Sunday, August 30, 2026

29CM Leak Exposes 159,000 Customer Records; "Prepare for Secondary Damage"

Input
2026-08-30 13:20:28
Updated
2026-08-30 13:20:28
Notice of 29CM personal information leak. News1

[Financial News] A data breach has occurred at 29CM, the fashion and lifestyle platform operated by MUSINSA, exposing the personal information of more than 159,000 customers.
According to a notice posted on the 29CM website on the 30th, an external abnormal access attempt to an API linked to order information inquiries occurred on the 27th, resulting in the leak of some customers' personal information.
The largest number of cases, 138,841, involved only names being leaked. In 21,011 cases, names, email addresses, mobile phone numbers, and delivery information were leaked together.
29CM said, "As soon as we identified the problem, we blocked the access route and voluntarily reported the personal information breach to the Korea Internet & Security Agency (KISA)." It added, "We informed affected customers of the specific items leaked and how to prevent secondary damage."
It also explained, "Payment information and account details such as IDs and passwords were not included in the leaked data and are being protected safely."
However, it urged customers to "prepare for the possibility of secondary damage caused by misuse of the leaked information" and to "be especially cautious about text messages, phone calls, and emails that claim to provide payment, refund, or delivery error notices."
It also recommended changing passwords if the same one is used on other sites, and updating delivery requests immediately if they contain personal information.
A 29CM official said, "We sincerely apologize for causing concern to our customers." The official added, "We will thoroughly review our security systems and management procedures and do our utmost to prevent this from happening again."
[email protected] Kim Seo-yeon Reporter