OCTOBER 6, 2026
Subscribe
Global Press Media · World Report
Technology

Nikkei Reports Email Account Compromise, Thousands of Phishing Emails Sent

Nikkei Reports Email Account Compromise, Thousands of Phishing Emails Sent

Over the weekend, Japan’s media giant Nikkei disclosed that an unknown attacker had breached the Microsoft and Google email accounts of two staff members, and that one of the seized accounts was employed to dispatch a massive batch of phishing messages.

According to the firm, the breach came to light when its security monitoring systems flagged anomalous outbound traffic. investigators concluded that the perpetrators obtained the credentials via theft, though they have not revealed whether the entry point involved phishing, credential‑stuffing, or another tactic.

After gaining entry, the attackers used one of the hijacked accounts to transmit thousands of counterfeit emails to outside contacts. Those phishing messages were said to imitate authentic business communications, seeking to trick recipients into clicking harmful links or surrendering additional login details. While Nikkei did not disclose the exact number of targets, it stressed that the operation was stopped promptly once identified.

Security specialists point out that corporate email accounts continue to be a favored conduit for mass phishing attacks, given the built‑in trust they command. A message appearing to come from a legitimate address boosts the likelihood that recipients will interact with it, thereby raising the odds of credential theft or malware infection. This episode highlights the persistent difficulty firms face in safeguarding cloud‑based email platforms, even with multifactor authentication enabled.

In its statement, Nikkei affirmed that neither confidential editorial content nor subscriber information seems to have been accessed or removed. The company is working alongside law‑enforcement agencies and external security consultants to locate the breach’s origin and to bolster its safeguards. It also urged its customers and partners to stay alert for any dubious emails that could have been sent from the compromised accounts.

This intrusion joins a growing wave of assaults on Japanese companies seen in recent months, with threat actors focusing on high‑profile targets to magnify the reach of their phishing efforts. Analysts anticipate that Nikkei, together with peers, will reassess and likely tighten access controls, broaden staff security training, and adopt more sophisticated email authentication measures like DMARC, DKIM and SPF to fend off comparable threats going forward.

Editorial Desk — Editorial desk.

Comments (0)

Be the first to comment.

Join the discussion

Protected by reCAPTCHA v3

Related