Supply chain β›“ Supply Chain

Toyota Third-Party Breach (August 2024)

πŸ“… 2024-08-01 🏒 Third-party vendor
Primary Source β†—

Incident Details

Toyota confirms third-party data breach impacting customers. Toyota confirmed that customer data was exposed in a third-party data breach after a threat actor leaked an archive of 240GB of stolen data on a hacking forum. “We are aware of the situation. The issue is limited in scope and is not a system wide issue,” Toyota told BleepingComputer when asked to validate the threat actor’s claims. The company added that it’s “engaged with those who are impacted and will provide assistance if needed,” but has yet to provide information on when it discovered the breach, how the attacker gained access, and how many people had their data exposed in the incident.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Third-party vendor
Supply Chain Attack
βœ… Confirmed third-party / vendor compromise

Timeline

  1. 2024-08-01 Breach occurred
  2. 2024-08-19 Publicly disclosed