CDK cyberattack shuts down auto dealerships across the U.S. Here's what to know. (2024)

MoneyWatch

By Megan Cerullo

Edited By Aimee Picchi

/ CBS News

Bel Air dealership among nationwide businesses impacted by cyberattack

CDK Global, a company that provides auto dealerships across the U.S. with software for managing sales and other services, was shut down for a third straight day Friday after cyberattacks crippled the platform.

The outage is disrupting roughly 15,000 car sellers that depend on CDK's dealer management software to run their businesses, including vehicle sales. Some dealership employees have resorted to pen and paper to handle transactions, but said most deals had ground to a halt. CDK has not indicated when its systems will be back up and running, but suggested the outage could last several days.

"We are actively investigating a cyber incident," a CDK spokesperson told CBS News. "Out of an abundance of caution and concern for our customers, we have shut down most of our systems and are working diligently to get everything up and running as quickly as possible."

CDK, which said it had restored some services on Wednesday, told CBS MoneyWatch on Thursday afternoon that its systems were again offline after it suffered another cyberattack.

"Late in the evening of June 19, we experienced an additional cyber incident and proactively shut down most of our systems," a CDK spokesperson said. "In partnership with third-party experts, we are assessing the impact and providing regular updates to our customers. We remain vigilant in our efforts to reinstate our services and get our dealers back to business as usual as quickly as possible."

Calls to a CDK customer support hotline produced a continuous busy signal. But the company's automated recording said the outage could affect dealerships for days, according toPC Mag. The message told callers, "At this time, we do not have an estimated time frame for resolution and therefore our dealers' systems will not be available likely for several days," the publication reported.

The message also warned callers that "bad actors" posing as CDK support staff were trying to obtain customers' credentials in what are known as phishing attacks, according to the Associated Press.

The number of cyberattacks has been on the rise in the last year, with more than 3,200 data breaches in 2023, a 78% jump from the prior year, according to a new study from data firmSOAX. Those breaches impacted more than 65 million victims last year, it added.

What is CDK?

CDK's dealer management system, or DMS, lets car vendors operate their business, including handling payroll, inventory, customer relations and office operations. The technology also enables dealers to line car buyers line up with financing and insurance.

On its website, it also touts its cybersecurity capabilities. "CDK Cybersecurity Solutions provide a three-tiered cybersecurity strategy to prevent, protect and respond to cyberattacks so you can defend your dealership," it says.

Brookfield Business Partners, a Toronto-based private equity firm, acquired the company in 2022 in adealvalued at more than $8 billion.

When did the cyberattack begin?

The cyberattack on CDK Global began Tuesday evening, Bleeping Computer, a cybersecurity news site, reported Wednesday, taking the 15,000 car dealerships it serves offline.

As mentioned above, CDK said it suffered another cyberattack on Wednesday evening. It is not currently known who, or what group, is behind the cyberattacks.

Mike Stanton, CEO of the National Automobile Dealers Association, said in a statement on Friday that "dealers are very committed to protecting their customer information and are actively seeking information from CDK to determine the nature and scope of the cyber incident so they can respond appropriately."

How are dealerships responding?

Some dealerships appeared to get creative to continue doing business during the outage. Dealership employees posted about the outage onRedditWednesday, sharing that they were relying on spreadsheets and sticky notes to sell customers small parts and make repairs, but that they weren't making any large transactions.

One employee asked other dealership employees, "How many of you are standing around because your whole shop runs on CDK?" under the heading "CDK down," with users in Wisconsin and Colorado confirming their dealership transaction systems were offline.

—The Associated Press contributed to this report.

Megan Cerullo

Megan Cerullo is a New York-based reporter for CBS MoneyWatch covering small business, workplace, health care, consumer spending and personal finance topics. She regularly appears on CBS News 24/7 to discuss her reporting.

