# Exploiting Volvo/Eicher's fleet platform to gain control over all users/vehicles

_Monday, July 27, 2026 at 8:00 AM EDT · Security · Latest · Tier 2 — Notable_

![Exploiting Volvo/Eicher's fleet platform to gain control over all users/vehicles — Primary](https://eaton-works.com/promo_gfx/volvo-eicher.jpg)

Exploiting Volvo/Eicher's fleet management platform to gain control over all users and vehicles. The vulnerability was discovered in the APIs of My Eicher, a fleet management system built by VE Commercial Vehicles, a joint venture between the Volvo Group and Eicher Motors.

The flaw allowed access to unauthenticated internal/admin APIs, enabling account takeover and control over fleets of hundreds of vehicles. As of November 2024, 275k vehicles and 115k customers were registered, though later data showed 676k vehicles and 748k customers. The vulnerability was reported to VECV in November 2025 and fixed by November 20, 2025, before being publicly disclosed on July 27, 2026.

## Sources

- [eaton-works.com](https://eaton-works.com/2026/07/27/my-eicher-hack/)

---
Canonical: https://techandbusiness.org/newswire/pOdb3trT3KoUp0xfyVfTab
Retrieved: 2026-07-28T01:28:02.551Z
Publisher: Tech & Business (techandbusiness.org)
