Sakura Internet Breach: Over 1.3 Million Accounts Potentially Compromised in Sales System Hack
Japanese cloud and data center giant **Sakura Internet** has disclosed a significant security incident, revealing that hackers accessed its sales management system. The breach potentially impacts up to 1,360,563 customer accounts, exposing contract and membership information, though no data exfiltration has been confirmed.

**Sakura Internet**, a pivotal Japanese digital infrastructure provider, has announced a major cybersecurity breach affecting its sales management system. The incident, which came to light during an investigation into a separate, smaller breach, suggests a potential compromise of over 1.3 million customer accounts.
### Details of the Breach
The company, a key provider for Japanβs Government Cloud program, stated that unauthorized access to its IT system occurred on August 9. The discovery was made while probing a separate incident involving unauthorized logins to 583 accounts on the **Sakura Rental Server** service, which also led to malware installation on **Sakura**'s systems.
While the initial **Sakura Rental Server** breach was contained by invalidating compromised credentials and removing malware, the subsequent investigation unearthed the more extensive compromise of the sales management system.
### Potential Impact and Data Security
As of the ongoing investigation, **Sakura Internet** estimates that 1,360,563 member accounts were potentially impacted. However, the exact number of affected accounts is still being determined, and the company has not yet confirmed any data exfiltration from this larger incident.
**Sakura Internet** has assured customers that passwords stored in the system are hashed, making them difficult to decipher even if stolen. Crucially, the compromised system does not store credit card information, mitigating a significant financial risk.
### Response and Ongoing Investigation
Following the discovery, **Sakura Internet** promptly informed relevant authorities and is in the process of individually notifying affected customers. The nature of the malware detected in their environment remains undisclosed, and the company has not reported any operational or service disruptions.
At present, no ransomware or data extortion groups have publicly claimed responsibility for the attack on **Sakura Internet**.