Seoul: The data protection regulator announced on Thursday that Moncler Korea, a renowned outerwear brand, has been fined 88 million won (approximately US$63,200) due to a significant data breach impacting around 230,000 of its customers.
According to Yonhap News Agency, the Personal Information Protection Commission (PIPC) levied the fine following a data leak incident in December 2021. This breach resulted from a cyberattack on Moncler Korea's personal information processing system. Crucially, the compromised data did not include names, birth dates, email addresses, or card numbers, but it did involve other customer information required for making purchases.
The PIPC revealed that the attackers managed to take control of a company administrator account, which they then used to install malware on Moncler Korea's server, facilitating the theft of customer data. The company discovered the breach the following month and delayed reporting it to both the affected customers and the regulatory body.
The regulator's decision to impose the fine underlines the importance of timely reporting and robust data protection measures in safeguarding sensitive customer information.