databreaches.net 7 Sept 2026, 12:31 UTC

Gangnam Unni Breach Exposes Medical Data of 219,665 Users

CyberSIXT Evidence Panel Source marked as original reporting

APPROXIMATELY 219,665 users of the Gangnam Unni platform, a beauty medical marketplace operated by Healing Paper, have had personal data exposed in a breach disclosed on 7 September 2026. Healing Paper said malicious activity began with abnormal access to an API used to view consultation records on 4 September, which led to the leakage of user information.

The firm stated it blocked the affected access route after detecting the intrusion, but that a second attempt to access the system via a different route occurred on 5 September. The leaked dataset comprises names, phone numbers, email addresses, dates of birth, gender, country or region of residence, SNS login IDs, and device information. The company confirmed the total affected is 219,665 individuals, with roughly 160,000 from Korea, about 48,000 from Japan, and 4,218 from Taiwan.

Further reporting indicates that medical and consultation-related data were also exposed. The Chosun reports that not only basic identifiers but also details such as consultation progress status, registered photos, and motivations for seeking treatment were accessible. In addition, payment details, names of medical practitioners, treatment information, and dates of visits and procedures were compromised. The breach affects non-U.S. users of Gangnam Unni and falls under health data and hack categories.

At this stage, the public notices describe authenticated and attempted exploitation with confirmed data exposure, though the extent of ongoing access beyond the initial incidents is not stated. Healing Paper has urged attention to the incident, with further updates referenced in Asian reporting.

View full article

Article by CyberSIXT