800,000 Volkswagen cars' location data has been leaked, and it has been ongoing for a few months

JamesJan 02, 2025, 11:16 AM

【PCauto】Due to a lapse by the software company Cariad, Volkswagen Group's 800,000 electric vehicle location data in Europe was leaked and publicly accessible on the internet for several months. The affected vehicles include brands like Volkswagen, Audi, SEAT, and Skoda, with specific models such as ID.3 and ID.4 having their owners' location data exposed.

The scope of this incident is much broader than anticipated. It not only involves the location data of ordinary users' vehicles, but also includes owners' identity information and travel patterns. More critically, the vulnerability also affected the whereabouts of German government officials and public safety systems.

It was revealed that the real-time location data of dozens of official cars of German politicians, as well as some police vehicles, were also leaked in this incident. It includes 35 electric vehicles in the Hamburg police station fleet, other politicians, business leaders, Bundesnachrichtendienst employees, and drivers from the US Air Force's Ramstein Air Base.

Using the data, people were able to precisely track the daily movements of two German politicians. One of them is a member of the German Defense Committee, and his car's location data revealed frequent visits to his father's nursing home as well as the country's military barracks.

The other politician's itinerary showed her daily route from the municipal hall where she works to her therapist.

The Federal Commissioner for Data Protection and Freedom of Information (BfdI) in Germany expressed serious concern about the incident and rapidly launched a joint investigation. Chairman Klaus Müller emphasized at a press conference:

"This leak not only poses a significant threat to citizens' privacy, but also exposes serious vulnerabilities in the technical security of public institutions. We need to conduct a comprehensive review of this matter to ensure that similar incidents do not happen again."

In its latest statement, Volkswagen Group acknowledged the severity of the data breach involving vehicles of government officials and law enforcement agencies, and stated that it has collaborated with relevant government departments to strengthen the protection and remediation of the affected data. The company has committed to providing technical support to help public security agencies quickly close the vulnerabilities and has also pledged to offer compensation to the affected individuals and organizations.

Technical analysis of the incident shows that this vulnerability originated from a major mistake made by Cariad in the design of the API. Although the initial intention of the technology was to provide efficient interconnection capabilities, the lack of strict security testing and monitoring during the development and deployment process allowed sensitive information to leak through unprotected channels.

In this incident, the hacker group Chaos Computer Club played a key role by notifying Cariad about the vulnerability.

Industry experts point out that this event not only exposed technical issues within automobile manufacturing companies but also highlighted gaps in the industry's management and compliance practices. European data protection authorities are pushing for a special review of the connected car sector and are calling for the establishment of stricter regulatory standards to ensure the security of connected technologies.

# Industry trends

If any infringement occurs, please contact us for deletion

Follow Us

Facebook

Trending News
Tesla pushes 2025.2.6 update in North America, activating the hidden millimeter-wave radar in Model Y

Tesla pushes 2025.2.6 update in North America, activating the hidden millimeter-wave radar in Model Y

[PCauto] In February 2025, Tesla rolled out the 2025.2.6 software update for 2022 and subsequent Model Y models in North America.The highlight of this update is the activation of the hidden millimeter-wave radar hardware in the Model Y cockpit. This AWR6843 chip supplied by Texas Instruments, has three transmitting antennas and four receiving antennas, operating on a frequency band between 60-64 GHz, with a horizontal field of view of 120 degrees and a vertical field of view of 60 degrees.Once a

AshleyFeb 17, 2025
Xpeng X9 is expected to launch in Malaysia in 2025, hailed as the electric version of Toyota Alphard

Xpeng X9 is expected to launch in Malaysia in 2025, hailed as the electric version of Toyota Alphard

Since the right-hand drive version of Xpeng X9 was launched in Hong Kong, it has been favored by many Toyota Alphard users. Now, Xpeng plans to introduce the X9 to Singapore next month, and it is highly likely that it will be launched in Malaysia in 2025.With its luxurious configuration, intelligent technology, and excellent endurance, the Xpeng X9 is expected to become the Alphard of Malaysia's electric MPVs.The exterior design of the Xpeng X9 continues Xpeng's unique style, with recognizable f

MichaelDec 31, 2024
Latest news on the 2025 Proton Saga, with ADAS support provided by iMotion Technology

Latest news on the 2025 Proton Saga, with ADAS support provided by iMotion Technology

【PCauto】The Proton Saga, with a history of nearly 40 years, is one of the most popular compact cars in Malaysia, and its sales have exceeded 2 million units.With the arrival of 2025, rumors about the new generation of Saga (code: AMA01) are becoming more and more.The upgrade of the Proton Saga is not only a complete renewal of its exterior and interior, but also a comprehensive upgrade of its power system and safety technology. The style of the exterior and interior will have a more technologica

JohnJan 6, 2025
BYD Xia launched in China, using the fifth generation DM hybrid system, with prices starting from RM 153,389

BYD Xia launched in China, using the fifth generation DM hybrid system, with prices starting from RM 153,389

[PCauto] BYD Xia has recently been launched, and BYD M6 is no longer sold in China. Xia will fill BYD's vacancy in the MPV market. BYD Xia offers four configurations. According to the CLTC pure electric endurance test, it can be roughly divided into 100km and 180km versions. The price ranges from 249,800 to 309,800 RMB. Converted into Malaysian currency this is approximately RM153.4k - 189.2k. As BYD's important model, Xia is also equipped with the fifth-generation DM plug-in hybrid system. T

JamesJan 14, 2025
On the first day of its release, Tesla Model Y "Juniper" receives 50,000 orders in China.

On the first day of its release, Tesla Model Y "Juniper" receives 50,000 orders in China.

【PCauto】On January 10, 2025, Tesla officially launched the new Model Y, also known as the rumored Model Y "Juniper". On the very first day, the Model Y received over 50,000 orders in China, equivalent to 100 orders at every Tesla store in China. Although the old Model Y is also on sale, the new Model Y received even more orders.The new Model Y "Juniper" available in the Chinese market comes in two versions, namely the rear-wheel-drive debut version and the long-range all-wheel-drive debut versio

RobertJan 15, 2025
View More