Continental said attackers infiltrated parts of its IT systems in August 2022 and copied several terabytes of data. In early November, ransomware group LockBit claimed responsibility and threatened to publish stolen data—but Continental did not confirm that LockBit was behind the August attack. The company said it did not respond to ransom demands and that its business activities were not affected.
Did LockBit hack Continental?
LockBit claimed responsibility for the Continental incident and threatened to publish data in early November 2022. That public claim came after the company said it had discovered an attack in August. Continental did not confirm that LockBit was responsible for the August intrusion, so the group’s claim should not be treated as independently verified attribution. ITPro described the threat as a double-extortion tactic: attackers steal information and use the threat of disclosure as leverage.
What data was stolen from Continental?
Continental’s 2022 annual report says attackers infiltrated parts of its IT systems and copied several terabytes of data before the attack was stopped. The report does not provide a complete public inventory of the affected files or explain which categories of information were copied. It also says the investigation was ongoing, so the disclosed figure should not be read as a detailed account of everything taken.
How much data did the hackers steal?
Continental’s own figure is “several terabytes.” Reuters separately reported that Handelsblatt put the amount at 40 terabytes. That more specific figure is a media report, not the number stated in Continental’s annual report. Reuters’ account attributes the 40-terabyte figure to Handelsblatt.
The Tool Desk
Outbyte Driver Updater FREEFix the driver behind crashes, sound loss and screen glitchesFind Drivers →Outbyte PC Repair FREERepair Windows errors before they cause bigger problemsFix Now →#1 Best Overall
Did Continental pay the ransom?
No, according to the company’s annual report. Continental said it received ransom demands from the alleged attackers and “did not respond to the demands.” The report does not say that Continental paid.
Was Continental’s business disrupted?
Continental said its business activities were not affected at any point and that it maintained full control over its IT systems. The company’s account supports data theft and an extortion threat, but not claims that production stopped or that files were encrypted.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.What happened after the 2022 attack?
Continental’s May 2026 prospectus says claims for information and damages were being asserted in connection with the cyberattack as of the document date. It also says no fines had been imposed in connection with the attack. Those statements describe the position at the prospectus date; they do not establish a final resolution of all claims.
Quick Recap
Best Value
Rank #4
Rank #3
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




