Security Incident Reporting

If you identify a potential vulnerability in our specifications or reference documents, please report it immediately. Reports can be filed using the form below.  Timely identification of security issues is critical to mitigating potential risks to CCC Digital Key™ systems.

When reporting a potential vulnerability, please include as much of the below information to help us better understand the nature and scope of the reported issue. 

This field is for validation purposes and should be left unchanged.
First and Last Name(Required)
Include vulnerability details and how to reproduce the issue.

Device/Phone

Is physical access to the internal components of the device required?

Vehicle

Is physical access to the interior of the vehicle or any of its parts required?

Attack Result/Impact

Can the vehicle be stolen?
Can the vehicle be locked/unlocked?

Document/Specification

Protocols

Does the attack exploit any vulnerability in the protocols employed by CCC?
Also, to your knowledge has the potential vulnerability been reported to the affected standardization body?

Asset Name

Threat/Vulnerability

Attack Window

Please provide a reference to the related section in a suitable CCC specification document.

Tools

Supporting Materials

Drop files here or
Accepted file types: jpg, gif, png, pdf, Max. file size: 256 MB, Max. files: 5.
    Upload any files to support the Security Incident Report.