IDCF Cloud Hacked, Knocks Out Ibaraki Prefectural Government and Other Sites — 5ch: ‘Still Haven’t Read the Ransom Note?’

From our other sites

The story

In the early hours of October 7, a third party gained unauthorized access to “IDCF Cloud,” a service operated by IDC Frontier Inc., causing an outage in the East Japan Region 1. The company has officially said only that it is investigating, but on the thread, users shared information claiming that numerous sites relying on the service — including the Ibaraki Prefectural Government, Tobu Zoo, and Shimizu S-Pulse — had gone down, fueling speculation that this was actually a ransomware attack. Comments mocking the slow pace of recovery mixed with warnings about the risks of depending on cloud infrastructure, and the discussion proceeded with official statements and unverified hearsay tangled together.

IDC Frontier Inc. announced that an outage has occurred in part of its cloud infrastructure service “IDCF Cloud” due to unauthorized access by a third party.

The outage began around 3:40 AM on October 7, affecting the East Japan Region 1. The company is investigating in order to resolve the outage and is also checking the safety of other regions, and says it will promptly disclose any new findings.

Source: internet.watch.impress.co.jp / Original article here

What people said

2AnonymousOct 7, 2026 21:04
Lol, the cloud got taken down?
Isn't this seriously bad?
This isn't even on the level of 'just emails and addresses leaked'
7AnonymousOct 7, 2026 22:00
Re: #2
However you slice it, this is seriously nasty.
3AnonymousOct 7, 2026 21:47
Re: #1
Massive ransomware attack hits IDC Frontier's East Japan region
Last updated:
40 minutes ago
Around 3:40 AM on October 7, a third party carried out a ransomware attack on IDCF Cloud, run by SoftBank subsidiary IDC Frontier, cutting the East Japan Region 1 off from the network. The attackers claim to have encrypted all 225 data stores and more than 16,600 VM disks, and to have destroyed 41.5PB of backups. Public and private services including the Ibaraki Prefectural Government, the prefectural police headquarters, and Tobu Zoo have been affected, with no clear recovery timeline in sight. The incident has exposed exactly the single-cloud-dependency risk that the Digital Agency's own guidelines warn about.
4AnonymousOct 7, 2026 21:49
Re: #1
Hacker: 'Lol, hacked IDCF in 7 minutes.'
Hacker: 'Left notes in 225 spots lol.'

~1 hour later~
IDCF: 'Let's run a password change. That should sort it out.'
Hacker: 'Uh, we're already in, what are you even doing…'
Hacker: 'Guess nobody's read our letter yet, huh.'

~7 hours later~
IDCF: 'Let's reboot the power through the server management console…'
Hacker: '7 hours in and they're still flipping power switches that were never gonna fix anything.'
Hacker: 'I can see every useless thing you're doing, you know.'
Hacker: 'Still haven't read the letter…'
IDCF: 'Waaaah, it's still not coming back up!!!'
Hacker: 'What is with these guys…'

Hacker: 'Still haven't noticed, huh.'
Hacker: 'Fine, guess I'll just slap the message on the user login screen too…'

~After the message went up~
User: 'I logged into IDCF and it says we got hacked!!!!'
IDCF: 'Huh? There's a letter? Where?'
5AnonymousOct 7, 2026 21:53
Re: #1
[List of sites down due to using IDCF Cloud]
(Survey by poster 'Yuna-sensei' as of 2:45 PM, October 7)

Ibaraki Prefectural Government
Ibaraki Prefectural Police Headquarters
Tobu Zoo
Northern Horse Park
St. Marianna University School of Medicine
Shibaura Machinery (formerly Toshiba Machine)
Shimizu S-Pulse
Kyoto Sanga F.C.
Naxos Music Library
Kodaira City, Tokyo
Japan Basketball Association
Poppins Nanny Service
Do-Regi
Illustration commission site SKIMA
Voice-recognition/transcription service UD Talk
Jorudan Transit Guide (business/PC software edition)
Hoover Brain
Adobe Creative College (campus location only)
Satsuriku no Tenshi x Strawberry (Broccoli)
8AnonymousOct 7, 2026 23:00
They're really being targeted, huh.
9AnonymousOct 7, 2026 23:49
This is bad, man.
10AnonymousOct 8, 2026 00:10
Public cloud — totally safe and secure, right?!
11AnonymousOct 8, 2026 01:10
This is the horror of the AI era right here.
Digital data is a real risk — anything you absolutely can't afford to lose, print it on paper!
15AnonymousOct 8, 2026 07:52
Re: #11
Nah, save it to a floppy disk.
12AnonymousOct 8, 2026 01:58
What would happen if financial institutions got hit?
If every single Japanese citizen's bank account suddenly showed a balance of 10 billion yen, the yen would basically become worthless.
31AnonymousOct 8, 2026 19:34
Re: #12
That's not really doable though. You can't conjure money out of nothing.
17AnonymousOct 8, 2026 09:10
Other threads keep writing 'AI, AI,' but there have always been tons of servers out there with sloppy security — I think what's actually changed lately is just the attackers' mindset (for whatever reason, they've gotten more aggressive). Maybe money started flowing in, or some nation-backed operation kicked off, or buyers willing to pay top dollar came out into the open, who knows.

