SHINDO5
Rakuten Books Network Inc.
Personal data records35,773records
POSSIBLE LEAKPostal address / Phone numberUnauthorized access · Contained
Open in the live monitor ▶- Disclosed
- Aug 21, 2026
- Detected
- Apr 5, 2026
- Detection to disclosure
- 138 days
- Leak
- Leak possible
- Type
- Unauthorized access
- Status
- Contained
- Security spend
- Not checked yet
- Compensation
- Not announced
What leaked
IdentityName, address, phone number
ContactName, address, phone number, Name, address, phone number
UnspecifiedPersonal data of business partners and employees
Not leaked
- Financial information such as credit card numbers is not included
How many
- Personal data records 35,773 records
- Rakuten Books users 33,333 records
- Business partners 2,101 records
- Employees 339 records
Who is affected
- Rakuten Books users
- Business partners
- Employees
Cause
Unauthorized access to PCs used by the company
Timeline
- Detected
- Contained
- First disclosure
Response
- Blocked the entry point
- Forensic investigation
- Notified individuals
Isolated the affected PCs and investigated with outside experts; strengthening security; reporting to the PPC and contacting affected people
What you should do
- Treat refund or apology calls and texts as scams. Call back only on the number from the official site
- Watch for unexpected mail or invoices; your address is hard to change
- Expect targeted phishing posing as HR or interview contacts
- Check the company's notice to see if you're affected
Lessons for companies
- Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
- Run red teaming and AI-assisted hardening, and publish how much you invest
Sources
- Cybersecurity-jp.com News · Aug 25, 2026
- Rakuten Books Network Inc. Official notice · Aug 21, 2026
- Security NEXT News · Aug 24, 2026