By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Oxford HeraldOxford HeraldOxford Herald
  • Home
  • World
  • Europe
  • USA
  • Middle East
  • Asia
  • General
  • Business
  • Entertainment
  • Technology
  • Health
  • Sports
  • Newsroom
  • Opinions
  • Sitemap
Reading: CarGurus breach linked to ShinyHunters exposes 12.4M records
Share
Notification Show More
Font ResizerAa
Oxford HeraldOxford Herald
Font ResizerAa
  • World
  • Travel
  • Science
  • Technology
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Latest

CarGurus breach linked to ShinyHunters exposes 12.4M records

Last updated: March 15, 2026 10:20 pm
RNN
5 months ago
Share
CarGurus breach linked to ShinyHunters exposes 12.4M records
SHARE

If you’ve ever searched for a car on CarGurus, your personal information could now be circulating online. A known as ShinyHunters has published what it claims are 12.4 million records taken from CarGurus, a popular auto shopping platform used by millions of people each month.

The leaked data includes names, phone numbers, email addresses, physical addresses and even finance pre-qualification details. While most of the records were already exposed in past incidents, about 3.7 million are newly added to the pile. That means fresh data is now freely available for criminals to download.

Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter.

The group behind the leak, ShinyHunters, published a 6.1GB file on Feb. 21, claiming it came from CarGurus. The file allegedly contains 12.4 million user records tied to the U.S.-based auto research and shopping platform CarGurus.

CarGurus operates in the U.S., Canada and the U.K., and its website attracts an estimated 40 million monthly visitors. It allows you to compare vehicles, contact sellers, and, in some cases, apply for financing.

According to Have I Been Pwned, which later added the dataset to its breach database, the exposed information includes email addresses, IP addresses, full names, phone numbers, physical addresses, account IDs, dealer details, subscription information and finance pre-qualification application data, along with outcomes.

Have I Been Pwned reports that about 70% of the data had already appeared in previous breaches. Roughly 3.7 million records are new. CarGurus has not released an official statement confirming the incident and did not respond to media requests for comment. ShinyHunters is known for leaking company data when ransom negotiations fail. The group has recently claimed attacks on major brands across telecom, retail, finance, and tech.

ShinyHunters typically gains access by tricking employees, not by smashing through firewalls. In past cases, the group used phone calls or fake login pages to convince staff to hand over credentials. Once inside, attackers can quietly access cloud systems that store customer data.

In some campaigns, they also convinced employees to install malicious apps that granted access to customer databases. That means attackers could read stored information without triggering obvious alarms. If this dataset is legitimate, criminals now have detailed personal profiles tied to car shopping and financing activity, which is valuable.

is especially sensitive. Even if it does not include full Social Security numbers, it signals that you were actively sharing financial details. That makes you a prime target for follow-up scams, identity theft attempts and fake loan offers. Because the data is publicly available for download, it does not take much skill for criminals to start using it.

“We recently experienced a cybersecurity incident,” a CarGurus spokesperson told CyberGuy. “We promptly responded by securing the affected environment, and we are currently working with a leading cybersecurity firm to investigate. Based on the investigation to date, we believe the activity has been contained and limited in scope. Also, at this time, there are no indications that dealer data feeds, APIs, or core systems or products used by our consumers or dealer partners have been compromised. We remain fully operational, and our services continue without interruption. We will notify any affected individuals in accordance with applicable laws.”

Here’s what you can do right now to reduce your risk and stay ahead of potential scams tied to this leak.

To see if your email was affected, visit Have I Been Pwned at haveibeenpwned.com

Prince William, Kate Middleton share new portrait of Princess Charlotte to mark her 11th birthday
Inside Princess Diana and JFK Jr.’s secret meeting that fueled romance rumors for decades
Fever star Caitlin Clark avoids serious injury after scary fall leads to early exit in preseason game
Bride is walked down wedding aisle by man who received her late father’s heart
FBI alleges suspect ‘deployed an incendiary device outside’ federal building
TAGGED:latestResearchTech
Share This Article
Facebook Email Print
Previous Article Illegal immigrant released under Biden charged with groping female students at Virginia high school Illegal immigrant released under Biden charged with groping female students at Virginia high school
Next Article Oprah Winfrey fires back at internet trolls mocking her '90-year-old' walk at Paris Fashion Week Oprah Winfrey fires back at internet trolls mocking her ’90-year-old’ walk at Paris Fashion Week
about us

Runway News Network (RNN) is a UK-based digital media group operating multiple independent news platforms across the United Kingdom. We provide structured journalism, press syndication and AI-optimised news distribution for organisations seeking national and regional visibility.

  • Sitemap
  • Advertise

Find Us on Socials

Oxford HeraldOxford Herald
© Runway News Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?