Hyundai warns of data leak from AutoEver following investigation.
Hyundai has confirmed a data leak at Hyundai AutoEver, including names, driver's license numbers, and social security numbers. The incident occurred between February 22 and March 2, 2025; the company is sending notification letters and providing two years of credit monitoring.
Hyundai says it is warning customers about a data leak at Hyundai AutoEver, the company's IT unit. According to information confirmed to Car and Driver, personal data such as names, driver's license numbers, and social security numbers were compromised. Following a months-long investigation, the company began sending notification letters to affected individuals.
Scope of impact and leaked data
The leak originated from Hyundai AutoEver, according to Forbes. A sample letter from Hyundai AutoEver to relevant parties stated that the data could include names, driver's license numbers, and Social Security numbers. Hyundai has not disclosed the number of affected users; AutoEver's software currently serves approximately 2.7 million vehicles in North America, but only those affected received the notification letter.

Security Incident Timeline
According to Forbes, Hyundai AutoEver discovered the leak on March 1, 2025. An internal investigation determined that the problem began on February 22, 2025, and was only fixed on March 2, 2025, meaning the system had been compromised for more than a week before being blocked.
Over the next seven months, the company conducted an investigation and has now begun sending out warning letters. The letters state that only those affected will be contacted.
Official response and support measures
To address the issue, Hyundai AutoEver enlisted a third-party cybersecurity firm to assist with the investigation and response. The company also offered to provide affected parties with free credit monitoring services from an external provider for two years.
A Hyundai representative told Car and Driver that the company is aware of the issue and is monitoring it to ensure appropriate protective measures are in place. According to the representative, no data from Hyundai Motor America or Bluelink drivers has been found to be affected by the leak.

The automotive industry's landscape in the face of cyberattack risks.
Hyundai's incident comes amid a backdrop of ongoing cyberattacks on the automotive industry. Earlier this year, JLR suffered a cyberattack that disrupted production for weeks and resulted in billions of dollars in losses. As more and more personal data is stored and linked to vehicles, manufacturers are becoming increasingly attractive targets for cybercriminals.