
Nikkei has reported a breach of some of its employees Google email accounts, which led to attempted phishing scams after one of those accounts was used to send emails to known contacts of the employee. The breach had reportedly happened earlier this year, with Nikkei having just officially announced the incident involving the affected accounts.
Nikkei says one of the affect accounts was used to send “thousands of phishing emails,” with the bad actor having accessed a Google Workspace account that exposed information of some of Nikkei’s business partners as well as other employees. In total, Nikkei says that information on 1,646 people was exposed as part of the breach to the Google Workspace accounts.
Nikkei says the Google email breach did not expose information on readers or interviewees
Despite the large number of people’s information that was exposed in this breach, Nikkei confirms that none of the information actually belonged to readers of the publication or those who were interviewed by the publication for use in articles. It was strictly limited to employees and business partners, Nikkei says.
Nikkei says that it has already changed passwords of the affected accounts to prevent any further possibilities of a breach and additional phishing emails being sent out to other contacts. This breach on the Google accounts of two employees is prior to another breach that Nikkei announced back on October 4. In the more recent breach, the publication states that about 9,000 spoofed emails were sent as part of the attack that happened on an employee’s Microsoft365 account. Nikkei has not confirmed if both breaches are related nor has it mentioned whether or not it has discovered who or what organization has perpetrated the attacks.
Nikkei says that the initial attack on the Google accounts was confirmed by Google in early August, with the attacks having happened since late July.
The post Nikkei confirms Google account breach led to phishing attempts appeared first on Android Headlines.