CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

St. Paul pulls plate reader cameras after data reached immigration agents

Policy & Compliance

China freezes vehicle software to end patch-later OTA era

Policy & Compliance

NRMA and Lexus Australia push Canberra toward car data law

Policy & Compliance

Quebec report declares car data consent fundamentally broken

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

Extortion group Helix claims a million files from Uber Freight

Helix says it stole nearly a million files from Uber Freight's cloud systems, but the logistics giant says operations never stopped.

CarThreat Staff
Last updated: August 13, 2026 10:58 pm
By
ctadmin
2 Min Read
SHARE

Helix, an extortion group that researchers tie to the retired BlackFile ransomware brand, claims it stole nearly a million files from Uber Freight, the logistics arm of the ride-hailing giant. The crew listed the company on its leak site on August 6, saying the haul came from employee mailboxes, OneDrive accounts, and the accounts receivable department.

Uber Freight confirmed to The Register that it is investigating a data security incident involving unauthorized access to parts of its systems and repositories. A spokesperson said the breach was identified, contained, and remediated, and that federal law enforcement was engaged. Operations never stopped, with the company describing its systems as secure and fully operational.

The trucking platform says it manages 18 million shipments carrying more than $17B in goods each year, making it one of North America’s largest managed transportation networks. That scale makes it an attractive target for extortion crews that have recently shifted toward technology, transportation, and hospitality victims.

Google Threat Intelligence Group tracks Helix alongside the Pink, Redact, and Falcon brands under the cluster UNC6671. Operators typically open with vishing, posing as IT helpdesk staff, then use device code phishing to steal credentials and sessions for cloud services such as Microsoft 365. Uber Freight has not confirmed whether the leaked material is authentic.

The incident adds to a growing list of logistics and fleet operators hit this year as attackers chase the supply chain data carriers hold, and it shows that even well-known freight brands remain reachable through cloud credential theft.

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Commercial VehiclesConnected VehiclesCybersecurityData PrivacyThreat IntelligenceVulnerabilities
SOURCES:The Register
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

NHTSA tells self-driving car makers to stop blocking ambulances

By
ctadmin
July 12, 2026
Snapdragon Digital Chassis concept illustration of an electric vehicle with glowing internal components
Cybersecurity

Stellantis Pushes Hands-Free Driving With Qualcomm Snapdragon Ride Pilot

By
ctadmin
May 25, 2026
Policy & Compliance

Automakers Face Scrutiny as Connected Car Data Collection Outpaces Privacy Laws

By
ctadmin
June 19, 2026
Cybersecurity

Light-bending film redirects self-driving sensors into oncoming traffic

By
ctadmin
August 10, 2026
Cybersecurity

Fuzzing tool finds denial-of-service bug in V2X message gateways

By
ctadmin
August 13, 2026
Cybersecurity

Tesla Accused of Altering FSD Purchase Agreements as Original Contracts Disappear

By
ctadmin
June 4, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • ISO/SAE 21434
  • UNECE R155
  • Regulations
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?