Sompo Japan May Have Leaked 60,000 Customers’ Records — Vendor Breaches Keep Piling Up

From our other sites

The story

Sompo Japan announced on the 7th that an external vendor had suffered unauthorized access, potentially leaking roughly 60,000 customer records. The same day also brought reports of leaks at HIS and at another company that had outsourced its dash-cam operations to Scala Communications, fueling growing unease on 5ch over this ongoing string of vendor-related breaches. The thread split over whether there’s any way to protect your own personal information from leaks, with many voices insisting that cutting back on service sign-ups is the only real option — while concerns about the security of the My Number card also became a hot topic.

October 7, 2026, 16:24 — Kyodo News

Sompo Japan Insurance announced on the 7th that an external vendor had suffered unauthorized access, potentially leaking approximately 60,000 customer records.

Source: 47news.jp / Read the original article here

What people said

12AnonymousOct 7, 2026 16:45
Is Japan just… soft when it comes to cybersecurity?
19AnonymousOct 7, 2026 16:45
Re: #12
We're the leakiest sieve among developed nations.
23AnonymousOct 7, 2026 16:46
It's probably only a matter of time before the My Number card gets breached too.
37AnonymousOct 7, 2026 16:48
Re: #23
I never got the card, so I guess it doesn't affect me lol
45AnonymousOct 7, 2026 16:48
Re: #23
I bet it's already leaked — they just haven't announced it yet.
350AnonymousOct 7, 2026 17:11
Re: #23
But if you don't get one, going to the hospital becomes a huge hassle.
52AnonymousOct 7, 2026 16:49
You want to know what's really dangerous right now? If FANZA's customer data ever leaked, that'd be the scariest one of all. (FANZA is Japan's major adult-content platform)

Your kinks would get exposed to the whole world — hell, maybe even your coworkers.
60AnonymousOct 7, 2026 16:50
Re: #52
I've never used FANZA, so I'm fine.
80AnonymousOct 7, 2026 16:52
Re: #52
I'm not stupid enough to put my real name into FANZA.
54AnonymousOct 7, 2026 16:50
Now they're saying passport info leaked from HIS too.
109AnonymousOct 7, 2026 16:54
Re: #54
Wait, it's actually real

> October 7, 2026 — Other
> Apology and Notice Regarding Possible Leak of Personal Information Due to Unauthorized Access to a Subsidiary's File Server
122AnonymousOct 7, 2026 16:55
Re: #54
It's their Thai subsidiary — did you even read the announcement?
68AnonymousOct 7, 2026 16:51
Anyone who's already gotten a My Number card has entered the acceptance phase.
103AnonymousOct 7, 2026 16:54
Re: #68
The moment I renewed mine, I thought "yeah, this isn't good" — after renewing, facial recognition stopped working entirely.
Honestly, I regret ever getting this bug-ridden thing.
120AnonymousOct 7, 2026 16:55
Re: #68
Whether you physically have the card or not doesn't matter —
your My Number data already exists in the system either way.
115AnonymousOct 7, 2026 16:55
Denmark's version of the My Number card already got breached.
It's only a matter of time for Japan too.
123AnonymousOct 7, 2026 16:55
Re: #115

The Digital Agency is aiming to roll out the "next-generation My Number card," with improved safety and convenience, sometime in fiscal year 2029. It was originally slated for this fiscal year, but has been delayed repeatedly due to system-compatibility issues. Digital Minister Toshiharu Furukawa, who took office in September, told reporters on the 2nd that they would "strengthen security and make it more user-friendly."

Huh?
So they're just leaving the security flaws as they are?
This is a hundred-million-person lawsuit waiting to happen.
134AnonymousOct 7, 2026 16:56
Re: #115
The Nordic countries are way more digitized than Japan is, and even they got breached —
at this rate an IT backwater like Japan might as well have zero defenses lol
155AnonymousOct 7, 2026 16:57
Isn't this Scala Communications again?
Every company that outsourced to them seems to be getting wiped out.

186AnonymousOct 7, 2026 16:59
Re: #155
It has come to light that the server system of Scala Communications Inc. ("SC"), which we use to handle customer inquiries for our business-use connected dash cam "SMILING ROAD" ("SR"), was accessed without authorization by a third party, and that our customers' information may have leaked as a result. We have confirmed there was no unauthorized access to our own systems.
We deeply apologize to our customers, agents, and all related parties for the considerable worry and inconvenience this has caused.
237AnonymousOct 7, 2026 17:02
Re: #155
Ah, that one — I bet more companies will be putting out announcements soon.
402AnonymousOct 7, 2026 17:14
Re: #155
Last year's leak also involved an outside vendor, but it was a different one.
167AnonymousOct 7, 2026 16:58
It's only a matter of time before My Number data leaks too, huh~
174AnonymousOct 7, 2026 16:58
Re: #167
It's already leaked.
175AnonymousOct 7, 2026 16:59
Re: #167
Well, even if it comes out, it's not like it's actually usable for anything.
192AnonymousOct 7, 2026 16:59
Re: #167
It's already leaked.
They just don't say so because everyone would panic if they did.
That's just the kind of country this is lol
266AnonymousOct 7, 2026 17:05
Protect myself? And how exactly am I supposed to do that?
279AnonymousOct 7, 2026 17:06
Re: #266
It means: don't sign up as a member anywhere, with any company. Period.
287AnonymousOct 7, 2026 17:07
Re: #266
I guess it means don't use any service or site that requires personal info.
Yahoo Comments requires a phone number, so 5ch is the safe choice (lol)
296AnonymousOct 7, 2026 17:08
Re: #266
It means you should hack in and wipe your own data before it ever gets leaked.
293AnonymousOct 7, 2026 17:08
Whoa, this one's no laughing matter.
312AnonymousOct 7, 2026 17:09
Re: #293
At least our posts here haven't been published with our real names and addresses attached — small mercies.
384AnonymousOct 7, 2026 17:13
Re: #312
I have a feeling it's about to connect, though.

Context and Key Points of This Topic

Sompo Japan announced that an unauthorized access to an external vendor may have leaked roughly 60,000 customer records — notably, the breach occurred through a vendor’s system rather than the company’s own. The thread noted that on the same day, leaks were also reported at HIS and at Scala Communications, a vendor used for dash-cam services, pointing to a pattern of vendor-related breaches hitting multiple companies at once. Worth noting: the HIS case originated at its Thai subsidiary, and both the source of the announcement and the underlying cause differ from the Sompo Japan incident — treating them as the same story would be misleading. Opinions in the thread split over whether there’s any way to protect your own information, with many pessimistic voices arguing that avoiding service sign-ups is the only real defense. Concerns about the security of the My Number card also came up repeatedly, but this incident has no direct connection to the My Number system — worth keeping in mind, since the two topics get conflated easily.

*This article is compiled from excerpts and a summary of the 5ch (News Flash+) thread “[Breaking] Sompo Japan — Possible Leak of 60,000 Customer Records.”

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *