MIT TRACE

MIT CTL Logo
Back to Main Dashboard

CarMoney cyberattack disrupts payments and account access

Attackers successfully compromised CarMoney systems during 17-18 February 2025. CarMoney confirmed that its IT infrastructure had been hacked and that it shut down all systems after attackers used company channels to send false messages to customers. The website and application became unavailable, payments could not be made through normal channels, and customers later continued to report payment disruptions and account-access problems; CarMoney waived late-payment penalties associated with the incident. Ukrainian Cyber Alliance self-claimed responsibility and alleged destructive activity and large-scale data compromise, but those claims were not independently verified.

72

Estimated severity

72 / 100

88

Source reliability

88 / 100

Approximate Date

18/02/2025

Targeted Company

CARMONEY

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

Russian Federation

RUS

Other Affected Countries

No other affected countries reported

Target country

Russian Federation

Affected countries

Russian Federation

Impacted regions

No information

Operational Impact

Duration

No information

Financial impact (USD M)

No information

Impact types

Service unavailabilityService degradationOperational disruption

Affected sectors

Finance & Insurance

Affected departments

Information TechnologyCustomer ServiceFinance

Attack Profile

Attack types

Unauthorized access

Attributed threat actors

CYBER ALLIANCE

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.