By the way, that screenshot going around that's supposedly the attacker's statement —
https://imgur.com/Q9VnK0x
— who actually leaked that, and where's it from?
34AnonymousOct 8, 2026 20:48
Re: #17
The hacker finished the job in 7 minutes and sat back watching IDCF scramble, but after 7 hours they still hadn't read the 500-plus text notes left behind, so the hacker gave up and just posted it straight onto the admin console's login screen instead.
18AnonymousOct 8, 2026 09:15
It's like how there have always been tons of cars out there vulnerable to relay-attack theft, but hardly anyone actually did it — until one day someone somewhere decided 'we want more of this' / 'do it more,' and suddenly it's happening everywhere… something like that.
19AnonymousOct 8, 2026 09:15
If JR (Japan Railways) ever got hit, the whole country would grind to a halt.
Better have the 'survival-threatening situation' emergency measures ready before the year's out.
23AnonymousOct 8, 2026 13:21
Re: #19
This could be the start of a crisis threatening the nation's very survival, and yet Japan's news media apparently thinks beer getting 10 yen cheaper is the bigger story. This country really is finished.
20AnonymousOct 8, 2026 09:50
Security stocks are skyrocketing, but is this even something that can be dealt with? Humans alone probably can't keep up with it.
21AnonymousOct 8, 2026 10:23
Hospitals have been getting targeted for a while now too — expect it to only get worse from here.
22AnonymousOct 8, 2026 11:59
Places that skip proper security investment and don't keep up with new technology are the ones that keep getting hit one after another — but ultimately it's because management doesn't take it seriously and won't loosen the purse strings. Nothing's going to improve unless Japan starts fining companies a percentage of revenue the way Europe does.
24AnonymousOct 8, 2026 15:15
Everyone's moving PC software to the cloud and trying to cash in on subscriptions, but how are they going to handle something like this? What happens when accounting data just disappears?
25AnonymousOct 8, 2026 15:18
Guess the only real fix is a dedicated line connecting only trusted operators, like Japan's Zengin interbank system.
26AnonymousOct 8, 2026 17:38
The cloud is just a setup for the elites to siphon information out of us commoners.
Everything you look at on your phone is an open book to them — they'll get a full read on your kinks too.
If you don't want it taken, keep anything important off it and manage it separately.
28AnonymousOct 8, 2026 17:50
If it's Russians hired by the FBI stirring this up, it's all a DNS issue anyway — only option left is hitting the IP directly.

Back when I was at Kobe University of Mercantile Marine, we had similar incidents all the time where you couldn't get from campus out to the outside network. It always started with an email claiming to be a press inquiry from the media. The media and the FBI are both constantly running illegal investigations.
29AnonymousOct 8, 2026 19:26
Each client company is probably scrambling to handle this independently, but IDCF itself still hasn't managed to do a thing, lol.
30AnonymousOct 8, 2026 19:28
Re: #29
Apparently they threw up their hands and said recovery's a lost cause. The client companies are on their own, fending for themselves.
32AnonymousOct 8, 2026 20:24
Is FANZA (Japan's major adult-content platform) okay?? Please, I'm begging you, seriously.
35AnonymousOct 8, 2026 20:52
By the 'Claude Mythos,' Japan has fallen.
The end. (meaning unclear — reads like troll copypasta)
39AnonymousOct 9, 2026 00:45
Re: #35
Why are you bringing up old news? You're basically the poster child for Japanese people.

Background and Key Points of This Story

IDC Frontier’s official statement has stuck to the phrase “outage due to unauthorized access” and has not confirmed details such as whether it was ransomware or how much data was encrypted. The specific figures that spread through the thread — “225 data stores,” “over 16,600 VM disks,” “41.5PB of backups lost” — along with the list of affected sites like the Ibaraki Prefectural Government and Tobu Zoo, are unverified information that users gathered and reposted on their own, with no confirmation from the company itself. Because cloud infrastructure services are built so that multiple companies and local governments share the same underlying platform, this incident once again exposed how an attack on a single point can ripple out across a wide range of services. The thread was full of both mockery over the slow recovery and skepticism toward cloud dependence itself, but it’s worth noting that official information and unverified hearsay spread together, intermixed, throughout the discussion.

*This article is excerpted and summarized from the 5ch (Business News+) thread ‘[IT] Outage Caused by Unauthorized Access Hits “IDCF Cloud” East Japan Region 1.’

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *