컨텐츠로 건너뛰기
뉴스
서울
맑음 / -3.9 °
매일경제 언론사 이미지

KT confirms possible personal data leak involving 5,561 users

매일경제
원문보기
(Lee Seung-hwan)

(Lee Seung-hwan)


KT Corp. Chief Executive Officer Kim Young-shub on Thursday apologized for a possible leak of personal information involving 5,561 users. He pledged full compensation and stronger measures to prevent recurrence.

At a press briefing at KT headquarters in Gwanghwamun, central Seoul, the company said that abnormal connections to illegal femtocells may have exposed some users’ International Mobile Subscriber Identity (IMSI) numbers.

The IMSI is a unique identifier stored on a SIM card and transmitted when a device connects to the network.

While the IMSI alone cannot authorize payments without the SIM authentication key (Ki), the company found that 19,000 subscribers connected to the rogue base stations, of whom 5,561 may have had their IMSI data leaked.

KT reported the case to the Personal Information Protection Commission (PIPC) and notified affected users, offering free SIM replacements, damage checks, and protective services.

KT will provide free SIM card replacements to all 19,000 users who connected to the illegal femtocells. Exchanges are available at nationwide retail stores and customer centers.


The rogue equipment is believed to be LTE femtocells once used by KT to boost signals indoors and in shadow zones.

Normally, such devices must be pre-registered with the carrier before network access, but some units appear to have been leaked and illicitly modified. Devices connecting to them may have temporarily exposed their IMSI during authentication.

Unlike 5G, LTE networks can transmit IMSI in plaintext under abnormal conditions. KT identified two rogue cell IDs not registered in its management system.

The company has so far counted 278 fraudulent payment cases amounting to 170 million won ($122,200). It stressed that no core network systems, such as switches or authentication servers, were hacked, and that the IMSI leak occurred only in the radio access section.

However, KT admitted that the ARS authentication hijacking used for the actual fraudulent payments is a separate issue under investigation.

info icon이 기사의 카테고리는 언론사의 분류를 따릅니다.

AI 이슈 트렌드

실시간
  1. 1에스파 닝닝 홍백가합전 불참
    에스파 닝닝 홍백가합전 불참
  2. 2강선우 공천헌금 의혹
    강선우 공천헌금 의혹
  3. 3전현무 기안84 대상
    전현무 기안84 대상
  4. 4삼성생명 신한은행 경기 결과
    삼성생명 신한은행 경기 결과
  5. 5심현섭 조선의 사랑꾼
    심현섭 조선의 사랑꾼

매일경제 하이라이트

파워링크

광고
링크등록

당신만의 뉴스 Pick

쇼핑 핫아이템

AD