CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

St. Paul pulls plate reader cameras after data reached immigration agents

Policy & Compliance

China freezes vehicle software to end patch-later OTA era

Policy & Compliance

NRMA and Lexus Australia push Canberra toward car data law

Policy & Compliance

Quebec report declares car data consent fundamentally broken

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

Automotive cyber incidents hit 477 in Q2 as in-vehicle attacks surge 30%

VicOne’s Q2 2026 report records a 17.8% quarter-over-quarter jump in automotive cybersecurity incidents, with in-vehicle systems seeing the sharpest rise.

CarThreat Staff
Last updated: July 21, 2026 5:33 am
By
ctadmin
2 Min Read
SHARE

Excerpt: VicOne’s Q2 2026 report records a 17.8% quarter-over-quarter jump in automotive cybersecurity incidents, with in-vehicle systems seeing the sharpest rise.
VicOne recorded 477 automotive-related cybersecurity incidents in Q2 2026, a 17.8% increase from the 405 logged in Q1, according to the company’s latest Situational Awareness Report published July 17. The quarterly data shows that in-vehicle systems suffered the largest spike, climbing from 129 incidents to 168.

The Americas overtook Europe as the most affected region, with 245 incidents representing over 51% of the global total. Europe recorded 113, down from 161 in Q1, while Asia logged 68.

Ransomware activity declined to 160 incidents from 180 in Q1, but logistics and transportation remained the hardest-hit sector at 64 incidents, or 40% of all ransomware activity. Qilin was the most active named group with 15 claimed attacks, followed by The Gentlemen (14), LockBit (12), and Akira (11). Activity accelerated toward the end of the quarter, with June recording 61 incidents — the highest monthly total.

Enterprise IT systems remained the most frequently affected domain with 230 incidents, but the growth was concentrated in vehicle-adjacent systems. Charging infrastructure saw 28 incidents, connected vehicle backend services logged 18, and vehicle companion apps recorded 2.

Injection-related weaknesses dominated the CWE rankings. SQL injection led with 24 entries, followed by general injection flaws (14) and stack-based buffer overflows (8). The report also flagged AI-related risks, including an AI agent on GitHub enabling automated ECU parameter modification and threat actors adapting prompt-manipulation techniques to evade AI-assisted security analysis.

Several notable Q2 incidents cited in the report include the EvilValet attack against Honda infotainment systems, API vulnerabilities in connected vehicle cloud services, charging infrastructure flaws affecting Autel and Mennekes products, and the AlgoBuster framework targeting UDS Security Access in automotive ECUs.

VicOne emphasized that security teams need visibility across enterprise systems, operational platforms, connected services, charging infrastructure, and in-vehicle software to manage risk in what it calls the “Overlap Era.”

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Automotive CybersecurityConnected VehicleQ2 2026RansomwareThreat Intelligence
SOURCES:VicOne
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

Identity-based crypto removes plaintext keys from CCS charging

By
ctadmin
August 12, 2026
Car NewsCybersecurity

Keyless car theft surges across North America as cyber techniques evolve

By
ctadmin
July 18, 2026
Cybersecurity

Extortion group Helix claims a million files from Uber Freight

By
ctadmin
August 13, 2026
Cybersecurity

Dealer-installed alarm exposes 2 million cars to Bluetooth theft attacks

By
ctadmin
July 21, 2026
Cybersecurity

EU Mandate for Driver Monitoring Raises Biometric Privacy in Connected Cars

By
ctadmin
July 12, 2026
Cybersecurity

Deterministic ECU Protection: Preventing Exploits Without Redesigning CAN Bus Communication

By
ctadmin
May 22, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • ISO/SAE 21434
  • UNECE R155
  • Regulations
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?