LIVE
UTC --:--:--
OT SECURITY HUB
by zuckergates
// INCIDENT · 2024

Volkswagen Cariad EV Data Leak

Misconfigurasi cloud pada anak usaha software VW mengekspos telemetri kendaraan listrik.

mediumGermanyManufacturing
Impact
~800.000 data lokasi & profil EV VW/Audi/Seat/Skoda terekspos.
Initial vector
AWS bucket terbuka (Cariad)
Lessons learned
  • Cloud config audit otomatis
  • Minimisasi telemetri kendaraan
  • Bug-bounty connected car