South Korea fines GS Retail over data breaches affecting 1.6 million users
( August 31, 2026, 03:10 GMT | Official Statement) -- MLex Summary: South Korean retail company GS Retail has been fined 12.8 billion won ($9.3 million) by the country's privacy regulator over data breaches that exposed personal information of more than 1.6 million users of its GS Shop and GS25 services. The Personal Information Protection Commission said Monday the company failed to detect and block large-scale credential-stuffing attacks and failed to respond adequately after first discovering a breach, allowing personal data to continue leaking from another service. It also cited shortcomings in the company’s privacy governance and breach-notification practices. Dating-app operator Nrise was separately fined 118.4 million won over a breach affecting 736 accounts, while SK Telecom received corrective orders and a 3.6 million won fine over delayed breach notification tied to its metaverse service.Statement is attached (in Korean)....
Prepare for tomorrow’s regulatory change, today
MLex identifies risk to business wherever it emerges, with specialist reporters across the globe providing exclusive news and deep-dive analysis on the proposals, probes, enforcement actions and rulings that matter to your organization and clients, now and in the longer term.
Know what others in the room don’t, with features including:
- Daily newsletters for Antitrust, M&A, Trade, Data Privacy & Security, Technology, AI and more
- Custom alerts on specific filters including geographies, industries, topics and companies to suit your practice needs
- Predictive analysis from expert journalists across North America, the UK and Europe, Latin America and Asia-Pacific
- Curated case files bringing together news, analysis and source documents in a single timeline
Experience MLex today with a 14-day free trial.