet
Compensation
Not announced

What leaked

IdentityName, address, phone number
ContactName, address, phone number, Name, address, phone number
UnspecifiedPersonal data of business partners and employees

Not leaked

  • Financial information such as credit card numbers is not included

How many

  • Personal data records 35,773 records
  • Rakuten Books users 33,333 records
  • Business partners 2,101 records
  • Employees 339 records

Who is affected

  • Rakuten Books users
  • Business partners
  • Employees

Cause

Unauthorized access to PCs used by the company

Timeline

  1. Detected
  2. Contained
  3. First disclosure

Response

  • Blocked the entry point
  • Forensic investigation
  • Notified individuals

Isolated the affected PCs and investigated with outside experts; strengthening security; reporting to the PPC and contacting affected people

What you should do

  1. Treat refund or apology calls and texts as scams. Call back only on the number from the official site
  2. Watch for unexpected mail or invoices; your address is hard to change
  3. Expect targeted phishing posing as HR or interview contacts
  4. Check the company's notice to see if you're affected

Lessons for companies

  1. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  2. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources