CYBERSECURITY

Times Car Confirms Major Data Breach Exposing Millions of Accounts

Times Car Confirms Major Data Breach Exposing Millions of Accounts

Password reset prompts were issued immediately, and multi-factor authentication

Japanese car-sharing service Times Car has confirmed a significant data breach affecting approximately 6.6 million user accounts, disclosed on September 25, 2026. The company revealed that an unauthorized third party gained access to its systems, leading to the compromise of personal information linked to customer profiles. The incident was identified late last week and publicly announced through an official statement. Scope of Compromised Data and Immediate Response Times Car stated that the breached data included names, email addresses, phone numbers, and hashed passwords, though financial information and driving license details were not exposed. The company emphasized that no evidence suggests misuse of the data so far. Upon discovery, Times Car launched an internal investigation, engaged cybersecurity experts, and began notifying affected users.

Password reset prompts were issued immediately, and multi-factor authentication was strengthened across user accounts. How Did the Breach Occur and What Vulnerabilities Were Exploited? While Times Car did not disclose the exact method of intrusion, it confirmed the breach resulted from a targeted cyberattack exploiting a vulnerability in a third-party service integrated with its platform. The company noted that access was gained through compromised credentials tied to a vendor account, highlighting risks in supply chain security. Investigators are working to determine whether the attack was opportunistic or part of a broader campaign targeting mobility services in Asia. What Steps Are Users Advised to Take Now? Affected users are urged to change their Times Car passwords immediately and avoid reusing credentials across other platforms. The company recommends enabling two-factor authentication where available and monitoring accounts for suspicious activity.

Times Car has set up a dedicated helpdesk and email channel for user inquiries, assuring transparency throughout the remediation process. No service disruptions have been reported, and operations continue normally. Frequently Asked Questions Was credit card or payment information stolen in the breach? No, Times Car confirmed that financial data and payment details were not stored in the compromised system and remain secure. How will users know if their account was affected? Times Car is sending direct email notifications to all 6.6 million potentially impacted users with guidance on securing their accounts. Is Times Car still safe to use after this breach? Yes, the service remains operational, and the company states that immediate security enhancements have been implemented to prevent further unauthorized access.

Content written by Bill Toulas for tech-site.news editorial team, AI-assisted.

Comments

Leave a comment