Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      Sunshine And March Vibes (2025 Wallpapers Edition)

      May 16, 2025

      The Case For Minimal WordPress Setups: A Contrarian View On Theme Frameworks

      May 16, 2025

      How To Fix Largest Contentful Paint Issues With Subpart Analysis

      May 16, 2025

      How To Prevent WordPress SQL Injection Attacks

      May 16, 2025

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025

      Bing Search APIs to be “decommissioned completely” as Microsoft urges developers to use its Azure agentic AI alternative

      May 16, 2025

      Microsoft might kill the Surface Laptop Studio as production is quietly halted

      May 16, 2025

      Minecraft licensing robbed us of this controversial NFL schedule release video

      May 16, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      The power of generators

      May 16, 2025
      Recent

      The power of generators

      May 16, 2025

      Simplify Factory Associations with Laravel’s UseFactory Attribute

      May 16, 2025

      This Week in Laravel: React Native, PhpStorm Junie, and more

      May 16, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025
      Recent

      Microsoft has closed its “Experience Center” store in Sydney, Australia — as it ramps up a continued digital growth campaign

      May 16, 2025

      Bing Search APIs to be “decommissioned completely” as Microsoft urges developers to use its Azure agentic AI alternative

      May 16, 2025

      Microsoft might kill the Surface Laptop Studio as production is quietly halted

      May 16, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Development»BMW Data Breach Exposes 14,000 Hong Kong Customers’ Personal Information

    BMW Data Breach Exposes 14,000 Hong Kong Customers’ Personal Information

    July 26, 2024

    In a significant blow to data privacy, BMW has reported a major data breach affecting approximately 14,000 customers in Hong Kong. The BMW data breach first flagged to the Office of the Privacy Commissioner for Personal Data on July 18, 2024, has raised serious concerns among affected individuals and sparked an investigation by local privacy authorities.

    On Thursday, BMW Concessionaires (HK), the exclusive distributor of BMW vehicles in Hong Kong, revealed that sensitive information belonging to around 14,000 of its customers had been exposed. This includes names, mobile numbers, and SMS opt-out preferences, reported South China Morning Post. The company disclosed that the compromised data was managed by a third-party contractor, Sanuker, which had alerted both the police and the privacy watchdog about the BMW data leak.

    Details of the BMW Data Breach

    Michael Gazeley, a cybersecurity expert and BMW iX electric vehicle owner, expressed his frustration over the handling of the situation. Gazeley criticized BMW for its lack of direct communication with affected customers, noting that the company had only posted a brief notice on its website. “It’s a pretty serious breach where a lot of confidential data has gone,” Gazeley remarked. “There could be all sorts of consequences for fraud and scams based on the customer information.”

    The Office of the Privacy Commissioner for Personal Data is currently investigating the incident. While the investigation is ongoing, the watchdog has not yet received any formal complaints or inquiries related to the breach. The agency had advised BMW to inform affected individuals promptly, but there has been significant public dissatisfaction with the company’s response.

    In addition to the recent breach, there has been a concerning history of BMW cyberattacks and data breaches. Earlier in February 2024, a separate security lapse exposed sensitive internal information. This incident involved a misconfigured cloud storage server hosted on Microsoft Azure. Security researcher Can Yoleri discovered the exposed data while scanning the internet, revealing private keys and internal data files from BMW’s development environment.

    Previous Data Breaches at BMW

    Yoleri highlighted that the misconfiguration of the cloud storage bucket made it publicly accessible instead of private. The exposed data included access credentials for BMW’s cloud services in multiple regions, including China, Europe, and the United States. The exact duration of the exposure remains unclear, leaving a significant gap in understanding the full extent of the breach.

    Source: Dark Web

    Adding to the alarm, the hacker group known as 888 claimed responsibility for the data leak. According to reports on BreachForums, a notorious hacking forum, 888 made the stolen data publicly available on July 15, 2024. This data dump included detailed personal information such as salutations, surnames, first names, mobile numbers, and SMS opt-out preferences of BMW customers in Hong Kong. 

    In response to the latest data breach, BMW has stated that it is taking the privacy of its customers very seriously. The company has committed to enhancing its data security measures to prevent future incidents. BMW has also emphasized its ongoing efforts to bolster the security of its systems and protect customer data from unauthorized access.

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleU.S. DoJ Indicts North Korean Hacker for Ransomware Attacks on Hospitals
    Next Article Ongoing Cyberattack Targets Exposed Selenium Grid Services for Crypto Mining

    Related Posts

    Security

    Nmap 7.96 Launches with Lightning-Fast DNS and 612 Scripts

    May 16, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-47916 – Invision Community Themeeditor Remote Code Execution

    May 16, 2025
    Leave A Reply Cancel Reply

    Continue Reading

    Neglected Domains Used in Malspam to Evade SPF and DMARC Security Protections

    Development

    DAI#46 – Skeleton key, exam cheats, and famous AI voices

    Artificial Intelligence

    Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation

    Development

    A Comprehensive Guide to LLM Routing: Tools and Frameworks

    Machine Learning

    Highlights

    Can a test be written to check the implementation of a fat arrow function?

    June 12, 2024

    So I am writing a coding challenge for students where I check their proficiency in the use of ES6 syntax. I wrote one for template strings and I learned from a colleague that its not smart to try to test the implementation of a template string, I would have to test the behavior. I wanted to know if the same applies for fat arrow functions. Do I just write a test for the behavior as opposed to implementation of that fat arrow function?

    Google to Simplify Chrome browser Security Settings Interface for Better User Experience

    April 24, 2025

    Xbox Games Showcase 2025 revealed for June 8, 2025: Outer Worlds 2 deep dive confirmed, as Xbox gears up for the future

    April 9, 2025

    The AI Fix #31: Replay: AI doesn’t exist

    January 2, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.