Automotive

Industry

Ransomware Attack at Polish Truck and Trailer Parts Company

March 6, 2025

Ransomware attack at Suder, a Polish company specializing in selling truck and trailer parts. A company notification explained that on March 6, 2025, Suder’s IT staff noticed issues with their information systems. Upon investigation, it was discovered that the servers had been encrypted using malicious ransomware software. The attack affected Suder’s operations and sensitive information was reportedly accessed. A group of anonymous hackers known as Qilin leaked evidence of the attack online, this included a packing list, a medical certificate for a driver-warehouseman, an employment contract, and two Polish passports.

Suder promptly engaged a professional entity to manage the incident response, with a primary goal of determining the extent and impact of the breach. The company acknowledged the possibility of unauthorized access to personal data, which could lead to various risks for affected individuals.

read more

Australian Automotive Manufacturer Confirms Cyberattack

January 22, 2025

Australian automotive manufacturer Clutch Industries has confirmed it was targeted in a cyberattack, days after the Lynx ransomware group listed the company on its darknet platform.

“Following a recent cyber incident, Clutch Industries has become aware that a third party has named the company online alongside some data,” a spokesperson for Clutch Industries told Cyber Daily, adding that the company is investigating the extent of the breach, with initial findings suggesting the impacted data is primarily internal and operational.

read more

Japanese Auto Parts Manufacturer Yorozu suffers Cyberattack.

October 14, 2024

Japanese auto parts manufacturer Yorozu suffered a cyberattack. The attack forced the company to disconnect and isolate infected systems. The company issued a statement 9 days later saying they are “assessing the extent of the impact and the state of damage. Through our investigations so far, we have confirmed the possibility of some leakage of personal – and confidential information”.

The resulting delay in the submission of the semi-annual report is expected to have financial implications.

read more

Auto Parts Company LKQ Hit in Cyberattack, Halts Operations

November 13, 2024

Automobile parts giant LKQ Corporation revealed they discovered a Canadian business unit suffered a cyberattack November 13 where attackers ended up stealing data and hurting operations.
Chicago-based LKQ specializes in automotive replacement parts, components, and services to repair and maintain vehicles. The company has 45,000 employees in 25 countries and operates numerous brands, including Keystone, Tri Star, and ADL.
In a December 13 8-K filing with the Securities and Exchange Commission (SEC), LKQ said one of its business units in Canada suffered an attack Nov. 13, disrupting business operations.
“On November 13, 2024, LKQ Corporation detected unauthorized access to information technology (IT) systems of a single business unit in Canada. The attack disrupted the business unit’s operations,” the company said in the SEC filing.

read more

Australian Call Center Operator Hit by Lockbit Ransomware Attack

April 4, 2024

Nissan Oceania has revealed the call centre it set up to handle customer inquiries after a cyber incident late last year has itself been breached. The car maker said it enlisted OracleCMS, which operates call centers across Australia, to manage the “dedicated cyber incident call centre” it set up after a December 5 breach that impacted up to 100,000 customers.

LockBit appears to be behind the attack on OracleCMS. LockBit has published more than 60 gigabytes of data in a single compressed archive. A folder named “clients” contains more than 50 folders for organizations, ranging from local councils to aged-care services. OracleCMS has so far declined to comment on the incident

read more

Class-action Lawsuit Follows Cyberattack at Findlay Automotive

June 10, 2024

Findlay Automotive shared that a June 10 cybersecurity issue impacted its sales and service departments. Since June 10, Findlay Automotive hasn’t shared much information on the nature of the ransomware attack or the impact on its customers. The company said vehicle sales couldn’t be finalized, service appointments couldn’t be scheduled online and only cash payments could be accepted. The company didn’t answer questions on when its systems got back to normal or how it was able to return to normal.

In the wake of the cyberattack, the company was hit with two class-action lawsuits last month that allege Findlay Automotive didn’t properly protect customers’ sensitive financial and personal information.

It is unknown at this time if this attack was part of the widespread CDK attack reported a month later.

read more

Dewan Farooque Motors Limited (DFML) Suffers Severe Cyberattack

November 26, 2024

Dewan Farooque Motors Limited (DFML) has fallen victim to a severe cyberattack. DFML’s operations and access to critical financial and operational data were severely impacted, with the recovery process expected to take considerable time. “We regret to inform you that owing to malware and cyber-attack, our IT servers have crashed, and data have been badly corrupted, resulting in postponing the board meeting,” the company stated.

read more

Communication Channels Deactivated after Authorities Alert German Tipper Manufacturer

June 12, 2024

Meiller Kipper, a vehicle manufacturer based in Munich, Bavaria, Germany, has recently been targeted in a cyber attack, according to information disclosed by the company. Authorities alerted the company to specific indicators of the attack, prompting Meiller Kipper to engage security and forensic experts to assess the situation. As a precautionary measure to protect their business partners, Meiller Kipper has opted to deactivate all established Internet-based communication channels, including landline telephony, until the investigation yields concrete results.

Statement on the Meiller Kipper website reads: “Due to a cyber attack, our employees and some services have only been available to a limited extent over the past 14 days. We are pleased to inform you that we have checked our systems and that MEILLER is again available as usual via all channels by phone, email and online.”

read more

Volkswagen Seems Unconcerned after Ransomware Attack

October 11, 2024

Volkswagen has issued a statement after the 8Base ransomware group claimed to have stolen valuable data from the company’s systems. “This incident is known,” a Volkswagen spokesperson told SecurityWeek, adding, “The IT infrastructure of the Volkswagen Group is not affected. We are continuing to monitor the situation closely.”

The company has not shared any other information on the cyberattack. Its brief statement comes after the ransomware gang 8Base named the carmaker on its leak website. 8Base claims to have stolen invoices, receipts, accounting documents, personal data, certificates, employment contracts, personnel files, and “a huge amount of confidential information”.

read more

“Significant Blow” to Data Privacy at BMW Hong Kong

July 16, 2024

BMW Hong Kong has reportedly suffered a data breach affecting approximately 14,000 customers. The leak, which came to light on July 16, 2024, has exposed sensitive personal information, raising concerns about customer privacy and data security.

Initial reports suggest that a threat actor known as “888” may be responsible for the leak.

read more