VendorsPCA Cyber Security
PCA Cyber Security
Cybersecurity reports and statistics published by PCA Cyber Security
8 categories2 reports
Research Reports
Reports and publications from PCA Cyber Security
Recent Statistics & Reports
ShinyHunters vishing attack against an online automotive marketplace help desk exfiltrated 12.4 million user records (6.1 GB) in mid-February 2026
5/27/2026•
Automotive CybersecurityShinyHuntersVishing
Q4 2025 automotive vulnerabilities mapped to 19 distinct TTPs in the Auto-ISAC Automotive Threat Matrix
5/27/2026•
Automotive CybersecurityTTPsAuto-ISAC ATM
Q4 2025 severity breakdown: 146 Medium, 54 High and 2 Critical automotive vulnerabilities
5/27/2026•
Automotive CybersecurityCVSSSeverity
Quarkslab bypassed the 16-byte RH850 debug password protection using voltage fault injection
5/27/2026•
Automotive CybersecurityHardwareFault Injection
China's amended Cybersecurity Law took effect on 1 January 2026 (passed 28 October 2025) with raised penalties and extraterritorial reach
5/27/2026•
Automotive CybersecurityRegulationChina
BEAST threat actor leaked 700 GB of internal data from a large Chinese automotive group in late February 2026
5/27/2026•
Automotive CybersecurityData BreachChina
3.7 million of the 12.4 million records exposed in the ShinyHunters automotive marketplace breach were previously unseen in other breaches
5/27/2026•
Automotive CybersecurityShinyHuntersData Breach
2024 SafePay ransomware breach at a global BPO provider exposed nearly 17,000 employees and customers of a major commercial vehicle manufacturer, disclosed in January 2026 after a 14-month notification delay
5/27/2026•
Automotive CybersecurityBPOSafePay
Local Shell was the most frequent attack vector in Q4 2025, representing over 62% of total automotive entries
5/27/2026•
Automotive CybersecurityLocal ShellAttack Vectors
In-vehicle and Virtualization target types accounted for 95%+ of Q4 2025 automotive vulnerabilities
5/27/2026•
Automotive CybersecurityIn-VehicleVirtualization
14 different attack methods observed in Q4 2025 automotive vulnerabilities
5/27/2026•
Automotive CybersecurityAttack Vectors
DefenseWeaver multi-agent LLM identified 11 critical attack paths across four automotive projects in TARA testing
5/27/2026•
Automotive CybersecurityAI/LLMTARA
Ethernet represented over 25% of all automotive attack vector entries in Q1 2026
5/27/2026•
Automotive CybersecurityEthernetAttack Vectors
Incransom ransomware group published a 200 GB leak from a Tier-1 electronics component supplier in January 2026
5/27/2026•
Automotive CybersecurityIncransomTier-1 Supplier
DrainDead portable EV battery siphoning rig was built for approximately €1,200 using a solar inverter and CCS adapter
5/27/2026•
Automotive CybersecurityEV ChargingDrainDead
88% of Q1 2026 automotive vulnerabilities require Low Attack Complexity
5/27/2026•
Automotive CybersecurityAttack Complexity
Pwn2Own Automotive 2026 in Tokyo produced 76 unique zero-days and $1.047 million in payouts
5/27/2026•
Automotive CybersecurityPwn2OwnZero-Days
Ultra-Fast Wireless Charging attack synchronises with the charger's signal within only three cycles, defeating frequency hopping countermeasures
5/27/2026•
Automotive CybersecurityEV ChargingWireless
160 Medium, 75 High, and 16 Critical automotive vulnerabilities identified in Q1 2026
5/27/2026•
Automotive CybersecurityCVSSSeverity
Synacktiv chained an information leak with an out-of-bounds write to achieve a full win against Tesla infotainment via USB at Pwn2Own Automotive 2026
5/27/2026•
Automotive CybersecurityTeslaPwn2Own
Showing 1-20 of 57 results