Japan Cyber Watch is an independent publication covering cybersecurity in Japan in English: cyber incidents at Japanese organizations, the threat actors targeting Japan, and the laws and policies that shape how Japan defends itself.

Why this exists

Most of what matters about cybersecurity in Japan is published only in Japanese: corporate breach notices, timely disclosures to the stock exchange, advisories from JPCERT/CC and IPA, police statistics and government policy documents. International security teams, analysts and journalists often see only fragments of it through machine translation, or nothing at all.

We read those primary sources, put them in context, and publish what they mean for people outside Japan who need to understand the threat landscape here.

Who writes it

Japan Cyber Watch is written by a cybersecurity practitioner based in Japan with hands-on experience in the field. The site is run independently and is not affiliated with any employer, vendor or government agency. Nothing here reflects the views of, or uses information from, any employer or client.

Editorial standards

  • Primary sources first. Every article lists its sources, and we link to the original Japanese documents wherever possible.
  • Fact and analysis are separated. Confirmed facts, claims by threat actors, and our own assessment are labeled as such.
  • Living articles. Incident timelines and trackers are updated as new information emerges. The “Last updated” date on each article shows when it last changed.
  • No victim shaming, no leaked data. We do not publish or link to stolen data, and we do not amplify extortion attempts.

Corrections

If you find an error, please contact us. Significant corrections are noted at the end of the affected article.