BREACH WATCH BRIEF High 🏛️ Breach

Chinese‑Linked Hackers Ran Public Portal Giving Third Parties Access to Stolen Emails from Government, Health, and Religious Entities

State‑linked actors stole email archives from multiple Southeast Asian sectors and exposed them via an open portal. The breach highlights the need for continuous third‑party risk monitoring and audit‑ready evidence of vendor oversight.

SeverityHigh
Type🏛️ Breach
ConfidenceHigh
ReportedOct 8, 2026
Government & Public Sector Government agencies Law‑enforcement bodies Healthcare providers Religious institutions Vulnerability Exploit
Check if you use it. This incident came through a third party or the supply chain. If the product or supplier is in your estate or your vendors', start with the questions to ask below.

What happened

Hackers associated with Integrity Technology Group compromised email stores belonging to government agencies, law‑enforcement, healthcare systems, and religious institutions in Southeast Asia. They then operated a publicly accessible portal that allowed any visitor to download the stolen messages.

Why it matters for trust and compliance

  • The incident underscores the importance of a continuous third‑party risk‑management program that can surface unauthorised data‑exfiltration pathways and provide defensible audit evidence of vendor oversight.
  • Continuous monitoring of third‑party portals supplies the evidence needed for audit readiness under multiple frameworks.
  • Documented vendor oversight demonstrates due diligence and supports a defensible control‑assurance posture.

Who is affected

Government agencies Law‑enforcement bodies Healthcare providers Religious institutions

Recommended actions

  1. Catalogue all external services that ingest or store organisational email data.
  2. Collect and review access logs from any third‑party portals for unauthorised downloads.
  3. Conduct a supply‑chain risk review focused on data‑exfiltration controls and enforce continuous‑monitoring clauses in contracts.

Get the Breach Digest

The incidents that matter for your vendors and your data, analysed for practitioners, in one email.