2022 DENSO — Pandora ransomware claims against German automotive subsidiary
Data compromised
Actor-branded engineering and corporate stores—no standardized public individual count
Technical writeup
Toyota-tier supplier DENSO became a headline automotive victim when the Pandora ransomware cluster—analyzed by researchers as evolution of the prior Rook/Babuk lineage—claimed theft from Denso Automotive Deutschland operations with roughly terabyte-scale exfiltration marketing. Parallel late-2021 reporting had already tied a North American facility outage to Rook, making Denso a recurring case study in sequential automotive supply-chain extortion waves.
Root cause
Human-operated ransomware and data theft attributed in open sources to Pandora (successor branding to Rook in multiple analyses)