Nikkei BP reportedly announced on October 4, 2026, that an employee email account had been accessed without authorization on September 30. Twenty-six personal-information items, including names and email addresses, may have been exposed. The reported response included blocking the account connection and taking countermeasures.
The Nikkei BP email-account incident
The figure of 26 refers to potentially exposed personal-information items. The reported details include names and email addresses; it is not an established count of 26 unique people.
Nikkei BP reportedly blocked the affected account’s connection after the unauthorized access was identified and took countermeasures.
The reported phishing-related credential path
The reported account access was linked to credentials obtained through a phishing email received from an address belonging to a Nikkei newspaper employee. Phishing uses a deceptive message to trick someone into revealing information such as login credentials.
Separate incidents at Nikkei Inc.
Two figures reported in connection with Nikkei Inc. refer to separate incidents: about 9,000 suspicious emails sent from a Microsoft 365 account, and information associated with 1,646 employees and business partners that may have been exposed in a Google Workspace incident. Neither figure describes the Nikkei BP case. NeoTeo’s earlier coverage of the separate Nikkei Inc. incidents explains those reports.