It’s common for modern people to worry about hackers stealing their personal data, but sometimes the most serious incidents are caused not by cybercriminals, but by companies we trust. This time it was the Volkswagen Group that was at fault, which did not provide sufficient protection for customer information.

Image source: vw.com

VW Group stored confidential data related to 800 thousand electric vehicles in the Amazon cloud without providing them with sufficient protection; the information remained vulnerable for several months. Electric vehicles from VW, Audi, Seat and Skoda brands around the world were affected; The vulnerability affected geodata, battery charge information, and key information about the status of the machine, including whether it was working or not. With sufficient technical expertise, a hypothetical attacker could access additional data in VW Group’s online services and link it to the owner’s personal information. In 466,000 of the 800,000 cases, the location data was so precise that it was possible to create a detailed profile of each owner’s daily habits.

The data of not only ordinary citizens was under attack, but also officials: German politicians, entrepreneurs, Hamburg police officers and even, probably, the intelligence service. The vulnerability arose in the summer of 2024, when Cariad, the company responsible for VW Group software products, made an error. It was discovered by an anonymous expert who confirmed the vulnerability and notified Europe’s largest hacker association, Chaos Computer Club (CCC), about the incident. The organization immediately notified the data protection commissioner in Lower Saxony, the Ministry of Internal Affairs and other security authorities – the departments gave VW Group and Cariad 30 days to fix the problem, after which they promised to make information about it public. Cariad “responded quickly, thoroughly and responsibly” by blocking unauthorized access to customer data, CCC said.

Cariad subsequently assured customers that sensitive information, including passwords and payment details, had not been compromised and therefore no action was required on their part. German politicians were extremely concerned about the incident and called on automakers to strengthen cybersecurity measures.

admin

Share
Published by
admin

Recent Posts

Google simplified the management of a smart home-Google Home received a Gemini AI assistant

Smart home control in the Google ecosystem through the Gemini artificial intelligence assistant has become…

2 hours ago

AMD Releases Optional Driver Supporting Marvel’s Spider-Man 2 and Final Fantasy VII Rebirth

AMD has released an optional update of the Radeon Software Adrenalin 25.1.1 driver. It added…

3 hours ago

Epic Games launches a game distribution program and will help compensate for Apple to IOS developers

Epic Games plans to add about 20 third-party games to its mobile app store on…

4 hours ago

Trump’s new executive order calls for the creation of a US national cryptocurrency reserve

Donald Trump, who during his first term criticized cryptocurrencies as a whole, by the time…

5 hours ago

Dasung has released a compact 10.3-inch monitor with an electronic ink matrix and an update frequency of 60 Hz

The Chinese company Dasung has released a compact monochrome touchscreen monitor, Paperlike 103, equipped with…

5 hours ago

Google launches accounts through the print scanner on Android

Google has launched a new security feature for Android 15 that will help protect users'…

6 hours ago