Automotive

Industry

Ransomware Attack at South Korean Auto Parts Supplier, Namyang Industrial

August 6, 2026

South Korean manufacturer Namyang Industrial Co., Ltd., also known as NAMYANG NEXMO, suffered a ransomware attack in August.
Barracuda ransomware group claimed credit for the August 6 attack at the South Korean auto parts supplier, according to a report in Undercode News.
Namyang Industrial is a supplier within the automotive manufacturing environment. NAMYANG NEXMO is an automotive-parts manufacturer producing steering and braking components, with manufacturing operations in Korea and overseas facilities.

read more

Ransomware Attack at Bajaj Auto

June 23, 2026

Indian automotive giant Bajaj Auto detected an active ransomware attack in late June where it and its wholly owned technology subsidiary, Bajaj Auto Technology Limited (BATL), which handles engineering, R&D, and technology development suffered from the hack.
Bajaj Auto said it acted immediately after the Tuesday, June 23 attack at 8 a.m., and engaged internal and external experts, activated incident response protocols, and notified the Indian Computer Emergency Response Team (CERT-In). Additionally, Bajaj Auto said it did not have any halt in production.
“Immediately upon becoming aware of the incident, the technical team of the company along with cybersecurity experts and the management responded promptly and initiated necessary precautionary actions and protocols to mitigate the impact of this incident and this has been successful based on the available information at this time,” the company said in a notice to regulators.

read more

Third-Party Attack Hits Nissan

June 26, 2026

There was another incident related to the Oracle PeopleSoft software where attackers were able to steal the personnel records of hundreds of companies of which Nissan was the latest to report former and current employees ended up victimized.
“We have since learned that Nissan was specifically targeted in this attack,” according to an advisory dated Friday, June 26. “Upon learning about this issue, we quickly activated incident response protocols. We have been in communication with authorities throughout our response to this attack. Our technical teams, along with external experts, have secured our systems and will continue to work with Oracle to address this issue.”
Oracle’s PeopleSoft program manages employee records, payroll, and other personal data and in this case attackers were able to exfiltrate data accessed on Nissan’s systems.

read more

Third-Party Attack at Auto Giant Stellantis

September 21, 2025

Global automaker, Stellantis, which owns Chrysler, Dodge, Jeep, Ram and Fiat, discovered unauthorized access to a third-party platform that houses North American customer data.
“We recently detected unauthorized access to a third-party service provider’s platform that supports our North American customer service operations,” the company said Sunday in an advisory.
“Upon discovery, we immediately activated our incident response protocols, initiated a comprehensive investigation, and took prompt action to contain and mitigate the situation,” the company said. “We are also notifying the appropriate authorities and directly informing affected customers.“

read more

Cyberattack at Transmission Maker, Reseller, American Driveline

April 11, 2025

Horsham, Pennsylvania-based American Driveline Systems, Inc., the parent company of AAMCO Transmissions, LLC, detected unusual activity within its server network this past April and found attackers stole personally identifiable information from employees.
Upon discovering this activity, American Driveline Systems immediately implemented its response protocols, took measures to contain the attack, and launched an investigation. The company then hired a cybersecurity firm that has assisted other companies in similar situations, and the investigation identified unauthorized access to files on servers in the network between April 11 and April 16.
American Driveline Systems assessed the files involved. By May 21, the company determined the files included the name and Social Security number and/or driver’s license number.

read more

Auto Parts Maker, LKQ, Suffers Another Attack

October 3, 2025

Antioch, Tennessee-based LKQ Corporation, an auto parts distributor and maker of a some parts, suffered a cyberattack as a result of a third party vulnerability in August where victims’ personally identifiable information ended up stolen in the hack.
Oracle announced a number of security vulnerabilities, including a previously unknown vulnerability in its E-Business Suite application, used by LKQ and other organizations worldwide. In early October, LKQ’s security team became aware of a third party exploiting these vulnerabilities.
This is the second attack LKQ suffered in a year.

read more

Ransomware Attack at Volkswagen Group France

October 14, 2025

Volkswagen Group France experienced a ransomware attack attributed to the cybercriminal group Qilin. The group claimed to have stolen approximately 150 GB of sensitive data, including personal information of vehicle owners, detailed vehicle data, and internal documents. The group published six documents online as proof of the breach.

read more

Japanese High-performance Automotive Suspension Manufacturer Force to Halt Production in Japan and China

October 31, 2025

TEIN, Inc. suffered a ransomware attack on October 31, 2025. The attack hit the main server, affecting all group companies. Japan HQ factory halted production for one day.
The subsidiary factory in China (TEIN Shock Absorber Manufacturing (Jiangsu) Co., Ltd.) was forced to shut down for one week (from November 3). The company is compensating for the lost time by operating on weekends and expects the final impact to be minimal. Their order/shipping system runs on a separate server and was NOT hit by the incident.

The company has not yet confirmed a data leak, internally or externally.

read more

Jaguar Land Rover Shuts Down Retail and Production Sites across the World

August 31, 2025

“Our retail and production activities have been severely disrupted,” said a statement Tuesday from Jaguar Land Rover (JRL) after the luxury auto vehicle maker suffered a cyberattack. Over a week later JLR announced it will extend the production shutdown for another week, until September 24, following a devastating cyberattack that impacted its systems worldwide at the end of August. JLR also confirmed that the attackers stole “some data” during the breach and instructed staff not to report to work. The disruption has spread throughout its supply chain, threatening thousands of jobs.

On October 7, Bloomberg reports that the UK government has agreed to guarantee a $2 billion emergency loan to help JLR pay its suppliers.

read more

Huge Automaker, Stellantis, Suffers Cyberattack

September 21, 2025

Global automaker, Stellantis, which owns Chrysler, Dodge, Jeep, Ram and Fiat, discovered unauthorized access to a third-party platform that houses North American customer data.
“We recently detected unauthorized access to a third-party service provider’s platform that supports our North American customer service operations,” the company said Sunday in an advisory.
“Upon discovery, we immediately activated our incident response protocols, initiated a comprehensive investigation, and took prompt action to contain and mitigate the situation,” the company said. “We are also notifying the appropriate authorities and directly informing affected customers.“

read more