Hong Kong Data Breaches Expose Customers
Coverage from Marketing Interactive, Databreaches.net, and others

Two significant cyber incidents in Hong Kong exposed or potentially exposed personal information held by a private club and Shun Hing Group.
The cases involve ransomware or malicious encryption, unauthorized system access, and records covering hundreds of thousands of customers and other individuals. They underscore the operational and privacy impact of weaknesses in remote access, authentication, and security maintenance, while investigations continue to clarify the full scope of the Shun Hing breach.
The Shun Hing incident has been reframed with more precise and more severe scope: the company now says malicious encryption and system damage may have affected about 1.05 million people, leaving the exact exposure unresolved. The club breach is now more explicitly tied to specific security failures, and the privacy regulator’s involvement remains active.
