Slashdot Mirror


Toyota Security Breach Exposes Personal Info of 3.1 Million Clients (bleepingcomputer.com)

An anonymous reader quotes a report from BleepingComputer: The personal information of roughly 3.1 million Toyota customers may have been leaked following a security breach of multiple Toyota and Lexus sales subsidiaries, as detailed in a breach notification issued by the car maker today. As detailed in a press release published on Toyota'a global newsroom, unauthorized access was detected on the computing systems of Tokyo Sales Holdings, Tokyo Tokyo Motor, Tokyo Toyopet, Toyota Tokyo Corolla, Nets Toyota Tokyo, Lexus Koishikawa Sales, Jamil Shoji (Lexus Nerima), and Toyota West Tokyo Corolla. "It turned out that up to 3.1 million items of customer information may have been leaked outside the company. The information that may have been leaked this time does not include information on credit cards," says the data breach notification. Toyota has not yet confirmed if the attackers were able to exfiltrate any of the customer personal information exposed after the IT systems of its subsidiaries were breached. Toyota said in a statement: "We apologize to everyone who has been using Toyota and Lexus vehicles for the great concern. We take this situation seriously, and will thoroughly implement information security measures at dealers and the entire Toyota Group."

19 comments

  1. Clients? by Anonymous Coward · · Score: 0

    Wtf they call them clients?

    1. Re:Clients? by Fly+Swatter · · Score: 3, Informative

      Client would be correct, they have an ongoing relationship with the dealer. Few people buy a car outright, most are leased or financed. Even buying outright you have warranty and 'free' maintenance for a few years.

  2. in the market for a new car by Anonymous Coward · · Score: 0

    Well, I was considering a Toyota. Not anymore.

  3. Wow. by roc97007 · · Score: 1

    Glad I didn't buy one.

    --
    Oliver's law of assumed responsibility: If you're seen fixing it, you will be blamed for breaking it.
  4. Best security breach by Anonymous Coward · · Score: 0

    This was a japanese security breach, these are much better than european or american one's.

    --
    AmiMoJo

    1. Re: Best security breach by Anonymous Coward · · Score: 0

      Drive A PIP all the way home at 111 miles per gallon!

  5. Credit Cards? by Philotomy · · Score: 2

    It says the leak doesn't include any credit card information. Uh...who buys a car with a credit card? What about loan/bank/financing information? (Not to mention SSN, DOB, address, et cetera.)

    1. Re:Credit Cards? by YrWrstNtmr · · Score: 1

      People who pay for parts and repairs at the Toyota dealership with a credit card?

    2. Re:Credit Cards? by Philotomy · · Score: 1

      Yeah, yeah, of course. But c'mon. To mention "credit cards" and not complete auto financing seems surprising, to me, given the entities that are involved.

    3. Re:Credit Cards? by Anonymous Coward · · Score: 0

      SSN? This happened in Japan. Did you even bother to read the summary?

      Let me ask you something, what is it like living with shit for brains?

    4. Re:Credit Cards? by Anonymous Coward · · Score: 0

      What about loan/bank/financing information? (Not to mention SSN, DOB, address, et cetera.)

      All of that already leaked as part of the Equifax data breach. You would have to be some kind of crazy not to freeze your credit by default these days, especially now that credit freezes and thaws are mandatory free of charge by act of Congress.

    5. Re:Credit Cards? by Anonymous Coward · · Score: 0

      You ever had service at a car lot? How about putting a down payment with a credit card (bank card)?

  6. Until there's a big fine, this will keep happening by hyades1 · · Score: 1

    Once again a major corporation leaves its customers twisting in the wind. Why even call them customers? At this point, "Johns" would be a better description, because they're paying money and getting fucked.

    And this will keep going on until the courts levy an enormous, damaging fine against a corporation that allows a major data breach due to negligence or other culpable failure. I'd suggest Wells Fargo as a great place to start.

    --
    I've calculated my velocity with such exquisite precision that I have no idea where I am.
  7. Oddly, they have good vehicle security team by raymorris · · Score: 1

    I keep getting called about joining their team responsible for security of in-vehicle computers. I've met some of the people on that team. THAT team seems to be pretty good, well-staffed.

    Apparently somebody on another team screwed up, though.

  8. Self Driving Cars by Anonymous Coward · · Score: 0

    Going to be great when they breach and hack all the self driving cars.

  9. Unauthorized access detected on computing systems by Anonymous Coward · · Score: 0

    unauthorized access was detected on the computing systems of Tokyo Sales Holdings, Tokyo Tokyo Motor, Tokyo Toyopet, Toyota Tokyo Corolla, Nets Toyota Tokyo, Lexus Koishikawa Sales, Jamil Shoji (Lexus Nerima), and Toyota West Tokyo Corolla.”

    What version of Microsoft windows were these ‘computers’ running on?

  10. Suspicious article by eford49 · · Score: 1

    Has anyone else noticed something suspicious about the link supposedly pointing to the press release?