
Sakura Internet, one of Japan’s major digital infrastructure providers, has disclosed that attackers accessed its sales management system — the database that stores customer contract and membership information. The company now estimates up to 1,360,563 accounts were potentially exposed, though it has not confirmed that any data was actually exfiltrated. Sakura Internet provides web hosting, VPS, public cloud, data center colocation, and GPU computing services, and has been designated as a domestic provider for Japan’s Government Cloud program.
The breach traces back to August 9, but was only discovered while investigating a separate, smaller incident affecting Sakura’s shared hosting service. That earlier incident involved unauthorized logins to 583 accounts and the installation of malware on Sakura’s systems. The company says it invalidated compromised credentials and removed the malware. No credit card information was stored in the affected system, and customer passwords were stored in hashed form. Sakura has notified Japanese authorities and is contacting affected customers individually. No ransomware or data extortion group has claimed responsibility so far.
How to check if you’re affected
Affected products include Sakura Internet’s shared hosting (Sakura Rental Server), VPS, public cloud, and data center services. If you have or had a Sakura Internet member account, watch for an email notification from the company and consider changing your account password as a precaution.
