[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3sdi1s0h492g2":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"publishedAt":12,"modifiedDate":13,"contentUpdatedAt":14,"source":15,"sourceUrl":16,"sourceUrls":17,"pwnCount":18,"affectedCount":18,"affectedCountStatus":19,"affectedCountLowerBound":12,"affectedCountUnit":20,"hasEnglishDescription":4,"contentLocale":21,"availableLocales":22,"translations":24,"severity":27,"dataClasses":28,"description":34,"seoTitle":35,"seoDescription":36,"logoUrl":37,"isVerified":38,"isSensitive":4,"isSpamList":38,"isMalware":38,"company":39},"6a4577745531bbede1ce5f47","webzen","WEBZEN Alleged Data Exposure","forums.webzen.com","2022-01-01T00:00:00.000Z","2026-07-01T20:24:19.581Z",null,"2026-09-17T16:27:41.515Z","2026-09-17T17:07:40.901Z","Third party breach","https:\u002F\u002Fwebzen.com\u002F",[16],208893,"known","email_identifiers","en",[21,23],"tr",{"en":25,"tr":26},{"slug":7},{"slug":7},"High",[29,30,31,32,33],"Dates of birth","Email addresses","IP addresses","Passwords","Usernames","\u003Cp>The WEBZEN data breach is a leak record dated from January 2022 and affecting approximately 208,893 records. This page lists birth dates, email addresses, IP addresses, passwords, and usernames. The gaming forum context indicates that accounts could be targeted along with social profiles, digital assets, and community relationships. The record is described only with supported data types to avoid showing incorrect fields to the user, and unconfirmed details are not transferred to public text.\u003C\u002Fp>\u003Cp>The WEBZEN record is configured to support decisions on password renewal on the user side, checking account history, filtering suspicious messages, and reviewing privacy settings. The content clearly distinguishes which data is visible and which is not, without making exaggerated assertions of certainty. The user should not delay action just because the record is old; persistent fields such as email and phone can still be used years later in phishing or account recovery attempts.\u003C\u002Fp>\u003Ch2>Leaking Data Types and Risks\u003C\u002Fh2>\u003Cp>The prominent data fields in the WEBZEN record are birth dates, email addresses, IP addresses, passwords, and usernames. The email and username associate the person with their profile in the gaming community; the IP address and birth date make targeted messages appear more realistic.\u003C\u002Fp>\u003Cp>Even if the password field appears in the form of a hash value, the risk continues. Weak or reused passwords can be cracked over time and tried on a game store, email, or social media account.\u003C\u002Fp>\u003Cp>This record does not list payment card, official ID number, or full address fields. This distinction is important; because showing a field to a user as if it has been leaked when it has not is as harmful as underestimating the real risk.\u003C\u002Fp>\u003Ch2>Verified Scope and Boundaries\u003C\u002Fh2>\u003Cp>The scope is kept for the January 2022 period and approximately 208,893 records. The record is related to the forum field context and the existing data types are compatible with this structure.\u003C\u002Fp>\u003Cp>The verified flag is not obvious because there is no official notification or equivalent strong level of evidence. Nevertheless, when the date, domain name, number of records, and data types are consistent within themselves, it is preserved as a record security warning.\u003C\u002Fp>\u003Cp>This record is kept as a forum-focused record dated January 2022; it is not combined with the portal or game records of the same company from different years. Duplicates coming with the same date, the same domain name, and the same data types should not be added as a new violation; first, a duplication check should be made with the existing record.\u003C\u002Fp>\u003Ch2>User Groups at Risk\u003C\u002Fh2>\u003Cp>The first group at risk are players who reuse the forum password on their email, game store, streaming platform, or social media account. Game accounts may contain digital items, a friends list, and payment history.\u003C\u002Fp>\u003Cp>People who use their date of birth in account recovery information are also at risk. When email, username, and date of birth are combined, fake support requests can become more convincing.\u003C\u002Fp>\u003Cp>There is a risk of profile merging for users who use the same username in different communities. Old forum information may match with accounts on other platforms.\u003C\u002Fp>\u003Ch2>Urgent Measures to Be Taken\u003C\u002Fh2>\u003Cp>The password used on the WEBZEN forum should be changed. If the same password has been used on other accounts, all of these accounts should be updated with unique new passwords.\u003C\u002Fp>\u003Cp>Two-step verification should be enabled on the email account and gaming platforms; the recovery email address, phone number, and connected devices should be checked.\u003C\u002Fp>\u003Cp>Caution should be exercised against fake support messages containing birth dates or usernames. Real support operations should be done through the known login page of the service, not from emails containing links.\u003C\u002Fp>\u003Ch2>Long-Term Security Strategies\u003C\u002Fh2>\u003Cp>Game accounts should be protected as carefully as financial accounts. A unique password should be used for each game, forum, and community account, and repeated passwords should be cleaned with a password manager.\u003C\u002Fp>\u003Cp>Reducing username repetition, not showing birth dates on public profiles, and limiting social connections reduce the risk of targeted attacks.\u003C\u002Fp>\u003Cp>People who log in to game or forum accounts with corporate devices should be extra careful. Personal account passwords should not be used on work accounts.\u003C\u002Fp>\u003Ch2>Record Control and User Action\u003C\u002Fh2>\u003Cp>If your email address appears in this record, first check the password again. Email accounts, game stores, platforms involving payments, and social media accounts are the first group to be audited.\u003C\u002Fp>\u003Cp>Suspicious sessions, unrecognized devices, changed recovery information, or unexpected notifications should be investigated.\u003C\u002Fp>\u003Cp>The WEBZEN record has not been flagged with a verified mark; however, it is considered serious due to the types of data it contains. The correct approach for the user is to treat this as a strong risk signal.\u003C\u002Fp>","WEBZEN Alleged Data Exposure (208.9 Thousand Email Identifiers)","WEBZEN Alleged Data Exposure. 208.9 Thousand email identifiers are reported. Reported data: Dates of birth, Email addresses, IP addresses. Review the scope…","\u002Fuploads\u002Flogo\u002Fwebzen.png",false,{"name":40,"sector":41,"country":42,"website":43,"websiteArchiveUrl":44,"websiteStatus":44,"websiteCheckedAt":12},"WEBZEN","Gaming","South Korea","webzen.com",""]