800,000 Volkswagen cars' location data has been leaked, and it has been ongoing for a few months

JamesJan 02, 2025, 11:16 AM

【PCauto】Due to a lapse by the software company Cariad, Volkswagen Group's 800,000 electric vehicle location data in Europe was leaked and publicly accessible on the internet for several months. The affected vehicles include brands like Volkswagen, Audi, SEAT, and Skoda, with specific models such as ID.3 and ID.4 having their owners' location data exposed.

The scope of this incident is much broader than anticipated. It not only involves the location data of ordinary users' vehicles, but also includes owners' identity information and travel patterns. More critically, the vulnerability also affected the whereabouts of German government officials and public safety systems.

It was revealed that the real-time location data of dozens of official cars of German politicians, as well as some police vehicles, were also leaked in this incident. It includes 35 electric vehicles in the Hamburg police station fleet, other politicians, business leaders, Bundesnachrichtendienst employees, and drivers from the US Air Force's Ramstein Air Base.

Using the data, people were able to precisely track the daily movements of two German politicians. One of them is a member of the German Defense Committee, and his car's location data revealed frequent visits to his father's nursing home as well as the country's military barracks.

The other politician's itinerary showed her daily route from the municipal hall where she works to her therapist.

The Federal Commissioner for Data Protection and Freedom of Information (BfdI) in Germany expressed serious concern about the incident and rapidly launched a joint investigation. Chairman Klaus Müller emphasized at a press conference:

"This leak not only poses a significant threat to citizens' privacy, but also exposes serious vulnerabilities in the technical security of public institutions. We need to conduct a comprehensive review of this matter to ensure that similar incidents do not happen again."

In its latest statement, Volkswagen Group acknowledged the severity of the data breach involving vehicles of government officials and law enforcement agencies, and stated that it has collaborated with relevant government departments to strengthen the protection and remediation of the affected data. The company has committed to providing technical support to help public security agencies quickly close the vulnerabilities and has also pledged to offer compensation to the affected individuals and organizations.

Technical analysis of the incident shows that this vulnerability originated from a major mistake made by Cariad in the design of the API. Although the initial intention of the technology was to provide efficient interconnection capabilities, the lack of strict security testing and monitoring during the development and deployment process allowed sensitive information to leak through unprotected channels.

In this incident, the hacker group Chaos Computer Club played a key role by notifying Cariad about the vulnerability.

Industry experts point out that this event not only exposed technical issues within automobile manufacturing companies but also highlighted gaps in the industry's management and compliance practices. European data protection authorities are pushing for a special review of the connected car sector and are calling for the establishment of stricter regulatory standards to ensure the security of connected technologies.

# Industry trends

If any infringement occurs, please contact us for deletion

Follow Us

Facebook

Trending News

2025 Toyota Aqua Released, Fuel Efficiency 35.4km/L, More Worth Buying Than Corolla

2025 Toyota Aqua Released, Fuel Efficiency 35.4km/L, More Worth Buying Than Corolla

[PCauto] Against the backdrop of the global automotive market's continuous transition toward electrification, the Toyota Aqua, as a compact hybrid model from the brand, has always been renowned for its high efficiency and practicality.The 2025 Toyota Aqua has been officially unveiled recently, drawing market attention once again with multiple technological upgrades and high fuel efficiency.This model is built on the TNGA-B platform, achieving a new breakthrough in fuel consumption performan

Kevin WongSep 3, 2025
Zeekr 9X will be launched in China on August 29 and has attracted attention due to its resemblance to the Cullinan

Zeekr 9X will be launched in China on August 29 and has attracted attention due to its resemblance to the Cullinan

[PCauto] Geely's premium electric vehicle brand Zeekr announced that its first luxury flagship hybrid SUV model, the Zeekr 9X, will officially start pre-sale in China on August 29, 2025.This full-size luxury SUV has attracted significant market attention for its resemblance to the Rolls-Royce Cullinan in appearance, as well as its luxurious interior design and high level of configuration.Zeekr 9X Positioned as a Full-Size Luxury SUVThe Zeekr 9X dimensions are 5239/2029/1819mm, with a wheelb

AshleyAug 28, 2025
2026 Malaysia EV Road Tax Policy Analysis: Costs and Opportunities After the End of Exemptions

2026 Malaysia EV Road Tax Policy Analysis: Costs and Opportunities After the End of Exemptions

As December 31, 2025, approaches, electric vehicle owners in Malaysia will face a significant policy turning point — the four-year electric vehicle road tax exemption policy is coming to an end. Starting from January 1, 2026, all electric vehicles will be subject to an annual road tax based on a new power-based tiered tax system. This change marks a transition for Malaysia's electric vehicle market from a policy-driven phase to a new stage of market-oriented development, bringing new considerations for both consumers and the industry.

RobertSep 15, 2025
BYD Malaysia CKD factory established in Tanjung Malim, production to start in 2026

BYD Malaysia CKD factory established in Tanjung Malim, production to start in 2026

[PCauto] On August 22, 2025, BYD officially announced through its Malaysian official distributor, BYD Sime Motors, that it will invest in building a local assembly (CKD) plant in the KLK Technology Park in Tanjung Malim, Perak. The plant is expected to commence production in 2026. This plant, covering an area of 150 acres (approximately 600,000 square meters), will adopt a completely knock-down assembly mode, with complete kits imported from China for localized production in Malaysia.

JohnAug 25, 2025
The fifth-generation Geely Emgrand car photos released, with upgrades in body size and power system

The fifth-generation Geely Emgrand car photos released, with upgrades in body size and power system

As a family sedan with cumulative sales exceeding 4 million units in China, the new generation Emgrand will further consolidate Emgrand's competitive position in the sedan market through stronger product capabilities.

WilliamSep 16, 2025
View More