KOISRA has become aware of fraudulent emails being sent to companies and business contacts by unauthorized persons impersonating KOISRA employees.

These messages were not sent, approved, or authorized by KOISRA.

The fraudulent emails may copy the name of a genuine KOISRA employee and include KOISRA’s company description, Seoul office address, telephone number, or email signature to make the message appear legitimate.

In at least one identified example, the visible sender address belonged to an unrelated domain, while replies were redirected to an address ending in @koisra.co.

Please note that koisra.co is not an official KOISRA domain and is not owned, operated, or authorized by KOISRA.

KOISRA’s Official Email Domains

Direct business emails from KOISRA employees are sent from addresses ending in:

  • @koisra.co.kr
  • @koisraup.com

Recipients should check the complete sender address and the Reply-To address rather than relying only on the displayed sender name.

A displayed name such as “KOISRA” or the name of a KOISRA employee does not confirm that an email is genuine.

What Recipients Should Do

If you receive a suspicious email claiming to be from KOISRA:

  • Do not reply to the sender.
  • Do not click any links or open unexpected attachments.
  • Do not provide your username, password, verification code, or other account information.
  • Do not communicate with any address ending in @koisra.co.
  • Verify the communication using the contact information published on KOISRA’s official website.

KOISRA will never ask recipients to provide their email password through an unsolicited email or an external login page.

If you have already entered your username or password through a link contained in a suspicious message, immediately change your password through the service provider’s official website, sign out of other active sessions, enable multi-factor authentication, and notify your organization’s IT or security administrator.

New or Different Suspicious Messages

If you receive a message containing a different sender domain, suspicious link, attachment, payment request, login page, or other information not described in this notice, please contact us at [email protected].

KOISRA is reporting the unauthorized domain and associated email activity to the relevant domain registrar, registry, hosting, and service providers.

We apologize for any concern caused by this unauthorized misuse of KOISRA’s name and company information.