logo

Toyota confirms third-party data breach impacting customers

ID: fd9f7676-a79b-53ae-9e69-a47c09793fe7

STIX ID: report--fd9f7676-a79b-53ae-9e69-a47c09793fe7

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-08-19

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Toyota confirmed that sensitive data allegedly stolen from a third-party entity was posted by the threat actor ZeroSevenGroup, who claims a 240GB dump containing employee and customer information, contracts, financial data, and network credentials (collected with ADRecon). Toyota says its North American systems were not compromised and has not disclosed the breached third-party or the scope of impacted individuals; the report references prior Toyota-related incidents including a Medusa ransomware event and multiple cloud misconfigurations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.