TSLA411.84032.13%
GM77.340-0.76%
F14.035-0.095%
RIVN16.8101.18%
CYD46.2001.38%
HMC27.2800.45%
TM171.360-0.12%
CVNA63.7201.37%
PAG180.060-2.15%
LAD291.360-0.74%
AN188.890-2.75%
GPI297.850-3.89%
ABG201.460-3.71%
SAH84.6700.16%
TSLA411.84032.13%
GM77.340-0.76%
F14.035-0.095%
RIVN16.8101.18%
CYD46.2001.38%
HMC27.2800.45%
TM171.360-0.12%
CVNA63.7201.37%
PAG180.060-2.15%
LAD291.360-0.74%
AN188.890-2.75%
GPI297.850-3.89%
ABG201.460-3.71%
SAH84.6700.16%
TSLA411.84032.13%
GM77.340-0.76%
F14.035-0.095%
RIVN16.8101.18%
CYD46.2001.38%
HMC27.2800.45%
TM171.360-0.12%
CVNA63.7201.37%
PAG180.060-2.15%
LAD291.360-0.74%
AN188.890-2.75%
GPI297.850-3.89%
ABG201.460-3.71%
SAH84.6700.16%

CDK Global confirms no data breach in June cyberattacks

The announcement also leaves uncertainty about the impact on pending lawsuits filed by dealership employees and customers.

CDK Global, a leading provider of dealership management systems, has confirmed that the cyberattacks in June that led to the shutdown of its systems across North America did not result in the theft of dealership employee or consumer data. After third-party experts conducted a thorough review, CDK reported that there was no compromise of personally identifiable information, meaning dealerships do not need to notify employees or customers of any data breach.

The attacks, which occurred on June 19, forced CDK to shut down its dealership management system (DMS) for two weeks, impacting approximately 15,000 dealerships. During this time, car dealerships had to rely on pen-and-paper methods and third-party software to maintain operations, causing disruptions and financial losses during a critical sales period. CDK provided a one-month rebate to affected customers, although some dealerships felt that this compensation was insufficient.

CDK had previously stated that it would handle Federal Trade Commission Safeguards Rule requirements on behalf of dealerships if the attacks had involved data theft. The Safeguards Rule mandates that car dealerships and other financial institutions notify the FTC within 30 days of discovering a security breach affecting 500 or more customers.

Nevertheless, the agency has not disclosed the specifics of the cyberattacks or the preventive measures it is taking, despite confirming that no data was compromised, which brings some relief. The announcement also leaves uncertainty about the impact on pending lawsuits filed by dealership employees and customers, who have alleged that the cyberattacks put their personal data at risk.

Read More
More from Event Coverage
Remarkable Leaders in F&I honoree: John Moor | Capitol Auto Group

What 30+ years in F&I actually teaches you about leading a finance office – John Moor | Capitol Auto Group

- June 25, 2026
CBT News is proud to recognize F&I professionals elevating standards within their dealerships and advancing the industry. This year’s inaugural Remarkable Leaders in F&I honorees exemplify the best practices of...
Paul Metrey and Don Hall on what the FTC really wants from dealers

Paul Metrey and Don Hall on what the FTC really wants from dealers

- June 23, 2026
If the automotive retail industry fails to correct its compliance and pricing practices, automakers could eventually take their case to Washington and push for a federal franchise law that reshapes...
CBT News Auto Leadership Summit: Aaron Baldwin | automotiveMastermind

CBT News Auto Leadership Summit: Aaron Baldwin | automotiveMastermind

- June 23, 2026
CBT News spoke with Aaron Baldwin, CEO of automotiveMastermind, at the Auto Leadership Summit in Washington, D.C., on June 16, to break down automotiveMastermind's new fee management platform and what...
CBT News Auto Leadership Summit: Marco Schnabl | RockED

CBT News Auto Leadership Summit: Marco Schnabl | RockED

- June 23, 2026
At the CBT News Automotive Leadership Summit in Washington, D.C., Marco Schnabl, Founder and Executive Chairman of RockEd, spoke with reporter Jason Becknell about the Federal Trade Commission's (FTC) pricing policy, its impacts on...