{"rewrite":{"id":"r_84ab5df20daa323b3d1fcbd3","clusterId":"c_c0855d2c2fa4365f9eeb25c5","slug":"up-to-14-22-million-kddi-emails-may-have-leaked-password-change-urged","model":"deepseek-v4-flash","headline":"Up to 14.22 Million KDDI Emails May Have Leaked, Password Change Urged","summary":"KDDI announced on June 23 that up to 14.22 million email addresses and passwords may have been leaked due to unauthorized access to its email system. The breach affected multiple ISP services including @nifty, BIGLOBE, J:COM NET, and others. Users are urged to change passwords immediately.","whyItMatters":"The breach is one of the largest in Japan this year, affecting millions across several major ISPs and requiring urgent password resets.","webCardHtml":"\u003cp\u003eKDDI disclosed on June 23 that unauthorized access to its email system, confirmed on June 17, may have exposed up to 14.22 million email addresses and passwords. The breach exploited a vulnerability in third-party software. Affected services include STNet\u0026#39;s Pikara-related emails, KDDI Web Communications\u0026#39; rental server CPI emails, J:COM NET and cable TV operator emails, Commufa Hikari and Business Commufa emails, @nifty emails, and BIGLOBE emails. Both current and former users, as well as dormant accounts, are at risk. Some passwords may be hashed or encrypted, but KDDI has not confirmed which. BIGLOBE urged immediate password changes on June 23, warning of potential personal information leaks or unauthorized service use. Nifty set a June 25 deadline for password changes, after which unconfirmed passwords will be invalidated.\u003c/p\u003e","blueskyPost":"KDDI's breach spans multiple ISPs, meaning a single access point compromised @nifty, BIGLOBE, and J:COM NET users simultaneously. The scale suggests a systemic vulnerability, not a targeted attack.","twitterPost":"KDDI's breach hit 14.22 million accounts across @nifty, BIGLOBE, J:COM NET. One entry point, multiple providers.","threadsPost":"KDDI's breach is notable for its scope across ISPs: @nifty, BIGLOBE, J:COM NET all hit from one unauthorized access. The password reset advice is standard, but the shared infrastructure exposure is the real concern.","newsletterBlurb":"KDDI announced a massive email system breach potentially affecting up to 14.22 million users across multiple ISPs including @nifty and BIGLOBE. Unauthorized access was confirmed June 17. Users are urged to change passwords immediately; Nifty will invalidate unreset passwords after June 25.","attributionJson":"[{\"source\":\"ASCII.jp\",\"url\":\"https://ascii.jp/elem/000/004/412/4412922/?rss\",\"title\":\"Up to 14.22 million KDDI emails may have leaked; password change urged\"}]","lintFlagsJson":null,"lintHits":0,"costUsd":0,"inputTokens":3821,"outputTokens":586,"status":"published","repairAttempts":0,"nextRepairAt":null,"factsAttemptedAt":1782204506,"createdAt":"2026-06-23T08:37:32.000Z","publishedAt":"2026-06-23T08:40:24.000Z","updatedAt":"2026-06-23T08:40:24.000Z"},"cluster":{"id":"c_c0855d2c2fa4365f9eeb25c5","canonicalTitle":"KDDI系メールで最大1422万件漏えいか　パスワード変更を呼びかけ","representativeArticleId":"a_16ab1c5dd4b120e7d42d701d","sourceCount":1,"writtenSourceCount":1,"writeAttempts":0,"isSolo":true,"entitiesJson":"{\"anime_titles\":[],\"manga_titles\":[],\"work_titles\":[],\"studios\":[],\"people\":[],\"type\":\"news\",\"domain\":\"other\",\"is_roundup\":false}","contentType":"news","status":"published","firstSeenAt":"2026-06-23T08:00:00.000Z","lastSeenAt":"2026-06-23T08:00:00.000Z","updatedAt":"2026-06-23T08:40:24.000Z"},"attribution":[{"source":"ASCII.jp","url":"https://ascii.jp/elem/000/004/412/4412922/?rss","title":"KDDI系メールで最大1422万件漏えいか　パスワード変更を呼びかけ"}],"entities":{"anime_titles":[],"manga_titles":[],"work_titles":[],"studios":[],"people":[],"type":"news","domain":"other","is_roundup":false},"keyFacts":["Up to 14.22 million email addresses and passwords may have been leaked from KDDI's email system.","KDDI disclosed the breach on June 23, 2025, after confirming unauthorized access on June 17.","Affected services include @nifty, BIGLOBE, J:COM NET, and others, covering current, former, and dormant accounts.","BIGLOBE urged immediate password changes on June 23, warning of potential personal information leaks.","Nifty set a June 25 deadline for password changes, after which unconfirmed passwords will be invalidated."]}
