Skip to content
Regulator probes ransomware attack on Cartrack

Regulator probes ransomware attack on Cartrack

Sabcnews • September 18, 2026

The Information Regulator says it is investigating a data breach at vehicle tracking company Cartrack, which suffered a ransomware incident in August.

Cartrack says its customer database was accessed in last month’s incident. The database contains personal information such as customers’ details, bank account information and vehicle data.

The ransomware group Dire Wolf listed Cartrack on its dark web leak site, claiming it had exfiltrated 500 gigabytes of data from the company’s servers.

Acting Senior Manager for POPIA Compliance and Monitoring at the Information Regulator, Hangi Mbedzi, says, “I can confirm that Cartrack has notified the Information Regulator in terms of Section 22. At this stage, it’s still a preliminary notification. We are still studying the contents of the notification; however, in general, all notifications must contain the extent of the breach, possibly how many of the data subjects have been subject to that breach and any other information in terms of how this has happened. But as I said, we’re still studying the notification and we are in with Cartrack in this regard.”

Extracted Entities