Europecar Gitlab Breach (Incident)
ID: 19b0054e-1514-5cd2-abfb-e95c387259a2
STIX ID: report--19b0054e-1514-5cd2-abfb-e95c387259a2
Feed Name: Wiz Cloud Threat Landscape
Date Published: 2025-04-04
Date Updated: 2026-05-01
Author: [email protected] (Wiz Threat Research)
A threat actor breached Europcar Mobility Group's GitLab, stealing mobile app source code, ~9,000 SQL files, 269 .env files containing credentials, and other configuration/cloud information, then attempted to extort the company by threatening to publish 37GB of data. Europcar confirmed some repositories were not affected, is assessing impact, notifying affected users (up to 200,000 names/emails from Goldcar and Ubeeqo), and has informed the data protection authority; screenshots from the attacker indicate employee credentials were present in the exfiltrated data.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
