South Korean Megachurches Investigate Cyberattacks, 850,000 Members' Data at Risk
Thestandard · 2 SOURCESabout 2 hours ago3 MIN

Summary
Two major South Korean churches are investigating suspected cyberattacks that may have exposed the personal data of hundreds of thousands of their congregants. Cybersecurity firm Oasis Security found evidence suggesting AI tools were used in the intrusions, with references to "sub-agents" and automated attack reports discovered on an overseas server linked to the churches .
Yoido Full Gospel Church, one of South Korea's largest congregations, said on Wednesday that initial analysis indicated data relating to 850,000 members may have been compromised . The exposed information includes names and dates of birth, with a smaller number of records also containing changes to national identification numbers, addresses and telephone numbers .
The church stated it was notifying affected members, blocking external access and changing server passwords in response to the breach . Sarang Church, located in Seoul's Seocho district, said it had formed an emergency task force, reported the suspected incident to relevant authorities and was taking steps to determine what happened and prevent further harm .
Key Points
- Cybersecurity company Oasis Security discovered data, attack records and account information on an overseas server linked to Yoido Full Gospel Church and Sarang Church .
- Attack records contained signs of AI tool usage, including references to "sub-agents" and extensive automated attack reports suggesting the intrusion may have been AI-assisted .
- Yoido Full Gospel Church confirmed that data of up to 850,000 members, including names, dates of birth and some identification numbers, addresses and phone numbers, may have been compromised .
- Both churches have taken immediate action: notifying affected members, blocking external access, changing server passwords and forming emergency task forces .
- The church attacks follow similar hacking incidents against South Korean commercial banks that also led to breaches of customer personal information .
Why It Matters
This incident represents one of the largest data breaches affecting religious institutions globally and highlights how AI tools are increasingly being weaponized in cyberattacks against organizations holding sensitive personal data . The involvement of South Korean President Lee Jae Myung in publicly confirming AI's role in the attacks signals government recognition that AI-powered cyber threats require urgent attention and potentially new defensive strategies .
This incident represents one of the largest data breaches affecting religious institutions globally and highlights how AI tools are increasingly being weaponized in cyberattacks against organizations holding sensitive personal data . The involvement of South Korean President Lee Jae Myung in publicly confirming AI's role in the attacks signals government recognition that AI-powered cyber threats require urgent attention and potentially new defensive strategies .