Spam Messages Sent from NJC E-mail Account

March 8th, 2021

Nippon Jimuki Co., Ltd. has determined that some of our sites that we operate were exploited to send automated emails as spam containing suspicious URLs.

If you have received suspicious emails from “archon-sales-gr@njc.co.jp” or “fudoloop-gr@njc.co.jp”, please do not click any of the URLs in the body of the e-mail and delete it immediately.

Nippon Jimuki apologizes for this incident and the inconvenience caused to the recipients of the spam.

At present, we have not discovered information leaks such as emails addresses or other private data of our clients resulting from this incident. However, we are taking the necessary steps to prevent its recurrence.

  • Background
  • ・The contact form on the websites we operate was used to register suspicious information on February 21, 2021 (JST), starting at 6 a.m., for a period of two hours. The same happened again at 7 p.m. on the same day for a period of one hour.

    ・Suspicious URLs were entered into the name field of the form as part of the information automatically registered, with a total of 483 spam e-mails being sent with this URL as the recipient’s name in the e-mail body.

  • Current state of investigation
  • ・We have so far determined that the spam was sent to e-mail addresses of parties that Nippon Jimuki does not have business dealings with.

  • Steps we have taken
  • ・On February 21, 2021 (JST), at 8 p.m. and again at 10:32 p.m., we implemented CAPTCHAs to prevent automated registration.

    ・We have implemented CAPTCHAs for all forms on our sites that were vulnerable to automated registration to prevent this incident from occurring again.

    ・Any information filled in contact forms will not be included in the automated replies.

  • Implementations
  • ・After taking the necessary steps to resolve this issue, we will delete all e-mail addresses fraudulently registered through our contact form as part of this incident.

We will take measures to strengthen security and implement proper steps towards maintaining safety on our website.
We look forward to continuing to work with you as a valued partner.

For inquiries relating to this incident please contact : staff@njc.co.jp