Times Car Confirms Data Breach Affecting 6.6 Million User Accounts
Car-sharing platform reports unauthorized access to user database; scope and data types under investigation

Key Takeaways
- Times Car confirmed a data breach affecting approximately 6.6 million user accounts.
- The incident was disclosed late last week, with the attack vector and data types not yet fully specified.
- No specific exploitation details or patches have been reported at this time.
- The exact scope and nature of exposed personal information require further verification from the company.
Quick answers
- What happened?
- Times Car, a Japanese car-sharing service, has confirmed a data breach compromising approximately 6.6 million user accounts. The incident was disclosed late last week, with the exact attack vector and nature of exposed personal information yet to be fully specified. Authorities and the company are reportedly investigating the breach.
- What should defenders do?
- Times Car likely implementing remediation measures; affected users advised to monitor accounts for suspicious activity and follow official company communications.
Times Car, a Japanese car-sharing service, has confirmed that approximately 6.6 million user accounts were compromised in a cyberattack disclosed late last week. According to reports, the breach involved unauthorized access to the company's user database. The precise nature of the exposed data and the specific attack vector used by the threat actor remain under investigation. At this time, no specific exploitation details have been published, and no patch information has been released. Remediation steps are likely underway. The report, initially covered by BleepingComputer, notes that the exact scope and data fields exposed require further verification from official Times Car statements. The incident highlights the ongoing risks facing car-sharing and mobility platforms that handle significant volumes of personal user data.
Security Details
Unauthorized access to Times Car user database; exact data fields and attack vector under investigation.
Mitigation
Times Car likely implementing remediation measures; affected users advised to monitor accounts for suspicious activity and follow official company communications.
Sources
BleepingComputer
Times Car confirms data breach affecting 6.6 million user accounts
Sep 28, 2026 · 20:31
Original link
Related Security News

French Tax Administration Data Breach Exposed Hundreds of Thousands of Records via Stolen Staff Credentials
An unauthorized access incident at France's Direction Générale des Finances Publiques (DGPP) compromised tax data belonging to hundreds of thousands of taxpayers and businesses between June and July 2026. According to a report published by France's national cybersecurity agency ANSSI on 29 September 2026, the attacker used stolen staff passwords to gain entry. The agency stated the attack was 'not sophisticated' and went undetected for seven weeks due to weak security controls. ANSSI noted that neither the tax administration nor the agency itself observed data exfiltration, though the breach resulted in unauthorized access to sensitive fiscal information.




