CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

Boston police tested Motorola and Axon readers as Flock exited

Cybersecurity

Leapmotor EVs carry cameras from a supplier Australia banned

Policy & Compliance

BYD rewrites Australian privacy policy after Four Corners questions

Cybersecurity

A passwordless port let a researcher command a moving BYD ute

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

Car-share service ties member record theft to one employee

Communauto told members that an employee copied personal records during the night of September 3 to 4, and Montreal police searched a worker's home the next day.

CarThreat Staff
Last updated: September 16, 2026 1:16 am
By
ctadmin
2 Min Read
cel-shaded illustration of a small hatchback in an empty car-share bay with cyan data ribbons streaming away across the lot
SHARE

A car-sharing operator in Montreal has told its members that someone inside the company spent an evening copying customer records.

Viviani, a vice-president at the company, confirmed that police searched an employee’s home the day after the discovery. According to the service, its own monitoring systems raised the first alarm over member records on the night of September 3 to 4.

Local coverage of the case describes that employee as a suspect in the theft of personal information belonging to several customers. Payment details and passwords were not compromised, the company said, and outside specialists are now watching public sources and dark web marketplaces for signs that the records have surfaced for sale.

For a service built on trust, the timing is awkward. Car sharing asks members to hand over a driving licence, a home address, a payment method and a history of where they drove. That combination is worth more to a fraudster than a card number, because it survives cancellation and answers knowledge-based verification questions at banks and insurers.

Communauto has not said how many members were affected or what fields were taken. It has also not explained how one employee could pull records in bulk without an alert firing until hours later.

The breach lands in a crowded month for vehicle data. Quebec’s privacy regulator concluded in August that consent in connected cars is fundamentally broken, and California lawmakers have already killed a bill that would have forced automakers to limit what they collect.

The lesson is familiar. Access controls inside a mobility operator matter as much as the locks on its cars, and the person with legitimate credentials remains the hardest threat to spot.

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Access ControlsCybersecurityData BreachData PrivacyThreat IntelligenceVulnerabilities
SOURCES:Montreal Gazette
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

Silicon Motion clears vehicle cyber audit as R155 pressure builds

By
ctadmin
September 13, 2026
Physical Security

Appeals court hands insurers a second shot at Kia and Hyundai

By
ctadmin
September 18, 2026
Cybersecurity

WeRide and Uber Target Zurich for Robotaxi Launch with Driverless Permit

By
ctadmin
June 19, 2026
Electric Vehicles

Charging framework bugs let sessions run on after remote stop

By
ctadmin
August 9, 2026
Cybersecurity

New CAN dataset logs real attacks that stall Hyundai engines

By
ctadmin
August 13, 2026
India drafts vehicle cybersecurity rules after e-rickshaw hacks
Policy & Compliance

India drafts vehicle cybersecurity rules after e-rickshaw hacks

By
ctadmin
August 1, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive
  • ISO/SAE 21434
  • UNECE R155
  • Regulations

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?