Skip to content
Cartrack Suffers Ransomware Attack Exposing Customer Data

Cartrack Suffers Ransomware Attack Exposing Customer Data

First seen 21 Sep 2026, 17:53 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 21, 2026 at 18:54 UTC
  • Cartrack's customer data was compromised in a ransomware attack by Direwolf.
  • 500 gigabytes of data, including personal and bank information, were exfiltrated.
  • Customers are warned about potential phishing scams and advised to update passwords.

Cartrack, a vehicle tracking company, experienced a ransomware attack on August 26, 2026, potentially compromising customer data. The attack was attributed to the ransomware group Direwolf, which claimed to have exfiltrated 500 gigabytes of data, including personal and financial information. Cartrack has notified its customers and is currently investigating the breach, while the Information Regulator is also probing the incident. On September 8, some of the compromised data was published on the dark web. Customers are advised to be cautious of phishing attempts and to update their passwords. The investigation is ongoing to assess the full extent of the breach and its implications.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Timeline

2026-08-26
Ransomware attack on Cartrack
Cartrack suffered a ransomware attack, leading to potential data compromise of customer information.
It-Online.Co.Za
2026-09-08
Data published on dark web
Some of the data accessed during the Cartrack incident was published by the ransomware group on the dark web.
It-Online.Co.Za
2026-09-18
Regulator begins investigation
The Information Regulator announced an investigation into the data breach at Cartrack.
Sabcnews
2026-09-21
Cartrack notifies customers
Cartrack issued a notice to customers regarding the breach and potential risks associated with compromised data.
It-Online.Co.Za

More articles in this cluster (2)

Following this threat?

Track Direwolf and Cartrack in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed