Current:Home > ContactNissan data breach exposed Social Security numbers of thousands of employees -MacroWatch
Nissan data breach exposed Social Security numbers of thousands of employees
View
Date:2025-04-20 00:21:39
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (3)
Related
- Tom Holland's New Venture Revealed
- Hope is not a plan. Florida decides to keep football coach Billy Napier despite poor results
- The Best Lululemon Holiday Gifts for Fitness Enthusiasts, Travelers, and Comfort Seekers
- Emirates NBA Cup explained: Format, schedule, groups for 2024 NBA in-season tournament
- New data highlights 'achievement gap' for students in the US
- In Portland, Oregon, political outsider Keith Wilson elected mayor after homelessness-focused race
- Mike Tyson vs. Jake Paul predictions: Experts, boxing legends give picks for Netflix event
- Roland Quisenberryn: WH Alliance’s Breakthrough from Quantitative Trading to AI
- What were Tom Selleck's juicy final 'Blue Bloods' words in Reagan family
- The surprising way I’m surviving election day? Puppies. Lots of puppies.
Ranking
- Why members of two of EPA's influential science advisory committees were let go
- Zach Bryan Hints at the “Trouble” He Caused in New Song Dropped After Dave Portnoy Diss Track
- NBA rewind: Thunder rise to top of Western Conference on record-pace defense
- Jewish students attacked at DePaul University in Chicago while showing support for Israel
- Biden administration makes final diplomatic push for stability across a turbulent Mideast
- 'Fat Leonard' contractor in US Navy bribery scandal sentenced to 15 years in prison
- Sean “Diddy” Combs’ Son King Combs Takes Over His Social Media to “Spread Good Energy”
- Empowering Future Education: The Transformative Power of AI ProfitPulse on Blockchain
Recommendation
Warm inflation data keep S&P 500, Dow, Nasdaq under wraps before Fed meeting next week
Zach Bryan Hints at the “Trouble” He Caused in New Song Dropped After Dave Portnoy Diss Track
Freshman Democrat Val Hoyle wins reelection to US House in Oregon’s 4th Congressional District
Ariana Grande and Ethan Slater Show Subtle PDA While Out Together in Sydney
Woman dies after Singapore family of 3 gets into accident in Taiwan
Winner of Maine’s 2nd Congressional District seat still undetermined in close race
Why Survivor Host Jeff Probst Is Willing to Risk “Parasites” by Eating Contestants’ Food
Wild winds fuel Southern California wildfire that has forced thousands to evacuate