CDK makes software that is commonly used by car dealerships to process sales and other transactions. In light of the hack, many dealers have started processing transactions manually, according to local press reports.
Here is more about BlackSuit, the hacking group analysts say is behind the CDK hack:
Who/What is BlackSuit?
Not much is known about the group, but it emerged in May 2023. Analysts say it is a relatively new cybercriminal team spun off of an older and well-known Russia-linked hacking group named RoyalLocker.
RoyalLocker mostly hacked American companies and was a formidable hacker group borne out of another prolific gang named Conti. Royal was likely the third most persistent ransomware group after LockBit and ALPHV, according to analysts.
Yet, BlackSuit is not as aggressive as the others. The number of victims it lists on its data leak site suggests it does not have as many hacking partners as larger ransomware gangs, said Kimberly Goody, head of cybercrime analysis at Mandiant Intelligence.
“The majority of BlackSuit victims have been overwhelmingly based in the U.S., followed by the U.K. and Canada and span a wide range of sectors,” she said.