Karl Chevrolet, part of Karl Auto Group, experienced a data breach first reported by RansomLook in June 2026. The company then disclosed the incident, stating that unauthorized access likely occurred before March 27, 2026, and was discovered on April 4, 2026. The FBI and FTC were notified.
The confirmed data types involved in this incident include names, Social Security numbers, driver's license numbers, other government-issued ID numbers, financial account information, passport numbers, and passport images. The exact number of affected individuals has not been publicly disclosed by Karl Auto Group, and specific affected states are not publicly confirmed in the available sources. The company has indicated that the investigation is ongoing.
Additional details about the breach, including the full scope of affected individuals, may emerge as the investigation progresses. Notification to consumers may also be delayed.