Current:Home > ContactNissan data breach exposed Social Security numbers of thousands of employees -AssetScope
Nissan data breach exposed Social Security numbers of thousands of employees
View
Date:2025-04-15 08:28:41
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (787)
Related
- Pregnant Kylie Kelce Shares Hilarious Question Her Daughter Asked Jason Kelce Amid Rising Fame
- Greta Gerwig deserves more than an Oscar for portrayal of motherhood in 'Barbie'
- Shooting kills 3 people at a Texas apartment complex, police say
- A day after Trump testifies, lawyers have final say in E. Jean Carroll defamation trial
- FACT FOCUS: Inspector general’s Jan. 6 report misrepresented as proof of FBI setup
- Ake keeps alive Man City treble trophy defense after beating Tottenham in the FA Cup
- Judge to fine a Massachusetts teachers union an extra $50,000 a day if 6-day strike continues
- Mass graves are still being found, almost 30 years after Rwanda’s genocide, official says
- Who's hosting 'Saturday Night Live' tonight? Musical guest, how to watch Dec. 14 episode
- Former prominent Atlanta attorney who shot his wife in SUV pleads guilty to lesser charges
Ranking
- Apple iOS 18.2: What to know about top features, including Genmoji, AI updates
- Can't find a dupe? Making your own Anthropologie mirror is easy and cheap with these steps
- Biden calls regional partners ahead of CIA chief’s meeting in push for another Gaza hostage deal
- AP Week in Pictures: Asia
- Pressure on a veteran and senator shows what’s next for those who oppose Trump
- Inflation slowed further in December as an economic ‘soft landing’ moves into sharper focus
- See Gigi Hadid and Bradley Cooper Confirm Romance With Picture Perfect Outing
- Father-daughter duo finds surprise success with TV channel airing only classics
Recommendation
Nevada attorney general revives 2020 fake electors case
Man accused of picking up teen fugitive following escape now facing charges, authorities say
Other passengers support man who opened emergency exit, walked on wing of plane in Mexico airport
Alabama execution using nitrogen gas, the first ever, again puts US at front of death penalty debate
Juan Soto to be introduced by Mets at Citi Field after striking record $765 million, 15
Second Rhode Island man pleads not guilty to charges related to Patriots fan’s death
Canadian man accused of selling deadly substances to plead not guilty: lawyer
University of California board delays vote over hiring immigrant students without legal status