← Incident database

quick-2025 · Disclosed 2025-11-04

QUICK: work credentials leaked from a personal device

A virus on an employee’s personal PC leaked work credentials, followed by unauthorized access to that employee’s account.

Endpoint / sessionCredentials

Outcome: Confirmed breach

Entry path and evidence

  • Reported fact

    QUICK disclosed credential leakage from an infected personal PC and access to the affected account.

    [s1]本文:感染と不正アクセス
  • Reported fact

    Two employee email addresses leaked; potential access to work information was also investigated.

    [s1]本文:影響範囲

Timeline

  1. Incident disclosed. [s1]

Reported response

  • Reported fact

    QUICK reported password changes and measures on the cloud service.

    [s1]本文:対応

Evidence relevant to prevention

Operational controls to inspect

Inspect conditions for personal-device access, endpoint management, and session revocation.

Editorial assessment; not a determination of liability. [s1]

Unknowns and AI involvement

AI involvementUnknown

The cited sources do not establish attacker use of AI; absence of evidence is not evidence of absence.

The affected cloud service and full scope of work-information exposure are not disclosed.

Sources

  1. [s1] QUICK · Primary source

    不正アクセスに関するお知らせ ↗

    Published 2025-11-04 · Reviewed 2026-10-02