CarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Notification
  • Autonomous Driving
  • Automotive Ethernet
  • BMS
  • ECU
  • EV
  • ISO/SAE 21434
  • Infotainment
  • OTA Updates
  • OBD-II
  • Pwn2Own
  • RCE
  • SDVs
  • TCU
  • UNECE R155
Cybersecurity

St. Paul pulls plate reader cameras after data reached immigration agents

Policy & Compliance

China freezes vehicle software to end patch-later OTA era

Policy & Compliance

NRMA and Lexus Australia push Canberra toward car data law

Policy & Compliance

Quebec report declares car data consent fundamentally broken

Font ResizerAa
CarThreatCarThreat
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
Search
  • Home
  • News
  • Features
  • Spotlight
  • Events
  • About
    • Our Mission
    • Services
    • Contact
Sign In Sign In
Follow US
© 2026 Carthreat.com. All right reserved.
Cybersecurity

Extortion group Helix claims a million files from Uber Freight

Helix says it stole nearly a million files from Uber Freight's cloud systems, but the logistics giant says operations never stopped.

CarThreat Staff
Last updated: August 13, 2026 10:58 pm
By
ctadmin
2 Min Read
SHARE

Helix, an extortion group that researchers tie to the retired BlackFile ransomware brand, claims it stole nearly a million files from Uber Freight, the logistics arm of the ride-hailing giant. The crew listed the company on its leak site on August 6, saying the haul came from employee mailboxes, OneDrive accounts, and the accounts receivable department.

Uber Freight confirmed to The Register that it is investigating a data security incident involving unauthorized access to parts of its systems and repositories. A spokesperson said the breach was identified, contained, and remediated, and that federal law enforcement was engaged. Operations never stopped, with the company describing its systems as secure and fully operational.

The trucking platform says it manages 18 million shipments carrying more than $17B in goods each year, making it one of North America’s largest managed transportation networks. That scale makes it an attractive target for extortion crews that have recently shifted toward technology, transportation, and hospitality victims.

Google Threat Intelligence Group tracks Helix alongside the Pink, Redact, and Falcon brands under the cluster UNC6671. Operators typically open with vishing, posing as IT helpdesk staff, then use device code phishing to steal credentials and sessions for cloud services such as Microsoft 365. Uber Freight has not confirmed whether the leaked material is authentic.

The incident adds to a growing list of logistics and fleet operators hit this year as attackers chase the supply chain data carriers hold, and it shows that even well-known freight brands remain reachable through cloud credential theft.

Join Our Newsletter
Subscribe to our newsletter to get our newest articles instantly!
TAGGED:Commercial VehiclesConnected VehiclesCybersecurityData PrivacyThreat IntelligenceVulnerabilities
SOURCES:The Register
Share This Article
Facebook Email Copy Link

Follow US

Find US on Social Medias
FacebookLike
XFollow
YoutubeSubscribe

You Might Also Like

Cybersecurity

Stellantis Deploys AI Digital Twins Across Global Plants with Nvidia and Accenture

By
ctadmin
May 22, 2026
Electric Vehicles

Fake plug-and-charge stations bill EV owners for stranger fills

By
ctadmin
August 9, 2026
Cybersecurity

Researchers find 36 million GPS trackers open to vehicle theft

By
ctadmin
August 6, 2026
Cybersecurity

AI rebuilds LiDAR vision while jammers blind self-driving sensors

By
ctadmin
August 13, 2026
Cybersecurity

Vehicles are getting their own offline AI brain thanks to FEV and Microsoft

By
ctadmin
July 12, 2026
Cybersecurity

Tesla Accused of Altering FSD Purchase Agreements as Original Contracts Disappear

By
ctadmin
June 4, 2026

CarThreat

Intelligence for the EV and automotive security market
  • News
  • Features
  • Spotlight
  • Events
  • About Carthreat
  • Our Mission
  • Services
  • Contact Us
  • OBD-II
  • Automotive Ethernet
  • TCU
  • Infotainment Systems
  • SDVs
  • BMS
  • ECU Security
  • CAN Bus
  • OTA Updates
  • Vulnerabilities
  • Relay Attacks
  • RCE
  • Threat Intelligence
  • Cybersecurity
  • Digital Keys
  • Bluetooth Security
  • ISO/SAE 21434
  • UNECE R155
  • Regulations
  • Data Privacy
  • EVs
  • Autonomous Driving
  • Pwn2Own Automotive

© 2026 Carthreat.com. All right reserved.  Privacy Policy | Legal

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?