In 2024, automotive software firm CDK suffered a significant ransomware attack that affected thousands of car dealerships across the US and Canada. This cyber incident led to extensive financial repercussions for its customers as dealership operations were disrupted. The incident reflects the growing risk associated with third-party vendors and the substantial impact their security failings can have on client businesses.
Source: https://www.infosecurity-magazine.com/news/third-party-financial-losses/
TPRM report: https://scoringcyber.rankiteo.com/company/cdknorthamerica
"id": "cdk408030225",
"linkid": "cdknorthamerica",
"type": "Ransomware",
"date": "2/2025",
"severity": "100",
"impact": "6",
"explanation": "Attack threatening the economy of geographical region"
{'affected_entities': [{'customers_affected': 'Thousands of car dealerships',
'industry': 'Automotive',
'location': ['US', 'Canada'],
'name': 'CDK',
'type': 'Automotive Software Firm'}],
'description': 'In 2024, automotive software firm CDK suffered a significant '
'ransomware attack that affected thousands of car dealerships '
'across the US and Canada. This cyber incident led to '
'extensive financial repercussions for its customers as '
'dealership operations were disrupted. The incident reflects '
'the growing risk associated with third-party vendors and the '
'substantial impact their security failings can have on client '
'businesses.',
'impact': {'operational_impact': 'Disruption of dealership operations',
'systems_affected': 'Car dealership operations'},
'title': 'Ransomware Attack on CDK',
'type': 'Ransomware Attack'}