INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).
ESET Alerts Data Sales on the Dark Web
| 2026-10-11 15:56 HIGH LOW DATA BREACH
Executive Summary
AI-generated
A security incident was reported by CJ Olive Young on October 3, 2026, after a post appeared on Dark Web claiming to sell the company's customer information. The actual data did not match the posted information and was found to be AI-generated fake data. Similarly, Kakao Mobility also received reports of its customer information being sold on Dark Web, but it was later verified as false by the company spokesperson. In total, 77 samples of leaked data were analyzed by KISA (Korea Internet & Security Agency), with none matching actual member information from CJ Olive Young or Kakao Mobility. The attackers are using AI-generated data to create fake leaks and sell them on Dark Web, which can deceive buyers and damage companies' reputations if not verified properly.
Technical Mitigations AI-generated
• User Training (ATT&CK mitigation for Impersonation): Train users to be aware of impersonation tricks and how to counter them, for example confirming incoming requests through an independent platform like a phone call or in-
• Threat Intelligence Program (ATT&CK mitigation for Impersonation): Threat intelligence helps defenders and users be aware of and defend against common lures and active campaigns that have been used for impersonation.
• Network Intrusion Prevention (ATT&CK mitigation for Phishing): Network intrusion prevention systems and systems designed to scan and remove malicious email attachments or links can be used to block activity.
• Restrict Web-Based Content (ATT&CK mitigation for Phishing): Determine if certain websites or attachment types (ex: .scr, .exe, .pif, .cpl, etc.) that can be used for phishing are necessary for business operations and consider bloc
• Reset credentials and API keys that may have been exposed, and review access logs for the affected accounts or integrations.
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
Target & Sectors
ES
Incident Timeline
October 3
CJ Olive Young reported a security incident to KISA on October 3, after analyzing 77 samples of leaked customer information from the Dark Web that were found to be fake.
Click on any entity below to view its context and source!
organisation
CJ Olive Young
CJ Olive Young has reported a security incident to KISA (Korea Internet & Security Agency) on October 3, analyzing 77 samples of leaked data on Dark Web.
organisation
KISA
CJ Olive Young has reported a security incident to KISA (Korea Internet & Security Agency) on October 3, analyzing 77 samples of leaked data on Dark Web.
organisation
Korea Internet & Security Agency
CJ Olive Young has reported a security incident to KISA (Korea Internet & Security Agency) on October 3, analyzing 77 samples of leaked data on Dark Web.
general_metric
77 samples
CJ Olive Young has reported a security incident to KISA (Korea Internet & Security Agency) on October 3, analyzing 77 samples of leaked data on Dark Web.
2026/10/11
A post on the Dark Web falsely claimed to sell customer information from CJ Olive Young and Kakao Mobility, but was later found to be fake data.
Click on any entity below to view its context and source!
organisation
Kakao Mobility
In early October, a post appeared on Dark Web, titled Kakao Mobility, Olive Young customer information is sold, with some images partially censored.
organisation
Olive Young
In early October, a post appeared on Dark Web, titled Kakao Mobility, Olive Young customer information is sold, with some images partially censored.
organisation
CJ Olive Young and Kakao Mobility's
Recently, posts appeared on Dark Web, claiming that CJ Olive Young and Kakao Mobility's customer information is being sold, but the actual data was found to be fake data, not the actual customer information.
organisation
CJ Olive Young's
In early October, a post appeared on Dark Web, on a forum, claiming that CJ Olive Young's customer information is being sold.
organisation
Kakao Mobility's
At the same time, a post appeared on Kakao Mobility's customer information sale.
organisation
Kakao
The post included data that seemed to include Kakao account email, name, phone number, birthday, address, and taxi records, similar to the actual data.
Intelligence Sources
Tecnonews
N/A
ESET alerts data sales on the dark web
Tecnonews
Dailysecu
2026-10-11
Unpublish from Social Media?
Are you sure you want to delete this podcast video from all synchronized social networks (YouTube, Facebook, Threads)?
Important:
Due to Meta API restrictions, Instagram Reels cannot be deleted automatically via API by third-party apps.
View Profile to Delete Manually
View Profile to Delete Manually
Tactical Intelligence
Report Intelligence Issue
Podcast Options
Generate
Incident Version History
CURRENT VERSION
Last Updated: 2026-10-11T10:44
Comprehensive Tactical Telemetry
Highly Correlated Entities
13x
organisation
Identified Entity
Kakao Mobility
entity
4x
tactic
Cyber Operation Type
Data Breach
tactic
2x
tactic
MITRE ATT&CK Technique
T1566 - Phishing
technique
Contextual Telemetry
Context Block
4 METRICS
timeline
Temporal Reference
October 3
date
general metric
Samples
77
samples
target region
Target Country
Spain
country
industry
Targeted Sector
Media
sector
Click on any entity below to view its context in the main text!
Selective Unpublish
Select the networks you want to remove this post from. The system will try to delete the real post through the API and clean the database so you can publish it again.
By navigating this website, you accept the use of strictly necessary technical cookies for session security and basic platform functionality. We do not use tracking or advertising cookies.
Read our Privacy Policy.