Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Zoomcar Data Breach Hits 8.4 Million Users

June 17, 2025
Reading Time: 3 mins read
in Incidents
Qilin Gang Leaks Asefa FC Barcelona Data

The Indian car-sharing marketplace Zoomcar has disclosed that unauthorized access to its systems led to a significant data breach. This major security incident has reportedly impacted a total of 8.4 million users of the popular peer-to-peer rental service. The incident was first detected on June 9th, after a threat actor directly emailed company employees alerting them of a cyberattack. Although there has been no material disruption to its services, the company’s internal investigation confirmed that sensitive customer data was compromised. Zoomcar is a U.S.-listed public company, and its shares are now traded on the Nasdaq stock exchange, requiring SEC reporting.

The company’s preliminary investigation shows that the following data for 8.4 million customers has now been exposed to an unauthorized party.

This compromised data includes the customers’ full names, their personal phone numbers, their car registration numbers, and also their home addresses. Additionally, the email addresses that were associated with these user accounts have also been unfortunately exposed in this data security breach. However, Zoomcar says that there is no evidence of users’ financial information, plaintext passwords, or other sensitive identifiers being compromised.

The company has also underlined that it is still evaluating the exact scope and the potential impact of this security incident.

Zoomcar took swift action after the incident was discovered, with the help of external cybersecurity experts, to boost its cloud security. The company promptly activated its incident response plan and also notified the relevant authorities about this significant data security breach. They have stated that, to date, the incident has not resulted in any material disruption to the company’s daily business operations. However, the company continues to evaluate the full scope and potential impacts of the event, including all legal and financial considerations. The company has not yet provided any technical details regarding the cyberattack that allowed the unauthorized access to its internal systems.

At this time, the specific type of the attack has not yet been determined, and no known ransomware group has assumed responsibility. This is not the first time Zoomcar has suffered a major data breach that has exposed the personal information of its users. Back in the year 2018, the company suffered another major data breach that exposed the records of more than 3.5 million customers. That breach included names, email and IP addresses, phone numbers, and also their passwords that were stored as bcrypt hashes. That data was eventually offered for sale on an underground marketplace in 2020, exposing Zoomcar customers to many elevated risks.

Reference:

  • Indian Zoomcar Suffers Second Major Data Breach Exposing 8.4 Million Users
Tags: cyber incidentsCyber Incidents 2025Cyber threatsJapanJune 2025Sompo
ADVERTISEMENT

Related Posts

Tech Incubator IdeaLab Discloses Data Breach

Tech Incubator IdeaLab Discloses Data Breach

July 4, 2025
Brazil’s CIEE One Exposes 248,000 Records

Brazil’s CIEE One Exposes 248,000 Records

July 4, 2025
McLaughlin & Stern Discloses Data Breach

McLaughlin & Stern Discloses Data Breach

July 4, 2025
Hacker Accesses Max Financial’s User Data

Hacker Accesses Max Financial’s User Data

July 3, 2025
Hacker Accesses Max Financial’s User Data

Cyberattack Hits Medtech Firm Surmodics

July 3, 2025
Hacker Accesses Max Financial’s User Data

Rhysida Ransomware Hits German Charity WHH

July 3, 2025

Latest Alerts

Google Removes 352 ‘IconAds’ Fraud Apps

Malicious Firefox Add Ons Steal Crypto Keys

Browser Cache Attack Bypasses Web Security

PDFs Deliver QR Codes in Callback Scams

Critical Sudo Flaws Expose Linux Systems

Unkillable Mac Malware From North Korea

Subscribe to our newsletter

    Latest Incidents

    Tech Incubator IdeaLab Discloses Data Breach

    Brazil’s CIEE One Exposes 248,000 Records

    McLaughlin & Stern Discloses Data Breach

    Cyberattack Hits Medtech Firm Surmodics

    Rhysida Ransomware Hits German Charity WHH

    Hacker Accesses Max Financial’s User Data

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial