2026 CU parcel (BGF Networks) — convenience-store courier PII hack (count unpublished)
Data compromised
IDs/passwords, names, gender, addresses, emails, mobile numbers (presumed per BGF notice)
Technical writeup
BGF Networks, operator of the CU convenience-store parcel/courier service, posted notices after an unidentified hacker accessed systems on 4 June 2026 with indications of personal-information leakage. Chosun Biz reported presumed exposure of IDs/passwords, names, gender, addresses, emails, and mobile numbers. The company said it blocked the attacking IP and reported to PIPC and KISA. Korean National Police opened a preliminary inquiry on 6 June to identify the leaker and scope. Attested victim count not published in English trade press at indexing; company-confirmed incident.
Root cause
External unauthorized access to CU parcel systems