Current:Home > reviewsNissan data breach exposed Social Security numbers of thousands of employees -Capitatum
Nissan data breach exposed Social Security numbers of thousands of employees
SignalHub Quantitative Think Tank Center View
Date:2025-04-07 01:19:31
Nissan suffered a data breach last November in a ransomware attack that exposed the Social Security numbers of thousands of former and current employees, the Japanese automaker said Wednesday.
Nissan's U.S.-based subsidiary, Nissan North America, detailed the cyberattack in a May 15 letter to affected individuals. In the letter, Nissan North America said a bad actor attacked a company virtual private network and demanded payment. Nissan did not indicate whether it paid the ransom.
"[U]pon learning of the attack, Nissan promptly notified law enforcement and began taking immediate actions to investigate, contain and successfully terminate the threat," the car maker said in the letter, adding that "Nissan worked very closely with external cybersecurity professionals experienced in handling these types of complex security incidents."
Nissan told employees about the incident during a town hall meeting in December 2023, a month after the attack. The company also told staffers that it was launching an investigation and would notify employees privately if their personal information had been compromised. Nissan said it's providing free identity theft protection services to impacted individuals for two years.
Nissan North America also notified state officials across the U.S. of the attack, noting that data belonging to more than 53,000 current and former workers was compromised. But the company said its investigation found that affected individuals did not have their financial information exposed.
Nissan North America "has no indication that any information has been misused or was the attack's intended target," the automaker said in its letter.
Ransomware attacks, in which cybercriminals disable a target's computer systems or steal data and then demand payment to restore service, have become increasingly common. One cybersecurity expert said someone likely got a password or multi-factor authentication code from an existing Nissan employee, enabling the hacker to enter through the company's VPN.
"It is unfortunate that the breach ended up involving personal information, however Nissan has done the right thing by continuing to investigate the incident and reporting the update," Erich Kron, a cybersecurity awareness advocate at KnowBe4, told CBS MoneyWatch in an emailed statement. "In this case, targeting the VPN will often help bad actors avoid detection and bypass many of the organizational security controls that are in place."
- In:
- Nissan
- Data Breach
- Cyberattack
- Ransomware
Khristopher J. Brooks is a reporter for CBS MoneyWatch. He previously worked as a reporter for the Omaha World-Herald, Newsday and the Florida Times-Union. His reporting primarily focuses on the U.S. housing market, the business of sports and bankruptcy.
TwitterveryGood! (48199)
Related
- Kehlani Responds to Hurtful Accusation She’s in a Cult
- Horoscopes Today, April 29, 2024
- Chelsea Handler Reacts to Rumors She's Joining Real Housewives of Beverly Hills
- CBS makes major changes to 'NFL Today': Phil Simms and Boomer Esiason out
- NCAA President Charlie Baker would be 'shocked' if women's tournament revenue units isn't passed
- Where is the Kentucky Derby? What to know about Churchill Downs before 2024 race
- Funeral services are held for a Chicago police officer fatally shot while heading home from work
- Family of Ralph Yarl files lawsuit against Andrew Lester, homeowners association after 2023 shooting
- Illinois governor calls for resignation of sheriff whose deputy fatally shot Black woman in her home
- Paramount CEO Bob Bakish to step down amid sale discussions
Ranking
- 3 years after the NFL added a 17th game, the push for an 18th gets stronger
- Bruins, Hurricanes, Avalanche, Canucks can clinch tonight: How to watch
- Over 80,000 pounds of deli meat recalled across multiple states due to lacking inspection
- American tourist facing prison in Turks and Caicos over ammunition says he's soaking up FaceTime with his kids back home
- Macy's says employee who allegedly hid $150 million in expenses had no major 'impact'
- AP WAS THERE: Mexico’s 1938 seizure of the oil sector from US companies
- Why Bhad Bhabie Is Warning Against Facial Fillers After Dissolving Them
- Texans receiver Tank Dell suffers minor wound in shooting at Florida party venue, team says
Recommendation
Jorge Ramos reveals his final day with 'Noticiero Univision': 'It's been quite a ride'
Britney Spears settles legal battle with father Jamie Spears after conservatorship: Reports
Congress honors deceased Korean War hero with lying in honor ceremony
Bird never seen in US, the blue rock thrush, reportedly spotted on Oregon coast
Realtor group picks top 10 housing hot spots for 2025: Did your city make the list?
Travis Kelce's NFL Future With Kansas City Chiefs Revealed
Cameo's Most Surprisingly Affordable Celebrity Cameos That Are Definitely in Your Budget
Proof Sydney Sweeney’s Wedding to Jonathan Davino Is Sooner Than You Think