2026 KB Kookmin Bank — 119 customers via employee mobile support system; names/phones/RRNs
Data compromised
Names, phone numbers, addresses, and encrypted resident registration numbers (varied by customer — Chosun Biz / Korea Times)
Technical writeup
KB Kookmin Bank confirmed on October 2, 2026 that personal credit information of 119 customers leaked after abnormal external access detected the night of September 30. Compromised system was an employee mobile work-support platform, not internet/mobile banking; bank blocked the server/path, notified customers, opened counseling lines, and pledged full compensation for resulting losses. Fields included names, phones, addresses, and encrypted resident registration numbers. Part of a multi-bank Korean wave after Shinhan’s ~25k loan-inquiry breach; FSC/FSS held an emergency meeting. companyConfirmed true.
Root cause
Abnormal external access to employee mobile work-support system (bank disclosure; separate from internet/mobile banking)