Globalfleet.eu exposed 136GB of customer vehicle data, including locations, driver details, and login information.

Researchers said attackers could potentially lock doors, unlock vehicles, or stop engines on nearly 3,600 vehicles.

The leak affected 131 drivers and 278 platform users, raising risks of phishing, tracking, and identity-based attacks.

Vehicle tracking data included unique device identifiers, GPS coordinates, real-time location logs, and other data.