1 article with this tag
On October 8, 2026, Uzabase, Inc. announced that an admin tool used in the operation of its news service NewsPicks had been accessed without authorization by a third party, and that some users' personal data may have leaked. Its second notice on October 9 said the intrusion exploited a vulnerability in that admin tool, and gave maximum estimated counts per item: part of the card data used for web payments (card holder name and the last 3 or 4 digits of the card number, etc.) 362,000; email addresses 323,000; job-level category 273,000; affiliation 65,000; names 59,000; and others. The company says full card numbers and security codes were never stored on its systems and did not leak, and that no password leak has been confirmed. No secondary damage has been confirmed. This site's take: a message that quotes your card's last digits or your employer is not proof that it is genuine. Do not open links, check through the official app or a site you open yourself, and keep an eye on your card statements.