Post

Times Car Confirms Data Breach Affecting 6.6 Million User Accounts

Times Car Confirms Data Breach Affecting 6.6 Million User Accounts

Times Car Confirms Data Breach Affecting 6.6 Million User Accounts 🚨

Japanese car-sharing service Times Car has confirmed that approximately 6.6 million user accounts were compromised in a cyberattack disclosed late last week. The company announced the incident on September 25, stating that a third party had accessed its systems at the beginning of the month. Times Car took action to block the unauthorized access on September 26.

At the time, the company was investigating whether the attackers accessed members’ personal information, but confirmed the data theft in an update earlier today. The intrusion affects 6.6 million current and former Times Car members, as well as current and former members of the Times Business Service corporate account program.

Exposed Information 📊

According to the update, exposed information includes the following data:

  • Full name
  • Department name for corporate members
  • Physical address
  • Date of birth
  • Telephone number
  • Email address
  • Driver’s license information
  • Identity verification document information (such as images of driver’s licenses)
  • Account password
  • Linked service IDs

The company stated that passwords were stored in “a form that cannot be restored,” suggesting they were encrypted or hashed, although it did not provide additional details. The investigation confirmed that credit card information remained unaffected. Currently, there is no evidence that the stolen data has been distributed online.

Caution Advised ⚠️

Times Car urged members to be cautious about emails, SMS, and phone calls claiming to come from Times Car, and to avoid opening attachments or typing passwords and credit card details. The firm is now conducting a forensic investigation into the cause and scope of the incident with the help of an external expert. Times Car said it would notify affected customers individually, but the notifications would be sent in stages. Despite the cybersecurity incident, the company assured that all its services continue to operate as normal.

Read full article

This post is licensed under CC BY 4.0 by the author.