ransomware Credible South Africa (ZA) automotive

Diesel Electric listed by the Qilin ransomware group

Diesel Electric

📅 06 December 2025
CompanyDiesel Electric
Domainde.co.za
CountrySouth Africa (ZA)
Sectorautomotive
Breach date2025-12-06
People affectedNot disclosed
Ransomware groupqilin
Data typescustomer data, vehicle records, corporate information

Overview

The Qilin ransomware group has listed Diesel Electric, the South African automotive group operating www.de.co.za, on its leak site. The listing appeared on 6 December 2025. At the time of analysis, the group's leak page was not reachable.

What was published

The group claims to have exfiltrated data from the group's systems. Automotive service networks hold customer records, vehicle service histories and corporate information, which are the likely contents of any exfiltration.

Risks for affected individuals

  • Customer personal data may be exposed.
  • Vehicle records could enable targeted fraud.
  • Employees' information may be included.

What remains unknown

  • The volume of records involved.
  • The exact contents of the leak.
  • Whether the data has been published elsewhere.

What affected people should do

Customers should monitor their accounts and be cautious of unsolicited communications. The group should notify affected customers and staff, review compromised systems, and report the incident to South African authorities.

Sources

  • http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion/site/view?uuid=e8f55a5c-d37b-39c8-ab47-5b59c9f98609