Hacked firm says all auto dealers should be live again by July 4

  • Comments
  • Print
Listen to this story

Subscriber Benefit

As a subscriber you can listen to articles at work, in the car, or while you work out. Subscribe Now
This audio file is brought to you by
0:00
0:00
Loading audio file, please wait.
  • 0.25
  • 0.50
  • 0.75
  • 1.00
  • 1.25
  • 1.50
  • 1.75
  • 2.00

CDK Global, the software provider to roughly 15,000 car dealerships across North America that was hacked nearly two weeks ago, said it anticipates all dealers will be live by late evening July 3 or early morning July 4.

CDK suffered two cyberattacks that forced its systems offline for days, slowing down everything from scheduling, service repairs, parts deliveries and car purchases at auto dealerships in both the U.S. and Canada. On June 24, the Illinois-based company signaled to customers that the disruptions could persist until the end of the month.

Since CDK discovered the breach and shut off systems on June 19, chaos has ensued at dealerships. CDK’s core product, a suite of software tools referred to as a dealership management system, underpins virtually every element of auto retailers’ day-to-day business. As a result, the outage hampered sales and interrupted repairs across an industry that topped $1.2 trillion in U.S. sales last year. The disruptions also are hitting amid an end-of-quarter sales push.

“We are continuing our phased approach to the restoration process and are rapidly bringing dealers live,” said Tony Macrito, senior communications director at CDK.

A hacking group called BlackSuit was behind the cyberattack on CDK Global that’s paralyzed car sales across the US, according to Allan Liska, a threat analyst at the security firm Recorded Future Inc. The gang demanded tens of millions of dollars in ransom to end the disruptions, and CDK had planned to make the payment, Bloomberg News previously reported.

There are only a handful of companies that provide so-called dealership management systems for auto sellers after decades of consolidation. Thousands of stores are highly reliant on CDK’s services to line up financing and insurance, manage inventory of vehicles and parts, and complete sales and repairs.

Some of the largest auto dealers in North America have warned of a potential “material” impact to their finances from the attack, which they said would hinge largely upon the duration of the outages. Sonic Automotive Inc., Penske Automotive Group Inc., Group 1 Automotive Inc., AutoNation Inc., Lithia Motors Inc. and Asbury Automotive Group Inc. have all filed disclosures with the US Securities and Exchange Commission.

The incident is part of a growing phenomenon in which financially motivated cybercriminals have attacked critical links in the global IT supply chain, bringing down entire industries along with them.

Please enable JavaScript to view this content.

Story Continues Below

Editor's note: You can comment on IBJ stories by signing in to your IBJ account. If you have not registered, please sign up for a free account now. Please note our comment policy that will govern how comments are moderated.

Get the best of Indiana business news. ONLY $1/week Subscribe Now

Get the best of Indiana business news. ONLY $1/week Subscribe Now

Get the best of Indiana business news. ONLY $1/week Subscribe Now

Get the best of Indiana business news. ONLY $1/week Subscribe Now

Get the best of Indiana business news.

Limited-time introductory offer for new subscribers

ONLY $1/week

Cancel anytime

Subscribe Now

Already a paid subscriber? Log In

Get the best of Indiana business news.

Limited-time introductory offer for new subscribers

ONLY $1/week

Cancel anytime

Subscribe Now

Already a paid subscriber? Log In

Get the best of Indiana business news.

Limited-time introductory offer for new subscribers

ONLY $1/week

Cancel anytime

Subscribe Now

Already a paid subscriber? Log In

Get the best of Indiana business news.

Limited-time introductory offer for new subscribers

ONLY $1/week

Cancel anytime

Subscribe Now

Already a paid subscriber? Log In