Hyundai Motor Türkiye Otomotiv AŞ — Regulatory Disclosure
- Victim: Hyundai Motor Türkiye Otomotiv AŞ
- Date reported: 2026-08-01
- Country: TR
- Severity: Medium
Hyundai Motor Türkiye Otomotiv AŞ notified Turkey's KVKK that a personal data breach occurred through exploitation of a SQL injection vulnerability in its web application; the notice states the breach was learned of on 1 August 2026 through the Hyundai Group Security Operation Center and confirmed on 3 August 2026 by its data processor Baltaş Eksen, that employees and job applicants were affected, that the data involved names, e-mail addresses, Hogan/BEYT personality assessment results, usernames, passwords and job titles, and that the number of affected people could not be determined exactly but may be at most 422.