ao link
Menu
Teiss - Cracking Cyber Security
Teiss - Cracking Cyber Security

Threat actor claims breach at Volkswagen dealership in India, offers alleged client data for sale

A threat actor on a prominent cybercrime forum is claiming to have compromised Volkswagen Mandi, an authorized Volkswagen dealership in Himachal Pradesh, India, and is advertising what appears to be customer and internal dealership data for sale. The individual alleges that the intrusion occurred earlier this year and resulted in the exfiltration of roughly 2.5 million rows of personal information sourced from a Customer Relationship Management backend.


The data sample shared with the forum listing includes full names, home addresses, zip codes, phone numbers, and email addresses. Only eight rows of information were provided publicly, leaving the authenticity and scale of the alleged breach unverified. The dealership has not issued any public statement on the matter, and efforts to obtain comment have not been met with a response.


The forum user behind the post joined the platform in April and has previously advertised data from multiple companies, typically releasing small preview segments to support the claims. The potential exposure of highly identifiable contact details raises concerns about downstream misuse. Researchers note that such information may be leveraged for identity profiling and tailored social engineering attacks if the dataset proves legitimate.


Volkswagen and its affiliated dealerships have been recurring targets of cybercriminal activity in recent months. In October, Volkswagen Group France, a subsidiary of Volkswagen AG, appeared on the leak site of the Qilin ransomware operation, which claimed to possess about 2,000 files and 150 gigabytes of sensitive corporate, employee, and client information. In June, Volkswagen AG was listed on the Stormous ransomware group’s dark web site, though the company later stated that no evidence suggested data theft.


The latest claim involving Volkswagen Mandi adds to a series of cyber incidents aimed at the brand and its network, while the veracity of the newly advertised dataset remains unresolved.


Please take 30 seconds to register

Register Now

 

Already have an account? Sign in

Remember Login
Teiss - Cracking Cyber Security

Subscribe to our Weekly Newsletter

Receive the latest insights direct to your inbox, and gain access to our exclusive events.
Teiss - Cracking Cyber Security

Winstone House, 3rd Floor,
Units 306-309, 2-4 Dollis park,
London, N3 1HF

 

020 8349 4363

info@teiss.co.uk

 © 2026, Lyonsdown Limited. teiss® is a registered trademark of Lyonsdown Ltd. VAT registration number: 830519543