CDK cyberattack shuts down auto dealerships across the U.S. Here's what to know. (2024)

FAQs

What is the CDK dealer cyber attack? ›

Cause of the Cyberattack on CDK Global

It has been confirmed that the cyber event that caused the shutdown in operations on June 18th was due to ransomware from a group called BlackSuit. Unfortunately for CDK, after it restored its systems following the initial breach, it was hacked again a second time.

Why did CDK shut down? ›

CDK shut down its systems on June 19 after discovering two cyber incidents. AEG analysts said the first two weeks have already cost dealers more than $600 million.

Who is behind the CDK cyberattack? ›

The CDK Global cyberattack has been attributed to the BlackSuit ransomware gang. BlackSuit is a relatively new ransomware group that first emerged in April 2023. The group has links to the older more established Royal ransomware gang. There is some evidence that BlackSuit is also related to the Conti ransomware group.

What auto dealers use CDK? ›

(PAG) Ashbury, AutoNation, Group 1, Lithia and Sonic use CDK as their primary dealership management system provider, while Penske uses CDK's software for its Premier Truck Group dealerships.

Which dealerships were affected by CDK? ›

But he said the publicly traded auto dealership groups that have acknowledged they have been affected include Group 1 Automotive, Lithia Motors, AutoNation, Sonic Automotive and Asbury Automotive Group. "All of these have disclosures to investors acknowledging the losses," Anderson said.

What is the CDK shutdown? ›

What Happened to CDK Global? On June 19, CDK Global's data center was taken down due to a "cybersecurity incident." This prevented all the dealerships from using CDK Global software and forced some people to use pen and paper to keep work moving.

How many dealerships use CDK? ›

CDK Global provides data and technology to different automotive dealerships. Its systems are used by roughly 15,000 car dealerships across the United States and Canada.

What caused the CDK breach? ›

BlackSuit, a group of cybercriminals, was identified as the group responsible for the ransomware attack. CDK Global informed its clients on June 24, 2024, that it would shut down temporarily as it recovered from the attack.

Why was CDK attacked? ›

The Root Cause: Reliance on Legacy Systems

According to Kathi Kruse in her article on Medium, CDK Global's system integrated outdated technologies and had not seen significant upgrades for decades. This created security gaps and inefficiencies, leaving it vulnerable to attacks.

Who is behind the CDK hack? ›

Here is more about BlackSuit, the hacking group analysts say is behind the CDK hack: Who/What is BlackSuit? Not much is known about the group, but it emerged in May 2023. Analysts say it is a relatively new cybercriminal team spun off of an older and well-known Russia-linked hacking group named RoyalLocker.

Who hacked the CDK? ›

On June 21, about 387 bitcoin — then the equivalent of roughly $25 million — was sent to a cryptocurrency account controlled by hackers affiliated with a type of ransomware called BlackSuit, Chris Janczewski, head of global investigations at crypto-tracking firm TRM Labs, told CNN.

Is the CDK hack fixed? ›

CDK Global Inc., the software provider to roughly 15,000 car dealerships across North America that was crippled by a hack nearly two weeks ago, said “substantially all” of the dealers it serves have seen their management systems come back online.

Which car brands use CDK? ›

Companies using CDK Global DMS for Dealership Management include: Group 1 Automotive, a United States based Automotive organisation with 16011 employees and revenues of $17.87 billion, Avis Budget Group, a United States based Automotive organisation with 24500 employees and revenues of $12.00 billion, Asbury Automotive ...

Who bought out CDK? ›

On April 7, 2022, CDK Global agreed to be acquired by Brookfield Business Partners and institutional partners for a total enterprise value of $8.3 billion.

Does Penske use CDK? ›

Penske Automotive Group said it does not use CDK's DMS at franchised dealerships in the U.S. or the U.K. but does for its Premier Truck Group.

What is the cyber attack on car dealerships? ›

The ransomware attack that hit CDK in mid-June disrupted thousands of auto dealerships that use the company's software to manage everything from scheduling to sales and orders. CDK referred to it as a “cyber incident” in statements to reporters.

