SK Telecom faces malware attack exposing USIM customer data is profiled by BTW Media because published evidence links it to internet infrastructure, governance, operational dependencies, or market visibility.
SK Telecom faces malware attack exposing USIM customer data is tracked as a internet infrastructure institution within the internet infrastructure ecosystem.
SK Telecom faces malware attack exposing USIM customer data has public-source relevance to network operations, governance, dependency mapping, or market structure.
SK Telecom faces malware attack exposing USIM customer data has public-source relevance to network operations, governance, dependency mapping, or market structure.
SK Telecom faces malware attack exposing USIM customer data is tracked as a internet infrastructure institution within the internet infrastructure ecosystem.
Public-source signals support medium-impact monitoring for infrastructure visibility and dependency analysis.
SK Telecom faces malware attack exposing USIM customer data is profiled by BTW Media because published evidence links it to internet infrastructure, governance, operational dependencies, or market visibility.
Public-source signals support medium-impact monitoring for infrastructure visibility and dependency analysis.
| 0.90–1.00 | A | High — direct sources |
| 0.75–0.89 | A/B | Strong |
| 0.55–0.74 | B/C | Medium |
| 0.35–0.54 | C/D | Weak–medium |
| 0.10–0.34 | D | Weak signal |
| 0.00–0.09 | D | Internal monitoring |
Several public sources
- SK Telecom has confirmed a malware attack that compromised sensitive USIM data for its 34 million customers.
- The company took immediate action to contain the breach and has notified authorities while an investigation is ongoing.
What happened: SK Telecom faces malware attack exposing USIM data of 34 million customers
SK Telecom, South Korea’s largest mobile carrier, has confirmed a significant malware attack that compromised sensitive USIM data belonging to its customers. The breach was detected on April 19, 2025, during a weekend when staffing levels were lower, allowing the malware to infiltrate the system.
Following its discovery, SK Telecom acted swiftly to delete the malware and isolate the affected equipment. The company has approximately 34 million subscribers, making the potential impact considerable. Although there is currently no evidence of misuse of the exposed information, the breach has raised alarms about the vulnerability of customer data.
Authorities, including the Korea Internet & Security Agency, have been notified, and an investigation is ongoing to determine the attack’s root cause and scope.
Also Read: SK Telecom revamps for the AI era
Also Read: SK Telecom launches AI-powered customer service tool
Why it’s important
The malware incident at SK Telecom underscores the escalating threats facing telecommunications companies and their customers in the digital age. With the telecom sector increasingly targeted by cybercriminals, the breach raises concerns about the security of sensitive customer data, including USIM information that can be exploited for SIM-swap fraud and tracking.
As mobile networks become more integral to daily life, the consequences of such breaches can extend beyond individual customers to affect overall trust in the industry.
Moreover, this incident reflects a broader trend of rising cyber threats targeting large corporations across various sectors. Recent reports indicate a surge in ransomware attacks and data breaches, often resulting in significant financial and reputational damage.
Companies must prioritise cyber resilience, adopting robust security measures and protocols to safeguard customer information. The incident at SK Telecom serves as a critical reminder for all organisations about the importance of vigilance against cyber threats, highlighting the need for improved security infrastructure to protect against potential attacks in the future.
At A Glance
- Name: SK Telecom faces malware attack exposing USIM customer data
- Type: Internet infrastructure institution
- Base: Asia Pacific
- Profile focus: Institution
What It Does
- Public records support monitoring of its role, services, and key relationships.
Why It Matters
- Public-source signals support medium-impact monitoring for infrastructure visibility and dependency analysis.
- Operational criticality: Medium
- Time horizon: Next quarter
What To Watch
- Monitoring focuses on verified service continuity, governance changes, and relationship signals.
Track verified source updates, role changes, and current public evidence.
Public-source signals support medium-impact monitoring for infrastructure visibility and dependency analysis.
Longer-term relevance depends on verified operating, policy, and relationship changes.
Member Briefing
Deeper Profile Context
Login is required to unlock the full profile briefing and source notes.
Only for Strategy Circle
Strategic Circle Access
Open to all readers. Unlock profile briefings after joining and logging in.
Join Strategic CircleOnly for Leadership Alliance
Leadership Alliance Access
For owners and management of IP-holding companies. Login required to unlock.
Join Leadership Alliance


