Seoul: U.S.-listed e-commerce giant Coupang Inc. has revealed that approximately 200,000 accounts in Taiwan were compromised in a recent data breach affecting around 33 million accounts globally. The announcement follows a request by Coupang for cybersecurity firms Mandiant and Palo Alto Networks to conduct a thorough forensic investigation into the breach that occurred in November 2025.
According to Yonhap News Agency, Mandiant's investigation identified that a former employee was responsible for the unauthorized access to the Taiwanese accounts. Coupang stated in a release that the breach was a criminal act against both the company and its customers, emphasizing their ongoing calls for the perpetrator to be prosecuted fully under the law.
Coupang's report highlighted that no highly sensitive data had been accessed and there was no evidence suggesting that the compromised customer data was seen, shared, or transferred to others. The company also assured that there has been no detection of misuse of customer data stemming from this incident, nor is there any evidence of the data surfacing elsewhere.
Earlier in the month, a joint public-private investigation into a significant data breach at Coupang's South Korean unit concluded that over 33.6 million accounts were exposed. The probe also revealed that the delivery section of Coupang's website was accessed approximately 148 million times, with the exposed data including shared entrance door passwords.
Coupang had initially reported, based on its own investigation, that only around 3,300 accounts were affected, a claim that drew widespread public criticism for what the science ministry described as "ill-intended" and unfounded assertions.