
South Korean authorities have raised the national cyber threat level from “attention” to “caution” in response to a fire at a major state data centre in Daejeon that disabled hundreds of critical government systems.
The fire broke out Friday evening at the National Information Resources Service (NIRS) facility while workers were relocating lithium-ion batteries. The blaze spread rapidly, affecting infrastructure tied to 647 government subsystems.
By Monday, 46 of those systems had been restored, according to the Safety Ministry.
Officials say full recovery, especially for the 96 systems severely damaged, could take up to four weeks.
President Lee Jae Myung sharply criticized the absence of robust backup measures. He demanded an overhaul of data security protocols and tasked ministers with proposing funding and “dual system” redundancies for future contingencies.
The National Intelligence Service (NIS) justified the rise in alert level by warning that attackers might exploit weakened systems amid the disruption.
Under the “caution” designation, all government agencies must immediately report unusual network activity to the National Cyber Security Center or the National Security Office.
Security analysts highlight that South Korea’s government systems lack real-time mirrored failover mechanisms, exposing vulnerabilities during a crisis of this magnitude.
The incident comes at a sensitive moment: South Korea is due to host the APEC summit in Gyeongju in late October, prompting heightened concern over cybersecurity around visiting heads of state.
Winstone House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF
020 8349 4363
© 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543