Personal data of 850,000 megachurch members in South Korea potentially compromised in cyberattack

Personal information of around 850,000 members of a megachurch in South Korea may have been compromised following a suspected cyberattack that showed signs of artificial intelligence or AI use.

Cybersecurity firm Oasis Security said it found data, attack records and account information linked to Yoido Full Gospel Church and Sarang Church on an overseas server.

Read More:  More than 100 areas in the Philippines placed under state of calamity due to El Niño

The potentially compromised information included names and dates of birth, while a smaller number of records contained national identification numbers, addresses and telephone numbers.

Oasis Security also found indications that AI tools may have been used during the cyberattack, including references to “sub-agents” and extensive attack reports that appeared to have been generated automatically.

Read More:  More than 100 areas in the Philippines placed under state of calamity due to El Niño

Yoido Full Gospel Church said it has begun notifying potentially affected members, blocking external access and changing its server passwords.

Meanwhile, Sarang Church has formed an emergency task force and reported the suspected incident to relevant authorities as it works to determine what happened and prevent further harm.