What does CDK stand for? ›

Cyclin-dependent kinase, a major class of enzymes involved in the regulation of the cell cycle.

Who owns CDK software? ›

On April 7, 2022, CDK Global agreed to be acquired by Brookfield Business Partners and institutional partners for a total enterprise value of $8.3 billion.

Does Lexus use CDK? ›

CDK Global has signed a deal with Toyota (GB ) to provide Toyota and Lexus dealers with its Autoline Drive SaaS dealer dealer management system (DMS). Two-thirds of Toyota and Lexus dealer are currently supported by a Toyota developed system which is reaching the end of its life.

Top Articles
Searchresults - PGT (EN)
Searchresults - PGT (EN)
Everything you need to know about a Sam's Club Membership
Moonrise Tonight Near Me
5 Fastest Ways To Become Rich by Investing in the Stock Market
Ncqa Report Cards
Hailie Deegan News, Rumors, & NASCAR Updates
Jcpenney Associate Meevo
Ter Reviews Boston
manhattan cars & trucks - by owner - craigslist
2006 Lebanon War | Summary, Casualties, & Israel
Dyi Urban Dictionary
Mynorthwoodtech
Costco Gas Price City Of Industry
Oppenheimer Showtimes Near Amc Rivertowne 12
KINOPOLIS Bonn-Bad Godesberg – Mehr Kino geht nicht
Cavender’s 50th Anniversary: How the Cavender Family Built — and Continues to Grow — a Western Wear Empire Using Common Sense values
Cn/As Archives
Crowder Hite Crews Funeral Home Obituaries
Apartments / Housing For Rent near Trenton, NJ - craigslist
Becker-Hunt Funeral Home Obituaries
Kvoa Tv Schedule
Craigslist Caldwell Id
I Wanna Dance With Somebody Showtimes Near St. Landry Cinema
Milwaukee Nickname Crossword Clue
When Is Meg Macnamara Due
Zuercher Portal Inmates Kershaw County
20 Fantastic Things To Do In Nacogdoches, The Oldest Town In Texas
Craigslist Labor Gigs Albuquerque
Slim Thug’s Wealth and Wellness: A Journey Beyond Music
Twitter Pestel Analysis 2024| Free Pestel Framework
Utexas Baseball Schedule 2023
Natalya's Vengeance Set Dungeon
'I want to be the oldest Miss Universe winner - at 31'
Wocs Failure Rate
Bianca Censo
Swissport Timecard
Www.1Tamilmv.cfd
5417873087
What Does It Mean When Hulu Says Exp
Bfri Forum
John Deere 7 Iron Deck Parts Diagram
Intel Core i3-4130 - CM8064601483615 / BX80646I34130
Lost Pizza Nutrition
How To Buy Taylor Swift Tickets By Navigating Ticketek's Stress-Inducing System
Loredana Chivu, despre operațiile făcute la clinica anchetată: "Am fost la un pas de moarte"
Finastra Gfx
I spruced up my kitchen for £131 - people can’t believe it’s the same room
Only Partly Forgotten Wotlk
I Only Have Eyes for You by The Flamingos Lyrics Meaning - A Gaze Into Love's Timeless Power - Song Meanings and Facts
What Does Code 898 Mean On Irs Transcript
Latest Posts
Article information

Author: Wyatt Volkman LLD

Last Updated:

Views: 6412

Rating: 4.6 / 5 (46 voted)

Reviews: 85% of readers found this page helpful

Author information

Name: Wyatt Volkman LLD

Birthday: 1992-02-16

Address: Suite 851 78549 Lubowitz Well, Wardside, TX 98080-8615

Phone: +67618977178100

Job: Manufacturing Director

Hobby: Running, Mountaineering, Inline skating, Writing, Baton twirling, Computer programming, Stone skipping

Introduction: My name is Wyatt Volkman LLD, I am a handsome, rich, comfortable, lively, zealous, graceful, gifted person who loves writing and wants to share my knowledge and understanding with you.